CPE
An authenticated user with secret creation permissions can exploit the HyperShift operator to execute arbitrary code in the control plane by injecting malicious plugins into kubeconfig secrets.