Vulnerability Description
A missing clean-up in the legacy Project Role Template Binding (PRTB) reconciler in Rancher versions 2.13.0 up to 2.13.7 and 2.14.0 up to 2.14.3 allowed users to retain unauthorized Pod Security Admission (PSA) permissions after an administrator removes those permissions from a RoleTemplate.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-44947?
CVE-2026-44947 is a documented vulnerability. A missing clean-up in the legacy Project Role Template Binding (PRTB) reconciler in Rancher versions 2.13.0 up to 2.13.7 and 2.14.0 up to 2.14.3 allowed users to retain unauthorized Pod Security Adm...
How severe is CVE-2026-44947?
CVSS scoring is not yet available for CVE-2026-44947. Check NVD for updates.
Is there a patch for CVE-2026-44947?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.