Skip to content

CVE lookup

CVE-2026-84502

Pruva has a verified reproduction for CVE-2026-84502: CVE-2026-84502: Ansible Automation Platform automation-controller — Project scm_url argument injection into git ls-remote --upload-pack yields RCE on controller task pod. The canonical evidence record is REPRO-2026-00359.

REPRO

REPRO-2026-00359

Package

ansible/awx · github

Severity

CRITICAL

Status

published