CVE-2026-70495Disclosure

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the entire cluster. If an attacker gains access to any of the pods running under this service account, they could exploit this to achieve `system:masters` access, granting them full control over the cluster.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-269

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 3 mentions (2026-08-17); latest day: 1
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-08-17: 3Mentions · 2026-08-18: 1Patch / Workaround · 2026-08-18: 1Technical Details · 2026-08-17: 2Technical Details · 2026-08-18: 108-1708-18
Signal classification2 categories
Disclosure
375.0%
Patch
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-08-173
Disclosure3
2026-08-181
Patch1
Full discourse4 posts
  • MalwareObserver@MalwareObserver
    Patch

    🐛 VULNERABILITIES (CVSS 8.8) CVE-2026-70495: — severity important — Red Hat Security Data (JSON) https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-70495.json #PatchManagement #Vulnerability #CVE

    Post summary

    The tweet announces CVE‑2026‑70495 with a CVSS score of 8.8, directs users to Red Hat security data for patching, and offers no PoC, exploit, or active exploitation details.

    0000031
    28 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-70495 A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the … https://www.cve.org/CVERecord?id=CVE-2026-70495 ----- Traducción: CVE-2026-70495 Se … https://infoflow.cloud`

    Post summary

    A privilege‑escalation flaw in the search-v2-operator allows the search-serviceaccount to impersonate any user or group. No PoC, exploit, patch, or active exploitation information is provided.

    0000041
    100 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-70495 A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the … https://www.cve.org/CVERecord?id=CVE-2026-70495

    Post summary

    A vulnerability was disclosed in the `search-v2-operator` where an overly broad `search-serviceaccount` permission set could let attackers impersonate users and groups.

    000001.1K
    58.0K followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    There is a new vulnerability with elevated criticality in Red Hat Advanced Cluster Management for Kubernetes (CVE-2026-70495) https://vuldb.com/vuln/391396

    Post summary

    The text announces a newly identified high‑severity vulnerability (CVE‑2026‑70495) affecting Red Hat Advanced Cluster Management for Kubernetes, without providing technical details, PoC, or exploitation evidence.

    00000121
    2.3K followersView on X

Explore more