🟠 High  |  Source: Microsoft Security Response Center


A vulnerability in Azure Red Hat OpenShift (ARO) allows an attacker who already has some level of authorised access to gain higher privileges than they should be permitted, exploitable over a network. The flaw stems from improper authorisation controls within the managed OpenShift service. If exploited, an attacker could move beyond their intended access boundaries, potentially compromising cluster workloads or underlying infrastructure.

Security Architect’s Take: Review RBAC configurations and least-privilege access policies across all ARO clusters, and apply any Microsoft-issued patches or mitigations immediately. Additionally, audit recent access logs for anomalous privilege usage whilst the patch is being rolled out.

Original advisory: CVE-2026-56160 Azure Red Hat OpenShift (ARO) Elevation of Privilege Vulnerability