CVE-2023-32196: Rancher
Medium severity, CVSS 6.6. EPSS: 0.6% chance of exploitation in the next 30 days.
A vulnerability has been identified whereby privilege escalation checks are not properly enforced for RoleTemplateobjects when external=true, which in specific scenarios can lead to privilege escalation.
Affected products
- Rancher Rancher: from 2.7.0, before 2.7.14 (fixed in 2.7.14); from 2.8.0, before 2.8.5 (fixed in 2.8.5)
- Suse Rancher: from 2.7.0, before 2.7.14 (fixed in 2.7.14); from 2.8.0, before 2.8.5 (fixed in 2.8.5)
Published 2024-10-16. Last modified 2026-06-17.