Description
A flaw was found in Lighthouse. A remote attacker, by compromising a spoke cluster, can exploit a vulnerability where the destination namespace for resource injection is derived from an attacker-controlled label or annotation on the broker object. This allows the attacker to inject unauthorized EndpointSlices and ServiceImports into any namespace on peer clusters, including critical system namespaces like kube-system and openshift-*. This could lead to privilege escalation or other forms of system compromise within the cluster.
Published: 2026-08-20
Score: 3.7 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A vulnerability in Lighthouse allows a remote attacker who has gained control of a spoke cluster to manipulate a label or annotation on the broker object so that the namespace chosen for injected resources is derived from attacker‑controlled data. This bypasses normal authorization controls and permits the attacker to insert EndpointSlices and ServiceImports into any namespace, including critical system namespaces such as kube‑system and openshift‑*. The consequence is that the attacker can achieve privilege escalation or further system compromise on peer clusters.

Affected Systems

The flaw affects Red Hat Advanced Cluster Management for Kubernetes 2 when it is deployed with Lighthouse integration. No specific product version is listed, so the vulnerability applies to all editions of AC M 2 that have Lighthouse enabled.

Risk and Exploitability

The CVSS score is 3.7, indicating low severity. The EPSS score is < 1 %, and the flaw is not listed in CISA KEV, suggesting a low likelihood of exploitation. Based on the description, it is inferred that the attacker must first compromise a spoke cluster; this prerequisite is a realistic threat scenario. Once the attacker injects resources, they can achieve elevated privileges or system compromise. No official workaround is available, so monitoring for unauthorized resource creation and restricting broker object labels are recommended as mitigations.

Generated by OpenCVE AI on September 2, 2026 at 07:50 UTC.

Remediation

Vendor Workaround

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.


OpenCVE Recommended Actions

  • Apply the official Red Hat patch as soon as an update is released; currently no patch is available but the vendor advises checking advisories repeatedly.
  • Configure broker object labels so that only trusted namespaces may be selected, preventing attacker‑controlled namespace selection.
  • Enable monitoring and alerting for unexpected EndpointSlice and ServiceImport objects in critical namespaces such as kube‑system and openshift‑* to detect unauthorized resource creation.

Generated by OpenCVE AI on September 2, 2026 at 07:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 03 Sep 2026 05:00:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:acm:2 cpe:/a:redhat:acm:2.17::el9
References

Tue, 01 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
Title Lighthouse: lighthouse: arbitrary local-namespace injection via attacker-controlled labelsourcenamespace Lighthouse: dockerfile build stages use end-of-life fedora 40 referenced by mutable tag
Weaknesses CWE-1104
Metrics cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H'}

cvssV3_1

{'score': 3.7, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N'}


Fri, 21 Aug 2026 13:30:00 +0000

Type Values Removed Values Added
First Time appeared Redhat advanced Cluster Management For Kubernetes
Vendors & Products Redhat advanced Cluster Management For Kubernetes

Fri, 21 Aug 2026 00:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Important


Thu, 20 Aug 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 20 Aug 2026 18:30:00 +0000

Type Values Removed Values Added
Description A flaw was found in Lighthouse. A remote attacker, by compromising a spoke cluster, can exploit a vulnerability where the destination namespace for resource injection is derived from an attacker-controlled label or annotation on the broker object. This allows the attacker to inject unauthorized EndpointSlices and ServiceImports into any namespace on peer clusters, including critical system namespaces like kube-system and openshift-*. This could lead to privilege escalation or other forms of system compromise within the cluster.
Title Lighthouse: lighthouse: arbitrary local-namespace injection via attacker-controlled labelsourcenamespace
First Time appeared Redhat
Redhat acm
Weaknesses CWE-284
CPEs cpe:/a:redhat:acm:2
Vendors & Products Redhat
Redhat acm
References
Metrics cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Redhat Acm Advanced Cluster Management For Kubernetes
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-09-03T04:41:39.269Z

Reserved: 2026-07-27T17:51:24.885Z

Link: CVE-2026-66788

cve-icon Vulnrichment

Updated: 2026-08-20T18:52:27.248Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-20T19:16:58.823

Modified: 2026-09-03T13:06:01.203

Link: CVE-2026-66788

cve-icon Redhat

Severity : Important

Publid Date: 2026-08-20T17:20:00Z

Links: CVE-2026-66788 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-02T08:00:14Z

Weaknesses
  • CWE-1104

    Use of Unmaintained Third Party Components

  • CWE-284

    Improper Access Control