Search:
| Image | Mirrored | Release | Binary/Package | Dependency | Vulnerability ID (CVE) | Severity | Status | Justification (for status not affected) | Type (language or OS) |
|---|---|---|---|---|---|---|---|---|---|
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | login_defs | login_defs@4.8.1-150600.17.9.1 | SUSE-RU-2026:1228-1 | HIGH | affected | sles | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | shadow | shadow@4.8.1-150600.17.9.1 | SUSE-RU-2026:1228-1 | HIGH | affected | sles | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bandwidth | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bridge | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/dhcp | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/dummy | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/firewall | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/host-device | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/host-local | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/ipvlan | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/loopback | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/macvlan | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/portmap | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/ptp | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/sbr | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/static | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/tap | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/tuning | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/vlan | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/vrf | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-cluster-autoscaler:v1.10.3-build20260206 | false | RKE2 v1.32.13-rc4 | cluster-proportional-autoscaler | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-cluster-autoscaler:v1.10.3-build20260206 | false | RKE2 v1.32.13-rc4 | cluster-proportional-autoscaler | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-coredns:v1.14.2-build20260310 | false | RKE2 v1.32.13-rc4 | coredns | google.golang.org/grpc@v1.79.1 | CVE-2026-33186 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-coredns:v1.14.2-build20260310 | false | RKE2 v1.32.13-rc4 | coredns | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | github.com/coredns/coredns@v1.13.1 | CVE-2026-26017 | HIGH | affected | gobinary | |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | github.com/coredns/coredns@v1.13.1 | CVE-2026-26018 | HIGH | affected | gobinary | |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | github.com/coredns/coredns@v1.13.1 | CVE-2025-68151 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | google.golang.org/grpc@v1.75.1 | CVE-2026-33186 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcd | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcd | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcdctl | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcdctl | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-flannel:v0.28.2-build20260327 | false | RKE2 v1.32.13-rc4 | opt/bin/flanneld | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-flannel:v0.28.2-build20260327 | false | RKE2 v1.32.13-rc4 | opt/bin/flanneld | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | login_defs | login_defs@4.8.1-150600.17.9.1 | SUSE-RU-2026:1228-1 | HIGH | affected | sles | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | shadow | shadow@4.8.1-150600.17.9.1 | SUSE-RU-2026:1228-1 | HIGH | affected | sles | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | tar | tar@1.34-150000.3.34.1 | SUSE-SU-2026:1177-1 | HIGH | affected | sles | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubectl | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubectl | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | musl | musl@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | musl-utils | musl-utils@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | stdlib@v1.25.8 | CVE-2026-32282 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | usr/bin/helm | stdlib@v1.24.11 | CVE-2025-61726 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | usr/bin/helm | stdlib@v1.24.11 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | usr/bin/helm | stdlib@v1.24.11 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | usr/bin/helm | stdlib@v1.24.11 | CVE-2025-61730 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/klipper-lb:v0.4.15 | false | RKE2 v1.32.13-rc4 | libcrypto3 | libcrypto3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.15 | false | RKE2 v1.32.13-rc4 | libssl3 | libssl3@3.5.5-r0 | CVE-2026-28390 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.15 | false | RKE2 v1.32.13-rc4 | musl | musl@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/klipper-lb:v0.4.15 | false | RKE2 v1.32.13-rc4 | musl-utils | musl-utils@1.2.5-r21 | CVE-2026-40200 | HIGH | affected | alpine | |
| rancher/kube-webhook-certgen:v1.14.5-hardened1 | false | RKE2 v1.32.13-rc4 | kube-webhook-certgen | stdlib@v1.26.1 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/kube-webhook-certgen:v1.14.5-hardened1 | false | RKE2 v1.32.13-rc4 | kube-webhook-certgen | stdlib@v1.26.1 | CVE-2026-32282 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/kube-webhook-certgen:v1.14.5-hardened1 | false | RKE2 v1.32.13-rc4 | kube-webhook-certgen | stdlib@v1.26.1 | CVE-2026-33810 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/nginx-ingress-controller:v1.14.5-hardened1 | false | RKE2 v1.32.13-rc4 | curl | curl@8.14.1-160000.4.1 | SUSE-SU-2026:20918-1 | HIGH | affected | sles | |
| rancher/nginx-ingress-controller:v1.14.5-hardened1 | false | RKE2 v1.32.13-rc4 | libcurl-mini4 | libcurl-mini4@8.14.1-160000.4.1 | SUSE-SU-2026:20918-1 | HIGH | affected | sles | |
| rancher/nginx-ingress-controller:v1.14.5-hardened1 | false | RKE2 v1.32.13-rc4 | libexpat1 | libexpat1@2.7.1-160000.4.1 | SUSE-SU-2026:20985-1 | HIGH | affected | sles | |
| rancher/nginx-ingress-controller:v1.14.5-hardened1 | false | RKE2 v1.32.13-rc4 | libnghttp2-14 | libnghttp2-14@1.64.0-160000.2.2 | SUSE-SU-2026:20925-1 | HIGH | affected | sles | |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-27889 | HIGH | affected | gobinary | |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-29785 | HIGH | affected | gobinary | |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-33216 | HIGH | affected | gobinary | |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-33217 | HIGH | affected | gobinary | |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-33218 | HIGH | affected | gobinary | |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | github.com/nats-io/nats-server/v2@v2.12.2 | CVE-2026-33247 | HIGH | affected | gobinary | |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | stdlib@v1.25.7 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | stdlib@v1.25.7 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd | github.com/go-jose/go-jose/v4@v4.1.3 | CVE-2026-34986 | HIGH | affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd-shim-runc-v2 | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | github.com/docker/docker@v27.1.1+incompatible | CVE-2026-34040 | HIGH | affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | stdlib@v1.25.7 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | stdlib@v1.25.7 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/ctr | stdlib@v1.25.8 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubectl | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubectl | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | stdlib@v1.24.13 | CVE-2026-25679 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | stdlib@v1.24.13 | CVE-2026-32280 | HIGH | affected | gobinary | |
