Path Traversal Vulnerability in Rancher's Extensions Platform
CVE-2026-25705
8.4HIGH
What is CVE-2026-25705?
A vulnerability exists in Rancher's Extensions platform that allows attackers to exploit a path traversal issue in the compressedEndpoint field during a UIPlugin deployment. This flaw enables malicious extensions to inject harmful code, overwrite critical Rancher binaries or configurations, and alter the cluster state by writing to /var/lib/rancher/. Additionally, if hostPath volumes are mounted, attackers can manipulate the host node filesystem, potentially chaining this vulnerability with other security weaknesses to escalate their attack.
Affected Version(s)
rancher 2.14.0 < 2.14.1
rancher 2.13.0 < 2.13.5
rancher 2.12.0 < 2.12.9