CVE-2026-33211 | tektoncd pipeline up to 1.0.0/1.3.2/1.6.0/1.9.1/1.10.1 pathInRepo path traversal (GHSA-j5q5-j9gm-2w5c)
A vulnerability has been found in tektoncd pipeline up to 1.0.0/1.3.2/1.6.0/1.9.1/1.10.1 and classified as critical. Affected is an unknown function. Performing a manipulation of the argument pathInRepo results in path traversal.
This vulnerability was named CVE-2026-33211. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.