SUSE Rancher - RKE2 v1.36.1-rc2 version - CVE Scans - 2026-05-16

How to use this page

Search:

Image Mirrored Release Binary/Package Dependency Vulnerability ID (CVE) Severity Status Justification (for status not affected) Type (language or OS)
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-apiserver stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-apiserver stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-apiserver stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-apiserver stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-controller-manager stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-controller-manager stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-controller-manager stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-controller-manager stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-proxy stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-proxy stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-proxy stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-proxy stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-scheduler stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-scheduler stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-scheduler stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-scheduler stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubectl stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubectl stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubectl stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubectl stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubelet stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubelet stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubelet stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubelet stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.36.0-rc2.0.20260427154526-d239025e2a23-build20260429 false RKE2 v1.36.1-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.26.2 CVE-2026-33811 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.36.0-rc2.0.20260427154526-d239025e2a23-build20260429 false RKE2 v1.36.1-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.36.0-rc2.0.20260427154526-d239025e2a23-build20260429 false RKE2 v1.36.1-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.36.0-rc2.0.20260427154526-d239025e2a23-build20260429 false RKE2 v1.36.1-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/rke2-cloud-provider:v1.36.0-rc2.0.20260427154526-d239025e2a23-build20260429 false RKE2 v1.36.1-rc2 usr/local/bin/rke2-cloud-provider stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubectl stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubectl stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubectl stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubectl stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubelet stdlib@v1.26.2 CVE-2026-33814 HIGH affected gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubelet stdlib@v1.26.2 CVE-2026-39820 HIGH affected gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubelet stdlib@v1.26.2 CVE-2026-39836 HIGH affected gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubelet stdlib@v1.26.2 CVE-2026-42499 HIGH affected gobinary
rancher/hardened-addon-resizer:1.8.23-build20260511 false RKE2 v1.36.1-rc2 pod_nanny golang.org/x/oauth2@v0.24.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/hardened-cluster-autoscaler:v1.10.3-build20260511 false RKE2 v1.36.1-rc2 cluster-proportional-autoscaler golang.org/x/oauth2@v0.23.0 CVE-2025-22868 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/etcd go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/etcd go.opentelemetry.io/otel/sdk@v1.34.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/etcd google.golang.org/grpc@v1.71.1 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/hardened-etcd:v3.6.7-k3s1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/etcdctl google.golang.org/grpc@v1.71.1 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-apiserver go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-apiserver stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-controller-manager go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-controller-manager stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-proxy go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-proxy stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-scheduler go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kube-scheduler stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubectl stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubelet go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/hardened-kubernetes:v1.36.1-rke2r1-build20260512 false RKE2 v1.36.1-rc2 usr/local/bin/kubelet stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.10.0-build20260513 false RKE2 v1.36.1-rc2 home/klipper-helm/.local/share/helm/plugins/helm-mapkubeapis/bin/mapkubeapis google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.10.0-build20260513 false RKE2 v1.36.1-rc2 home/klipper-helm/.local/share/helm/plugins/helm-set-status/helm-set-status google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/klipper-helm:v0.10.0-build20260513 false RKE2 v1.36.1-rc2 usr/bin/helm google.golang.org/grpc@v1.72.2 CVE-2026-33186 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/containerd github.com/docker/cli@v29.1.5+incompatible CVE-2025-15558 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/containerd github.com/docker/docker@v27.3.1+incompatible CVE-2026-34040 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/containerd github.com/go-jose/go-jose/v4@v4.1.3 CVE-2026-34986 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/containerd go.opentelemetry.io/otel@v1.38.0 CVE-2026-29181 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/containerd go.opentelemetry.io/otel/sdk@v1.38.0 CVE-2026-24051 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/containerd go.opentelemetry.io/otel/sdk@v1.38.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/containerd google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/containerd-shim-runc-v2 google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/crictl github.com/docker/docker@v27.1.1+incompatible CVE-2026-34040 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/crictl go.opentelemetry.io/otel/sdk@v1.42.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/ctr go.opentelemetry.io/otel@v1.38.0 CVE-2026-29181 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/ctr google.golang.org/grpc@v1.78.0 CVE-2026-33186 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubectl stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubelet go.opentelemetry.io/otel/sdk@v1.40.0 CVE-2026-39883 none not affected vulnerable code not present gobinary
rancher/rke2-runtime:v1.36.1-rc2-rke2r1 false RKE2 v1.36.1-rc2 bin/kubelet stdlib@v1.26.2 CVE-2026-33811 none not affected vulnerable code not in execute path gobinary