THREAT OPS › Threat News › [NVD] CVE-2026-75569 (HIGH 7.7) — A flaw was found in mce-operator-bundle. The build process fetches and executes scripts from a remote repository without performing integrity checks, such as commit pinning or signature verification. This allows a malicious actor with write access to the remote repository to inje
[NVD] CVE-2026-75569 (HIGH 7.7) — A flaw was found in mce-operator-bundle. The build process fetches and executes scripts from a remote repository without performing integrity checks, such as commit pinning or signature verification. This allows a malicious actor with write access to the remote repository to inje
CVE-2026-75569 CVSS: 7.7 HIGH Published: 2026-08-19T21:17:37.287
A flaw was found in mce-operator-bundle. The build process fetches and executes scripts from a remote repository without performing integrity checks, such as commit pinning or signature verification. This allows a malicious actor with write access to the remote repository to inject and execute arbitrary code during the build. The co
Indicators of compromise
- CVE-2026-75569cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-75569