Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CLEANSTART-2026-SF92168
  • CleanStart/go1.27
Downloading and building modules with malicious version strings can cause local code execution 1 hour ago
  • Fix available
  • Severity - 7.0 (High)
CLEANSTART-2026-ZQ25386
  • CleanStart/coredns
Downloading and building modules with malicious version strings can cause local code execution 5 days ago
  • Fix available
  • Severity - 7.0 (High)
CLEANSTART-2026-GI62956
  • CleanStart/aws-eks-pod-identity-agent
  • CleanStart/aws-eks-pod-identity-agent-fips
  • CleanStart/aws-flb-cloudwatch
  • CleanStart/aws-flb-firehose
  • CleanStart/aws-flb-kinesis
  • ... 68 more
Security fix for CVE-2025-68119 applied in: aws-eks-pod-identity-agent 0.1.36-r0, aws-eks-pod-identity-agent-fips 0.1.36-r0, aws-flb-cloudwatch 1.9.4-r0, aws-flb-firehose 1.7.2-r0, aws-flb-kinesis 1.10.3-r0, cert-manager-fips 1.17.4-r1, certificate-transparency-trillian-ctserver 1.3.2-r0, certificate-transparency-trillian-ctserver-fips 1.3.2-r0, cilium 1.18.5-r0, cloudnative-pg-fips 1.24.4-r1, cloudnative-pg-fips 1.25.4-r1, cni-plugins 1.9.0-r0, crossplane-provider-aws 2.3.0-r0, descheduler 0.34.0-r0, dynamic-localpv-provisioner 4.4.0-r1, eks-distro-kube-apiserver-fips 1.34.2-r0, envoy-ratelimit 0.0.0_git20251231-r0, external-secrets 0.20.4-r0, external-secrets-fips 0.17.0-r2, external-secrets-fips 0.20.4-r2, external-secrets-fips 1.2.0-r0, flux-image-automation-controller-fips 4.0.1-r0, git-sync 4.5.1-r1, gitlab-pages 18.7.1-r0, gitlab-pages-fips 18.7.1-r0, gitness 3.3.0-r1, go-fips-1.25 1.25.5-r0, go1.26 1.25.5-r1, gops 0.3.28-r0, helm 4.0.1-r0, helm-operator-fips 1.41.1-r2, hubble-ui 0.13.3-r0, hubble-ui-fips 0.13.3-r0, ip-masq-agent 2.12.6-r1, k8ssandra-client-fips 0.5.0-r6, k8ssandra-client-fips 0.6.4-r5, k8ssandra-client-fips 0.7.0-r3, k8ssandra-operator-fips 1.29.0-r1, kapp-controller-fips 0.59.0-r2, kserve 0.16.0-r0, kubernetes 1.35.0-r0, kubernetes-csi-external-attacher 4.10.0-r0, kubernetes-csi-external-attacher-fips 4.10.0-r0, kubernetes-csi-external-resizer 2.0.0-r0, kubernetes-dashboard-web 1.7.0-r0, kubernetes-ingress-defaultbackend-fips 1.37.5-r0, kubernetes-replicator-fips 2.12.2-r0, kubescape 3.0.47-r0, kured 1.20.0-r0, kyverno-fips 1.13.6-r9, kyverno-fips 1.16.1-r2, local-static-provisioner 2.8.0-r0, metallb-fips 0.15.3-r0, minio-operator 7.1.1-r3, minio-operator-fips 6.0.4-r8, minio-operator-fips 7.1.1-r8, nginx-prometheus-exporter-fips 1.5.1-r1, nri-kubernetes 3.51.2-r0, opentofu-fips 1.7.10-r1, opentofu-fips 1.8.11-r1, percona-xtradb-cluster-operator 1.18.0-r1, percona-xtradb-cluster-operator-fips 1.18.0-r1, prometheus-operator 0.87.1-r0, prometheus-redis-exporter-fips 1.77.0-r2, prometheus-redis-exporter-fips 1.78.0-r2, prometheus-redis-exporter-fips 1.79.0-r2, prometheus-redis-exporter-fips 1.80.0-r0, prometheus-redis-exporter-fips 1.80.1-r1, prometheus-statsd-exporter 0.28.0-r0, promxy 0.0.93-r1, rabbitmq-cluster-operator 2.18.0-r0, rabbitmq-messaging-topology-operator 1.16.0-r0, sealed-secrets 0.33.1-r0, sealed-secrets 0.34.0-r0, smarter-device-manager-fips 1.20.12-r0, spark-operator 2.2.1-r0, stakater-reloader-fips 1.2.1-r3, tekton-pipelines 1.5.0-r1, tempo 2.9.0-r0, terragrunt-fips 0.94.0-r0, terragrunt-fips 0.95.1-r0, timoni 0.25.2-r0, trino 479-r0, velero-fips 1.17.2-r0, vertical-pod-autoscaler 1.5.1-r1, wave-fips 0.10.0-r1, zot 2.1.13-r0 18 Sep
  • Fix available
CGA-x587-f54p-mxgh
  • Chainguard/helm-3
  • Wolfi/helm-3
See record for full details 15 Sep
  • Fix available
  • Severity - 7.0 (High)
ROOT-OS-DEBIAN-13-CVE-2025-68119
  • Root:Debian:13/golang-1.24
  • Root:Debian:13/rootio-golang-1.24
CVE-2025-68119 in golang-1.24 - Patched by Root 24 Aug
  • Fix available
openSUSE-SU-2026:21483-1
  • openSUSE:Leap 16.0/govulncheck-vulndb
Security update for govulncheck-vulndb 30 Jul
  • Fix available
RHSA-2026:7385
  • Red Hat:hummingbird:1/golang1.25
  • Red Hat:hummingbird:1/golang1.25-docs
Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update 15 May
  • Fix available
  • Severity - 8.8 (High)
RHSA-2026:7291
  • Red Hat:hummingbird:1/golang1.26
  • Red Hat:hummingbird:1/golang1.26-docs
Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update 14 May
  • Fix available
  • Severity - 8.8 (High)
openSUSE-SU-2026:20619-1
  • openSUSE:Leap 16.0/coredns
Security update for coredns 23 Apr
  • Fix available
OESA-2026-1702
  • openEuler:24.03-LTS/golang
golang security update 20 Mar
  • Fix available
  • Severity - 10.0 (Critical)
OESA-2026-1703
  • openEuler:24.03-LTS-SP1/golang
golang security update 20 Mar
  • Fix available
  • Severity - 10.0 (Critical)
OESA-2026-1698
  • openEuler:24.03-LTS-SP2/golang
golang security update 20 Mar
  • Fix available
  • Severity - 10.0 (Critical)
OESA-2026-1699
  • openEuler:24.03-LTS-SP3/golang
golang security update 20 Mar
  • Fix available
  • Severity - 10.0 (Critical)
OESA-2026-1700
  • openEuler:20.03-LTS-SP4/golang
golang security update 20 Mar
  • Fix available
  • Severity - 10.0 (Critical)
OESA-2026-1701
  • openEuler:22.03-LTS-SP4/golang
golang security update 20 Mar
  • Fix available
  • Severity - 10.0 (Critical)
MINI-xrx2-3pgq-fmx4
  • MinimOS/gitaly-config-18.3
  • MinimOS/gitlab-base-18.3
  • MinimOS/gitlab-certificates-18.3
  • MinimOS/gitlab-cfssl-self-sign-scripts-18.3
  • MinimOS/gitlab-cng-18.3
  • ... 11 more
See record for full details 04 Mar
  • No fix available