Product
CVE-2026-76139 allows attackers to perform remote code execution during the acm-operator-bundle build process by exploiting an unverified remote script download.