VYPR

submariner-operator

by Red Hat

CVEs (2)

  • CVE-2026-66780MedAug 18, 2026
    risk 0.42cvss 6.5epss 0.01

    A flaw was found in the submariner-operator component. The `submariner-k8s-broker-cluster` Role, which is assigned to joined clusters, possesses excessive permissions. This allows a compromised cluster to alter network configurations, specifically by overwriting other clusters'…

  • CVE-2026-66783MedAug 18, 2026
    risk 0.29cvss 4.4epss 0.00

    A flaw was found in the `submariner-operator` component of Red Hat Advanced Cluster Management for Kubernetes. This vulnerability allows a cluster administrator, or any user with permissions to modify the Submariner Custom Resource (CR), to specify an unvalidated image path.…