Executive brief
Sidero Labs Omni, a management platform for Kubernetes clusters, contains a flaw where users with low-level 'Reader' permissions can access sensitive security keys for imported clusters. If an attacker gains these keys, they can bypass Omni's security controls to take full control of the underlying Kubernetes infrastructure, potentially leading to data theft or service disruption. This issue specifically affects clusters that have been imported into Omni but have not yet had their security credentials rotated.
Technical details
A vulnerability in Sidero Labs Omni's ResourceService allows authenticated users with the 'Reader' role to access the 'ImportedClusterSecrets' resource. This resource contains the full CA secrets bundle (Kubernetes, Talos, and etcd) for imported standalone clusters. An attacker with these keys can sign certificates for any user or group (e.g., system:masters), gaining cluster-admin privileges outside of Omni's control plane. The attack requires the attacker to be on an adjacent network to reach the cluster APIs and has high complexity as it requires knowledge of Omni's internal resource structures. The issue is patched in versions 1.6.6 and 1.7.3.
Affected products
- Sidero Labs Omni >= 1.3.0, < 1.6.6; >= 1.7.0, < 1.7.3
Timeline
- 2026-06-05: disclosed
- 2026-06-05: advisory
- 2026-06-05: patched
References
- https://api.github.com/users/bugbunny-research
- https://github.com/bugbunny-research
- https://api.github.com/users/bugbunny-research/gists%7B/gist_id%7D
- https://api.github.com/users/bugbunny-research/repos
- https://avatars.githubusercontent.com/u/262839898?v=4
- https://api.github.com/users/bugbunny-research/events%7B/privacy%7D