{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2026-26963",
        "tracking": {
            "current_release_date": "2026-03-21T20:28:20.430777Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2026-26963",
            "initial_release_date": "2026-02-19T19:40:15.092010Z",
            "revision_history": [
                {
                    "date": "2026-02-19T19:40:15.092010Z",
                    "number": "1",
                    "summary": "CVE created.| Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (5).| CWES updated (1)."
                },
                {
                    "date": "2026-02-19T19:40:24.849871Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2026-02-20T00:13:27.909313Z",
                    "number": "3",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (4).| CWES updated (1)."
                },
                {
                    "date": "2026-02-20T00:13:30.116934Z",
                    "number": "4",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-20T00:24:52.951513Z",
                    "number": "5",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (4).| CWES updated (1)."
                },
                {
                    "date": "2026-02-20T00:24:55.138210Z",
                    "number": "6",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-20T00:38:44.997351Z",
                    "number": "7",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (1).| References created (4).| CWES updated (1)."
                },
                {
                    "date": "2026-02-20T00:38:51.833824Z",
                    "number": "8",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-20T12:27:45.844669Z",
                    "number": "9",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (92).| Product Identifiers created (12).| References created (6).| CWES updated (1).| Vendor_assessment created."
                },
                {
                    "date": "2026-02-20T12:27:58.595574Z",
                    "number": "10",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-20T14:13:33.597300Z",
                    "number": "11",
                    "summary": "Source created.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-02-20T17:04:24.766587Z",
                    "number": "12",
                    "summary": "Unknown change."
                },
                {
                    "date": "2026-02-20T17:04:36.048543Z",
                    "number": "13",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-20T17:39:37.749897Z",
                    "number": "14",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-02-20T18:12:35.819703Z",
                    "number": "15",
                    "summary": "References created (1)."
                },
                {
                    "date": "2026-02-20T20:27:51.810031Z",
                    "number": "16",
                    "summary": "Products connected (1).| Product Identifiers created (1)."
                },
                {
                    "date": "2026-02-20T20:27:54.446966Z",
                    "number": "17",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-21T12:05:40.276677Z",
                    "number": "18",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (5)."
                },
                {
                    "date": "2026-02-21T12:05:40.601541Z",
                    "number": "19",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (5)."
                },
                {
                    "date": "2026-02-21T12:05:40.937151Z",
                    "number": "20",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (1).| References created (5)."
                },
                {
                    "date": "2026-02-21T12:05:45.729946Z",
                    "number": "21",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-24T00:12:34.287504Z",
                    "number": "22",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| References created (5)."
                },
                {
                    "date": "2026-02-24T00:12:42.691076Z",
                    "number": "23",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-02-26T03:42:38.479915Z",
                    "number": "24",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (9).| Products created (3).| References created (6).| CWES updated (1)."
                },
                {
                    "date": "2026-02-26T03:42:43.633211Z",
                    "number": "25",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T09:42:59.765668Z",
                    "number": "26",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-20T09:43:03.248201Z",
                    "number": "27",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-21T18:47:35.658644Z",
                    "number": "28",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (2).| References created (7).| CWES updated (1)."
