Medium severity5.5NVD Advisory· Published Aug 18, 2026· Updated Sep 5, 2026
CVE-2026-73834
CVE-2026-73834
Description
A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes. Certain ACM wrapper Custom Resources that embed Secret data are collected without redaction. When an administrator runs must-gather, credentials and tokens are captured in cleartext in the resulting archive, potentially exposing sensitive information to anyone with access to the archive.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
8- access.redhat.com/errata/RHSA-2026:60386nvd
- access.redhat.com/errata/RHSA-2026:60387nvd
- access.redhat.com/errata/RHSA-2026:60388nvd
- access.redhat.com/errata/RHSA-2026:60389nvd
- access.redhat.com/errata/RHSA-2026:60390nvd
- access.redhat.com/errata/RHSA-2026:60391nvd
- access.redhat.com/security/cve/CVE-2026-73834nvd
- bugzilla.redhat.com/show_bug.cginvd
News mentions
0No linked articles in our index yet.