THREAT OPS › Threat News › [NVD] CVE-2026-15467 (HIGH 8.1) — A flaw was found in the trustyai-service-operator's LMEvalJob controller. An authenticated user within the cluster can exploit this vulnerability by configuring a sidecar container to bypass existing security policies. This allows the user to enable and execute untrusted remote c
[NVD] CVE-2026-15467 (HIGH 8.1) — A flaw was found in the trustyai-service-operator's LMEvalJob controller. An authenticated user within the cluster can exploit this vulnerability by configuring a sidecar container to bypass existing security policies. This allows the user to enable and execute untrusted remote c
CVE-2026-15467 CVSS: 8.1 HIGH Published: 2026-08-10T21:17:19.617
A flaw was found in the trustyai-service-operator's LMEvalJob controller. An authenticated user within the cluster can exploit this vulnerability by configuring a sidecar container to bypass existing security policies. This allows the user to enable and execute untrusted remote code, leading to arbitrary code execution within the cl
Indicators of compromise
- CVE-2026-15467cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-15467