CVE-2024-52282

A Exposure of Sensitive Information to an Unauthorized Actor vulnerability in SUSE rancher allowing any users with GET access to the Rancher Manager Apps Catalog to read any sensitive information that are contained within the Apps’ values. Additionally, the same information leaks into auditing logs when the audit level is set to equal or above 2. This issue affects rancher: from 2.8.0 before 2.8.10, from 2.9.0 before 2.9.4.
CVSS

No CVSS.

Configurations

No configuration.

History

11 Apr 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-11 11:15

Updated : 2025-04-11 11:15


NVD link : CVE-2024-52282

Mitre link : CVE-2024-52282


JSON object : View

Products Affected

No product.

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor