VYPR
Important severity7.7NVD Advisory· Published Jul 27, 2026

virt-cdi-operator: containerized-data-importer: cdi.kubevirt.io:view aggregated ClusterRole grants create on datavolumes/source, allowing unauthorized PVC clone

CVE-2026-17527

Description

virt-cdi-operator: containerized-data-importer: cdi.kubevirt.io:view aggregated ClusterRole grants create on datavolumes/source, allowing unauthorized PVC clone

Affected products

1

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.