Description
A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and multicluster-engine (MCE). The service-proxy appends impersonation group headers to proxied requests without first removing caller-supplied values, and the spoke ServiceAccount holds unrestricted impersonation permissions. An authenticated hub principal can inject an Impersonate-Group header to escalate to cluster-admin on every managed cluster.
Published: 2026-07-24
Score: 8.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The cluster‑proxy service‑proxy component of RHACM and MCE appends impersonation group headers to proxied requests without first removing caller‑supplied values. Because the spoke ServiceAccount holds unrestricted impersonation permissions, an authenticated hub principal may inject an Impersonate‑Group header into a request. This allows the attacker to gain cluster‑admin rights on every managed cluster, compromising confidentiality, integrity, and availability of the entire multi‑cluster environment. The flaw is a privilege‑escalation vulnerability (CWE‑441).

Affected Systems

The vulnerability affects Red Hat Advanced Cluster Management for Kubernetes (RHACM) and Red Hat Multicluster Engine for Kubernetes (MCE). It is present in MCE releases 2.6, 2.8, 2.9, 2.10, 2.11, and 2.17 running on EL9, which are also incorporated in RHACM versions that bundle these MCE components. The specific RHACM version numbers corresponding to these MCE releases are not directly specified in the CVE data but can be inferred from the RHACM releases that include these MCE component versions. Any installation using one of these specific releases is at risk because the cluster‑proxy service‑proxy component does not sanitize impersonation headers supplied by callers.

Risk and Exploitability

The CVSS score of 8.5 indicates high severity, but the EPSS score of less than 1% suggests a very low probability of exploitation in the near term. The vulnerability is not included in the CISA KEV catalog. Exploitation requires the attacker to be an authenticated hub principal and to be able to send an HTTP request that reaches the service‑proxy endpoint; the attacker then inserts a forged Impersonate‑Group header. The impact is global to all managed clusters served by the vulnerable configuration.

Generated by OpenCVE AI on August 3, 2026 at 19:45 UTC.

Remediation

Vendor Workaround

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.


OpenCVE Recommended Actions

  • Register with Red Hat Product Security or your Red Hat account to receive the official patch or release notes covering this vulnerability.
  • If no official patch exists, upgrade the Red Hat Advanced Cluster Management for Kubernetes or Multicluster Engine installation to a later release that removes the unrestricted impersonation permissions for the spoke ServiceAccount or that sanitizes incoming impersonation headers.
  • Enable audit logging and monitor for abnormal Impersonate‑Group header usage; correlate logs with cluster‑admin activity and restrict network access to the service‑proxy endpoint to trusted administrators only.

Generated by OpenCVE AI on August 3, 2026 at 19:45 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 30 Jul 2026 01:00:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:multicluster_engine:2.17::el9
References

Wed, 29 Jul 2026 17:15:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:multicluster_engine:2.11::el9
cpe:/a:redhat:multicluster_engine:2.6::el9
References

Wed, 29 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:multicluster_engine:2.9::el9
References

Wed, 29 Jul 2026 09:30:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:multicluster_engine:2.8::el9
References

Tue, 28 Jul 2026 22:00:00 +0000

Type Values Removed Values Added
References

Mon, 27 Jul 2026 23:30:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:multicluster_engine cpe:/a:redhat:multicluster_engine:2.10::el9
References

Mon, 27 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Sat, 25 Jul 2026 00:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Important


Fri, 24 Jul 2026 19:15:00 +0000

Type Values Removed Values Added
Description A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and multicluster-engine (MCE). The service-proxy appends impersonation group headers to proxied requests without first removing caller-supplied values, and the spoke ServiceAccount holds unrestricted impersonation permissions. An authenticated hub principal can inject an Impersonate-Group header to escalate to cluster-admin on every managed cluster.
Title Cluster-proxy: cluster-proxy: impersonation header injection in service-proxy grants cluster-admin on every managed cluster
First Time appeared Redhat
Redhat multicluster Engine
Weaknesses CWE-441
CPEs cpe:/a:redhat:multicluster_engine
Vendors & Products Redhat
Redhat multicluster Engine
References
Metrics cvssV3_1

{'score': 8.5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Redhat Multicluster Engine
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-08-13T16:51:59.777Z

Reserved: 2026-07-24T15:28:38.469Z

Link: CVE-2026-17107

cve-icon Vulnrichment

Updated: 2026-07-27T17:21:02.744Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-07-24T19:16:55.907

Modified: 2026-08-13T17:17:20.863

Link: CVE-2026-17107

cve-icon Redhat

Severity : Important

Publid Date: 2026-07-24T18:49:48Z

Links: CVE-2026-17107 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T20:00:12Z

Weaknesses
  • CWE-441

    Unintended Proxy or Intermediary ('Confused Deputy')