CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100833

HIGHCVSS 8.2NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast (edgelesssys/contrast) versions 1.14.0 before 1.23.1 generate runtime policies that fail to detect all container image substitutions. A bad rebase during a Kata Containers update accidentally introduced an `allow_storage` rule that accepts storage entries using the `image_guest_pull` driver

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-100833 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100833

HIGHCVSS 8.2NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast (edgelesssys/contrast) versions 1.14.0 before 1.23.1 generate runtime policies that fail to detect all container image substitutions. A bad rebase during a Kata Containers update accidentally introduced an `allow_storage` rule that accepts storage entries using the `image_guest_pull` driver

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]