github.com/rancher/.../auth

Licenses: Apache-2.0

Direct Vulnerabilities

Known vulnerabilities in the github.com/rancher/rancher/pkg/controllers/management/auth package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Authentication Bypass by Primary Weakness

>=2.12.0 <2.12.10>=2.13.0 <2.13.6>=2.14.0 <2.14.2
  • M
Insufficient Granularity of Access Control

>=2.2.0 <2.4.16>=2.5.0 <2.5.9
  • C
Improper Ownership Management

>=2.8.0-alpha1 <2.9.9-alpha1>=2.10.0-alpha1 <2.10.5-alpha3>=2.11.0-alpha1 <2.11.1-alpha2
  • H
Insufficient Session Expiration

>=2.7.0 <2.7.14>=2.8.0 <2.8.5
  • H
Improper Access Control

<2.4.18>=2.5.0 <2.5.12>=2.6.0 <2.6.3
  • C
Improper Authentication

>=2.0.0 <2.0.14>=2.1.0 <2.1.9>=2.2.0 <2.2.2
  • H
Access Restriction Bypass

>=2.5.0 <2.5.17>=2.6.0 <2.6.10>=2.7.0 <2.7.1
  • M
Improper Privilege Management

<2.5.13>=2.6.0 <2.6.4