Google Security Advisories · December 2025 — Google Security Advisories
598 advisories 440 CVEs 19 EXPLOITED

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2025-12. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 19 are already weaponised in the wild.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

SUSE-SU-2025:4457-1

Open SourceExploitedCISA KEV listedCRITICAL2025-12-18

Security update 5.0.6 for Multi-Linux Manager Client Tools

Affected products

ProductStatusVendorPackageEcosystem
golang-github-prometheus-alertmanager affected SUSE:Manager Client Tools 12 golang-github-prometheus-alertmanager
grafana affected SUSE:Manager Client Tools 12 grafana
mgr-push affected SUSE:Manager Client Tools 12 mgr-push
rhnlib affected SUSE:Manager Client Tools 12 rhnlib
spacecmd affected SUSE:Manager Client Tools 12 spacecmd
supportutils-plugin-susemanager-client affected SUSE:Manager Client Tools 12 supportutils-plugin-susemanager-client
uyuni-tools affected SUSE:Manager Client Tools 12 uyuni-tools
Upstream advisory

openSUSE-SU-2025:20178-1

Open SourceExploitedCISA KEV listedCRITICAL2025-12-30

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Leap 16.0 chromium
Upstream advisory

openSUSE-SU-2025:15831-1

Open SourceExploitedCISA KEV listed2025-12-19

chromedriver-143.0.7499.146-1.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Tumbleweed chromium
Upstream advisory

GHSA-9fjm-6w64-76r7

Open SourceExploitedCISA KEV listedHIGH2025-12-12

GHSA-9fjm-6w64-76r7

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2025-14174

Project ZeroExploitedCISA KEV listed2025-12-09

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2025-14174

Upstream advisory

CVE-2025-14174

Open SourceExploitedCISA KEV listedHIGH2025-12-09

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2025-14174

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
edge_chromium affected microsoft
ipados affected apple
iphone_os affected apple
macos affected apple
safari affected apple
tvos affected apple
visionos affected apple
watchos affected apple
Upstream advisory

GHSA-28jp-44vh-q42h

GoogleExploitedCISA KEV listedCRITICAL2025-12-02

Duplicate Advisory: Keras keras.utils.get_file API is vulnerable to a path traversal attack

Affected products

ProductStatusVendorPackageEcosystem
keras affected PyPI keras
Upstream advisory

GHSA-28jp-44vh-q42h

Open SourceExploitedCISA KEV listedCRITICAL2025-12-02

Duplicate Advisory: Keras keras.utils.get_file API is vulnerable to a path traversal attack

Affected products

ProductStatusVendorPackageEcosystem
aiohttp affected PyPI aiohttp
aiohttp affected PyPI aiohttp
argoproj/argo-workflows/v3 affected github.com github.com/argoproj/argo-workflows/v3
argoproj/argo-workflows/v3 affected github.com github.com/argoproj/argo-workflows/v3
github.com/argoproj/argo-workflows/v3 affected Go github.com/argoproj/argo-workflows/v3
glob affected npm glob
keras affected PyPI keras
keras affected PyPI keras
keras affected Keras
Keras affected PyPI Keras
Keras affected PyPI Keras
kubeflow-pipelines-visualization-server affected chainguard kubeflow-pipelines-visualization-server
kubeflow-pipelines-visualization-server affected wolfi kubeflow-pipelines-visualization-server
ray affected PyPI ray
ray affected PyPI ray
starlette affected PyPI starlette
starlette affected PyPI starlette
tensorflow-cpu-jupyter affected wolfi tensorflow-cpu-jupyter
tensorflow-cpu-jupyter affected chainguard tensorflow-cpu-jupyter
tensorflow-gpu-jupyter affected chainguard tensorflow-gpu-jupyter
Upstream advisory

CVE-2025-43529

GoogleExploitedCISA KEV listedCRITICAL2025-12-14

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, tvOS 26.2, visionOS 26.2, watchOS 26.2. Processing maliciously crafted w...

CVEs:CVE-2025-43529

Affected products

ProductStatusVendorPackageEcosystem
ipados affected apple
iphone_os affected apple
macos affected apple
safari affected apple
tvos affected apple
visionos affected apple
watchos affected apple
Upstream advisory

CVE-2025-43529

Project ZeroExploitedCISA KEV listed2025-12-14

A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 26.2, Safari 26.2, iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2, macOS Tahoe 26.2, visionOS 26.2, tvOS 26.2. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 was also

CVEs:CVE-2025-43529

Upstream advisory

CVE-2025-62221

GoogleExploitedCISA KEV listedHIGH2025-12-09

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

CVEs:CVE-2025-62221

Affected products

ProductStatusVendorPackageEcosystem
windows_10_1809 affected microsoft
windows_10_21h2 affected microsoft
windows_10_22h2 affected microsoft
windows_11_23h2 affected microsoft
windows_11_24h2 affected microsoft
windows_11_25h2 affected microsoft
windows_server_2019 affected microsoft
windows_server_2022 affected microsoft
windows_server_2022_23h2 affected microsoft
windows_server_2025 affected microsoft
Upstream advisory

CVE-2025-48633

Open SourceExploitedCISA KEV listedMEDIUM2025-12-01

In hasAccountsOnAnyUser of DevicePolicyManagerService.java, there is a possible way to add a Device Owner after provisioning due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges need...

CVEs:CVE-2025-48633

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48572

Open SourceExploitedCISA KEV listedHIGH2025-12-01

In multiple locations, there is a possible way to launch activities from the background due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp...

CVEs:CVE-2025-48572

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-66404

Open SourceActive exploitation (sightings)CRITICAL2025-12-03

MCP Server Kubernetes is an MCP Server that can connect to a Kubernetes cluster and manage it. Prior to 2.9.8, there is a security issue exists in the exec_in_pod tool of the mcp-server-kubernetes MCP Server. The tool accepts user-provided commands in ...

CVEs:CVE-2025-66404

Affected products

ProductStatusVendorPackageEcosystem
mcp-server-kubernetes affected suyogs
Upstream advisory

CVE-2025-66404

Open SourceActive exploitation (sightings)MEDIUM2025-12-03

mcp-server-kubernetes has potential security issue in exec_in_pod tool

CVEs:CVE-2025-66404

Affected products

ProductStatusVendorPackageEcosystem
mcp-server-kubernetes affected npm mcp-server-kubernetes
Upstream advisory

CVE-2025-66404

Open SourceActive exploitation (sightings)MEDIUM2025-12-03

mcp-server-kubernetes has potential security issue in exec_in_pod tool

CVEs:CVE-2025-66404

Affected products

ProductStatusVendorPackageEcosystem
mcp-server-kubernetes affected npm mcp-server-kubernetes
Upstream advisory

GHSA-wvxp-jp4w-w8wg

Open SourceActive exploitation (sightings)HIGH2025-12-03

mcp-server-kubernetes has potential security issue in exec_in_pod tool

Affected products

ProductStatusVendorPackageEcosystem
mcp-server-kubernetes affected npm mcp-server-kubernetes
Upstream advisory

GHSA-wvxp-jp4w-w8wg

Open SourceActive exploitation (sightings)HIGH2025-12-03

mcp-server-kubernetes has potential security issue in exec_in_pod tool

Affected products

ProductStatusVendorPackageEcosystem
mcp-server-kubernetes affected npm mcp-server-kubernetes
Upstream advisory

GHSA-f6mr-38g8-39rg

GoogleActive exploitation (sightings)CRITICAL2025-12-18

Ollama Platform has missing authentication enabling attackers to perform model management operations

Affected products

ProductStatusVendorPackageEcosystem
ollama/ollama affected github.com github.com/ollama/ollama
Upstream advisory

GHSA-f6mr-38g8-39rg

Open SourceActive exploitation (sightings)CRITICAL2025-12-18

Ollama Platform has missing authentication enabling attackers to perform model management operations

Affected products

ProductStatusVendorPackageEcosystem
k8sgpt affected wolfi k8sgpt
k8sgpt affected chainguard k8sgpt
mods affected wolfi mods
mods affected chainguard mods
ollama affected wolfi ollama
ollama affected chainguard ollama
ollama-fips affected chainguard ollama-fips
ollama/ollama affected github.com github.com/ollama/ollama
Upstream advisory

