Vulnerability Intelligence Report
Hypershift: konnectivity proxy-server accepts agent connections without validating client certificates
CVE-2026-16242
A flaw was found in the Konnectivity proxy-server configuration for hosted control planes. The agent-facing listener was started without --cluster-ca-cert (and without token-based agent authentication), so client certificates were not validated. A remote attacker who can reach the Konnectivity cluster endpoint could connect as an unauthenticated agent, join the routing pool, and potentially proxy, inspect, modify, or drop control-plane-to-node traffic.
No Active Exploit Signals
CVSS Base Score
9.4
CRITICAL
Exploitability:3.9
Impact Score:5.5
EPSS Probability:0.80%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-306 ↗Missing Authentication for Critical Function
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Red Hat | multicluster engine for Kubernetes 2.1 | 1784905766 < * (unaffected) |
| Red Hat | multicluster engine for Kubernetes 2.1 | 1784905766 < * (unaffected) |
| Red Hat | multicluster engine for Kubernetes 2.11 | 1784945966 < * (unaffected) |
| Red Hat | multicluster engine for Kubernetes 2.17 | 1784856942 < * (unaffected) |
| Red Hat | multicluster engine for Kubernetes 2.6 | 1784905804 < * (unaffected) |
| Red Hat | multicluster engine for Kubernetes 2.8 | 1784905783 < * (unaffected) |
| Red Hat | multicluster engine for Kubernetes 2.9 | 1784905769 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.14 | 1787001690 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.15 | 1787055132 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.16 | 1785534428 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.17 | 1784914869 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.18 | 1784912882 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.19 | 1784913720 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.20 | 1785288843 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.21 | 1785301941 < * (unaffected) |
| Red Hat | Red Hat OpenShift Container Platform 4.22 | 1785192936 < * (unaffected) |
| Red Hat | Logging Subsystem for Red Hat OpenShift | all |
| Red Hat | Multicluster Engine for Kubernetes | all |
| Red Hat | Multicluster Engine for Kubernetes | all |
| Red Hat | Multicluster Engine for Kubernetes | all |
| Red Hat | Multicluster Engine for Kubernetes | all |
| Red Hat | OpenShift API for Data Protection | all |
| Red Hat | OpenShift API for Data Protection | all |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | all |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | all |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | all |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | all |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | all |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | all |
| Red Hat | Red Hat Advanced Cluster Management for Kubernetes 2 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
| Red Hat | Red Hat OpenShift Container Platform 4 | all |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
0.798%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Red Hat, Inc. · Vendor · USA |
| Reserved | 2026-07-20T05:06:35 |
| Published | 2026-07-20T07:33:16 |
| Patch Date | 2026-07-17 |
| Last Updated | 2026-09-14T14:46:53 |
Community Chatter & Buzz