CVE-2025-62879 describes a vulnerability in the Rancher Backup Operator that causes S3 accessKey and secretKey tokens to be logged in the rancher-backup-operator pod's logs. This medium-severity vulnerability (CVSS 4.9) has a high confidentiality impact, allowing an attacker with high privileges to access sensitive S3 credentials. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.0.0, < 6.0.3CPE match | cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:* | ||
>= 7.0.0, < 7.0.5CPE match | cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:* | ||
>= 8.0.0, < 8.1.2CPE match | cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:* | ||
>= 9.0.0, < 9.0.1CPE match | cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:* | ||
>= 6.0.0, < 6.0.3CPE matchmatch criteria | cpe:2.3:a:suse:rancher_backup_and_restore_operator:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.