CVE-2024-58260
EUVD-2025-3133502.10.2025, 12:15
A vulnerability has been identified within Rancher Manager where a missing server-side validation on the `.username` field in Rancher can allow users with update permissions on other User resources to cause denial of access for targeted accounts.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| suse | rancher | 2.12.0 ≤ 𝑥 < 2.12.2 | CNA |
| suse | rancher | 2.11.0 ≤ 𝑥 < 2.11.6 | CNA |
| suse | rancher | 2.10.0 ≤ 𝑥 < 2.10.10 | CNA |
| suse | rancher | 2.9.0 ≤ 𝑥 < 2.9.12 | CNA |