CVE-2026-26963

MEDIUM6.1EPSS 0.01%

Cilium may not enforce host firewall policies when Native Routing, WireGuard and Node Encryption are enabled

發布日:2026/2/19修改日:2026/2/23
也稱為:GHSA-5r23-prx4-mqg3BIT-cilium-2026-26963BIT-cilium-operator-2026-26963BIT-hubble-relay-2026-26963GO-2026-4522

描述

Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.5 will incorrectly permit traffic from Pods on other nodes when Native Routing, WireGuard and Node Encryption are enabled. This issue has been fixed in version 1.18.6.

受影響套件(5)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM6.1CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N

參考連結(6)