CVE-2026-8715Patch

LOWCVSS 9.6 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Vault Secrets Operator 1.3.0 up to 1.4.1 is vulnerable to an arbitrary file read and credential exfiltration issue in the AppRole authentication configuration that may allow a tenant with limited Kubernetes RBAC permissions to read files from the operator pod's filesystem and transmit their contents to a tenant-controlled endpoint, potentially leading to privilege escalation within the cluster. This vulnerability (CVE-2026-8715) is fixed in Vault Secrets Operator 1.5.0.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-552

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-08-19); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-08-19: 1Mentions · 2026-09-03: 1Patch / Workaround · 2026-08-19: 1Patch / Workaround · 2026-09-03: 1Technical Details · 2026-08-19: 1Technical Details · 2026-09-03: 108-1909-03
Signal classification2 categories
Patch
150.0%
Disclosure
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-08-191
Patch1
2026-09-031
Disclosure1
Full discourse2 posts
  • Daily CyberSecurity@Daily_CyberSec
    Patch

    A Vault Secrets Operator vulnerability, CVE-2026-8715, lets tenants read pod files and gain privilege escalation. Patch to 1.5.0 now. #HashiCorp #Vault #Kubernetes #CVE #PrivilegeEscalation #CyberSecurity #InfoSec #Vulnerability https://securityonline.info/vault-secrets-operator-cve-2026-8715/

    Post summary

    CVE-2026-8715 allows tenants to read pod files and achieve privilege escalation; HashiCorp has released patch 1.5.0 to address the issue.

    01020460
    13.0K followersView on X
  • CyStack@CyStackSecurity
    Disclosure

    CVE-2026-8715: Arbitrary file read in HashiCorp's Vault Secrets Operator, the Kubernetes operator that syncs secrets from Vault. The secretIDPath field never restricted which files it could point to. A namespaced tenant points it at a sensitive file on the operator pod, pairs it with a malicious VaultConnection, and exfiltrates the contents. Patched in v1.5.0. Found by a CyStack researcher. Details at https://cystack.net/disclosures #CyStack #CyberSecurity #Vulnerability #HashiCorp #Vault #Kubernetes #EnterpriseSecurity #InfoSec

    Post summary

    Researchers identified an arbitrary file‑read flaw in HashiCorp’s Vault Secrets Operator, patched in v1.5.0; details are provided through a CyStack release.

    00010115
    3.7K followersView on X

Explore more