ECHO-f4e8-dde8-d71e

Open SourceActive exploitation (sightings)2025-12-31

ECHO-f4e8-dde8-d71e

Affected products

ProductStatusVendorPackageEcosystem
grpc affected Echo grpc
grpc-1.59 affected Echo grpc-1.59
Upstream advisory

RHSA-2025:23737

Open SourceActive exploitation (sightings)HIGH2025-12-22

Red Hat Security Advisory: go-toolset:rhel8 security update

Affected products

ProductStatusVendorPackageEcosystem
delve affected Red Hat:rhel_tus:8.8::appstream delve
delve affected Red Hat:rhel_e4s:8.8::appstream delve
delve-debuginfo affected Red Hat:rhel_e4s:8.8::appstream delve-debuginfo
delve-debuginfo affected Red Hat:rhel_tus:8.8::appstream delve-debuginfo
delve-debugsource affected Red Hat:rhel_tus:8.8::appstream delve-debugsource
delve-debugsource affected Red Hat:rhel_e4s:8.8::appstream delve-debugsource
golang affected Red Hat:rhel_tus:8.8::appstream golang
golang affected Red Hat:rhel_e4s:8.8::appstream golang
golang-bin affected Red Hat:rhel_e4s:8.8::appstream golang-bin
golang-bin affected Red Hat:rhel_tus:8.8::appstream golang-bin
golang-docs affected Red Hat:rhel_tus:8.8::appstream golang-docs
golang-docs affected Red Hat:rhel_e4s:8.8::appstream golang-docs
golang-misc affected Red Hat:rhel_e4s:8.8::appstream golang-misc
golang-misc affected Red Hat:rhel_tus:8.8::appstream golang-misc
golang-race affected Red Hat:rhel_tus:8.8::appstream golang-race
golang-race affected Red Hat:rhel_e4s:8.8::appstream golang-race
golang-src affected Red Hat:rhel_e4s:8.8::appstream golang-src
golang-src affected Red Hat:rhel_tus:8.8::appstream golang-src
golang-tests affected Red Hat:rhel_tus:8.8::appstream golang-tests
golang-tests affected Red Hat:rhel_e4s:8.8::appstream golang-tests
go-toolset affected Red Hat:rhel_e4s:8.8::appstream go-toolset
go-toolset affected Red Hat:rhel_tus:8.8::appstream go-toolset
Upstream advisory

RHSA-2025:23733

Open SourceActive exploitation (sightings)HIGH2025-12-22

Red Hat Security Advisory: go-toolset:rhel8 security update

Affected products

ProductStatusVendorPackageEcosystem
delve affected Red Hat:rhel_tus:8.6::appstream delve
delve affected Red Hat:rhel_aus:8.6::appstream delve
delve affected Red Hat:rhel_e4s:8.6::appstream delve
delve-debuginfo affected Red Hat:rhel_aus:8.6::appstream delve-debuginfo
delve-debuginfo affected Red Hat:rhel_tus:8.6::appstream delve-debuginfo
delve-debuginfo affected Red Hat:rhel_e4s:8.6::appstream delve-debuginfo
delve-debugsource affected Red Hat:rhel_e4s:8.6::appstream delve-debugsource
delve-debugsource affected Red Hat:rhel_aus:8.6::appstream delve-debugsource
delve-debugsource affected Red Hat:rhel_tus:8.6::appstream delve-debugsource
golang affected Red Hat:rhel_tus:8.6::appstream golang
golang affected Red Hat:rhel_e4s:8.6::appstream golang
golang affected Red Hat:rhel_aus:8.6::appstream golang
golang-bin affected Red Hat:rhel_tus:8.6::appstream golang-bin
golang-bin affected Red Hat:rhel_e4s:8.6::appstream golang-bin
golang-bin affected Red Hat:rhel_aus:8.6::appstream golang-bin
golang-docs affected Red Hat:rhel_tus:8.6::appstream golang-docs
golang-docs affected Red Hat:rhel_e4s:8.6::appstream golang-docs
golang-docs affected Red Hat:rhel_aus:8.6::appstream golang-docs
golang-misc affected Red Hat:rhel_tus:8.6::appstream golang-misc
golang-misc affected Red Hat:rhel_e4s:8.6::appstream golang-misc
golang-misc affected Red Hat:rhel_aus:8.6::appstream golang-misc
golang-race affected Red Hat:rhel_tus:8.6::appstream golang-race
golang-race affected Red Hat:rhel_aus:8.6::appstream golang-race
golang-race affected Red Hat:rhel_e4s:8.6::appstream golang-race
golang-src affected Red Hat:rhel_tus:8.6::appstream golang-src
golang-src affected Red Hat:rhel_e4s:8.6::appstream golang-src
golang-src affected Red Hat:rhel_aus:8.6::appstream golang-src
golang-tests affected Red Hat:rhel_aus:8.6::appstream golang-tests
golang-tests affected Red Hat:rhel_tus:8.6::appstream golang-tests
golang-tests affected Red Hat:rhel_e4s:8.6::appstream golang-tests
go-toolset affected Red Hat:rhel_e4s:8.6::appstream go-toolset
go-toolset affected Red Hat:rhel_tus:8.6::appstream go-toolset
go-toolset affected Red Hat:rhel_aus:8.6::appstream go-toolset
Upstream advisory

