SUSE Rancher - Neuvector v5.6 version - CVE Scans - 2026-08-28

How to use this page

  • You can click a column header to sort by column.
  • Use the search bar below to filter the results by image (and version/tag), if the image is mirrored or made by SUSE (true/false),
    release, affected binary, vulnerable dependency (and its version), vulnerability ID (CVE, GHSA, SUSE-SU etc.), severity,
    status (if affected or not affected/false-positive), justification (for false-positives),
    vulnerability type (related to the programming language or container OS).
  • The search functionality might execute a bit slow depending on the number of vulnerabilities displayed in the page.
  • False-positive CVEs that are removed with VEX have the status as "not affected" with the severity set to "none",
    because they do not affect the binary/package/image. The justification explains why they are false-positives,
    according to the VEX statuses as explained in KB 000021573.
  • For further instructions about scanned versions, scanning frequency, tooling and false-positives, please consult the main instructions.
  • The severity (CVSS rating) of some CVEs in the portal might differ from the original severity reported by some vendors and security scanners.
    This happens, because SUSE recalculates the CVSS rating of CVEs based on criteria, like: applicability and difficulty of the issue being
    exploited in the wild; how it can actually affect the confidentiality, integrity and availability of SUSE's products etc. CVEs that had their CVSS
    severity rating changed, either decreased or increased, will have the distinctive tag '*' close to its severity.
Image Mirrored Release Binary/Package Dependency Vulnerability ID (CVE) Severity Status Justification (for status not affected) Type (language or OS)
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/opa stdlib@v1.25.12 CVE-2026-33818 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-33818 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/controller stdlib@v1.26.5 CVE-2026-33818 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/upgrader stdlib@v1.26.5 CVE-2026-33818 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/opa stdlib@v1.25.12 CVE-2026-39821 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-39821 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/controller stdlib@v1.26.5 CVE-2026-39821 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/upgrader stdlib@v1.26.5 CVE-2026-39821 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/opa stdlib@v1.25.12 CVE-2026-56853 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-56853 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/controller stdlib@v1.26.5 CVE-2026-56853 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/upgrader stdlib@v1.26.5 CVE-2026-56853 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/opa stdlib@v1.25.12 CVE-2026-56859 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-56859 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/controller stdlib@v1.26.5 CVE-2026-56859 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/upgrader stdlib@v1.26.5 CVE-2026-56859 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/opa stdlib@v1.25.12 CVE-2026-56862 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-56862 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/controller stdlib@v1.26.5 CVE-2026-56862 HIGH affected gobinary
neuvector/controller:5.6.1 false Neuvector v5.6 usr/local/bin/upgrader stdlib@v1.26.5 CVE-2026-56862 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/agent stdlib@v1.26.5 CVE-2026-33818 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-33818 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/pathWalker stdlib@v1.26.5 CVE-2026-33818 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/agent stdlib@v1.26.5 CVE-2026-39821 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-39821 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/pathWalker stdlib@v1.26.5 CVE-2026-39821 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/agent stdlib@v1.26.5 CVE-2026-56853 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-56853 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/pathWalker