
CVE-2026-39961: CVE-2026-39961: Cross-Namespace Secret Exfiltration via Confused Deputy in Aiven Operator The Aiven Operator for Kubernetes (versions 0.31.0 through 0.36.x) contains a critical privilege escalation and data exfiltration vulnerability. ... https://cvereports.com/reports/CVE-2026-39961
Post summary
The tweet announces a new privilege escalation and data exfiltration vulnerability in the Aiven Operator, providing technical details but no PoC, exploit code, or patch information.
