SUSE Rancher - RKE2 v1.34.8-rc2 version - CVE Scans - 2026-05-16

How to use this page

Search:

Image Mirrored Release Binary/Package Dependency Vulnerability ID (CVE) Severity Status Justification (for status not affected) Type (language or OS)
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver stdlib@v1.25.9 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver stdlib@v1.25.9 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager stdlib@v1.25.9 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager stdlib@v1.25.9 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-proxy stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-proxy stdlib@v1.25.9 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-proxy stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-proxy stdlib@v1.25.9 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-scheduler stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-scheduler stdlib@v1.25.9 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-scheduler stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-scheduler stdlib@v1.25.9 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubectl stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubectl stdlib@v1.25.9 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubectl stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubectl stdlib@v1.25.9 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet stdlib@v1.25.9 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet stdlib@v1.25.9 CVE-2026-42499 HIGH affected gobinary
rancher/kube-webhook-certgen:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 kube-webhook-certgen stdlib@v1.26.2 CVE-2026-33811 HIGH affected gobinary
rancher/kube-webhook-certgen:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 kube-webhook-certgen stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/kube-webhook-certgen:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 kube-webhook-certgen stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/kube-webhook-certgen:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 kube-webhook-certgen stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/kube-webhook-certgen:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 kube-webhook-certgen stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 libcap-progs libcap-progs@2.73-160000.2.2 SUSE-SU-2026:21373-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 libcap2 libcap2@2.73-160000.2.2 SUSE-SU-2026:21373-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 libopenssl3 libopenssl3@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 libpython3_13-1_0 libpython3_13-1_0@3.13.12-160000.1.1 SUSE-SU-2026:21178-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 openssl-3 openssl-3@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 python313-base python313-base@3.13.12-160000.1.1 SUSE-SU-2026:21178-1 HIGH affected sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 dbg stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 dbg stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 nginx-ingress-controller stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 nginx-ingress-controller stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 wait-shutdown stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 wait-shutdown stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.34.7-0.20260415182025-e7567db58dd7-build20260416 false RKE2 v1.34.8-rc2 usr/local/bin/rke2-cloud-provider go.opentelemetry.io/otel@v1.40.0 CVE-2026-29181 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.34.7-0.20260415182025-e7567db58dd7-build20260416 false RKE2 v1.34.8-rc2 usr/local/bin/rke2-cloud-provider go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.34.7-0.20260415182025-e7567db58dd7-build20260416 false RKE2 v1.34.8-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.34.7-0.20260415182025-e7567db58dd7-build20260416 false RKE2 v1.34.8-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubectl stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubectl stdlib@v1.25.9 CVE-2026-39820 HIGH affected gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubectl stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubectl stdlib@v1.25.9 CVE-2026-42499 HIGH affected gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet stdlib@v1.25.9 CVE-2026-33814 HIGH affected gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet stdlib@v1.25.9 CVE-2026-39820 HIGH affected gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet stdlib@v1.25.9 CVE-2026-39836 HIGH affected gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet stdlib@v1.25.9 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-addon-resizer:1.8.23-build20260511 false RKE2 v1.34.8-rc2 pod_nanny golang.org/x/oauth2@v0.24.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/hardened-cluster-autoscaler:v1.10.3-build20260511 false RKE2 v1.34.8-rc2 cluster-proportional-autoscaler golang.org/x/oauth2@v0.23.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/etcd go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/etcd go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/etcd google.golang.org/grpc@v1.71.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/etcdctl google.golang.org/grpc@v1.71.1 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver github.com/opencontainers/selinux@v1.11.1 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver google.golang.org/grpc@v1.72.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-apiserver stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager github.com/opencontainers/selinux@v1.11.1 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager google.golang.org/grpc@v1.72.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-controller-manager stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-proxy go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-proxy go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-proxy google.golang.org/grpc@v1.72.