                }
            ],
            "status": "interim",
            "version": "28"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.18.0",
                                "product": {
                                    "name": "vers:unknown/1.18.0",
                                    "product_id": "CSAFPID-5213915"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.18.1",
                                "product": {
                                    "name": "vers:unknown/1.18.1",
                                    "product_id": "CSAFPID-5213916"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.18.2",
                                "product": {
                                    "name": "vers:unknown/1.18.2",
                                    "product_id": "CSAFPID-5213917"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.18.3",
                                "product": {
                                    "name": "vers:unknown/1.18.3",
                                    "product_id": "CSAFPID-5213918"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.18.4",
                                "product": {
                                    "name": "vers:unknown/1.18.4",
                                    "product_id": "CSAFPID-5317286"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.18.5",
                                "product": {
                                    "name": "vers:unknown/1.18.5",
                                    "product_id": "CSAFPID-5724975"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=1.18.0|<1.18.6",
                                "product": {
                                    "name": "vers:unknown/>=1.18.0|<1.18.6",
                                    "product_id": "CSAFPID-5642566",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:cilium:cilium:*:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.18.0",
                                "product": {
                                    "name": "vers:unknown/v1.18.0",
                                    "product_id": "CSAFPID-5213934"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.18.1",
                                "product": {
                                    "name": "vers:unknown/v1.18.1",
                                    "product_id": "CSAFPID-5213935"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.18.2",
                                "product": {
                                    "name": "vers:unknown/v1.18.2",
                                    "product_id": "CSAFPID-5213936"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.18.3",
                                "product": {
                                    "name": "vers:unknown/v1.18.3",
                                    "product_id": "CSAFPID-5213937"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.18.4",
                                "product": {
                                    "name": "vers:unknown/v1.18.4",
                                    "product_id": "CSAFPID-5724976"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/v1.18.5",
                                "product": {
                                    "name": "vers:unknown/v1.18.5",
                                    "product_id": "CSAFPID-5724977"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Cilium"
                    }
                ],
                "category": "vendor",
                "name": "Cilium"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/1",
                                "product": {
                                    "name": "vers:rpm/1",
                                    "product_id": "CSAFPID-2905027",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:confidential_compute_attestation:1"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Confidential Compute Attestation"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/unknown",
                                "product": {
                                    "name": "vers:rpm/unknown",
                                    "product_id": "CSAFPID-2552008",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:multicluster_globalhub"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Multicluster Global Hub"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/1",
                                "product": {
                                    "name": "vers:rpm/1",
                                    "product_id": "CSAFPID-2159488",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:network_observ_optr:1"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Network Observability Operator"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/unknown",
                                "product": {
                                    "name": "vers:rpm/unknown",
                                    "product_id": "CSAFPID-1441072",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:ocp_tools"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "OpenShift Developer Tools and Services"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/2",
                                "product": {
                                    "name": "vers:rpm/2",
                                    "product_id": "CSAFPID-1488100",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:service_mesh:2"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "OpenShift Service Mesh 2"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/2",
                                "product": {
                                    "name": "vers:rpm/2",
                                    "product_id": "CSAFPID-1441080",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:acm:2"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Advanced Cluster Management for Kubernetes 2"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/10",
                                "product": {
                                    "name": "vers:rpm/10",
                                    "product_id": "CSAFPID-2858634",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:10"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 10"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/8",
                                "product": {
                                    "name": "vers:rpm/8",
                                    "product_id": "CSAFPID-1439317",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:enterprise_linux:8"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 8"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/9",
                                "product": {
                                    "name": "vers:rpm/9",
                                    "product_id": "CSAFPID-1439319",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:9"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 9"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/4",
                                "product": {
                                    "name": "vers:rpm/4",
                                    "product_id": "CSAFPID-1439328",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:openshift:4"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat OpenShift Container Platform 4"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/4",
                                "product": {
                                    "name": "vers:rpm/4",
                                    "product_id": "CSAFPID-1441162",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:container_native_virtualization:4"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat OpenShift Virtualization 4"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/unknown",
                                "product": {
                                    "name": "vers:rpm/unknown",
                                    "product_id": "CSAFPID-2858789",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:windows_machine_config"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat OpenShift for Windows Containers"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2914773"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "acm-prometheus-config-reloader-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2485143"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "acm-prometheus-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2858774"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "prometheus-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2914798"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "thanos-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Advanced Cluster Management for Kubernetes 2"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441108"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "cri-o"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2563058"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ingress-node-firewall-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2109924"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ingress-node-firewall-rhel9-operator"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1920008"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "kata-containers"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1496280"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "microshift"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2855766"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "microshift-bootc-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2257522"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "oc-mirror-plugin-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441110"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "openshift"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2109929"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-cluster-node-tuning-rhel9-operator"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2858781"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-docker-builder-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441126"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-hyperkube"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2543605"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-hyperkube-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2914951"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-kube-proxy-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2563059"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-kube-state-metrics-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2485290"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-prometheus"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2485292"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-prometheus-config-reloader-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2914979"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-prometheus-operator-admission-webhook-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2847229"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-prometheus-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2552047"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-prometheus-rhel9-operator"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441140"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-tests"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2858787"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-tests-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2847230"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-thanos-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441141"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-vmware-vsphere-csi-driver-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2914997"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-vmware-vsphere-csi-driver-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441143"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-vsphere-csi-driver-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2915000"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-vsphere-csi-driver-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441144"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-vsphere-csi-driver-syncer-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2109943"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-vsphere-csi-driver-syncer-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441146"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "podman"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1920012"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "runc"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat OpenShift Container Platform 4"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2914835"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "delve"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 10"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1488101"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "istio-cni-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1488102"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "pilot-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1488104"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "proxyv2-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "OpenShift Service Mesh 2"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441073"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "jenkins-agent-base-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2914747"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "jenkins-agent-base-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441074"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "jenkins-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-4684006"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "jenkins-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2858769"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ose-jenkins"
                            }
                        ],
                        "category": "product_family",
                        "name": "OpenShift Developer Tools and Services"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441186"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "kubevirt"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-3036192"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "ocp-virt-validation-checkup-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441167"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "passt-network-binding-plugin-cni-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441168"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "passt-network-binding-plugin-sidecar-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441169"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "sidecar-shim-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441170"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-api"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441171"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-api-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441172"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-artifacts-server"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441173"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-artifacts-server-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441174"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-controller"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