A critical privilege-escalation vulnerability in Kyverno tracked as CVE-2026-54523 allows a low-privileged Kubernetes tenant to gain access across namespaces, including kube-system, by abusing the NamespacedGeneratingPolicy feature. The flaw affects Kyverno 1.18.1 and earlier and stems from missing validation in the CEL-based generator.apply() path, where Kyverno fails to ensure the target namespace matches the policy’s own namespace. Public disclosure included full technical details and proof-of-concept exploit code.
By creating a malicious NamespacedGeneratingPolicy, an attacker can trick Kyverno’s background controller—typically granted cluster-wide RBAC permissions—into generating resources in arbitrary namespaces. That can enable creation of privileged objects such as RoleBindings, potentially leading to admin-level access and broader manipulation of ConfigMaps, NetworkPolicies, and Ingresses across a cluster. The issue is fixed in Kyverno 1.18.2; defenders are urged to upgrade immediately, restrict who can create NamespacedGeneratingPolicy objects, audit existing policies for cross-namespace targets, and monitor sensitive namespaces for unexpected Role or RoleBinding creation. No confirmed in-the-wild exploitation was reported at publication time.

Get the actors, campaigns, and ATT&CK mapping behind it.
2 events from the most recent confirmed update back to the earliest known activity.
CVE-2026-54523 was publicly disclosed with technical details describing how a low-privileged tenant could abuse generator.apply() to make Kyverno create resources in arbitrary namespaces, including kube-system. One reference also states that full proof-of-concept exploit code was released, with no confirmed in-the-wild exploitation reported at the time of publication.
Kyverno addressed CVE-2026-54523, a cross-namespace privilege-escalation flaw, in version 1.18.2. The vulnerability affected versions up to and including 1.18.1 and stemmed from missing namespace authorization in the NamespacedGeneratingPolicy resource generation path.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Get the adversaries, campaigns, and ATT&CK mapping behind this technique, with detections ready to deploy.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.