CVE-2026-55997: Rancher

High severity, CVSS 8.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Rancher issues long-lived registration tokens to authenticate nodes and agents joining a downstream cluster. These tokens were stored and exposed in plaintext with no expiration, so a malicious user could obtain one either through the Rancher API, etcd, stored automation, or direct file access on a node, and could use it at any time to register a rogue node into the cluster.

Affected products

  • Rancher Rancher: from 2.14.0, before 2.14.4 (fixed in 2.14.4); from 2.13.0, before 2.13.8 (fixed in 2.13.8)

Published 2026-08-05. Last modified 2026-09-01.