stdlib@v1.26.5 CVE-2026-56853 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/bin/yq stdlib@v1.25.12 CVE-2026-56859 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/agent stdlib@v1.26.5 CVE-2026-56859 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-56859 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/pathWalker stdlib@v1.26.5 CVE-2026-56859 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/agent stdlib@v1.26.5 CVE-2026-56862 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/consul stdlib@v1.26.5 CVE-2026-56862 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/local/bin/pathWalker stdlib@v1.26.5 CVE-2026-56862 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 rpm rpm@4.14.3-150400.59.16.1 SUSE-SU-2026:3600-1 HIGH affected sles
neuvector/manager:5.6.1 false Neuvector v5.6 libpython3_13-1_0 libpython3_13-1_0@3.13.13-150700.4.50.1 SUSE-SU-2026:3649-1 HIGH affected sles
neuvector/manager:5.6.1 false Neuvector v5.6 python313 python313@3.13.13-150700.4.50.1 SUSE-SU-2026:3649-1 HIGH affected sles
neuvector/manager:5.6.1 false Neuvector v5.6 python313-base python313-base@3.13.13-150700.4.50.1 SUSE-SU-2026:3649-1 HIGH affected sles
neuvector/prometheus-exporter:1.0.18 false Neuvector v5.6 libpython3_13-1_0 libpython3_13-1_0@3.13.13-150700.4.50.1 SUSE-SU-2026:3649-1 HIGH affected sles
neuvector/prometheus-exporter:1.0.18 false Neuvector v5.6 python313 python313@3.13.13-150700.4.50.1 SUSE-SU-2026:3649-1 HIGH affected sles
neuvector/prometheus-exporter:1.0.18 false Neuvector v5.6 python313-base python313-base@3.13.13-150700.4.50.1 SUSE-SU-2026:3649-1 HIGH affected sles
neuvector/registry-adapter:0.2.10 false Neuvector v5.6 usr/local/bin/adapter stdlib@v1.26.5 CVE-2026-33818 HIGH affected gobinary
neuvector/registry-adapter:0.2.10 false Neuvector v5.6 usr/local/bin/adapter stdlib@v1.26.5 CVE-2026-39821 HIGH affected gobinary
neuvector/registry-adapter:0.2.10 false Neuvector v5.6 usr/local/bin/adapter stdlib@v1.26.5 CVE-2026-56853 HIGH affected gobinary
neuvector/registry-adapter:0.2.10 false Neuvector v5.6 usr/local/bin/adapter stdlib@v1.26.5 CVE-2026-56862 HIGH affected gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/bin/yq stdlib@v1.25.12 CVE-2026-33818 none not affected vulnerable code not in execute path gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/bin/yq stdlib@v1.25.12 CVE-2026-39821 none not affected vulnerable code not in execute path gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/bin/yq golang.org/x/net@v0.55.0 CVE-2026-46600 none not affected vulnerable code not present gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/bin/yq stdlib@v1.25.12 CVE-2026-56853 none not affected vulnerable code not in execute path gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/bin/yq stdlib@v1.25.12 CVE-2026-56858 none not affected vulnerable code not present gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/bin/yq stdlib@v1.25.12 CVE-2026-56860 none not affected vulnerable code not in execute path gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 usr/bin/yq stdlib@v1.25.12 CVE-2026-56862 none not affected vulnerable code not in execute path gobinary
neuvector/enforcer:5.6.1 false Neuvector v5.6 yq yq@4.53.3-6.1 SUSE-SU-2026:3327-1 none not affected vulnerable code not in execute path sles
neuvector/prometheus-exporter:1.0.18 false Neuvector v5.6 perl-base perl-base@5.26.1-150300.17.20.1 SUSE-SU-2026:3558-1 none not affected vulnerable code not in execute path sles
neuvector/prometheus-exporter:1.0.18 false Neuvector v5.6 rpm-ndb rpm-ndb@4.14.3-150400.59.16.1 SUSE-SU-2026:3600-1 none not affected vulnerable code not in execute path sles
neuvector/prometheus-exporter:1.0.18 false Neuvector v5.6 python313-devel python313-devel@3.13.13-150700.4.50.1 SUSE-SU-2026:3649-1 none not affected vulnerable code not in execute path sles
neuvector/registry-adapter:0.2.10 false Neuvector v5.6 usr/local/bin/adapter stdlib@v1.26.5 CVE-2026-46600 none not affected vulnerable code not in execute path gobinary
neuvector/registry-adapter:0.2.10 false Neuvector v5.6 usr/local/bin/adapter stdlib@v1.26.5 CVE-2026-56859 none not affected vulnerable code not in execute path gobinary