CVE-2019-13209

HIGH8.7EPSS 0.24%

Cross-site request forgery in github.com/rancher/rancher

Published: 5/18/2021Modified: 5/20/2024

Description

Rancher 2 is vulnerable to a Cross-Site Websocket Hijacking attack that allows an exploiter to gain access to clusters managed by Rancher.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH8.7CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:H

References (5)