CVE-2026-44934CWE-215

Exposed tokens in SUSE Rancher AI Agent logs

High · published July 6, 2026

CVSS v4.0
7.0
EPSS
0%
Percentile
4.6
In the wild
Unconfirmed
What it is

A information disclosure when DEBUG loglevel is set in SUSE Rancher AI Agent 1.0 before 1.0.2 could leak API keys or LLM response text with potential sensitive data into logfiles, allowing local attackers to misuse respective gained data or credentials.

The record
Technical detail
CVSS v4.0
7.0 · HIGH
Vector
CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:H
EPSS
0.00152 · 4.6th percentile
Weakness
CWE-215 · Insertion of Sensitive Information Into Debugging Code
Published
2026-07-06T08:45Z
EPSS history
Timeline
  • 06 JUL 08:45Z
    Exposed tokens in SUSE Rancher AI Agent logs
    cvelistv5