Browse all 214 CVE security advisories affecting SUSE. AI-powered Chinese analysis, POCs, and references for each vulnerability.
SUSE operates primarily as a provider of enterprise Linux distributions and cloud-native solutions, serving critical infrastructure in hybrid and multi-cloud environments. With 185 recorded CVEs, its vulnerability profile reflects the complexity of managing large-scale open-source codebases. Historically, common flaw classes include remote code execution (RCE), buffer overflows, and privilege escalation vulnerabilities, often stemming from misconfigurations or outdated dependencies within its core operating system components. Notable security characteristics involve its focus on container security and Kubernetes integration, which introduces attack surfaces related to orchestration layers. While no single catastrophic incident defines its history, the sheer volume of vulnerabilities highlights the ongoing challenge of maintaining security in widely deployed, long-term support releases. This necessitates rigorous patch management and continuous monitoring to mitigate risks associated with its extensive ecosystem of integrated services and third-party libraries.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2021-36784 | Privilege escalation for users with create/update permissions in Global Roles — Rancher CWE-269 | 7.2 | High | 2022-05-02 |
| CVE-2021-36778 | Exposure of repository credentials to external third-party sources — Rancher CWE-863 | 7.3 | High | 2022-05-02 |
| CVE-2021-36776 | Steve API proxy impersonation — Rancher CWE-284 | 8.8 | High | 2022-04-01 |
| CVE-2021-36775 | Deleting PRTBs associated to a group doesn't cause deletion of corresponding RoleBindings — Rancher CWE-284 | 8.8 | High | 2022-04-01 |
| CVE-2022-21947 | rancher desktop: Dashboard API is network accessible — Rancher CWE-668 | 8.3 | High | 2022-04-01 |
| CVE-2021-32001 | K3s/RKE2 bootstrap data is encrypted with empty string if user does not supply a token — Rancher CWE-311 | 6.5 | Medium | 2021-07-28 |
| CVE-2021-25313 | Rancher: XSS on /v3/cluster/ — Rancher CWE-79 | 7.1 | High | 2021-03-05 |
This page lists every published CVE security advisory associated with SUSE. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.