Patch tracker / CVE reference / CVE-2026-80219
CVE-2026-80219
A flaw was found in hawtio-operator. When deploying Hawtio in cluster mode, the operator creates a cluster-scoped OAuthClient with automatic grant approval (GrantMethod: auto) and no client secret (public client). The redirect URIs are derived from the operator-created Route, who...
Risk summary
High severity vulnerability, CVSS 8.7.
Senserva AI Opinion and rich prompt for CVE-2026-80219
Copy this prompt into Claude, ChatGPT, or Copilot. The facts are included, sourced from this page.
Full tracking and change history for CVE-2026-80219
- Published
- 2026-09-08
- Last revised
- 2026-09-11
- Changes tracked
- 3
Published and last-revised dates are authoritative, from Microsoft MSRC (or the CISA KEV date-added). Senserva additionally records day-to-day changes from 2026-07-07, refreshed several times a day; the change count reflects that forward-only tracking.
How to fix CVE-2026-80219
Apply the patched version named in the vendor security advisory. Where a workaround exists, apply it only until the update is deployed, not as a substitute.
Common questions about CVE-2026-80219
Is CVE-2026-80219 actively exploited?
It is not currently listed in the CISA Known Exploited Vulnerabilities catalog. That can change: unexploited CVEs regularly get weaponized months after disclosure, which is why patching on your normal cadence matters.
What fixes CVE-2026-80219?
The authoritative fix is in the vendor security advisory. Apply the patched version listed there; the references below link to the CVE record and NVD detail.
Which products are affected by CVE-2026-80219?
multiple products.
Can I ask my own AI about CVE-2026-80219?
Yes. This page includes a free, ready-to-paste AI prompt with CVE-2026-80219's key facts: severity, CVSS, CISA KEV status, and the affected products. Copy it into Claude, ChatGPT, or Copilot for a triage plan.
Scope and sources
- Affected products
- Authoritative references
Every Microsoft CVE and the patches that fix it, ranked by real-world risk: the Microsoft Patch Tracker. The full searchable CVE reference: CVE and vulnerability management.