Search:
| Image | Mirrored | Release | Binary/Package | Dependency | Vulnerability ID (CVE) | Severity | Status | Justification (for status not affected) | Type (language or OS) |
|---|---|---|---|---|---|---|---|---|---|
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/cni | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/cni | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/cni | stdlib@v1.24.13 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/cni | stdlib@v1.24.13 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/containerd-shim-runc-v2 | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/containerd-shim-runc-v2 | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/containerd-shim-runc-v2 | stdlib@v1.24.13 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/containerd-shim-runc-v2 | stdlib@v1.24.13 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/flannel-io/flannel@v0.28.0 | CVE-2026-32241 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/go-jose/go-jose/v4@v4.0.5 | CVE-2026-34986 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/moby/spdystream@v0.5.0 | CVE-2026-35469 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-27889 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-29785 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-33216 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-33217 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-33218 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-33247 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | stdlib@v1.24.13 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | stdlib@v1.24.13 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-31789 | CRITICAL | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28387 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28388 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28389 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-31789 | CRITICAL | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28387 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28388 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28389 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | musl | musl@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | musl-utils | musl-utils@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | github.com/moby/spdystream@v0.5.0 | CVE-2026-35469 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.7 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.7 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.7 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.7 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | github.com/moby/spdystream@v0.5.0 | CVE-2026-35469 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | stdlib@v1.25.7 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | stdlib@v1.25.7 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | stdlib@v1.25.7 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | stdlib@v1.25.7 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | github.com/moby/spdystream@v0.5.0 | CVE-2026-35469 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2025-61726 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2025-61730 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-31789 | CRITICAL | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28387 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28388 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28389 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-31789 | CRITICAL | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28387 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28388 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28389 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | musl | musl@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | musl-utils | musl-utils@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.4-r0 | CVE-2025-15467 | CRITICAL | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.4-r0 | CVE-2026-31789 | CRITICAL | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.4-r0 | CVE-2025-69419 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.4-r0 | CVE-2025-69421 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.4-r0 | CVE-2026-28387 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.4-r0 | CVE-2026-28388 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.4-r0 | CVE-2026-28389 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.4-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.4-r0 | CVE-2025-15467 | CRITICAL | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.4-r0 | CVE-2026-31789 | CRITICAL | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.4-r0 | CVE-2025-69419 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.4-r0 | CVE-2025-69421 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.4-r0 | CVE-2026-28387 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.4-r0 | CVE-2026-28388 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.4-r0 | CVE-2026-28389 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | libssl3 | libssl3@3.5.4-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | musl | musl@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | musl-utils | musl-utils@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2025-68121 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2025-61730 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | github.com/coredns/coredns@v0.0.0-20260116044707-80527fd38984 | CVE-2023-28452 | HIGH | affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | github.com/coredns/coredns@v0.0.0-20260116044707-80527fd38984 | CVE-2025-47950 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | github.com/coredns/coredns@v0.0.0-20260116044707-80527fd38984 | CVE-2026-26017 | HIGH | affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | github.com/coredns/coredns@v0.0.0-20260116044707-80527fd38984 | CVE-2026-26018 | HIGH | affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | github.com/coredns/coredns@v0.0.0-20260116044707-80527fd38984 | CVE-2025-68151 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | google.golang.org/grpc@v1.78.0 | CVE-2026-33186 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | stdlib@v1.25.6 | CVE-2025-68121 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | stdlib@v1.25.6 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | stdlib@v1.25.6 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | stdlib@v1.25.6 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | stdlib@v1.25.6 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-31789 | CRITICAL | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28387 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28388 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28389 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-31789 | CRITICAL | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28387 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28388 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28389 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | musl | musl@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | musl-utils | musl-utils@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | github.com/docker/docker@v28.3.3+incompatible | CVE-2026-34040 | HIGH | affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | github.com/go-acme/lego/v4@v4.32.0 | CVE-2026-40611 | HIGH | affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | github.com/go-jose/go-jose/v4@v4.1.3 | CVE-2026-34986 | HIGH | affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | github.com/traefik/traefik/v3@v3.6.9 | CVE-2026-32305 | HIGH | affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | github.com/traefik/traefik/v3@v3.6.9 | GHSA-46wh-3698-f2cx | HIGH | affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | github.com/traefik/traefik/v3@v3.6.9 | GHSA-4hjq-9h5c-252j | HIGH | affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | github.com/traefik/traefik/v3@v3.6.9 | CVE-2026-33433 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | stdlib@v1.25.7 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | stdlib@v1.25.7 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | stdlib@v1.25.7 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | stdlib@v1.25.7 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | stdlib@v1.24.12 | CVE-2025-68121 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | stdlib@v1.24.12 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | stdlib@v1.24.12 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | stdlib@v1.24.12 | CVE-2026-32281 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | stdlib@v1.24.12 | CVE-2026-32283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/containerd-shim-runc-v2 | google.golang.org/grpc@v1.73.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/containerd-shim-runc-v2 | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/buger/jsonparser@v1.1.1 | CVE-2026-32285 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/docker/cli@v28.3.2+incompatible | CVE-2025-15558 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/docker/docker@v25.0.8+incompatible | CVE-2026-34040 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | github.com/jackc/pgx/v5@v5.8.0 | CVE-2026-33816 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | go.opentelemetry.io/otel/sdk@v1.39.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | go.opentelemetry.io/otel/sdk@v1.39.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | golang.org/x/crypto@v0.28.0 | CVE-2024-45337 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | golang.org/x/crypto@v0.28.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | golang.org/x/crypto@v0.28.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | golang.org/x/crypto@v0.28.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | gopkg.in/square/go-jose.v2@v2.6.0 | CVE-2024-28180 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/k3s | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/runc | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/runc | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/runc | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/runc | stdlib@v1.24.13 | CVE-2026-32283 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/runc | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/runc | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/runc | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/k3s:v1.32.13-k3s1 | false | K3s v1.32.13 | bin/runc | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | zlib | zlib@1.3.1-r2 | CVE-2026-22184 | none | not affected | vulnerable code not present | alpine |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.7 | CVE-2026-27142 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.7 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.7 | CVE-2026-32288 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.7 | CVE-2026-32289 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2025-68121 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2025-61728 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260210 | false | K3s v1.32.13 | usr/bin/helm | stdlib@v1.24.11 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-lb:v0.4.14 | false | K3s v1.32.13 | zlib | zlib@1.3.1-r2 | CVE-2026-22184 | none | not affected | vulnerable code not present | alpine |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | zlib | zlib@1.3.1-r2 | CVE-2026-22184 | none | not affected | vulnerable code not present | alpine |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2025-61726 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2025-61728 | none | not affected | vulnerable code not present | gobinary |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/local-path-provisioner:v0.0.34 | false | K3s v1.32.13 | usr/bin/local-path-provisioner | stdlib@v1.25.5 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | go.opentelemetry.io/otel/sdk@v1.38.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | go.opentelemetry.io/otel/sdk@v1.38.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-coredns-coredns:1.14.1 | true | K3s v1.32.13 | coredns | stdlib@v1.25.6 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | zlib | zlib@1.3.1-r2 | CVE-2026-22184 | none | not affected | vulnerable code not present | alpine |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | github.com/docker/cli@v28.3.3+incompatible | CVE-2025-15558 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | go.opentelemetry.io/otel/sdk@v1.39.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | go.opentelemetry.io/otel/sdk@v1.39.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | google.golang.org/grpc@v1.78.0 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | stdlib@v1.25.7 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/mirrored-library-traefik:3.6.9 | true | K3s v1.32.13 | usr/local/bin/traefik | stdlib@v1.25.7 | CVE-2026-32288 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | go.opentelemetry.io/otel/sdk@v1.35.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | go.opentelemetry.io/otel/sdk@v1.35.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | golang.org/x/crypto@v0.38.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | golang.org/x/crypto@v0.38.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | google.golang.org/grpc@v1.72.0 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | stdlib@v1.24.12 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/mirrored-metrics-server:v0.8.1 | true | K3s v1.32.13 | metrics-server | stdlib@v1.24.12 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |