Vulnerabilidades em suse
228 resultadosAnálise Vexday
A SUSE apresenta footprint mínimo na base Vexday com apenas 1 CVE registrado, sem incidentes de exploração ativa (KEV) ou vulnerabilidades críticas documentadas. O risco atual é baixo, sem novos registros nos últimos 90 dias, embora a fraqueza CWE-61 (improper link resolution) mereça atenção em futuros desenvolvimentos.
CVE-2023-22648HIGHA Improper Privilege Management vulnerability in SUSE Rancher causes permission changes in Azure AD not to be reflected to users
while theyEPSS 0.5%CVE-2023-22644CRITICALJWT token compromise can allow malicious actions including Remote Code Execution (RCE)EPSS 0.5%CVE-2021-36780HIGHUnauthorized data access from replicas through vulnerable instance manager podsEPSS 0.5%CVE-2024-52282MEDIUMRancher Helm Applications may have sensitive values leakedEPSS 0.4%CVE-2017-14806LOWInsecure handling of repodata and packages in SUSE Studio onliteEPSS 0.4%CVE-2026-44938HIGHFleet has PSS Bypass through addLabelsFromOptions in Fleet AgentEPSS 0.4%CVE-2026-25706HIGHyast2-samba-client: OS command injection via attacker-controlled Organizational Unit (Active Directory-supplied)EPSS 0.4%CVE-2021-25321HIGHarpwatch: Local privilege escalation from runtime user to rootEPSS 0.4%CVE-2025-54469CRITICALNeuVector Enforcer is vulnerable to Command Injection and Buffer overflowEPSS 0.4%CVE-2023-32193HIGHNorman API Cross-site Scripting VulnerabilityEPSS 0.4%CVE-2022-45157HIGHExposure of vSphere's CPI and CSI credentials in RancherEPSS 0.4%CVE-2026-44950CRITICALfs_read_glyphs() heap buffer overflow via cumulative glyph data overflow in libXfont2EPSS 0.4%CVE-2026-44948MEDIUMPath Traversal in Rancher Fleet ImageScan GitRepo Path HandlerEPSS 0.4%CVE-2026-59675HIGHRancher Audit-Log Middleware Unauthenticated Memory Exhaustion Denial of ServiceEPSS 0.4%CVE-2018-20105MEDIUMyast2-rmt exposes CA private key passhrase in log-fileEPSS 0.4%CVE-2026-44937HIGHSUSE Rancher Fleet had an Unauthenticated Webhook: Regex Injection via Unsanitized Repository URL ComponentsEPSS 0.4%CVE-2019-3690MEDIUMchkstat follows untrusted symbolic linksEPSS 0.4%CVE-2024-22030HIGHRancher agents can be hijacked by taking over the Rancher Server URLEPSS 0.4%CVE-2026-41052CRITICALRancher Privilege Escalation from Project Owner to HostEPSS 0.4%CVE-2023-32194HIGHRancher permissions on 'namespaces' in any API group grants 'edit' permissions on namespaces in 'core'EPSS 0.4%