← Back

CVE-2026-41520

nvd nist
Published: May 8, 2026Modified: Jun 17, 2026

JSON object

Loading...
4.4
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Exploitability: 0.8 / Impact: 3.6
Source: NVD

Description

Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.17.15, 1.18.9, and 1.19.3, the output of cilium-bugtool can contain sensitive data when the tool is run against Cilium deployments with WireGuard encryption enabled. This issue has been patched in versions 1.17.15, 1.18.9, and 1.19.3.

Affected (3)

Products: Cilium: Cilium
1 product
Cilium
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Cilium
Before 1.17.15
From 1.18.0 to 1.18.9
From 1.19.0 to 1.19.3

References (4)

Source: security-advisories@github.com
ProductRelease Notes
Source: security-advisories@github.com
ProductRelease Notes
Source: security-advisories@github.com
ProductRelease Notes
Source: security-advisories@github.com
MitigationVendor Advisory

Timeline

No history available yet.