Database/Container, Kubernetes & orchestration
Istio: Envoy RBAC header matching flaw bypasses header-based authorization policy
CVE-2026-31838Container, Kubernetes & orchestrationcurated
Impact
Envoy RBAC header matching flaw bypasses header-based authorization policy
Who can reach it
Unauthenticated network
What to do
Rolling istiod and proxy upgrade
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.