RHSA-2025:23741

Open SourceActive exploitation (sightings)HIGH2025-12-22

Red Hat Security Advisory: go-toolset:rhel8 security update

Affected products

ProductStatusVendorPackageEcosystem
delve affected Red Hat:rhel_aus:8.4::appstream delve
delve affected Red Hat:rhel_eus_long_life:8.4::appstream delve
delve-debuginfo affected Red Hat:rhel_eus_long_life:8.4::appstream delve-debuginfo
delve-debuginfo affected Red Hat:rhel_aus:8.4::appstream delve-debuginfo
delve-debugsource affected Red Hat:rhel_eus_long_life:8.4::appstream delve-debugsource
delve-debugsource affected Red Hat:rhel_aus:8.4::appstream delve-debugsource
golang affected Red Hat:rhel_aus:8.4::appstream golang
golang affected Red Hat:rhel_eus_long_life:8.4::appstream golang
golang-bin affected Red Hat:rhel_eus_long_life:8.4::appstream golang-bin
golang-bin affected Red Hat:rhel_aus:8.4::appstream golang-bin
golang-docs affected Red Hat:rhel_eus_long_life:8.4::appstream golang-docs
golang-docs affected Red Hat:rhel_aus:8.4::appstream golang-docs
golang-misc affected Red Hat:rhel_eus_long_life:8.4::appstream golang-misc
golang-misc affected Red Hat:rhel_aus:8.4::appstream golang-misc
golang-race affected Red Hat:rhel_eus_long_life:8.4::appstream golang-race
golang-race affected Red Hat:rhel_aus:8.4::appstream golang-race
golang-src affected Red Hat:rhel_eus_long_life:8.4::appstream golang-src
golang-src affected Red Hat:rhel_aus:8.4::appstream golang-src
golang-tests affected Red Hat:rhel_aus:8.4::appstream golang-tests
golang-tests affected Red Hat:rhel_eus_long_life:8.4::appstream golang-tests
go-toolset affected Red Hat:rhel_eus_long_life:8.4::appstream go-toolset
go-toolset affected Red Hat:rhel_aus:8.4::appstream go-toolset
Upstream advisory

RHSA-2025:23740

Open SourceActive exploitation (sightings)HIGH2025-12-22

Red Hat Security Advisory: go-toolset:rhel8 security update

Affected products

ProductStatusVendorPackageEcosystem
delve affected Red Hat:rhel_aus:8.2::appstream delve
delve-debuginfo affected Red Hat:rhel_aus:8.2::appstream delve-debuginfo
delve-debugsource affected Red Hat:rhel_aus:8.2::appstream delve-debugsource
golang affected Red Hat:rhel_aus:8.2::appstream golang
golang-bin affected Red Hat:rhel_aus:8.2::appstream golang-bin
golang-docs affected Red Hat:rhel_aus:8.2::appstream golang-docs
golang-misc affected Red Hat:rhel_aus:8.2::appstream golang-misc
golang-race affected Red Hat:rhel_aus:8.2::appstream golang-race
golang-src affected Red Hat:rhel_aus:8.2::appstream golang-src
golang-tests affected Red Hat:rhel_aus:8.2::appstream golang-tests
go-toolset affected Red Hat:rhel_aus:8.2::appstream go-toolset
Upstream advisory

