VDB

CVE-2026-32768

CVE-2026-32768 PUBLISHED CVSS 7.900000095367432 HIGH

Chall-Manager's invalid NetworkPolicy enables a malicious actor to pivot into another namespace

EPSS 0.07% · 20.4th percentile

Risk Scores

CVSS 4.0
7.900000095367432
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H
EPSS Score
0.07%
20.4th percentile

Affected Products

VendorProductVersions
github.comctfer-io/chall-manager/sdk0, 0, 0
github.comctfer-io/chall-manager/deploy0, 0, 0
ctfer-iochall-manager< 0.6.5, < 0.6.5, 0

Timeline

  • Mar 16, 2026 CVE Published
  • Mar 20, 2026 EPSS Score
  • Mar 21, 2026 EPSS Score
  • Mar 22, 2026 EPSS Score
  • Mar 23, 2026 EPSS Score
  • Mar 24, 2026 EPSS Score
  • Mar 24, 2026 Security Advisory
  • Mar 25, 2026 EPSS Score
  • Mar 26, 2026 CVE Updated
  • May 18, 2026 EPSS Score
  • May 19, 2026 EPSS Score
  • May 20, 2026 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›