CVE-2026-33211
Tekton Pipelines versions 1.0.0 up to several fixed releases contain a critical path-traversal flaw in the git resolver. A user with permission to create ResolutionRequests can read arbitrary files from the resolver pod, including sensitive ServiceAccount tokens. Patched versions are available and should be applied.
An official fix is available, so this entry is kept for 30 days and then removed automatically.
Who is affected
Any organization running Tekton Pipelines versions 1.0.0 through the unpatched releases listed (before 1.0.1, 1.3.3, 1.6.1, 1.9.2, and 1.10.2) and allowing tenants to create ResolutionRequests via TaskRuns or PipelineRuns with the git resolver.
Real-world impact
A tenant able to create TaskRuns or PipelineRuns using the git resolver can exploit this to read any file on the resolver pod's filesystem. This includes ServiceAccount tokens, which could be used to access other cluster resources and escalate privileges.
Why this severity
CVSS 9.6 (critical) means the flaw is easy to exploit over a network, requires only low privileges, and can fully expose or alter data. The high score reflects that confidential and integrity controls are completely bypassed, though the system itself is not taken offline.
What to do about it
- 01Identify which Tekton Pipelines version you are running.
- 02If you are on version 1.0.0, upgrade to 1.0.1 or later.
- 03If you are on a version in the 1.1–1.3.x range, upgrade to 1.3.3 or later.
- 04If you are on a version in the 1.4–1.6.0 range, upgrade to 1.6.1 or later.
- 05If you are on a version in the 1.7–1.9.1 range, upgrade to 1.9.2 or later.
- 06If you are on a version in the 1.10.0–1.10.1 range, upgrade to 1.10.2 or later.
- 07Apply the upgrade according to your Kubernetes deployment process and verify the new version is running.
NVD-referenced vendor advisory (patched versions listed in NVD description)
Timeline
- Mar 24, 2026 · Mar 24, 2026PublishedDisclosed and added to the National Vulnerability Database.
- Jul 20, 2026 · 16d agoOfficial fix availableA vendor patch or mitigation now exists — see the remediation steps above.
- Aug 3, 2026 · 2d agoAdvisory updatedThe NVD record was last revised.
How it’s attacked
References & advisories
- github.com/tektoncd/pipeline/commit/10…patch
- github.com/tektoncd/pipeline/commit/31…patch
- github.com/tektoncd/pipeline/commit/3c…patch
- github.com/tektoncd/pipeline/commit/96…patch
- github.com/tektoncd/pipeline/commit/b1…patch
- github.com/tektoncd/pipeline/commit/cd…patch
- github.com/tektoncd/pipeline/commit/ec…patch
- github.com/tektoncd/pipeline/security/…patchvendor advisory
- access.redhat.com/errata/RHSA-2026:10026
- access.redhat.com/errata/RHSA-2026:10066
- access.redhat.com/errata/RHSA-2026:10125
- access.redhat.com/errata/RHSA-2026:10155
- access.redhat.com/errata/RHSA-2026:10158
- access.redhat.com/errata/RHSA-2026:21931
- access.redhat.com/errata/RHSA-2026:21932
- access.redhat.com/errata/RHSA-2026:24484
- access.redhat.com/errata/RHSA-2026:6166
- access.redhat.com/errata/RHSA-2026:6170
- access.redhat.com/security/cve/CVE-2026-33211
- bugzilla.redhat.com/show_bug.cgi