Helm vulnerable to Code Injection through malicious chart.yaml content in helm.sh/helm
{ "review_status": "REVIEWED", "url": "https://pkg.go.dev/vuln/GO-2025-3802" }
{ "imports": [ { "path": "helm.sh/helm/v3/pkg/downloader", "symbols": [ "Manager.Build", "Manager.Update", "writeLock" ] } ] }