---
id: CVE-2024-58269
title: |-
  A vulnerability has been identified in Rancher Manager, where sensitive 
  information, including secret data, cluster import URLs, and 
  registration tokens, is exposed to any entity with access to Rancher 
  audit logs.
summary: |-
  A vulnerability has been identified in Rancher Manager, where sensitive 
  information, including secret data, cluster import URLs, and 
  registration tokens, is exposed to any entity with access to Rancher 
  audit logs.
severity: medium
cvss: 4.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N'
cwe:
  - CWE-532
published: '2025-10-29'
updated: '2026-10-02'
sourceUpdated: '2026-10-02T00:10:00.180'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2024-58269'
references:
  - url: 'https://bugzilla.suse.com/show_bug.cgi?id=CVE-2024-58269'
    label: meissner@suse.de
  - url: 'https://github.com/rancher/rancher/security/advisories/GHSA-mw39-9qc2-f7mg'
    label: meissner@suse.de
tags:
  - nvd
epss: 0.00289
epssPercentile: 0.19411
ingestedAt: '2026-10-02T01:05:54.703Z'
---

## Overview

A vulnerability has been identified in Rancher Manager, where sensitive 
information, including secret data, cluster import URLs, and 
registration tokens, is exposed to any entity with access to Rancher 
audit logs.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
