CVE-2026-55997
EUVD-2026-5325905.08.2026, 08:16
Rancher issues long-lived registration tokens to authenticate nodes and agents joining a downstream cluster. These tokens were stored and exposed in plaintext with no expiration, so a malicious user could obtain one either through the Rancher API, etcd, stored automation, or direct file access on a node, and could use it at any time to register a rogue node into the cluster.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| rancher | rancher | 2.14.0 ≤ 𝑥 < 2.14.4 | CNA |
| rancher | rancher | 2.13.0 ≤ 𝑥 < 2.13.8 | CNA |
Common Weakness Enumeration
Vulnerability Media Exposure