VYPR

multicloud-integrations

by Red Hat

CVEs (2)

  • CVE-2026-72526CriAug 12, 2026
    risk 0.64cvss 9.9epss

    A flaw was found in the multicloud-integrations component. The Application propagation controller processes the `ocm-managed-cluster` annotation from an Application Custom Resource (CR) without proper validation. A tenant with permissions to create Applications on the hub…

  • CVE-2026-70398CriAug 12, 2026
    risk 0.62cvss 9.6epss

    A flaw was found in multicloud-integrations, a component of Red Hat Advanced Cluster Management (RHACM). This vulnerability allows an authenticated user, referred to as a tenant, to manipulate the GitOpsCluster controller. By exploiting this, a tenant can redirect sensitive…