Where
AND
-Infinity
0

Vendor Risk Score

See how suse compares to other vendors in security performance

View Risk Score →

Software

go/github.com/rancher/fleetRancher Fleet SSRF in Bundle Reader via Unvalidated Helm Repository URL in fleet.yaml

Risk 26
Severity
5
First published (updated )

go/github.com/rancher/backup-restore-operatorRancher Backup Operator pod's logs leak S3 tokens

Risk 37
Severity
6.8
First published (updated )

SUSE eximSUSE-specific logrotate configuration allows escalation from mail user/group to root

Risk 53
Severity
6.9
First published (updated )

SUSE Container suse/manager/4.3/proxy-httpdMulti Linux Manager epxoses the plain text HTTP Proxy user:password in logs

Risk 36
Severity
6.9
First published (updated )

SUSE ManagerReflected XSS in spacewalk-java

Risk 37
Severity
5.6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

SUSE Manager ServerReflected XSS in SystemsController.java in spacewalk-java

Risk 37
Severity
5.6
First published (updated )

Teradata DatabaseCertain Teradata account-handling code through 2024-11-04, used with SUSE Enterprise Linux Server, m…

Risk 44
Severity
6
First published (updated )

redhat Enterprise LinuxRsync: rsync server leaks arbitrary client files

Risk 65
Severity
6.8
First published (updated )

SUSE ManagerReflected XSS in Setup Wizard, HTTP Proxy credentials pane in spacewalk-web

Risk 21
Severity
4.6
EPSS
0.06%
First published (updated )

SUSE SUSE ManagerReflected XSS in Setup Wizard, Organization Credentials in spacewalk-web

Risk 21
Severity
4.6
EPSS
0.06%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

SUSE Linux Enterprise ServerLast updated 5 December 2024

Risk 32
Severity
5.5
First published (updated )

redhat Enterprise LinuxRelax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. T…

Risk 24
Severity
5.5
EPSS
0.04%
First published (updated )

SUSE Linux EnterpriseLast updated 25 April 2025

Risk 32
Severity
5.5
First published (updated )

SUSE openSUSE Factoryobs-service-go_modules: arbitrary directory delete

Risk 32
Severity
5.5
First published (updated )

Linux Linux kernelNull Pointer Dereference

Risk 32
Severity
5.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

openSUSE Supportutilssupportconfig does not remove passwords in /etc/iscsi/iscsid.conf and /etc/target/lio_setup.sh

Risk 32
Severity
5.5
First published (updated )

SUSE Manager ServerSUMA/UYUNI reflected cross site scripting in /rhn/audit/scap/Search.do

Risk 34
Severity
5.4
First published (updated )

SUSE Manager ServerSUMA/UYUNI arbitrary file disclosure vulnerability in ScapResultDownload

Risk 22
Severity
4.3
First published (updated )

SUSE Manager ServerSUMA/UYUNI directory path traversal vulnerability in CobblerSnipperViewAction

Risk 22
Severity
4.3
First published (updated )

openSUSE Leappermissions: chkstat does not check for group-writable parent directories or target files in safeOpen()

Risk 29
Severity
4.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

openSUSE cannacanna: unsafe handling of /tmp/.iroha_unix directory

Risk 39
Severity
5.3
First published (updated )

SUSE Manager ServerSUMA user enumeration via weak error message

Risk 27
Severity
5.3
First published (updated )

SUSE rancherRancher: Weave CNI password is not set if RKE template is used with CNI value overridden

Risk 52
Severity
6.8
First published (updated )

SUSE rancherWrite access to the Catalog for any user when restricted-admin role is enabled

Risk 34
Severity
5.5
First published (updated )

GNU GRUB2grub2-once uses fixed file name in /var/tmp

Risk 32
Severity
5.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

SUSE Rancher K3sK3s/RKE2 bootstrap data is encrypted with empty string if user does not supply a token

Risk 38
Severity
6.5
First published (updated )

SUSE CaaS Platformskuba: Insecure /tmp usage when joining node to cluster

Risk 29
Severity
4.4
First published (updated )

SUSE CaaS Platformskuba: Insecure handling of private key

Risk 21
Severity
4
First published (updated )

redhat/grub2GRUB2 contained integer overflows when handling the initrd command, leading to a heap-based buffer overflow.

Risk 59
Severity
6.4
First published (updated )

redhat/grub2GRUB2 contains a race condition leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing.

Risk 59
Severity
6.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203