CVE-2023-22650
概要

A vulnerability has been identified in which Rancher does not automatically clean up a user which has been deleted from the configured authentication provider (AP). This characteristic also applies to disabled or revoked users, Rancher will not reflect these modifications which may leave the user’s tokens still usable.

公表日 2024年10月16日18:15
登録日 2024年10月16日20:00
最終更新日 2024年10月16日18:15
関連情報、対策とツール
共通脆弱性一覧