suse
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting suse.
- CVE-2026-75035Rancher: ext.cattle.io/v1 Token store: cross-user token disclosure via label-selector scoping bypass7.7
- CVE-2026-75034Rancher: SAML Assertion Replay7.4
- CVE-2026-75033Rancher: Cross-Cluster Secret Leakage via Namespace projectId Annotation Spoofing7.7
- CVE-2026-71404Rancher: Ownership-less ClusterRole overwrite via attacker-controlled cr-name annotation on GlobalRole8.7
- CVE-2026-71403Rancher: Identity-field mutation in /v3/users allows account hijack via principal rebind6.1
- CVE-2026-25706yast2-samba-client: OS command injection via attacker-controlled Organizational Unit (Active Directory-supplied)7.5
- CVE-2026-59681yast2-auth-client: OS command injection via unsanitized Organizational Unit / dnsHostName in AD join8.8
- CVE-2026-59680yast2-users: OS command injection via LDAP-supplied shadowLastChange/shadowExpire attribute8.0
- CVE-2026-71402wicked: out-of-bounds read in the DHCPv4 option parser due to payload length taken from the IP total length5.4
- CVE-2026-44945Cross-Cluster Impersonation Confused-Deputy Privilege Escalation9.1
- CVE-2026-25703Potential information leakage from manager /network/graph API in NeuVector7.3
- CVE-2026-55998Cluster Existence Oracle via Unauthenticated Import Endpoint5.3
- CVE-2026-59675Rancher Audit-Log Middleware Unauthenticated Memory Exhaustion Denial of Service7.5
- CVE-2026-55996Unauthenticated Denial-of-Service via TLS SAN Stuffing in Rancher and cattle-cluster-agent4.3
- CVE-2026-44938Fleet has PSS Bypass through addLabelsFromOptions in Fleet Agent8.8