MEDIUMVulnerability
CVE-2026-73834
A flaw was found in the must-gather component of Red Hat Advanced Cluster Management for Kubernetes. Certain ACM wrapper Custom Resources that embed Secret data are collected without redaction. When an administrator runs must-gather, credentials and tokens are captured in cleartext in the resulting archive, potentially exposing sensitive information to anyone with access to the archive.
Properties
- severity
- MEDIUM
- score
- 5.5
- cve_id
- CVE-2026-73834
- vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- published_at
- 2026-08-18T16:18:17.493
- last_modified
- 2026-09-05T18:17:28.770
Related Entities (2)
DESCRIBED_BY (1)
→[Source]NVD
HAS_WEAKNESS (1)
→[Weakness]Cleartext Storage of Sensitive Information
Explore deeper with Ninja Signal's threat intelligence graph