THREAT OPS › Threat News › [NVD] CVE-2026-9165 (HIGH 7.7) — A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of GraphQL queries served on the authenticated GraphQL API. An authenticated user with a valid API token can send deeply nested queries that cause excessive resource con
[NVD] CVE-2026-9165 (HIGH 7.7) — A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of GraphQL queries served on the authenticated GraphQL API. An authenticated user with a valid API token can send deeply nested queries that cause excessive resource con
CVE-2026-9165 CVSS: 7.7 HIGH Published: 2026-07-06T09:16:39.400
A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of GraphQL queries served on the authenticated GraphQL API. An authenticated user with a valid API token can send deeply nested queries that cause excessive resource consumption in Central, resulting in a denial of service f
Indicators of compromise
- CVE-2026-9165cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-9165