CVE-2026-93017: Improper Privilege Management in Red Hat Red Hat OpenShift Container Platform 4
Description
CVE-2026-93017 is a privilege management vulnerability in Red Hat OpenShift Container Platform 4. The insights-operator-gather ClusterRole grants its service account unrestricted read access to all secrets across all namespaces in the cluster. This allows an attacker who can spawn a pod with this service account to access any secret in the cluster. The vulnerability has a high severity with a CVSS score of 7.7.
CVSS v3.1
Score 7.7high
Affected software
Red Hat
Red Hat OpenShift Container Platform 4
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The vulnerability arises because the insights-operator-gather ClusterRole includes permissions to get and list secrets in the core API group without any namespace or resource name restrictions. This means the service account 'gather' can read every secret in every namespace. An attacker who can create a pod using this service account can exploit this to access sensitive secrets cluster-wide. The issue is documented in the insights-operator manifests and tracked as CVE-2026-93017.
Potential Impact
An attacker with the ability to spawn a pod using the 'gather' service account can read all secrets in every namespace of the cluster. This can lead to disclosure of sensitive information stored in secrets, potentially compromising cluster security and confidentiality. The vulnerability does not impact integrity or availability directly but has a high confidentiality impact.
Mitigation Recommendations
Patch status is not yet confirmed — check the Red Hat advisory at https://access.redhat.com/security/cve/CVE-2026-93017 for current remediation guidance. Until a fix is available, restrict the ability to spawn pods with the 'gather' service account or modify the ClusterRole to limit secret access scope.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- redhat
- Date Reserved
- 2026-09-17T14:51:36.301Z
- Cvss Version
- 3.1
- State
- PUBLISHED
- Vendor Advisory Urls
- [{"url":"https://access.redhat.com/security/cve/CVE-2026-93017","vendor":"Red Hat"}]
Threat ID: 6ac7ad642cdf04f65620c9ef
Added to database: 10/08/2026, 14:49:08 UTC
Last enriched: 10/08/2026, 15:03:18 UTC
Last updated: 10/08/2026, 15:08:15 UTC
Views: 4
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.