CVE-2026-15687
EUVD-2026-4836323.07.2026, 19:16
A security issue was discovered in the Kubernetes Java client library where a compromised pod may be able to create new files in arbitrary locations on the client machine executing copy operations via non-tar copyDirectoryFromPod when enableTarCompressing is false.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| kubernetes | java | 10.0.0 ≤ 𝑥 < 25.0.1 | CNA |
| kubernetes | java | 26.0.0 | CNA |