Cleartext transmission of sensitive information in Istio - #VU146863
Published: September 3, 2026
Vulnerability details
The vulnerability allows a remote user to read or modify plaintext traffic.
The vulnerability exists due to improper security behavior in BackendTLSPolicy handling on sidecar proxies when a CA reference cannot be resolved. A remote user can position on the network path to observe or alter traffic to read or modify plaintext traffic.
Gateway proxies are not affected and fail closed. The downgrade is silent, and only ResolvedRefs=False on the policy indicates the condition.