Rancher是美国Rancher开源的一个开源容器管理平台,专为在生产环境中部署容器的组织而构建。 Rancher存在安全漏洞,该漏洞源于Extensions中compressedEndpoint字段存在路径遍历,可能导致恶意UI扩展注入代码、覆盖Rancher二进制文件或配置、篡改集群状态、写入主机节点文件系统以及与其他攻击向量链式利用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-41050 | 9.9 CRITICAL | Helm impersonation bypass of `RESTClientGetter` retains `cluster-admin` during template re |
| CVE-2026-41051 | 5.0 MEDIUM | csync2 uses insecure temporary directories when compiled with C99 or later |
No comments yet