云虫漏洞库

CVE-2026-72670 - A lower privileged user who holds only the privilege to read agent policies can read the entire configuration of a configured Fleet proxy. This would normally require the Fleet privilege to read settings.The proxy configuration possibly contains proxy authentication credentials and private key material that they should not be authorized to view. - 漏洞详情

漏洞编号:CVE-2026-72670

风险等级:高危

漏洞来源:CVE

CVE 编号:CVE-2026-72670

CNNVD 编号:-

厂商/产品:- / -

影响范围:-

CWE:CWE-200

发布/更新时间:2026-08-13 / 2026-08-28

漏洞描述

A lower privileged user who holds only the privilege to read agent policies can read the entire configuration of a configured Fleet proxy. This would normally require the Fleet privilege to read settings.The proxy configuration possibly contains proxy authentication credentials and private key material that they should not be authorized to view.

相关链接

相关漏洞

« 返回首页