VendorsRed Hatwindows_machine_config_operatorany version
Vulnerabilities

Red Hat RedHat OpenShift Windows Machine Config Operator (WMCO) any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2026-54099
Windows-machine-config-operator: windows-machine-config-operator: wicd csr extra-organization allows privilege escalation to system:masters
Published 2026-06-22 · Modified
8.8EPSS 0.001
CVE-2026-54100
Windows-machine-config-operator: windows-machine-config-operator: ssh host key not verified enables credential theft
Published 2026-06-22 · Modified
8.3EPSS 0.003