{"id":"CVE-2026-10090","published":"2026-08-05T09:18:14.667","lastModified":"2026-08-06T15:37:22.093","description":"A flaw was found in the Application Subscription controller (multicluster-operators-subscription) of Red Hat Advanced Cluster Management for Kubernetes (ACM). A user with namespace-scoped \"edit\" privileges in an ACM hub namespace can create a Channel resource pointing to a Helm repository they control and a Subscription resource referencing it. The app-subscription controller fetches and applies the Helm chart contents with its own elevated authority, without verifying whether the subscription creator holds the \"open-cluster-management:subscription-admin\" role and without restricting applied resources to the subscription namespace. This allows the attacker to include cluster-scoped resources in the Helm chart, such as a ClusterRoleBinding granting the attacker's ServiceAccount the \"cluster-admin\" ClusterRole. Successful exploitation results in full cluster-admin privilege escalation. This contradicts the ACM documentation which states that non-subscription-admin users should have resources deployed into the subscription namespace only.","cvssScore":9.9,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","cwes":["CWE-267"],"vendors":[],"products":[],"references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-10090","tags":[]},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2483292","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"The flaw allows a user with namespace-scoped 'edit' privileges to create Subscription resources that can escalate their privileges to full cluster-admin access, bypassing intended security controls.","exploitability":"Exploitation requires an attacker to have namespace-scoped 'edit' privileges and control over a Helm repository. The ease of exploitation depends on the administrative controls in place.","blast_radius":"If exploited, this flaw can result in full cluster-admin privilege escalation across all clusters managed by ACM, severely impacting system security and integrity.","remediation":"Restrict namespace-scoped 'edit' privileges to only users who require them and ensure that subscription creation is limited to the subscription namespace without broader cluster access.","tags":["privilege-escalation","helm","kubernetes","acm"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-08-11T06:40:17.244Z"}}