Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CLEANSTART-2026-RM75636
  • CleanStart/consul
When returning errors, functions in the net/textproto package would include its input as part of the error 3 days ago
  • Fix available
  • Severity - 5.3 (Medium)
CLEANSTART-2026-HI26609
  • CleanStart/cri-tools
When returning errors, functions in the net/textproto package would include its input as part of the error 4 days ago
  • Fix available
  • Severity - 5.3 (Medium)
CLEANSTART-2026-LG89593
  • CleanStart/cri-tools
When returning errors, functions in the net/textproto package would include its input as part of the error 4 days ago
  • Fix available
  • Severity - 5.3 (Medium)
CLEANSTART-2026-VF61334
  • CleanStart/crane
When returning errors, functions in the net/textproto package would include its input as part of the error 4 days ago
  • Fix available
  • Severity - 5.3 (Medium)
CLEANSTART-2026-BX08713
  • CleanStart/minio-operator
When returning errors, functions in the net/textproto package would include its input as part of the error 5 days ago
  • Fix available
  • Severity - 9.8 (Critical)
CGA-9c2h-8q67-mrwp
  • Chainguard/nemo-rl-cuda-13.0-mooncake
See record for full details 6 days ago
  • No fix available
CLEANSTART-2026-HE08866
  • CleanStart/loki
When returning errors, functions in the net/textproto package would include its input as part of the error 26 Sep
  • Fix available
  • Severity - 9.8 (Critical)
OESA-2026-4068
  • openEuler:24.03-LTS-SP4/git-lfs
git-lfs security update 25 Sep
  • Fix available
  • Severity - 10.0 (Critical)
OESA-2026-3879
  • openEuler:24.03-LTS-SP1/git-lfs
git-lfs security update 20 Sep
  • Fix available
  • Severity - 10.0 (Critical)
OESA-2026-3880
  • openEuler:24.03-LTS-SP3/git-lfs
git-lfs security update 20 Sep
  • Fix available
  • Severity - 10.0 (Critical)
CLEANSTART-2026-YY17130
  • CleanStart/apache-nifi
  • CleanStart/apko
  • CleanStart/argo-cd
  • CleanStart/argo-workflows
  • CleanStart/aws-eks-pod-identity-agent
  • ... 74 more
Security fix for CVE-2026-42507 applied in: apache-nifi 2.10.0-r4, apko 1.2.2-r2, argo-cd 3.2.7-r4, argo-cd 3.3.5-r3, argo-workflows 4.0.5-r0, aws-eks-pod-identity-agent 0.1.36-r0, aws-eks-pod-identity-agent-fips 0.1.36-r0, aws-load-balancer-controller 3.2.0-r0, aws-network-policy-agent 1.3.2-r1, aws-network-policy-agent-fips 1.3.2-r0, cadvisor 0.57.0-r0, calico 3.30.7-r3, cert-manager 1.17.4-r2, cert-manager 1.18.6-r1, cert-manager 1.20.0-r0, crossplane-provider-keycloak-fips 2.22.1-r1, dex 2.43.1-r5, dex 2.44.0-r4, dex 2.45.1-r4, elastic-beats 8.19.15-r6, elastic-beats 9.2.8-r2, elastic-beats-fips 9.2.8-r0, flux-notification-controller-fips 1.5.0-r0, go-discover 0_git20250325-r1, gomplate 4.3.3-r1, gostatsd 28.3.0-r2, gotenberg 8.31.0-r0, gotenberg 8.32.0-r0, helm 