CVE-2026-100703: Kyverno before 1.19.1 Cross-Namespace Data Access via globalcontext.Lib

Published Sep 26, 2026
·
Updated

Kyverno 1.16.0 through 1.19.0 registers the globalcontext.Lib CEL library in its policy environment without confining it to the policy's namespace, unlike the sibling libraries (resource.Lib, http.Lib, configMap loader) which are handed the policy namespace. A tenant who can create a namespaced policy (e.g. NamespacedValidatingPolicy, and likewise the namespaced mutating, deleting, generating, and image-validating policy kinds) in their own namespace can call globalContext.get("<entry>", "") and receive the full cached contents of a cluster-scoped GlobalContextEntry, including data cached from namespaces the tenant has no RBAC permission to read. No admission validation rejects such calls. Fixed in 1.19.1.

Affected Software

1 affected component
Kyverno Kyverno>=1.16.0<=1.19.0

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade Kyverno to a version that resolves this vulnerability.

    Fixed in 1.19.1

Event History

Sep 26, 2026
CVE Published
via MITRE·01:23 PM
Data Sourced
via MITRE·01:23 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Who can exploit this issue?

A tenant who can create a namespaced Kyverno policy in their own namespace can exploit it. Affected policy types include NamespacedValidatingPolicy and the namespaced mutating, deleting, generating, and image-validating policy kinds.

2

Does Kubernetes RBAC prevent the disclosed data access?

No. A policy can call globalContext.get("<entry>", "") and receive cached data from a cluster-scoped GlobalContextEntry, including data from namespaces the tenant cannot read through RBAC.

3

What data is exposed through exploitation?

The attacker can receive the full cached contents of a cluster-scoped GlobalContextEntry. The disclosure is limited to data present in the GlobalContextEntry cache.

4

Which Kyverno versions need remediation?

Kyverno versions 1.16.0 through 1.19.0 are affected. The issue is fixed in version 1.19.1.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203