rancher
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 13 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from July 15, 2021 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Rancher: Cross-Cluster Secret Leakage via Namespace projectId Annotation Spoofing
Rancher: Ownership-less ClusterRole overwrite via attacker-controlled cr-name annotation on GlobalRole
Cross-Cluster Impersonation Confused-Deputy Privilege Escalation
Path Traversal in Rancher Fleet ImageScan GitRepo Path Handler
Unauthenticated namespace creation and RBAC injection via rancher-webhook FleetWorkspace mutating webhook
Stale PSA ClusterRoleBinding Persists After RoleTemplate Downgrade in Rancher
Over-inclusive team membership expansion in GitHub App authentication provider for Rancher
Command injection through unsanitized YAML parameter in Rancher
Steve API proxy impersonation
Deleting PRTBs associated to a group doesn't cause deletion of corresponding RoleBindings
Monitor rancher in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.