CVE-2024-52284
EUVD-2024-5494102.09.2025, 12:15
Unauthorized disclosure of sensitive data: Any user with `GET` or `LIST` permissions on `BundleDeployment` resources could retrieve Helm values containing credentials or other secrets.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| suse | rancher | 0.12.0 ≤ 𝑥 < 0.12.6 | CNA |
| suse | rancher | 0.11.0 ≤ 𝑥 < 0.11.10 | CNA |
Common Weakness Enumeration