CVE-2026-3865Disclosure

LOW

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

1.5/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • General: 2 classified signals
  • Peaked 1d ago at 3 mentions (2026-04-11); latest day: 2
  • 5 total mentions across 2 days

Deep dive

Activity timeline5 mentions / 2d
01223Mentions · 2026-04-11: 3Mentions · 2026-04-13: 2PoC Mentioned / Linked · 2026-04-13: 1Technical Details · 2026-04-11: 2Technical Details · 2026-04-13: 204-1104-13
Signal classification2 categories
Disclosure
360.0%
General
240.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-113
Disclosure2General1
2026-04-132
Disclosure1General1
Full discourse5 posts
  • Kubernetes@kubernetesio
    General

    CVE-2026-3865: CSI Driver for SMB path traversal via subDir may delete unintended directories on the SMB server - https://github.com/kubernetes/kubernetes/issues/138319

    Post summary

    The post refers to CVE‑2026‑3865, detailing a path traversal that could delete unintended directories via the SMB CSI driver, but it offers no PoC, exploit, or patch information.

    11203488.0K
    324.0K followersView on X
  • K8sContributors@K8sContributors
    Disclosure

    CVE-2026-3865: CSI Driver for SMB path traversal via subDir may delete unintended directories on the SMB server - https://github.com/kubernetes/kubernetes/issues/138319

    Post summary

    The Kubernetes CSI‑SMB driver has a path‑traversal vulnerability (CVE‑2026‑3865) that can delete unintended directories, as reported in a GitHub issue; no PoC, exploit, or patch details are provided.

    00040697
    16.5K followersView on X
  • Open Source Security mailing list@oss_security
    Disclosure

    CVE-2026-3865: Kubernetes: CSI Driver for SMB path traversal via subDir may delete unintended directories on the SMB server https://www.openwall.com/lists/oss-security/2026/04/11/3

    Post summary

    The text announces CVE-2026-3865, a path traversal flaw in Kubernetes' SMB CSI Driver that could delete unintended directories; no PoC, exploit, patch, or active exploitation details are provided.

    00031501
    4.6K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: [kubernetes] CVE-2026-3865: CSI Driver for SMB path traversal via subDir may delete unintended directories on the SMB server Intel Report: https://ift.tt/9WDyZhs

    Post summary

    The alert discloses a new Kubernetes CSI driver vulnerability (CVE-2026-3865) that allows path traversal and accidental directory deletion on an SMB server.

    0000028
    280 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-3865 [kubernetes] CVE-2026-3865 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3865

    Post summary

    The excerpt simply references CVE-2026-3865 and links to a vulnerability details page, with no additional supporting information about exploitation, patches, or technical specifics.

    0000043
    4.0K followersView on X

Explore more