PT-2026-37355 · Suse · Rancher

CVE-2026-25705

·

Published

2026-05-06

·

Updated

2026-07-30

CVSS v3.1

8.4

High

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Rancher versions prior to 2.11.13 Rancher versions prior to 2.12.9 Rancher versions prior to 2.13.5 Rancher versions prior to 2.14.1
Description A path traversal issue exists in the UI plugin mechanism. Malicious code can be injected through the compressedEndpoint field inside a UIPlugin deployment. This allows a malicious UI extension to overwrite binaries or configurations, tamper with cluster state by writing to /var/lib/rancher/, or write to the host node filesystem if hostPath volumes are mounted. By default, this action requires administrator permissions or specifically granted user permissions.
Recommendations Update to version 2.11.13. Update to version 2.12.9. Update to version 2.13.5. Update to version 2.14.1.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-25705
GHSA-5V3H-X4WF-5C35
GO-2026-5154
OPENSUSE-SU-2026:21483-1

Affected Products

Rancher