Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

SUSE — Vulnerabilities & Security Advisories 241

Browse all 241 CVE security advisories affecting SUSE. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SUSE operates primarily as a provider of enterprise Linux distributions and cloud-native solutions, serving critical infrastructure in hybrid and multi-cloud environments. With 185 recorded CVEs, its vulnerability profile reflects the complexity of managing large-scale open-source codebases. Historically, common flaw classes include remote code execution (RCE), buffer overflows, and privilege escalation vulnerabilities, often stemming from misconfigurations or outdated dependencies within its core operating system components. Notable security characteristics involve its focus on container security and Kubernetes integration, which introduces attack surfaces related to orchestration layers. While no single catastrophic incident defines its history, the sheer volume of vulnerabilities highlights the ongoing challenge of maintaining security in widely deployed, long-term support releases. This necessitates rigorous patch management and continuous monitoring to mitigate risks associated with its extensive ecosystem of integrated services and third-party libraries.

Found 79 results / 241 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-88804 Unauthenticated update of public UI settings leading to stored cross-site scripting in Rancher — Rancher CWE-79 9.6 Critical 2026-09-28
CVE-2026-88805 Session Not Revoked Server-Side on Logout in Rancher — Rancher CWE-613 8.1 High 2026-09-28
CVE-2026-88808 Fleet agent copies downstream resources with cluster-admin privileges, allowing cross-namespace writes on downstream clusters — Rancher CWE-250 8.8 High 2026-09-28
CVE-2026-93540 Fleet applies namespace labels and annotations without the bundle's service account privileges — Rancher CWE-266 6.5 Medium 2026-09-28
CVE-2026-93539 Unauthenticated GitRepo Spec Mutation via Fleet Git Webhook Receiver — Rancher CWE-306 5.4 Medium 2026-09-28
CVE-2026-93538 Cross-tenant BundleDeployment and Secret disclosure via spoofed cluster labels during agent-initiated registration in Fleet — Rancher CWE-290 7.1 High 2026-09-28
CVE-2026-93537 Path traversal in Fleet Helm valuesFiles allows disclosure of files outside the bundle directory — Rancher CWE-23 6.5 Medium 2026-09-28
CVE-2026-75035 Rancher: ext.cattle.io/v1 Token store: cross-user token disclosure via label-selector scoping bypass — Rancher CWE-639 7.7 High 2026-09-03
CVE-2026-75034 Rancher: SAML Assertion Replay — Rancher CWE-294 7.4 High 2026-09-03
CVE-2026-75033 Rancher: Cross-Cluster Secret Leakage via Namespace projectId Annotation Spoofing — Rancher CWE-639 7.7 High 2026-09-03
CVE-2026-71404 Rancher: Ownership-less ClusterRole overwrite via attacker-controlled cr-name annotation on GlobalRole — Rancher CWE-639 8.7 High 2026-09-03
CVE-2026-71403 Rancher: Identity-field mutation in /v3/users allows account hijack via principal rebind — Rancher CWE-639 6.1 Medium 2026-09-03
CVE-2026-44945 Cross-Cluster Impersonation Confused-Deputy Privilege Escalation — Rancher CWE-441 9.1 Critical 2026-08-05
CVE-2026-55998 Cluster Existence Oracle via Unauthenticated Import Endpoint — Rancher CWE-204 5.3 Medium 2026-08-05
CVE-2026-59675 Rancher Audit-Log Middleware Unauthenticated Memory Exhaustion Denial of Service — Rancher CWE-770 7.5 High 2026-08-05
CVE-2026-55996 Unauthenticated Denial-of-Service via TLS SAN Stuffing in Rancher and cattle-cluster-agent — Rancher 4.3 Medium 2026-08-05
CVE-2026-44938 Fleet has PSS Bypass through addLabelsFromOptions in Fleet Agent — Rancher CWE-522 8.8 High 2026-07-07
CVE-2026-44937 SUSE Rancher Fleet had an Unauthenticated Webhook: Regex Injection via Unsanitized Repository URL Components — Rancher CWE-918 - - 2026-07-06
CVE-2026-44936 Rancher Fleet SSRF in Bundle Reader via Unvalidated Helm Repository URL in fleet.yaml — Rancher CWE-918 5.0 Medium 2026-07-06
CVE-2026-44934 Exposed tokens in SUSE Rancher AI Agent logs — Rancher CWE-215 - - 2026-07-06
CVE-2026-44935 Rancher Fleet vulnerable to cross namespace secret disclosure via unvalidated `valuesFrom` references in Helm Deployer — Rancher CWE-1287 9.9 Critical 2026-07-02
CVE-2026-44948 Path Traversal in Rancher Fleet ImageScan GitRepo Path Handler — Rancher CWE-23 - - 2026-06-30
CVE-2026-44949 Unauthenticated namespace creation and RBAC injection via rancher-webhook FleetWorkspace mutating webhook — Rancher CWE-306 - - 2026-06-30
CVE-2026-44947 Stale PSA ClusterRoleBinding Persists After RoleTemplate Downgrade in Rancher — Rancher CWE-281 - - 2026-06-30
CVE-2026-44946 SAML Authentication Replay in Rancher — Rancher CWE-294 - - 2026-06-30
CVE-2026-41053 Over-inclusive team membership expansion in GitHub App authentication provider for Rancher — Rancher CWE-303 8.8 High 2026-06-30
CVE-2026-41052 Rancher Privilege Escalation from Project Owner to Host — Rancher CWE-305 - - 2026-06-29
CVE-2026-44939 Command injection through unsanitized YAML parameter in Rancher — Rancher CWE-95 - - 2026-06-19
CVE-2026-41050 Helm impersonation bypass of `RESTClientGetter` retains `cluster-admin` during template rendering — Rancher CWE-863 9.9 Critical 2026-05-13
CVE-2026-25705 Rancher Extensions have arbitrary file access via path traversal — rancher CWE-35 8.4 High 2026-05-13

This page lists every published CVE security advisory associated with SUSE. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.