Security Advisory

CVE-2026-44937

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-06 09:52:18
Last updated 2026-07-06 12:46:59
Assigner suse
CVSS score 8.3
State PUBLISHED

Description

Potential forgery of webhook requests when using a unauthenticated webhook in SUSE Rancher Fleet 0.15 before 0.15.2, 0.14 before 0.14.6, 0.13 before 0.13.11 and 0.12 before 0.12.5 could be used by remote attackers to cause a denial of service or a downgrade attack on other repositories on the system.