Boletines de Vulnerabilidades

CVE-2026-10843

   
Software afectado AWS
 
A flaw was found in the OpenShift Cloud Credential Operator Mint-mode IAM policies for AWS. Operator credentials are provisioned with account-wide scope for destructive actions rather than being restricted to cluster-owned resources, enabling cross-scope impact after credential compromise.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-10843