{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-35205","assignerOrgId":"a0819718-46f1-4df5-94e2-005712e83aaa","state":"PUBLISHED","assignerShortName":"GitHub_M","dateReserved":"2026-04-01T18:48:58.937Z","datePublished":"2026-04-09T15:06:41.052Z","dateUpdated":"2026-07-15T01:02:59.773Z"},"containers":{"cna":{"title":"Helm's plugin verification fails open when .prov is missing, allowing unsigned plugin install","problemTypes":[{"descriptions":[{"cweId":"CWE-636","lang":"en","description":"CWE-636: Not Failing Securely ('Failing Open')","type":"CWE"}]}],"metrics":[{"cvssV4_0":{"attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"NONE","userInteraction":"ACTIVE","vulnConfidentialityImpact":"HIGH","vulnIntegrityImpact":"HIGH","vulnAvailabilityImpact":"HIGH","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","subAvailabilityImpact":"NONE","baseScore":8.4,"baseSeverity":"HIGH","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N","version":"4.0"}}],"references":[{"name":"https://github.com/helm/helm/security/advisories/GHSA-q5jf-9vfq-h4h7","tags":["x_refsource_CONFIRM"],"url":"https://github.com/helm/helm/security/advisories/GHSA-q5jf-9vfq-h4h7"},{"name":"https://github.com/helm/helm/commit/05fa37973dc9e42b76e1d2883494c87174b6074f","tags":["x_refsource_MISC"],"url":"https://github.com/helm/helm/commit/05fa37973dc9e42b76e1d2883494c87174b6074f"},{"name":"https://github.com/helm/helm/releases/tag/v4.1.4","tags":["x_refsource_MISC"],"url":"https://github.com/helm/helm/releases/tag/v4.1.4"},{"name":"https://helm.sh/docs/topics/provenance/#the-provenance-file","tags":["x_refsource_MISC"],"url":"https://helm.sh/docs/topics/provenance/#the-provenance-file"}],"affected":[{"vendor":"helm","product":"helm","versions":[{"version":">= 4.0.0, < 4.1.4","status":"affected"}]}],"providerMetadata":{"orgId":"a0819718-46f1-4df5-94e2-005712e83aaa","shortName":"GitHub_M","dateUpdated":"2026-04-09T15:06:41.052Z"},"descriptions":[{"lang":"en","value":"Helm is a package manager for Charts for Kubernetes. From 4.0.0 to 4.1.3, Helm will install plugins missing provenance (.prov file) when signature verification is required. This vulnerability is fixed in 4.1.4."}],"source":{"advisory":"GHSA-q5jf-9vfq-h4h7","discovery":"UNKNOWN"}},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2026-04-09T16:04:47.054575Z","id":"CVE-2026-35205","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-04-09T16:05:00.744Z"}},{"affected":[{"collectionURL":"https://access.redhat.com/downloads/content/package-browser/","cpes":["cpe:/a:redhat:helm_cli:4.1::el9"],"defaultStatus":"affected","packageName":"helm","product":"Helm CLI 4.1","vendor":"Red Hat","versions":[{"lessThan":"*","status":"unaffected","version":"cli-4.1.4","versionType":"rpm"}]}],"datePublic":"2026-04-09T15:06:41.052Z","descriptions":[{"lang":"en","value":"A flaw was found in Helm, a package manager for Kubernetes. A remote attacker could exploit this vulnerability by providing a malicious plugin that lacks a provenance file. Even when signature verification is enabled, Helm would incorrectly install this unverified plugin, bypassing critical security checks. This could lead to arbitrary code execution within the Kubernetes environment, allowing an attacker to gain unauthorized control."}],"metrics":[{"other":{"content":{"namespace":"https://access.redhat.com/security/updates/classification/","value":"Important"},"type":"Red Hat severity rating"}},{"cvssV3_1":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":8,"baseSeverity":"HIGH","confidentialityImpact":"HIGH","integrityImpact":"HIGH","privilegesRequired":"LOW","scope":"UNCHANGED","userInteraction":"REQUIRED","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","version":"3.1"},"format":"CVSS"}],"problemTypes":[{"descriptions":[{"cweId":"CWE-347","description":"Improper Verification of Cryptographic Signature","lang":"en","type":"CWE"}]}],"references":[{"tags":["vdb-entry","x_refsource_REDHAT"],"url":"https://access.redhat.com/security/cve/CVE-2026-35205"},{"name":"RHBZ#2456927","tags":["issue-tracking","x_refsource_REDHAT"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2456927"},{"tags":["x_sadp-csaf-vex"],"url":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-35205.json"},{"tags":["vendor-advisory","x_refsource_REDHAT"],"url":"https://access.redhat.com/errata/RHSA-2026:26441"}],"solutions":[{"lang":"en","value":"RHSA-2026:26441: Helm CLI 4.1"}],"timeline":[{"lang":"en","time":"2026-04-09T16:01:08.682Z","value":"Reported to Red Hat."},{"lang":"en","time":"2026-04-09T15:06:41.052Z","value":"Made public."}],"title":"github.com/helm/helm: helm.sh/helm/v4: Helm: Arbitrary code execution due to insufficient plugin provenance verification","workarounds":[{"lang":"en","value":"Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability."}],"x_adpType":"supplier","x_generator":{"engine":"sadp-cli 1.0.0"},"providerMetadata":{"orgId":"0b0ca135-0b70-47e7-9f44-1890c2a1c46c","shortName":"redhat-SADP","dateUpdated":"2026-07-15T01:02:59.773Z"}}]}}