CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2026-49445

Critical · CVSS 9.2
CVSS
9.2
nvd
EPSS
0.17%
7th pct
KEV
No
Class
oss containerizable
CWE-732

Description

Cilium is a networking, observability, and security solution. Prior to 1.17.14, 1.18.8, and 1.19.2, when Cilium L7 functionality is enabled, the embedded or standalone Envoy instance creates a world-accessible admin.sock on cluster nodes, allowing a local attacker to access Envoy admin endpoints, expose TLS secrets, disrupt cluster traffic, or terminate Envoy. This issue is fixed in versions 1.17.14, 1.18.8, and 1.19.2.

Affected packages

Go github.com/cilium/cilium 0 → 1.17.14
Go github.com/cilium/cilium 1.18.0 → 1.18.8
Go github.com/cilium/cilium 1.19.0 → 1.19.2

References

Status: profiled · ingested 2026-07-17T18:00:52.000Z