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | golang.org/x/net@v0.33.0 | CVE-2025-22870 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | golang.org/x/net@v0.33.0 | CVE-2025-22872 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | golang.org/x/oauth2@v0.24.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-addon-resizer:1.8.23-build20260206 | false | RKE2 v1.32.13-rc4 | pod_nanny | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | calicoctl | google.golang.org/grpc@v1.72.2 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | calicoctl | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | calicoctl | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | calicoctl | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | calicoctl | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | calicoctl | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | calicoctl | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | calicoctl | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bandwidth | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bandwidth | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bond | stdlib@v1.25.8 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bond | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bond | stdlib@v1.25.8 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bond | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bond | stdlib@v1.25.8 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bridge | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/bridge | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico | google.golang.org/grpc@v1.72.2 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico-ipam | google.golang.org/grpc@v1.72.2 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico-ipam | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico-ipam | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico-ipam | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico-ipam | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico-ipam | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico-ipam | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/calico-ipam | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/dhcp | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/dhcp | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/dummy | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/dummy | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/firewall | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/firewall | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/flannel | stdlib@v1.25.8 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/flannel | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/flannel | stdlib@v1.25.8 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/flannel | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/flannel | stdlib@v1.25.8 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/host-device | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/host-device | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/host-local | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/host-local | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/install | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/install | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/install | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/install | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/install | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/install | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/install | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/ipvlan | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/ipvlan | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/loopback | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/loopback | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/macvlan | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/macvlan | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/portmap | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/portmap | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/ptp | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/ptp | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/sbr | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/sbr | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/static | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/static | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/tap | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/tap | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/tuning | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/tuning | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/vlan | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/vlan | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/vrf | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | opt/cni/bin/vrf | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/calico-node | google.golang.org/grpc@v1.72.2 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/calico-node | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/calico-node | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/calico-node | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/calico-node | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/calico-node | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/calico-node | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/calico-node | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/check-status | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/check-status | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/check-status | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/check-status | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/check-status | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/check-status | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/check-status | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | go.opentelemetry.io/otel/sdk@v1.35.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | go.opentelemetry.io/otel/sdk@v1.35.