PT-2025-39666 · Suse · Rancher Manager

Samjustus

·

Published

2025-09-26

·

Updated

2025-10-27

·

CVE-2025-54468

CVSS v3.1

4.7

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Rancher Manager versions prior to 2.9.12 Rancher Manager versions prior to 2.10.10 Rancher Manager versions prior to 2.11.6 Rancher Manager versions prior to 2.12.2
Description A flaw exists in Rancher Manager that allows sensitive information, such as email addresses, to be sent in Impersonate-Extra-* headers to external entities when creating new cloud credentials. This occurs via the /meta/proxy API endpoint. The information is sent to whitelisted domains specified in nodedrivers.management.cattle.io objects, including domains like amazonaws.com and api.digitalocean.com. The headers involved include Impersonate-Extra-Username and Impersonate-Extra-Principalid. Passwords, password hashes, and Rancher authentication tokens are not leaked.
Recommendations Update Rancher Manager to version 2.9.12 or later. Update Rancher Manager to version 2.10.10 or later. Update Rancher Manager to version 2.11.6 or later. Update Rancher Manager to version 2.12.2 or later.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-54468
GHSA-MJCP-RJ3C-36FR
GO-2025-3982
OPENSUSE-SU-2025:15666-1
SUSE-SU-2025:3799-1

Affected Products

Rancher Manager