Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CLEANSTART-2026-WK32717
  • CleanStart/spark-operator
During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between the initial handshake and the resumed handshake, the resumed handshake may succ... 25 Feb
  • Fix available
  • Severity - 9.8 (Critical)
GHSA-w4gw-w5jq-g9jh
  • Go/golang.org/x/net/html
golang.org/x/net/html has a Quadratic Parsing Complexity issue 12 Feb
  • Fix available
  • Severity - 5.3 (Medium)
DEBIAN-CVE-2025-47911
  • Debian:11/golang-golang-x-net
  • Debian:12/golang-golang-x-net
  • Debian:13/golang-golang-x-net
  • Debian:14/golang-golang-x-net
See record for full details 05 Feb
  • No fix available
  • Severity - 5.3 (Medium)
UBUNTU-CVE-2025-47911
  • Ubuntu:20.04:LTS/lxd
  • Ubuntu:25.10/golang-golang-x-net
  • Ubuntu:Pro:16.04:LTS/golang-golang-x-net-dev
  • Ubuntu:Pro:16.04:LTS/juju-core
  • Ubuntu:Pro:16.04:LTS/lxd
  • ... 5 more
See record for full details 05 Feb
  • No fix available
  • Severity - 5.3 (Medium)
GO-2026-4440
  • Go/golang.org/x/net
Quadratic parsing complexity in golang.org/x/net/html 05 Feb
  • Fix available
openSUSE-SU-2025:15779-1
  • openSUSE:Tumbleweed/helm3
helm3-3.19.2-1.1 on GA media 28 Nov 2025
  • Fix available