etcd security

  1. CVE-2026-44283 etcd Auth Bypass: Patch Versions and Verify Transaction RBAC

    CVE-2026-44283 is an etcd authorization-bypass vulnerability disclosed in May 2026 that affects versions before 3.4.44, 3.5.30, and 3.6.11, allowing authenticated users to obtain unauthorized data through PrevKv or attach leases inside transaction-based Put requests. The bug is not another...