CVE-2026-61549 | woodpecker-ci Woodpecker up to 3.15.x Kubernetes Backend backend_options.go backend_options.kubernetes.serviceAccountName privileges management

SecurityVulns

A vulnerability was found in woodpecker-ci Woodpecker up to 3.15.x and classified as critical. This issue affects some unknown processing of the file pipeline/backend/kubernetes/backend_options.go of the component Kubernetes Backend. Executing a manipulation of the argument backend_options.kubernetes.serviceAccountName can lead to improper privilege management.

The identification of this vulnerability is CVE-2026-61549. The attack may be launched remotely. There is no exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More