Fedora Account System
Red Hat Associate
Red Hat Customer
The search-v2-operator applies Search CR fields (imageOverride, arguments, envVar) directly to pod specs without allow-list, registry pinning, digest enforcement, or argument validation. The Env field supports valueFrom.secretKeyRef, allowing a CR editor to mount any secret in the namespace into a search container's environment, or replace the image with an attacker-controlled one. The landing pod's ServiceAccount holds cluster-wide impersonate on users/groups/serviceaccounts (FIND-001), escalating image injection to full cluster compromise. No allow-list, registry pinning, digest enforcement, or argument validation is performed. Same class as KeplerInternal / numaresources image-override findings. Upstream: stolostron/search-v2-operator