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-proxy stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-scheduler go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-scheduler go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-scheduler google.golang.org/grpc@v1.72.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kube-scheduler stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubectl stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet github.com/opencontainers/selinux@v1.11.1 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet google.golang.org/grpc@v1.72.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.34.8-rke2r1-build20260512 false RKE2 v1.34.8-rc2 usr/local/bin/kubelet stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.10.0-build20260513 false RKE2 v1.34.8-rc2 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.10.0-build20260513 false RKE2 v1.34.8-rc2 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.10.0-build20260513 false RKE2 v1.34.8-rc2 usr/bin/helm google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 libopenssl-3-devel libopenssl-3-devel@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 none not affected vulnerable code not in execute path sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 libopenssl-3-fips-provider libopenssl-3-fips-provider@3.5.0-160000.6.1 SUSE-SU-2026:21186-1 none not affected vulnerable code not in execute path sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 libsystemd0 libsystemd0@257.10-160000.1.1 SUSE-SU-2026:21144-1 none not affected vulnerable code not in execute path sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 libudev1 libudev1@257.10-160000.1.1 SUSE-SU-2026:21144-1 none not affected vulnerable code not in execute path sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 tar tar@1.35-160000.2.2 SUSE-SU-2026:21143-1 none not affected vulnerable code not in execute path sles
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 dbg stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 dbg stdlib@v1.26.2 CVE-2026-39820 none not affected vulnerable code not present gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 dbg stdlib@v1.26.2 CVE-2026-42499 none not affected vulnerable code not present gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 nginx-ingress-controller stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 nginx-ingress-controller stdlib@v1.26.2 CVE-2026-39820 none not affected vulnerable code not present gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 nginx-ingress-controller stdlib@v1.26.2 CVE-2026-42499 none not affected vulnerable code not present gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 wait-shutdown stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 wait-shutdown stdlib@v1.26.2 CVE-2026-39820 none not affected vulnerable code not present gobinary
rancher/nginx-ingress-controller:v1.14.5-hardened2 false RKE2 v1.34.8-rc2 wait-shutdown stdlib@v1.26.2 CVE-2026-42499 none not affected vulnerable code not present gobinary
rancher/rke2-cloud-provider:v1.34.7-0.20260415182025-e7567db58dd7-build20260416 false RKE2 v1.34.8-rc2 usr/local/bin/rke2-cloud-provider google.golang.org/grpc@v1.72.1 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/rke2-cloud-provider:v1.34.7-0.20260415182025-e7567db58dd7-build20260416 false RKE2 v1.34.8-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/rke2-cloud-provider:v1.34.7-0.20260415182025-e7567db58dd7-build20260416 false RKE2 v1.34.8-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.25.9 CVE-2026-39820 none not affected vulnerable code not in execute path gobinary
rancher/rke2-cloud-provider:v1.34.7-0.20260415182025-e7567db58dd7-build20260416 false RKE2 v1.34.8-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.25.9 CVE-2026-42499 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/containerd github.com/docker/cli@v29.1.5+incompatible CVE-2025-15558 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/containerd github.com/docker/docker@v27.3.1+incompatible CVE-2026-34040 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/containerd github.com/go-jose/go-jose/v4@v4.1.3 CVE-2026-34986 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/containerd go.opentelemetry.io/otel@v1.38.0 CVE-2026-29181 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/containerd go.opentelemetry.io/otel/sdk@v1.38.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/containerd go.opentelemetry.io/otel/sdk@v1.38.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/containerd google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/containerd-shim-runc-v2 google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/crictl github.com/buger/jsonparser@v1.1.1 CVE-2026-32285 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/crictl github.com/docker/docker@v27.1.1+incompatible CVE-2026-34040 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/crictl go.opentelemetry.io/otel/sdk@v1.37.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/crictl go.opentelemetry.io/otel/sdk@v1.37.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/crictl google.golang.org/grpc@v1.75.0 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/ctr go.opentelemetry.io/otel@v1.38.0 CVE-2026-29181 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/ctr google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubectl stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet github.com/opencontainers/selinux@v1.11.1 CVE-2025-52881 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet google.golang.org/grpc@v1.72.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.34.8-rc2-rke2r1 false RKE2 v1.34.8-rc2 bin/kubelet stdlib@v1.25.9 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary