CVE-2026-3006: Red Hat Advanced Cluster Management For Kubernetes 2

High severity, CVSS 7.0. EPSS: 0.1% chance of exploitation in the next 30 days.

Successful exploitation of the race condition vulnerability could allow an attacker to trigger a kernel heap overflow, potentially leading to local privilege escalation and granting system-level access to the affected software.

Affected products

  • Red Hat Red Hat Advanced Cluster Management For Kubernetes 2
  • Winfsp Winfsp: up to and including 2.1.25156

Published 2026-04-27. Last modified 2026-07-15.