Classification: Severe, Solution: Not Defined, Exploit Maturity: Not Defined, CVSSv3.1: 9.1, CVEs: CVE-2026-66795, Summary: A flaw was found in the managedcluster-import-controller. Successful exploitation can lead to privilege escalation, enabling the attacker to obtain administrative credentials on the hub cluster.