PSIRTSUPT-6598 [Security Advisory] CVE-2026-3864: CSI Driver for NFS path traversal via subDir may delete unintended directories on the NFS server

6 views
Skip to first unread message

Abhishek Raj

unread,
Mar 20, 2026, 10:28:45 AM (13 days ago) Mar 20
to kubernetes-se...@googlegroups.com
—-—-—-—
Reply above this line.

Abhishek Raj commented:

Hi,

Thank you for contacting Red Hat Product Security.

This message confirms that we have received your submission. We appreciate you bringing this matter to our attention.

Our Product Security team is currently reviewing the details. If any additional information is required to support our assessment, we will reach out to you directly. We will keep you informed of relevant updates as the review progresses.

Thank you for helping us maintain and improve the security of Red Hat products.

Best regards,
Red Hat Product Security

View request · Turn off this request's notifications

This is shared with Rita Zhang, kubernetes-sec...@googlegroups.com, distributo...@kubernetes.io, d...@kubernetes.io, and kubernetes-se...@googlegroups.com.

Powered by Jira Service Management

Sent on March 20, 2026 2:28:42 PM UTC

Michal Findra

unread,
Mar 23, 2026, 3:57:17 AM (10 days ago) Mar 23
to kubernetes-se...@googlegroups.com
—-—-—-—
Reply above this line.

Michal Findra commented:

Hello,
Thank you for the report. The CVE is already being processed by our analysts.
I will be closing this request. Please don't hesitate to open a new ticket for any future requests.

Thanks,

Michal

Sent on March 23, 2026 7:57:14 AM UTC
Reply all
Reply to author
Forward
0 new messages