CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100838

HIGHCVSS 8.1NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.19.1, the Kata agent policies generated by the Contrast CLI contained a flaw in the CopyFile verification that allowed arbitrary writes to the guest root filesystem. A malicious process on the untrusted host able to co

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-100838 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-100838

HIGHCVSS 8.1NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast is a confidential-computing runtime for Kubernetes. In versions before 1.19.1, the Kata agent policies generated by the Contrast CLI contained a flaw in the CopyFile verification that allowed arbitrary writes to the guest root filesystem. A malicious process on the untrusted host able to co

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]