In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade github.com/rancher/rancher/pkg/api/norman/server/managementstored
to version 2.9.9-alpha1, 2.10.5-alpha3, 2.11.1-alpha2 or higher.
Affected versions of this package are vulnerable to Improper Ownership Management for projects, whose namespace defaults to being the project name, regardless of cluster. A user with permission to create a project can escalate privileges to those of a user who owns a project by the same name in a different cluster by creating a project with the same name, thereby gaining access to the other project's resources.