SUSE NeuVector是德国SUSE公司的一款容器安全威胁检测与分析平台。 SUSE NeuVector 5.4.9及之前版本存在安全漏洞,该漏洞源于缺少身份验证且缓存数据包含敏感信息,可能导致manager /network/graph API信息泄露。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-44945 | 9.1 CRITICAL | Cross-Cluster Impersonation Confused-Deputy Privilege Escalation |
| CVE-2026-59675 | 7.5 HIGH | Rancher Audit-Log Middleware Unauthenticated Memory Exhaustion Denial of Service |
| CVE-2026-55998 | 5.3 MEDIUM | Cluster Existence Oracle via Unauthenticated Import Endpoint |
| CVE-2026-55996 | 4.3 MEDIUM | Unauthenticated Denial-of-Service via TLS SAN Stuffing in Rancher and cattle-cluster-agent |
No comments yet