Security Advisory

CVE-2026-6389

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-30 21:17:06
Last updated 2026-05-01 16:37:57
Assigner ibm
CVSS score 8.8
State PUBLISHED

Description

IBM Turbonomic prometurbo agent 8.16.0 through 8.17.6 IBM Turbonomic Application Resource Management grants excessive cluster‑wide permissions, including unrestricted read access to all secrets. An attacker that compromises the operator or its service account can exfiltrate sensitive credentials, escalate privileges, and potentially achieve full cluster compromise.