Missing filtering when the helmRepoURLRegex field isn't set on a GitRepo resource in SUSE Rancher Fleet's bundle reader in 0.15 before 0.15.2, 0.14 before 0.14.6, 0.13 before 0.13.11 and 0.12 before 0.12.15 forwards Helm authentication credentials (BasicAuth) to any URL specified in the helm.repo field of a fleet.yaml file, allowing attackers able to push to fleet monitored git repos to leak helm access credentials.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:NSUSE Rancher Fleet
APPSuse0.12.0 – 0.12.15 (excl.)0.13.0 – 0.13.11 (excl.)0.14.0 – 0.14.6 (excl.)0.15.0 – 0.15.2 (excl.)
Related vulnerabilities
SUSE Rancher Fleet – brak walidacji referencji 'valuesFrom' umożliwia dostęp do cudzych poświadczeń
SSRF/fałszowanie żądań webhook w SUSE Rancher Fleet — DoS i downgrade
Sudo: eskalacja uprawnień do root poprzez opcję --chroot (CVE-2025-32463)
RCE w Adobe Flash Player 21.0.0.242 i wcześniejszych — aktywnie exploitowany
Adobe Flash Player — RCE umożliwiający wykonanie dowolnego kodu