CVE-2026-44935EPSS p34.4%
CVE-2026-44935CVE-2026-44935
suse / rancher_fleet
Description
Missing validation of "valuesFrom" references in Helm Deployer of SUSE Rancher Fleet 0.15 before 0.15.2, 0.14 before 0.14.6, 0.13 before 0.13.11 and 0.12 before 0.12.15 could be used by owners of one tenant to access fleet credentials of other tenants.
Scoring
| CVSS | 9.9 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
| EPSS | 0.41% probability of exploitation · percentile 34.4% · 2026-08-16T12:03:43Z |
| Last modified | 2026-07-06 |