---
cve: "CVE-2026-44949"
severity: "HIGH"
cvss: 7.0
epss: "23%"
vendor: "SUSE"
kev: false
exploited: false
published: "2026-06-30 15:16:56"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-08T16:05:28+02:00"
---

# CVE-2026-44949

> 7.0 HIGH · 🧪 PoC

## Beschreibung

A Rancher FleetWorkspace admission path allowed side effects to occur in
 the Rancher webhook handler for versions 0.7.0 up to 0.7.10, 0.8.0 up to 0.8.7, 0.9.0 up to 0.9.6 and 0.10.0 up to 0.10.7. An unauthenticated attacker with network access to
 the in-cluster rancher-webhook service
 could submit a crafted admission payload and cause workspace-related 
Kubernetes objects to be created with attacker-chosen identity data.

## CVSS-Vektor

```
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:H/SA:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Gering | bad |
| PR Privilegien | Gering | warn |
| UI Interaktion | Keine | bad |

## Patch verfügbar (OSV)

- 9429fe296cff854c7d28648a707813adf8d56fc3 (Commit)
- fd1141284e82fbee4b18da1b5e334895945bdb6c (Commit)

## Referenzen

- <https://github.com/rancher/webhook/security/advisories/GHSA-h83p-cq95-vph4>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-44949) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