441175"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-controller-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441176"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-exportproxy"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441177"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-exportproxy-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441178"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-exportserver"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441179"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-exportserver-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441180"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-handler"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441181"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-handler-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441182"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-launcher"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441183"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-launcher-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441184"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-operator"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441185"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-operator-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-5180262"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "virt-synchronization-controller-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1496426"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "wasp-agent-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat OpenShift Virtualization 4"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2914734"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "multicluster-globalhub-grafana-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Multicluster Global Hub"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2485112"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "network-observability-ebpf-agent-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2485113"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "network-observability-flowlogs-pipeline-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "Network Observability Operator"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-3036153"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "osc-monitor-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-3049532"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "osc-operator-bundle"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-3049533"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "osc-podvm-builder-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-3036154"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "osc-podvm-payload-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-3036155"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "osc-rhel9-operator"
                            }
                        ],
                        "category": "product_family",
                        "name": "Confidential Compute Attestation"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441097"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "podman"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1919985"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "runc"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 8"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1441100"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "podman"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-1920000"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "runc"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 9"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2858790"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "windows-machine-config-operator-bundle"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2858791"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "windows-machine-config-rhel9-operator"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat OpenShift for Windows Containers"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=1.18.0|<1.18.6",
                                "product": {
                                    "name": "vers:unknown/>=1.18.0|<1.18.6",
                                    "product_id": "CSAFPID-5658432"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "cilium"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=1.18.0|<1.18.6",
                                "product": {
                                    "name": "vers:unknown/>=1.18.0|<1.18.6",
                                    "product_id": "CSAFPID-5658433"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "cilium-operator"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=1.18.0|<1.18.6",
                                "product": {
                                    "name": "vers:unknown/>=1.18.0|<1.18.6",
                                    "product_id": "CSAFPID-5658434"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "hubble-relay"
                    }
                ],
                "category": "vendor",
                "name": "Bitnami"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.18.6",
                                "product": {
                                    "name": "vers:unknown/1.18.6",
                                    "product_id": "CSAFPID-5888524"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=1.18.0|<1.18.6",
                                "product": {
                                    "name": "vers:unknown/>=1.18.0|<1.18.6",
                                    "product_id": "CSAFPID-5888525"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "go/github.com/cilium/cilium"
                    }
                ],
                "category": "vendor",
                "name": "cilium"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2026-26963",
            "cwe": {
                "id": "CWE-863",
                "name": "Incorrect Authorization"
            },
            "notes": [
                {
                    "category": "description",
                    "text": "### Impact\n\n[Host Policies](https://docs.cilium.io/en/stable/security/policy/language/#host-policies) will incorrectly permit traffic from Pods on other nodes when all of the following configurations are enabled:\n* [Native Routing](https://docs.cilium.io/en/stable/network/concepts/routing/#native-routing)\n* [WireGuard](https://docs.cilium.io/en/stable/security/policy/language/#host-policies)\n* [Node Encryption](https://docs.cilium.io/en/stable/security/network/encryption-wireguard/#node-to-node-encryption-beta) (beta)\n\nThese options are disabled by default in Cilium.\n\n### Patches\n\nThis issue was fixed by #42892.\n\nThis issue affects:\n\n* Cilium v1.18 between v1.18.0 and v1.18.5 inclusive\n\nThis issue is fixed in:\n\n* Cilium v1.18.6\n\n### Workarounds\n\nThere is currently no officially verified or comprehensive workaround for this issue. The following procedure has been validated strictly within a local 'Kind' environment and has not undergone exhaustive testing across diverse production architectures. Proceed with caution.\n\nTo mitigate the identified traffic bypass, ensure all ingress traffic from the `cilium_wg0` interface is explicitly routed to `cilium_host` for policy enforcement. This ensures that host-level security policies are applied to decrypted WireGuard traffic. Execute the following configuration on each CiliumNode:\n\n```bash\n# IPv4 Traffic\nip rule add iif cilium_wg0 table 300\nip route add default dev cilium_host table 300\n\n# IPv6 Traffic\nip -6 rule add iif cilium_wg0 table 300\nip -6 route add default dev cilium_net table 300\n```\n\n### Acknowledgements\n\nSpecial thanks to @julianwiedmann for reporting the issue and helping with the resolution.\n\n### For more information\n\nIf you think you have found a vulnerability affecting Cilium, we strongly encourage you to report it to our security mailing list at security@cilium.io. This is a private mailing list for the Cilium security team, and your report will be treated as top priority. Please also address any comments or questions on this advisory to the same mailing list.",