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | google.golang.org/grpc@v1.72.2 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/bin/kube-controllers | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/local/bin/flexvol/flexvoldriver | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/local/bin/flexvol/flexvoldriver | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/local/bin/flexvol/flexvoldriver | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/local/bin/flexvol/flexvoldriver | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/local/bin/flexvol/flexvoldriver | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/local/bin/flexvol/flexvoldriver | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-calico:v3.31.4-build20260327 | false | RKE2 v1.32.13-rc4 | usr/local/bin/flexvol/flexvoldriver | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-cluster-autoscaler:v1.10.3-build20260206 | false | RKE2 v1.32.13-rc4 | cluster-proportional-autoscaler | golang.org/x/net@v0.36.0 | CVE-2025-22872 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-cluster-autoscaler:v1.10.3-build20260206 | false | RKE2 v1.32.13-rc4 | cluster-proportional-autoscaler | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-cluster-autoscaler:v1.10.3-build20260206 | false | RKE2 v1.32.13-rc4 | cluster-proportional-autoscaler | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-cluster-autoscaler:v1.10.3-build20260206 | false | RKE2 v1.32.13-rc4 | cluster-proportional-autoscaler | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-cluster-autoscaler:v1.10.3-build20260206 | false | RKE2 v1.32.13-rc4 | cluster-proportional-autoscaler | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-cluster-autoscaler:v1.10.3-build20260206 | false | RKE2 v1.32.13-rc4 | cluster-proportional-autoscaler | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-coredns:v1.14.2-build20260310 | false | RKE2 v1.32.13-rc4 | coredns | go.opentelemetry.io/otel/sdk@v1.40.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-coredns:v1.14.2-build20260310 | false | RKE2 v1.32.13-rc4 | coredns | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | github.com/quic-go/quic-go@v0.55.0 | CVE-2025-64702 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | go.opentelemetry.io/otel/sdk@v1.37.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | go.opentelemetry.io/otel/sdk@v1.37.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | golang.org/x/crypto@v0.43.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | golang.org/x/crypto@v0.43.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-dns-node-cache:1.26.7-build20260310 | false | RKE2 v1.32.13-rc4 | node-cache | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcd | go.opentelemetry.io/otel/sdk@v1.34.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcd | go.opentelemetry.io/otel/sdk@v1.34.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcd | google.golang.org/grpc@v1.71.1 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcd | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcd | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcdctl | google.golang.org/grpc@v1.71.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcdctl | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcdctl | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-etcd:v3.5.26-k3s1-build20260227 | false | RKE2 v1.32.13-rc4 | usr/local/bin/etcdctl | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-flannel:v0.28.2-build20260327 | false | RKE2 v1.32.13-rc4 | opt/bin/flanneld | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-flannel:v0.28.2-build20260327 | false | RKE2 v1.32.13-rc4 | opt/bin/flanneld | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | go.opentelemetry.io/otel/sdk@v1.35.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | go.opentelemetry.io/otel/sdk@v1.35.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | golang.org/x/crypto@v0.38.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | golang.org/x/crypto@v0.38.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | google.golang.org/grpc@v1.72.0 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-k8s-metrics-server:v0.8.1-build20260206 | false | RKE2 v1.32.13-rc4 | metrics-server | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | github.com/opencontainers/selinux@v1.11.1 | CVE-2025-52881 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | golang.org/x/crypto@v0.28.0 | CVE-2024-45337 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | golang.org/x/crypto@v0.28.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | golang.org/x/crypto@v0.28.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | golang.org/x/crypto@v0.28.0 | CVE-2025-58181 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | google.golang.org/grpc@v1.65.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | gopkg.in/square/go-jose.v2@v2.6.0 | CVE-2024-28180 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-apiserver | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | github.com/opencontainers/runc@v1.2.1 | CVE-2025-31133 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | github.com/opencontainers/runc@v1.2.1 | CVE-2025-52565 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | github.com/opencontainers/runc@v1.2.1 | CVE-2025-52881 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | github.com/opencontainers/selinux@v1.11.1 | CVE-2025-52881 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | golang.org/x/crypto@v0.28.0 | CVE-2024-45337 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | golang.org/x/crypto@v0.28.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | golang.org/x/crypto@v0.28.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | golang.org/x/crypto@v0.28.0 | CVE-2025-58181 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | google.golang.org/grpc@v1.65.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | gopkg.in/square/go-jose.v2@v2.6.0 | CVE-2024-28180 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-controller-manager | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | github.com/opencontainers/runc@v1.2.1 | CVE-2025-31133 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | github.com/opencontainers/runc@v1.2.1 | CVE-2025-52565 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | github.com/opencontainers/runc@v1.2.1 | CVE-2025-52881 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | golang.org/x/crypto@v0.28.0 | CVE-2024-45337 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | golang.org/x/crypto@v0.28.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | golang.org/x/crypto@v0.28.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | golang.org/x/crypto@v0.28.0 | CVE-2025-58181 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | google.golang.org/grpc@v1.65.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-proxy | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | golang.org/x/crypto@v0.28.0 | CVE-2024-45337 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | golang.org/x/crypto@v0.28.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | golang.org/x/crypto@v0.28.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | golang.org/x/crypto@v0.28.0 | CVE-2025-58181 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | google.golang.org/grpc@v1.65.