CVE-2026-44947
Description
A missing clean-up in the legacy Project Role Template Binding (PRTB) reconciler in Rancher versions 2.13.0 up to 2.13.7 and 2.14.0 up to 2.14.3 allowed users to retain unauthorized Pod Security Admission (PSA) permissions after an administrator removes those permissions from a RoleTemplate.
Is your site exposed to CVE-2026-44947?
Run a free security scan — no signup, results in seconds.
EPSS — Exploit Prediction
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
Weakness Type (CWE)
References
Frequently Asked Questions
What is CVE-2026-44947? +
How do I check if I'm vulnerable to CVE-2026-44947? +
Related Vulnerabilities
When oxenstored is tearing a domain down, the node data is cleaned up but the usage counts are leaked. When …
Any unauthenticated attacker can bypass the localhost restrictions posed by the application and utilize this to create arbitrary packages
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.28.1 and prior permit a user to list and …
In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content …
SystemUI has an incorrect component protection setting, which allows access to specific information.
Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Insecure handling of …