{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/vendors/data-science-pipelines/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.6,"id":"CVE-2026-18621"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Data Science Pipelines"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Data Science Pipelines"],"content_html":"\u003cp\u003eCVE-2026-18621 is a critical security vulnerability discovered in Data Science Pipelines (DSP). The flaw exists within the V1 API path, which fails to correctly enforce security hardening for submitted workflows. An authenticated user with existing namespace editor privileges can submit a specially crafted Argo Workflow that forces the DSP API server to act as a confused deputy. By manipulating the workflow submission, the attacker triggers the creation of pods that inherit unauthorized elevated privileges. If successfully exploited, the attacker gains the ability to execute arbitrary code with node-root access, effectively compromising the integrity of the underlying Kubernetes node hosting the pipeline components. This vulnerability represents a significant risk for multi-tenant environments where namespace isolation is a primary security control.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability results in a total compromise of the affected Kubernetes node. An attacker can escape the restricted namespace environment to gain node-root access, allowing for data exfiltration, lateral movement within the cluster, and persistent access to the infrastructure. Organizations utilizing DSP in shared or multi-tenant environments are at the highest risk, as the vulnerability circumvents standard RBAC restrictions assigned to namespace editors.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAudit all active Argo Workflow definitions and pipeline configurations to ensure they originate from trusted sources.\u003c/li\u003e\n\u003cli\u003eApply the vendor-provided patch to Data Science Pipelines immediately to restrict V1 API workflow submission parameters.\u003c/li\u003e\n\u003cli\u003eImplement strict Pod Security Admissions (PSA) or policy enforcement controllers (e.g., OPA Gatekeeper or Kyverno) to prevent the creation of privileged pods within the namespace.\u003c/li\u003e\n\u003cli\u003eMonitor Kubernetes API server logs for unauthorized or unexpected workflow submissions targeting the V1 API path.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-10T21:39:03Z","date_published":"2026-08-10T21:39:03Z","id":"https://feed.craftedsignal.io/briefs/2026-08-dsp-cve-2026-18621/","summary":"An attacker with namespace editor privileges can bypass security hardening via the V1 API to execute malicious Argo Workflows, resulting in node-root access.","title":"CVE-2026-18621 Privilege Escalation in Data Science Pipelines","url":"https://feed.craftedsignal.io/briefs/2026-08-dsp-cve-2026-18621/"}],"language":"en","title":"CraftedSignal Threat Feed - Data Science Pipelines","version":"https://jsonfeed.org/version/1.1"}