                    "title": "github - https://github.com/advisories/GHSA-5r23-prx4-mqg3"
                },
                {
                    "category": "description",
                    "text": "### Impact\n\n[Host Policies](https://docs.cilium.io/en/stable/security/policy/language/#host-policies) will incorrectly permit traffic from Pods on other nodes when all of the following configurations are enabled:\n* [Native Routing](https://docs.cilium.io/en/stable/network/concepts/routing/#native-routing)\n* [WireGuard](https://docs.cilium.io/en/stable/security/policy/language/#host-policies)\n* [Node Encryption](https://docs.cilium.io/en/stable/security/network/encryption-wireguard/#node-to-node-encryption-beta) (beta)\n\nThese options are disabled by default in Cilium.\n\n### Patches\n\nThis issue was fixed by #42892.\n\nThis issue affects:\n\n* Cilium v1.18 between v1.18.0 and v1.18.5 inclusive\n\nThis issue is fixed in:\n\n* Cilium v1.18.6\n\n### Workarounds\n\nThere is currently no officially verified or comprehensive workaround for this issue. The following procedure has been validated strictly within a local 'Kind' environment and has not undergone exhaustive testing across diverse production architectures. Proceed with caution.\n\nTo mitigate the identified traffic bypass, ensure all ingress traffic from the `cilium_wg0` interface is explicitly routed to `cilium_host` for policy enforcement. This ensures that host-level security policies are applied to decrypted WireGuard traffic. Execute the following configuration on each CiliumNode:\n\n```bash\n# IPv4 Traffic\nip rule add iif cilium_wg0 table 300\nip route add default dev cilium_host table 300\n\n# IPv6 Traffic\nip -6 rule add iif cilium_wg0 table 300\nip -6 route add default dev cilium_net table 300\n```\n\n### Acknowledgements\n\nSpecial thanks to @julianwiedmann for reporting the issue and helping with the resolution.\n\n### For more information\n\nIf you think you have found a vulnerability affecting Cilium, we strongly encourage you to report it to our security mailing list at security@cilium.io. This is a private mailing list for the Cilium security team, and your report will be treated as top priority. Please also address any comments or questions on this advisory to the same mailing list.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Go%2FGHSA-5r23-prx4-mqg3.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.5 will incorrectly permit traffic from Pods on other nodes when Native Routing, WireGuard and Node Encryption are enabled. This issue has been fixed in version 1.18.6.",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2026-26963"
                },
                {
                    "category": "description",
                    "text": "Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.5 will incorrectly permit traffic from Pods on other nodes when Native Routing, WireGuard and Node Encryption are enabled. This issue has been fixed in version 1.18.6.",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2026-26963"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in Cilium. When specific network configurations, including Native Routing, WireGuard, and Node Encryption, are enabled, Cilium incorrectly allows network traffic from Pods on other nodes. This can lead to unauthorized access to network communications and potential information disclosure.",
                    "title": "redhat - https://access.redhat.com/security/cve/CVE-2026-26963"
                },
                {
                    "category": "description",
                    "text": "Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.5 will incorrectly permit traffic from Pods on other nodes when Native Routing, WireGuard and Node Encryption are enabled. This issue has been fixed in version 1.18.6.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Bitnami%2FBIT-cilium-2026-26963.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.5 will incorrectly permit traffic from Pods on other nodes when Native Routing, WireGuard and Node Encryption are enabled. This issue has been fixed in version 1.18.6.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Bitnami%2FBIT-cilium-operator-2026-26963.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.5 will incorrectly permit traffic from Pods on other nodes when Native Routing, WireGuard and Node Encryption are enabled. This issue has been fixed in version 1.18.6.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Bitnami%2FBIT-hubble-relay-2026-26963.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "Cilium may not enforce host firewall policies when Native Routing, WireGuard and Node Encryption are enabled in github.com/cilium/cilium",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Go%2FGO-2026-4522.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.5 will incorrectly permit traffic from Pods on other nodes when Native Routing, WireGuard and Node Encryption are enabled. This issue has been fixed in version 1.18.6.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2026-26963.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "[Host Policies](https://docs.cilium.io/en/stable/security/policy/language/#host-policies) will incorrectly permit traffic from Pods on other nodes when all of the following configurations are enabled:\n* [Native Routing](https://docs.cilium.io/en/stable/network/concepts/routing/#native-routing)\n* [WireGuard](https://docs.cilium.io/en/stable/security/policy/language/#host-policies)\n* [Node Encryption](https://docs.cilium.io/en/stable/security/network/encryption-wireguard/#node-to-node-encryption-beta) (beta)\n\nThese options are disabled by default in Cilium.",
                    "title": "gitlab - https://gitlab.com/api/v4/projects/25847700/repository/files/go%2Fgithub.com%2Fcilium%2Fcilium%2FCVE-2026-26963.yml/raw"
                },
                {
                    "category": "other",
                    "text": "0.00011",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "5.5",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "Is related to CWE-863 (Incorrect Authorization), Is related to CWE-266 (Incorrect Privilege Assignment), There is product data available from source Nvd",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "Is related to (a version of) an uncommon product",
                    "title": "NCSC Score top decreasing factors"
                },
                {
                    "category": "details",
                    "text": "Severity: 2\n",
                    "title": "Vendor assessment"
                }
            ],
            "product_status": {
                "fixed": [
                    "CSAFPID-5888524"
                ],
                "known_affected": [
                    "CSAFPID-5642566",
                    "CSAFPID-5658432",
                    "CSAFPID-5658433",
                    "CSAFPID-5658434",
                    "CSAFPID-5213915",
                    "CSAFPID-5213916",
                    "CSAFPID-5213917",
                    "CSAFPID-5213918",
                    "CSAFPID-5213934",
                    "CSAFPID-5213935",
                    "CSAFPID-5213936",
                    "CSAFPID-5213937",
