在 Fleet 中发现了一个权限不匹配漏洞。当 Bundle 通过 和 选项请求命名空间的标签(labels)或注解(annotations)时,由此产生的命名空间元数据更新未受到与 Bundle 部署其他部分相同的授权控制。因此,即使 Bundle 所绑定的身份(identity)没有权限修改目标命名空间,它仍然能够更改该命名空间的标签和注解。 此漏洞影响 SUSE Rancher Fleet 的以下版本:0.16(早于 0.16.2)、0.15(早于 0.15.7)、0.14(早于 0.14.11)、0.13(
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-78424 | 8.8 HIGH | OS Command Injection in Packet-Capture (Sniffer) Filter leading to Remote Code Execution o |
| CVE-2026-93538 | 7.1 HIGH | Cross-tenant BundleDeployment and Secret disclosure via spoofed cluster labels during agen |
| CVE-2026-93537 | 6.5 MEDIUM | Path traversal in Fleet Helm valuesFiles allows disclosure of files outside the bundle dir |
| CVE-2026-93539 | 5.4 MEDIUM | Unauthenticated GitRepo Spec Mutation via Fleet Git Webhook Receiver |
No comments yet