HIGHVulnerability
Verified
Global

NVD HIGH: CVE-2026-82473 — KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS ...

·Source: NIST NVD

Updated:

Executive Summary

KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS server without authentication verification. Attackers can reach CloudCore on port 10002 to mark upgrade jobs as succeeded or failed, deceiving the control plane about node upgrade status and blocking further upgrade scheduling.

Analysis

KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS server without authentication verification. Attackers can reach CloudCore on port 10002 to mark upgrade jobs as succeeded or failed, deceiving the control plane about node upgrade status and blocking further upgrade scheduling. CVSS Score: 8.2. Published: 2026-08-29T17:17:59.770.

Indicators of Compromise (1)

CVE (1)
CVE-2026-82473
Source Attribution

Originally published by NIST NVD on Aug 29, 2026. Verified by: NIST.

Related Threats