Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CGA-p4vc-vvcr-p8w4
  • Chainguard/open-webui
  • Wolfi/open-webui
See record for full details 2 hours ago
  • Fix available
CGA-vhgq-r233-pw87
  • Chainguard/gemini-cli
See record for full details 2 hours ago
  • Fix available
CGA-4rwm-wmf3-xv3m
  • Chainguard/gemini-cli
See record for full details 2 hours ago
  • Fix available
CGA-f77h-3r3h-h42j
  • Chainguard/cg
  • Chainguard/chainctl
  • Chainguard/chainctl-fips
  • Chainguard/gatus
  • Chainguard/gitea
  • ... 14 more
See record for full details 3 hours ago
  • Fix available
MAL-2026-2305
  • PyPI/databaseroboats
Malicious code in databaseroboats (PyPI) 5 hours ago
  • No fix available
CGA-58w2-xf63-4g3w
  • Chainguard/ffmpeg-8.0
  • Wolfi/ffmpeg-8.0
See record for full details 5 hours ago
  • Fix available
CGA-75vr-gg7v-gj3v
  • Chainguard/py3.10-vllm-cuda-12.4
  • Chainguard/py3.12-vllm-cuda-12.4
See record for full details 5 hours ago
  • Fix available
GHSA-4f9r-x588-pp2h
  • Go/github.com/fleetdm/fleet/v4
Fleet's user account creation via invite does not enforce invited email address 6 hours ago
  • Fix available
  • Severity - 4.9 (Medium)
GHSA-w254-4hp5-7cvv
  • Go/github.com/fleetdm/fleet/v4
Fleet vulnerable to Denial of Service via unhandled gRPC log type in launcher endpoint 6 hours ago
  • Fix available
  • Severity - 6.6 (Medium)
CGA-c4xq-whv6-wpv8
  • Chainguard/prism
  • Chainguard/tileserver-gl-fips
  • Wolfi/prism
See record for full details 6 hours ago
  • Fix available
CGA-c25f-88w6-vhfv
  • Chainguard/prism
  • Chainguard/tileserver-gl-fips
  • Wolfi/prism
See record for full details 6 hours ago
  • Fix available
CGA-cfx6-h9x2-ppm6
  • Chainguard/prism
  • Chainguard/tileserver-gl-fips
  • Wolfi/prism
See record for full details 6 hours ago
  • Fix available
GHSA-9p23-p2m4-2r4m
  • Go/github.com/fleetdm/fleet/v4
Fleet vulnerable to SQL Injection in MDM bootstrap package by authenticated team or global admin 6 hours ago
  • Fix available
  • Severity - 6.3 (Medium)
GHSA-v895-833r-8c45
  • Go/github.com/fleetdm/fleet/v4
Fleet's Apple MDM profile delivery has second-order SQL Injection that can compromise the database 6 hours ago
  • Fix available
  • Severity - 6.2 (Medium)
CGA-jvp9-2wq9-5g82
  • Chainguard/prism
  • Chainguard/tileserver-gl-fips
  • Wolfi/prism
See record for full details 6 hours ago
  • Fix available
GHSA-955r-262c-33jc
  • PyPI/telnyx
Telnyx has malicious code in PyPI versions 4.87.1 and 4.87.2 6 hours ago
  • No fix available