CVE-2026-41053EPSS p37.5%
CVE-2026-41053CVE-2026-41053
suse / rancher
Description
Incorrect authentication caching in the team member ship expansion of the Rancher Github authentication provider caused it granting principal access to any logged in user, in 2.13 before 2.13.6 and 2.14 before 2.14.2.
Scoring
| CVSS | 8.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.45% probability of exploitation · percentile 37.5% · 2026-08-14T12:00:27Z |
| Last modified | 2026-07-02 |