Threats Tagged 'cve-2026-78234'
View all threats tagged with 'cve-2026-78234'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-78234'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-78234: Improper Certificate Validation in Red Hat Red Hat build of Apache Camel - HawtIO 4CVE-2026-78234 0 A flaw was found in hawtio-operator. The operator reads the OpenShift Service CA private signing key from the openshift-service-ca namespace and uses it to mint client certificates with a Subject Common Name (CN) supplied by the author of a namespaced Hawtio custom resource. Because the operator ships a ClusterRole that aggregates Hawtio CR permissions into the edit and admin roles, any user with edit access in any namespace can obtain a Service-CA-signed certificate with an arbitrary subject. This certificate can be used to impersonate any in-cluster service identity to peers that trust the Service CA for client authentication, including Jolokia agents and other Service-CA-trusting components. Join the discussion | CVE Database V5 | 09/08/2026, 11:27:52 UTC Added: 09/08/2026, 11:37:56 UTC |
Showing 1 to 1 of 1 result