Known Vulnerabilities for Rancher by SUSE
Listed below are 10 of the newest known vulnerabilities associated with "Rancher" by "SUSE".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-75035 json | A flaw was found in Rancher Manager. When a non-administrative caller supplied a label selector naming a different user, the ... | Not Provided | 2026-09-03 | 2026-09-05 |
| CVE-2026-75034 json | A flaw was found in Rancher Manager. The SAML assertion replay protection introduced by the fix for CVE-2026-44946 recorded c... | Not Provided | 2026-09-03 | 2026-09-04 |
| CVE-2026-75033 json | A flaw was found in Rancher Manager. Project Secrets were propagated into a namespace based only on its `field.cattle.io/proj... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-71404 json | A flaw was found in Rancher Manager. The GlobalRole controller derived the target ClusterRole name from the user-settable `au... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-71403 json | A flaw was found in Rancher Manager. The /v3/users update path did not enforce immutability of a User resource's `username` a... | Not Provided | 2026-09-03 | 2026-09-04 |
| CVE-2026-59675 json | When API audit logging is enabled, the middleware reads the entire HTTP request body into memory without enforcing a size lim... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-55997 json | Rancher issues long-lived registration tokens to authenticate nodes and agents joining a downstream cluster. These tokens wer... | Not Provided | 2026-08-05 | 2026-08-06 |
| CVE-2026-55996 json | A denial-of-service vulnerability was identified in multiple TLS listeners in Rancher. Both the cattle-cluster-agent componen... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-44949 json | A Rancher FleetWorkspace admission path allowed side effects to occur in the Rancher webhook handler for versions 0.7.0 up t... | Not Provided | 2026-06-30 | 2026-06-30 |
| CVE-2026-44948 json | A path traversal vulnerability was found in Fleet's ImageScan subsystem in Rancher Fleet 0.12.0 up to 0.12.16, 0.13.0 up to 0... | Not Provided | 2026-06-30 | 2026-06-30 |