<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 20:47:29 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-274208</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-274208</link>
      <description>EUVD-2026-274208</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-274208</guid>
    </item>
    <item>
      <title>fkie_cve-2025-62879</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-62879</link>
      <description>&lt;p&gt;A vulnerability has been identified within the Rancher Backup Operator, resulting in the leakage of S3 tokens (both accessKey and secretKey) into the rancher-backup-operator pod&amp;#39;s logs.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified within the Rancher Backup Operator, resulting in the leakage of S3 tokens (both accessKey and secretKey) into the rancher-backup-operator pod&amp;#39;s logs.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-62879</guid>
    </item>
    <item>
      <title>GHSA-wj3p-5h3x-c74q — Rancher Backup Operator pod's logs leak S3 tokens</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wj3p-5h3x-c74q</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/rancher/backup-restore-operator&lt;/p&gt;
&lt;p&gt;### Impact
A vulnerability has been identified within the Rancher Backup Operator, resulting in the leakage of S3 tokens (both `accessKey` and `secretKey`) into the rancher-backup-operator pod&amp;#39;s logs.&lt;/p&gt;
&lt;p&gt;Specifically, the S3 `accessKey` and `secretKey` are exposed in the pod&amp;#39;s logs under the following logging level conditions:&lt;/p&gt;
&lt;p&gt;| Variable Exposed | Logging Level Condition | 
------------------ | ------------------------- |
| accessKey            | `trace: false` (default), and `debug: false` (default) |
| secretKey             | `trace: true` or `debug: true`|&lt;/p&gt;
&lt;p&gt;**Note:** The S3 `accessKey` is exposed in the logs without requiring any supplementary configuration.&lt;/p&gt;
&lt;p&gt;For further information on this attack category, please consult the associated [MITRE ATT&amp;amp;CK - Technique - Log Enumeration](https://attack.mitre.org/techniques/T1654/).&lt;/p&gt;
&lt;p&gt;### Patches
This vulnerability is addressed by applying redaction to sensitive information that was leaking.&lt;/p&gt;
&lt;p&gt;Patched versions of Rancher Backup Operator include: `108.0.1+up9.0.1`, `107.1.2+up8.1.2`, `106.0.6+up7.0.5`, and `105.0.6+up6.0.3`.&lt;/p&gt;
&lt;p&gt;### Workarounds
Users are advised to rotate both S3 `accessKey` and `secretKey` once they have upgraded to a fixed version, especially if logs are exported.&lt;/p&gt;
&lt;p&gt;Users who cannot update Rancher are advised to refresh the Rancher app Repository, which should provide the ability to update just the Rancher Backup chart alone. This will patch the vulnerabilities without requiring Rancher to be updated. This will not wor…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/rancher/backup-restore-operator&lt;/p&gt;
&lt;p&gt;### Impact
A vulnerability has been identified within the Rancher Backup Operator, resulting in the leakage of S3 tokens (both `accessKey` and `secretKey`) into the rancher-backup-operator pod&amp;#39;s logs.&lt;/p&gt;
&lt;p&gt;Specifically, the S3 `accessKey` and `secretKey` are exposed in the pod&amp;#39;s logs under the following logging level conditions:&lt;/p&gt;
&lt;p&gt;| Variable Exposed | Logging Level Condition | 
------------------ | ------------------------- |
| accessKey            | `trace: false` (default), and `debug: false` (default) |
| secretKey             | `trace: true` or `debug: true`|&lt;/p&gt;
&lt;p&gt;**Note:** The S3 `accessKey` is exposed in the logs without requiring any supplementary configuration.&lt;/p&gt;
&lt;p&gt;For further information on this attack category, please consult the associated [MITRE ATT&amp;amp;CK - Technique - Log Enumeration](https://attack.mitre.org/techniques/T1654/).&lt;/p&gt;
&lt;p&gt;### Patches
This vulnerability is addressed by applying redaction to sensitive information that was leaking.&lt;/p&gt;
&lt;p&gt;Patched versions of Rancher Backup Operator include: `108.0.1+up9.0.1`, `107.1.2+up8.1.2`, `106.0.6+up7.0.5`, and `105.0.6+up6.0.3`.&lt;/p&gt;
&lt;p&gt;### Workarounds
Users are advised to rotate both S3 `accessKey` and `secretKey` once they have upgraded to a fixed version, especially if logs are exported.&lt;/p&gt;
&lt;p&gt;Users who cannot update Rancher are advised to refresh the Rancher app Repository, which should provide the ability to update just the Rancher Backup chart alone. This will patch the vulnerabilities without requiring Rancher to be updated. This will not wor…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wj3p-5h3x-c74q</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0276 — Rancher Manager und Backup Operator: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0276</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Rancher Manager und Backup Operator ausnutzen, um Sicherheitsvorkehrungen zu umgehen und vertrauliche Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Rancher Manager und Backup Operator ausnutzen, um Sicherheitsvorkehrungen zu umgehen und vertrauliche Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0276</guid>
    </item>
  </channel>
</rss>