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kube-scheduler | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubectl | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubectl | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubectl | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | github.com/opencontainers/runc@v1.2.1 | CVE-2025-31133 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | github.com/opencontainers/runc@v1.2.1 | CVE-2025-52565 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | github.com/opencontainers/runc@v1.2.1 | CVE-2025-52881 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | github.com/opencontainers/selinux@v1.11.1 | CVE-2025-52881 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful@v0.42.0 | CVE-2023-45142 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | golang.org/x/crypto@v0.28.0 | CVE-2024-45337 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | golang.org/x/crypto@v0.28.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | golang.org/x/crypto@v0.28.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | golang.org/x/crypto@v0.28.0 | CVE-2025-58181 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | google.golang.org/grpc@v1.65.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-kubernetes:v1.32.13-rke2r2-build20260401 | false | RKE2 v1.32.13-rc4 | usr/local/bin/kubelet | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | go.opentelemetry.io/otel/sdk@v1.34.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | go.opentelemetry.io/otel/sdk@v1.34.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | golang.org/x/crypto@v0.37.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | golang.org/x/crypto@v0.37.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/hardened-snapshot-controller:v8.4.0-build20260205 | false | RKE2 v1.32.13-rc4 | snapshot-controller | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.8 | CVE-2026-32288 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis | stdlib@v1.25.8 | CVE-2026-32289 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | usr/bin/helm | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | usr/bin/helm | stdlib@v1.24.11 | CVE-2025-68121 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | usr/bin/helm | stdlib@v1.24.11 | CVE-2025-61728 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/klipper-helm:v0.9.14-build20260309 | false | RKE2 v1.32.13-rc4 | usr/bin/helm | stdlib@v1.24.11 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | github.com/docker/cli@v28.3.2+incompatible | CVE-2025-15558 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | go.opentelemetry.io/otel/sdk@v1.38.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | go.opentelemetry.io/otel/sdk@v1.38.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | google.golang.org/grpc@v1.72.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | stdlib@v1.25.7 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-cloud-provider:v1.32.12-0.20260211145907-0dc662e80238-build20260211 | false | RKE2 v1.32.13-rc4 | usr/local/bin/rke2-cloud-provider | stdlib@v1.25.7 | CVE-2026-32288 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd | github.com/docker/cli@v29.1.5+incompatible | CVE-2025-15558 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd | github.com/docker/docker@v27.3.1+incompatible | CVE-2026-34040 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd | go.opentelemetry.io/otel/sdk@v1.38.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd | go.opentelemetry.io/otel/sdk@v1.38.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd | google.golang.org/grpc@v1.78.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd-shim-runc-v2 | google.golang.org/grpc@v1.78.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/containerd-shim-runc-v2 | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | github.com/buger/jsonparser@v1.1.1 | CVE-2026-32285 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | go.opentelemetry.io/otel/sdk@v1.32.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | go.opentelemetry.io/otel/sdk@v1.32.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | golang.org/x/net@v0.30.0 | CVE-2025-22872 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | google.golang.org/grpc@v1.68.1 | CVE-2026-33186 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | stdlib@v1.25.7 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | stdlib@v1.25.7 | CVE-2026-27142 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/crictl | stdlib@v1.25.7 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/ctr | google.golang.org/grpc@v1.78.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/ctr | stdlib@v1.25.8 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubectl | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubectl | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubectl | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | github.com/opencontainers/runc@v1.2.1 | CVE-2025-31133 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | github.com/opencontainers/runc@v1.2.1 | CVE-2025-52565 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | github.com/opencontainers/runc@v1.2.1 | CVE-2025-52881 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | github.com/opencontainers/selinux@v1.11.1 | CVE-2025-52881 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful@v0.42.0 | CVE-2023-45142 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-24051 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | go.opentelemetry.io/otel/sdk@v1.28.0 | CVE-2026-39883 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | golang.org/x/crypto@v0.28.0 | CVE-2024-45337 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | golang.org/x/crypto@v0.28.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | golang.org/x/crypto@v0.28.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | golang.org/x/crypto@v0.28.0 | CVE-2025-58181 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | golang.org/x/net@v0.30.0 | CVE-2025-22870 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | google.golang.org/grpc@v1.65.0 | CVE-2026-33186 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/kubelet | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/runc | stdlib@v1.24.13 | CVE-2026-25679 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/runc | stdlib@v1.24.13 | CVE-2026-32280 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/runc | stdlib@v1.24.13 | CVE-2026-32282 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/runc | stdlib@v1.24.13 | CVE-2026-27142 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/runc | stdlib@v1.24.13 | CVE-2026-32281 | none | not affected | vulnerable code not in execute path | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/runc | stdlib@v1.24.13 | CVE-2026-32288 | none | not affected | vulnerable code not present | gobinary |
| rancher/rke2-runtime:v1.32.13-rc4-rke2r2 | false | RKE2 v1.32.13-rc4 | bin/runc | stdlib@v1.24.13 | CVE-2026-32289 | none | not affected | vulnerable code not present | gobinary |