CyberRota Analysis
AI-GeneratedSUSE Rancher Fleet versions prior to 0.15.2, 0.14.6, 0.13.11, and 0.12.5 are vulnerable to unauthenticated webhook request forgery, allowing remote attackers to exploit this flaw for denial of service or downgrade attacks on repositories. Organizations using these affected versions should prioritize patching to mitigate the risk of unauthorized access and potential disruption to their systems. This vulnerability poses a significant threat to the integrity and availability of deployments managed by SUSE Rancher Fleet.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Potential forgery of webhook requests when using a unauthenticated webhook in SUSE Rancher Fleet 0.15 before 0.15.2, 0.14 before 0.14.6, 0.13 before 0.13.11 and 0.12 before 0.12.5 could be used by remote attackers to cause a denial of service or a downgrade attack on other repositories on the system.
Related CVEs
Other vulnerabilities affecting the same vendor(s)