CVE-2026-41052

Improper privilege handling could be used by users with Project Owner role to escalate privileges, in Rancher versions 2.14 before 2.14.2, 2.13 before 2.13.6, and 2.12 before 2.12.10.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:*
cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:*
cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-06-29 16:16

Updated : 2026-07-02 19:48


NVD link : CVE-2026-41052

Mitre link : CVE-2026-41052

CVE.ORG link : CVE-2026-41052


JSON object : View

Products Affected

suse

  • rancher
CWE
CWE-305

Authentication Bypass by Primary Weakness