Open Cluster Management
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-91182 | low | 0.21 | 3.3 | — | Sep 23, 2026 | open-cluster-management: Open-Cluster-Management: Privilege escalation and unauthorized resource modification in gRPC broker | ||
| CVE-2023-2250 | Med | 0.00 | 6.7 | 0.00 | Apr 24, 2023 | A flaw was found in the Open Cluster Management (OCM) when a user have access to the worker nodes which has the cluster-manager-registration-controller or cluster-manager deployments. A malicious user can take advantage of this and bind the cluster-admin to any service account… |
- risk 0.21cvss 3.3epss —
open-cluster-management: Open-Cluster-Management: Privilege escalation and unauthorized resource modification in gRPC broker
- risk 0.00cvss 6.7epss 0.00
A flaw was found in the Open Cluster Management (OCM) when a user have access to the worker nodes which has the cluster-manager-registration-controller or cluster-manager deployments. A malicious user can take advantage of this and bind the cluster-admin to any service account…