CVE-2026-47250: Dynamic Kubernetes Context Confusion
Dynamically invoking `setCurrentContext()` with a variable modifies the Kubernetes client configuration state. In concurrent server environments, modifying shared client objects during a request creates a Context Confusion race condition, where simultaneous requests can execute operations against the wrong cluster context. Instantiate isolated client configu
greprules fetch cve-2026-47250-dynamic-kubernetes-context-confusion --engine opengrepDescription
Dynamically invoking `setCurrentContext()` with a variable modifies the Kubernetes client configuration state. In concurrent server environments, modifying shared client objects during a request creates a Context Confusion race condition, where simultaneous requests can execute operations against the wrong cluster context. Instantiate isolated client configu
Community feedback
0 signals from signed-in users.
- Useful
- 0
- False positive
- 0
- Metadata
- 0