CVE lookup
CVE-2026-84502
Pruva has a verified reproduction for CVE-2026-84502: CVE-2026-84502: Ansible Automation Platform automation-controller — Project scm_url argument injection into git ls-remote --upload-pack yields RCE on controller task pod. The canonical evidence record is REPRO-2026-00359.
REPRO
REPRO-2026-00359
Package
ansible/awx · github
Severity
CRITICAL
Status
published