16 Total CVEs
16 AI Analyzed
0 CISA KEV
4 Critical

Profile

0% ended up actively exploited 0 of 16 added to CISA KEV
25% rated critical (CVSS 9.0+) 4 critical, 12 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

16 CVEs in the last 12 months

Products

  • Rancher5
  • yast2-auth-client1
  • libzypp1
  • Rancher Fleet1
  • Rancher AI Agent1
  • wicked dhcp client1
  • of model1
  • of Rust1

10 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-16 of 16 CVEs
CVE-2026-59681
Analyzed
8.8
SUSE yast2-auth-client

A OS command injection vulnerability in yast2-auth-client allows an attacker who controls Active Directory configuration values to execute arbitrary c...

2026-09-02
CVE-2026-44946
Analyzed
9.5
SUSE Rancher

Rancher's SAML Assertion Consumer Service handler is vulnerable to authentication replay attacks due to a failure to enforce one-time use of SAML asse...

2026-07-01
CVE-2026-44941
Analyzed
8.4
SUSE libzypp

A relative path traversal in the "keyhint" option in repomd

2026-07-03
CVE-2026-44938
Analyzed
8.8
SUSE Rancher

A vulnerability has been identified in Fleet's agent-side deployer, which did not filter security-sensitive keys from namespaceLabels in fleet

2026-07-08
CVE-2026-44937
Analyzed
8.3
SUSE Rancher Fleet

Potential forgery of webhook requests when using a unauthenticated webhook in SUSE Rancher Fleet 0

2026-07-07
CVE-2026-44935
Analyzed
9.9
SUSE Rancher

A missing validation vulnerability in the SUSE Rancher Fleet Helm Deployer allows authenticated tenants to access the fleet credentials of other tenan...

2026-07-03
CVE-2026-44934
Analyzed
7
SUSE Rancher AI Agent

A information disclosure when DEBUG loglevel is set in SUSE Rancher AI Agent 1

2026-07-06
CVE-2026-44932
Analyzed
8.8
SUSE wicked dhcp client

Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0

2026-06-17
CVE-2026-41053
Analyzed
8.8
SUSE Rancher

Incorrect authentication caching in the team member ship expansion of the Rancher Github authentication provider caused it granting principal access t...

2026-07-01
CVE-2026-41052
Analyzed
9.4
SUSE Rancher

Improper privilege handling in SUSE Rancher allows authenticated users with the Project Owner role to escalate their privileges within the cluster.

2026-06-30
CVE-2026-40289
Analyzed
9.1
SUSE of model

PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the browser bridge (praisonai browser...

2026-04-14
CVE-2026-34056
Analyzed
7.7
SUSE Multiple Products

OpenEMR is a free and open source electronic health records and medical practice management application

2026-03-26
CVE-2026-26275
Analyzed
7.5
SUSE of Rust

httpsig-hyper is a hyper extension for http message signatures

2026-02-20
CVE-2026-0021
Analyzed
8.4
SUSE Multiple Products

In hasInteractAcrossUsersFullPermission of AppInfoBase

2026-03-03
CVE-2025-71261
Analyzed
8.6
SUSE Harvester

An attacker with network-level access between the SUSE Virtualization and Rancher Manager in SUSE Harvester before 1

2026-06-17
CVE-2025-40946
Analyzed
8.3
SUSE them to

A vulnerability has been identified in blueplanet 100 NX3 M8 (All versions), blueplanet 100 TL3 GEN2 (All versions < V6

2026-05-13