CVE-2026-15687 | Kubernetes Java Client up to 25.0.0/26.0.0 Copy Directory copyDirectoryFromPod enableTarCompressing path traversal
A vulnerability was found in Kubernetes Java Client up to 25.0.0/26.0.0. It has been declared as critical. This affects the function copyDirectoryFromPod of the component Copy Directory. Executing a manipulation of the argument enableTarCompressing can lead to path traversal.
This vulnerability is registered as CVE-2026-15687. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More