OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-88805

HIGH · CVSS 8.1 EPSS 0.25% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-28 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

SUSE Rancher versions prior to 2.15.2 are vulnerable due to improper credential cleaning upon user logout, allowing remote attackers to retain access credentials even after an account has been logged out. This flaw poses a significant security risk, as it could enable unauthorized access to sensitive resources. Organizations using affected versions should prioritize remediation to mitigate potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-88805
Severity
HIGH
CVSS
8.1
EPSS
0.25%

Original NVD Description

Incorrect credential cleaning on logout could be used by remote attackers to keep access credentials even after the account was logged out. Affected is SUSE Rancher 2.15 before 2.15.2.