Security Advisory

CVE-2024-58260

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-10-02 12:09:46
Last updated 2025-10-02 15:52:35
Assigner suse
CVSS score 7.6
State PUBLISHED

Description

A vulnerability has been identified within Rancher Manager where a missing server-side validation on the `.username` field in Rancher can allow users with update permissions on other User resources to cause denial of access for targeted accounts.