Important severity7.7NVD Advisory· Published Jul 27, 2026
virt-cdi-operator: containerized-data-importer: cdi.kubevirt.io:view aggregated ClusterRole grants create on datavolumes/source, allowing unauthorized PVC clone
CVE-2026-17527
Description
virt-cdi-operator: containerized-data-importer: cdi.kubevirt.io:view aggregated ClusterRole grants create on datavolumes/source, allowing unauthorized PVC clone
Affected products
1Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.