๐Ÿ” CVE Alert

CVE-2026-93537

MEDIUM 6.5

Path traversal in Fleet Helm valuesFiles allows disclosure of files outside the bundle directory

CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th

A user who can supply bundle content to a repository referenced by a GitRepo resource, for example through Git push access, or through permission to create or modify a GitRepo, can cause SUSE Rancher Fleet to read files from the filesystem of the environment that processes the bundle and include their contents in the generated Bundle resource. This can expose configuration or credential material that the user has no Kubernetes RBAC permission to read, including Helm registry credentials made available to the bundle-processing job when per-path Helm credentials are configured. This affects Fleet 0.16 before 0.16.2, 0.15 before 0.15.7, 0.14 before 0.14.11, 0.13 before 0.13.16, 0.12 before 0.12.20 and potentially older unsupported versions.

CWE CWE-23
Vendor suse
Product rancher
Published Sep 28, 2026
Stay Ahead of the Next One

Get instant alerts for suse rancher

Be the first to know when new medium vulnerabilities affecting suse rancher are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None

Affected Versions

SUSE / Rancher
0.16.0 < 0.16.2 0.15.0 < 0.15.7 0.14.0 < 0.14.11 0.13.0 < 0.13.16 0.12.0 < 0.12.20

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/rancher/fleet/security/advisories/GHSA-wpfm-r97v-3j4h

Credits

https://github.com/Pig-Tail