                    "CSAFPID-5317286",
                    "CSAFPID-5724975",
                    "CSAFPID-5724976",
                    "CSAFPID-5724977",
                    "CSAFPID-5888525"
                ],
                "known_not_affected": [
                    "CSAFPID-1439317",
                    "CSAFPID-1439319",
                    "CSAFPID-1439328",
                    "CSAFPID-1441072",
                    "CSAFPID-1441073",
                    "CSAFPID-1441074",
                    "CSAFPID-1441080",
                    "CSAFPID-1441097",
                    "CSAFPID-1441100",
                    "CSAFPID-1441108",
                    "CSAFPID-1441110",
                    "CSAFPID-1441126",
                    "CSAFPID-1441140",
                    "CSAFPID-1441141",
                    "CSAFPID-1441143",
                    "CSAFPID-1441144",
                    "CSAFPID-1441146",
                    "CSAFPID-1441162",
                    "CSAFPID-1441167",
                    "CSAFPID-1441168",
                    "CSAFPID-1441169",
                    "CSAFPID-1441170",
                    "CSAFPID-1441171",
                    "CSAFPID-1441172",
                    "CSAFPID-1441173",
                    "CSAFPID-1441174",
                    "CSAFPID-1441175",
                    "CSAFPID-1441176",
                    "CSAFPID-1441177",
                    "CSAFPID-1441178",
                    "CSAFPID-1441179",
                    "CSAFPID-1441180",
                    "CSAFPID-1441181",
                    "CSAFPID-1441182",
                    "CSAFPID-1441183",
                    "CSAFPID-1441184",
                    "CSAFPID-1441185",
                    "CSAFPID-1441186",
                    "CSAFPID-1488100",
                    "CSAFPID-1488101",
                    "CSAFPID-1488102",
                    "CSAFPID-1488104",
                    "CSAFPID-1496280",
                    "CSAFPID-1496426",
                    "CSAFPID-1919985",
                    "CSAFPID-1920000",
                    "CSAFPID-1920008",
                    "CSAFPID-1920012",
                    "CSAFPID-2109924",
                    "CSAFPID-2109929",
                    "CSAFPID-2109943",
                    "CSAFPID-2159488",
                    "CSAFPID-2257522",
                    "CSAFPID-2485112",
                    "CSAFPID-2485113",
                    "CSAFPID-2485143",
                    "CSAFPID-2485290",
                    "CSAFPID-2485292",
                    "CSAFPID-2543605",
                    "CSAFPID-2552008",
                    "CSAFPID-2552047",
                    "CSAFPID-2563058",
                    "CSAFPID-2563059",
                    "CSAFPID-2847229",
                    "CSAFPID-2847230",
                    "CSAFPID-2855766",
                    "CSAFPID-2858634",
                    "CSAFPID-2858769",
                    "CSAFPID-2858774",
                    "CSAFPID-2858781",
                    "CSAFPID-2858787",
                    "CSAFPID-2858789",
                    "CSAFPID-2858790",
                    "CSAFPID-2858791",
                    "CSAFPID-2905027",
                    "CSAFPID-2914734",
                    "CSAFPID-2914747",
                    "CSAFPID-2914773",
                    "CSAFPID-2914798",
                    "CSAFPID-2914835",
                    "CSAFPID-2914951",
                    "CSAFPID-2914979",
                    "CSAFPID-2914997",
                    "CSAFPID-2915000",
                    "CSAFPID-3036153",
                    "CSAFPID-3036154",
                    "CSAFPID-3036155",
                    "CSAFPID-3036192",
                    "CSAFPID-3049532",
                    "CSAFPID-3049533",
                    "CSAFPID-4684006",
                    "CSAFPID-5180262"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - github",
                    "url": "https://github.com/advisories/GHSA-5r23-prx4-mqg3"
                },
                {
                    "category": "external",
                    "summary": "Source raw - github",
                    "url": "https://api.github.com/advisories/GHSA-5r23-prx4-mqg3"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Go%2FGHSA-5r23-prx4-mqg3.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26963"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-26963"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-26963"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/26xxx/CVE-2026-26963.json"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-26963"
                },
                {
                    "category": "external",
                    "summary": "Source raw - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-26963.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2026-26963"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Bitnami%2FBIT-cilium-2026-26963.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Bitnami%2FBIT-cilium-operator-2026-26963.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Bitnami%2FBIT-hubble-relay-2026-26963.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Go%2FGO-2026-4522.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2026-26963.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - gitlab",
                    "url": "https://gitlab.com/api/v4/projects/25847700/repository/files/go%2Fgithub.com%2Fcilium%2Fcilium%2FCVE-2026-26963.yml/raw"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv; redhat",
                    "url": "https://github.com/cilium/cilium/security/advisories/GHSA-5r23-prx4-mqg3"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv; redhat",
                    "url": "https://github.com/cilium/cilium/pull/42892"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv; redhat",
                    "url": "https://github.com/cilium/cilium/commit/88e28e1e62c0b1a02c3f0fc22d888ac9eefbe885"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; github; gitlab; nvd; osv; redhat",
                    "url": "https://github.com/cilium/cilium/releases/tag/v1.18.6"
                },
                {
                    "category": "external",
                    "summary": "Reference - github; gitlab",
                    "url": "https://github.com/advisories/GHSA-5r23-prx4-mqg3"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-26963"
                },
                {
                    "category": "external",
                    "summary": "Reference - github; gitlab; osv; redhat",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26963"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/26xxx/CVE-2026-26963.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - gitlab",
                    "url": "https://github.com/cilium/cilium"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N",
                        "baseScore": 6.1,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-5213915",
                        "CSAFPID-5213916",
                        "CSAFPID-5213917",
                        "CSAFPID-5213918",
                        "CSAFPID-5213934",
                        "CSAFPID-5213935",
                        "CSAFPID-5213936",
                        "CSAFPID-5213937",
                        "CSAFPID-5317286",
                        "CSAFPID-5642566",
                        "CSAFPID-5658432",
                        "CSAFPID-5658433",
                        "CSAFPID-5658434",
                        "CSAFPID-5724975",
                        "CSAFPID-5724976",
                        "CSAFPID-5724977",
                        "CSAFPID-5888525"
                    ]
                }
            ],
            "title": "CVE-2026-26963"
        }
    ]
}