A vulnerability was found in KubeSphere up to 4.1.3-rc.0. It has been rated as problematic. This affects the function addCluster of the file pkg/utils/clusterclient/clusterclient.go of the component Cluster Controller. This manipulation causes infinite loop.

This vulnerability appears as CVE-2026-71208. The attack may be initiated remotely. There is no available exploit.