A Incorrect Authorization vulnerability in SUSE Rancher allows administrators of third-party repositories to gather credentials that are sent to their servers. This issue affects: SUSE Rancher Rancher versions prior to 2.5.12; Rancher versions prior to 2.6.3.
| Software | From | Fixed in |
|---|---|---|
| suse / rancher | 2.6.0 | 2.6.3 |
| suse / rancher | - | 2.5.12 |
github.com/rancher/rancher
|
2.6.0 | 2.6.3 |
github.com/rancher/rancher
|
2.5.0 | 2.5.12 |