Path Traversal Vulnerability in Rancher's Extensions Platform
CVE-2026-25705

8.4HIGH

Key Information:

Vendor

Suse

Status
Vendor
CVE Published:
13 May 2026

What is CVE-2026-25705?

A vulnerability exists in Rancher's Extensions platform that allows attackers to exploit a path traversal issue in the compressedEndpoint field during a UIPlugin deployment. This flaw enables malicious extensions to inject harmful code, overwrite critical Rancher binaries or configurations, and alter the cluster state by writing to /var/lib/rancher/. Additionally, if hostPath volumes are mounted, attackers can manipulate the host node filesystem, potentially chaining this vulnerability with other security weaknesses to escalate their attack.

Affected Version(s)

rancher 2.14.0 < 2.14.1

rancher 2.13.0 < 2.13.5

rancher 2.12.0 < 2.12.9

References

CVSS V3.1

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

https://github.com/KoreaSecurity
.