PT-2026-60691 · Unknown · Envoy Gateway

CVE-2026-53719

·

Published

2026-07-16

·

Updated

2026-07-30

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Envoy Gateway (affected versions not specified)
Description A nil-dereference occurs when a SecurityPolicy targets a TCPRoute that lacks the spec.authorization field. A namespace-scoped tenant can cause the gatewayapi runner to panic during every reconcile process using a single Custom Resource Definition (CRD). While the process remains active due to a recovery mechanism in message/watchutil.go, the handle() function in runner/runner.go is unwound, causing xDS/Infra IR publishing to stall across the entire controller until an administrator deletes the object. The data plane continues to serve the last known good configuration.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-53719
GHSA-M2V6-2JMH-4C68
GO-2026-6009
OPENSUSE-SU-2026:21483-1

Affected Products

Envoy Gateway