Vulnerability Bulletins

CVE-2026-41053

   
Affected software GITHUB
 
Incorrect authentication caching in the team member ship expansion of the Rancher Github authentication provider caused it granting principal access to any logged in user, in 2.13 before 2.13.6 and 2.14 before 2.14.2.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-41053