4.0.5-r2, helm-operator 1.42.2-r1, ingress-nginx-controller 1.14.5-r1, ingress-nginx-controller 1.15.1-r2, istio 1.28.5-r4, istio 1.29.2-r2, k8ssandra-operator 1.26.0-r0, kafka 4.3.0-r0, kube-state-metrics 2.15.0-r3, kube-vip 1.1.2-r2, kubernetes 1.34.1-r6, kubernetes 1.36.1-r1, kubernetes-csi-driver-nfs-fips 4.13.0-r3, kubernetes-csi-external-resizer-fips 2.1.0-r1, kubernetes-dns-node-cache 1.25.0-r5, kubewatch 2.12.0-r2, kustomize 5.7.1-r4, kustomize-fips 5.8.1-r0, kyverno 1.18.1-r0, kyverno 1.18.1-r1, libnvidia-container 1.19.0-r1, memcached-exporter 0.16.0-r1, metacontroller 4.12.13-r1, metacontroller 4.13.1-r1, metacontroller 4.14.0-r1, metacontroller 4.15.0-r1, minio 0.20260330.001845-r1, minio-operator 7.1.1-r5, mockgen 0.6.0-r1, mongodb 8.0.20-r2, mongodb 8.2.6-r2, mongodb 8.3.2-r1, mountpoint-s3-csi-driver 2.3.0-r1, nvidia-container-toolkit 1.18.2-r1, nvidia-container-toolkit 1.19.0-r1, ollama 0.20.3-r4, ollama-fips 0.18.3-r2, ollama-fips 0.21.0-r3, opentelemetry-collector-contrib 0.150.0-r1, opentofu-fips 1.12.1-r0, paranoia 0.5.0-r1, pmm 3.5.0-r0, policy-controller-fips 0.15.1-r1, prometheus-blackbox-exporter 0.28.0-r2, prometheus-mysqld-exporter 0.15.0-r4, prometheus-node-exporter 1.11.0-r0, prometheus-node-exporter-fips 1.11.0-r0, prometheus-operator 0.69.1-r3, prometheus-operator 0.88.1-r1, prometheus-operator 0.89.0-r2, prometheus-operator 0.90.1-r1, prometheus-operator 0.91.0-r1, promxy-fips 0.0.93-r1, rabbitmq-cluster-operator 2.18.0-r0, rabbitmq-messaging-topology-operator 1.16.0-r0, rabbitmq-messaging-topology-operator 1.19.2-r0, runc 1.4.2-r1, sealed-secrets 0.34.0-r0, sealed-secrets 0.37.0-r0, spire-server 1.14.5-r1, step-issuer 0.10.2-r2, step-issuer 0.9.11-r1, temporal 1.5.1-r0, temporal-server 1.31.0.153.1-r0, tigera-operator-fips 1.40.13-r1, trino 480-r2, trust-manager 0.22.1-r2, vault 1.20.4-r6, vault 1.21.4-r6, vault-csi-provider 1.7.0-r0, velero 1.18.1-r0, velero-plugin-for-aws 1.12.2-r6, velero-plugin-for-csi 0.7.1-r3, victoriametrics-operator-fips 0.68.5-r0, victoriametrics-vmauth 1.138.0-r0, wait-for-port 1.0.10-r5, whereabouts 0.9.2-r2 18 Sep
  • Fix available
CGA-2xqf-8r47-488c
  • Chainguard/rancher-agent-2.13
  • Wolfi/rancher-agent-2.13
See record for full details 15 Sep
  • Fix available
CGA-fjx3-hr49-pgjm
  • Chainguard/calico-goldmane-3.31
  • Wolfi/calico-goldmane-3.31
See record for full details 15 Sep
  • Fix available
CGA-4qfq-9h2m-33pv
  • Chainguard/calico-goldmane-3.31
  • Wolfi/calico-goldmane-3.31
See record for full details 15 Sep
  • Fix available
CGA-vw52-77g5-hh8c
  • Chainguard/calico-goldmane-3.31
  • Wolfi/calico-goldmane-3.31
See record for full details 15 Sep
  • Fix available
CGA-8pvc-qm78-4hq9
  • Chainguard/kyverno-1.17
  • Wolfi/kyverno-1.17
See record for full details 15 Sep
  • No fix available