Back to CVE List

CVE-2026-32589

HIGH SEVERITY

CVSS Score & Metrics

Base Score
7.1 / 10
Vector String
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:H/A:L

Vulnerability Description

A flaw was found in Red Hat Quay's container image upload process. An authenticated user with push access to any repository on the registry can interfere with image uploads in progress by other users, including those in repositories they do not have access to. This could allow the attacker to read, modify, or cancel another user's in-progress image upload.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-639
Source
NVD
Vendor
Red Hat
Product
mirror registry for Red Hat OpenShift, mirror registry for Red Hat OpenShift 2, Red Hat Quay 3

External References

Discussion (0)

Add Comment

No comments yet. Be the first!