RHSA-2025:22899

Open SourceActive exploitation (sightings)HIGH2025-12-09

Red Hat Security Advisory: golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected Red Hat:rhel_e4s:9.0::appstream golang
golang-bin affected Red Hat:rhel_e4s:9.0::appstream golang-bin
golang-docs affected Red Hat:rhel_e4s:9.0::appstream golang-docs
golang-misc affected Red Hat:rhel_e4s:9.0::appstream golang-misc
golang-race affected Red Hat:rhel_e4s:9.0::appstream golang-race
golang-src affected Red Hat:rhel_e4s:9.0::appstream golang-src
golang-tests affected Red Hat:rhel_e4s:9.0::appstream golang-tests
Upstream advisory

RHSA-2025:22668

Open SourceActive exploitation (sightings)HIGH2025-12-03

Red Hat Security Advisory: go-toolset:rhel8 security update

Affected products

ProductStatusVendorPackageEcosystem
delve affected Red Hat:enterprise_linux:8::appstream delve
delve-debuginfo affected Red Hat:enterprise_linux:8::appstream delve-debuginfo
delve-debugsource affected Red Hat:enterprise_linux:8::appstream delve-debugsource
golang affected Red Hat:enterprise_linux:8::appstream golang
golang-bin affected Red Hat:enterprise_linux:8::appstream golang-bin
golang-docs affected Red Hat:enterprise_linux:8::appstream golang-docs
golang-misc affected Red Hat:enterprise_linux:8::appstream golang-misc
golang-race affected Red Hat:enterprise_linux:8::appstream golang-race
golang-src affected Red Hat:enterprise_linux:8::appstream golang-src
golang-tests affected Red Hat:enterprise_linux:8::appstream golang-tests
go-toolset affected Red Hat:enterprise_linux:8::appstream go-toolset
Upstream advisory

ALSA-2025:22668

Open SourceActive exploitation (sightings)2025-12-03

Moderate: go-toolset:rhel8 security update

Affected products

ProductStatusVendorPackageEcosystem
delve affected AlmaLinux:8 delve
golang affected AlmaLinux:8 golang
golang-bin affected AlmaLinux:8 golang-bin
golang-docs affected AlmaLinux:8 golang-docs
golang-misc affected AlmaLinux:8 golang-misc
golang-race affected AlmaLinux:8 golang-race
golang-src affected AlmaLinux:8 golang-src
golang-tests affected AlmaLinux:8 golang-tests
go-toolset affected AlmaLinux:8 go-toolset
Upstream advisory

GHSA-fjmr-7667-8v4p

Open SourceActive exploitation (sightings)CRITICAL2025-12-30

Visual Studio Code Go extension has unexpected untrusted code execution

Affected products

ProductStatusVendorPackageEcosystem
golang/vscode-go affected github.com github.com/golang/vscode-go
Upstream advisory

GHSA-fjmr-7667-8v4p

Open SourceActive exploitation (sightings)CRITICAL2025-12-30

Visual Studio Code Go extension has unexpected untrusted code execution

Affected products

ProductStatusVendorPackageEcosystem
golang/vscode-go affected github.com github.com/golang/vscode-go
Upstream advisory

CVE-2025-68120

Open SourceActive exploitation (sightings)MEDIUM2025-12-29

Visual Studio Code Go extension has unexpected untrusted code execution

CVEs:CVE-2025-68120

Affected products

ProductStatusVendorPackageEcosystem
golang/vscode-go affected github.com github.com/golang/vscode-go
Upstream advisory

CVE-2025-68120

GoogleActive exploitation (sightings)MEDIUM2025-12-29

To prevent unexpected untrusted code execution, the Visual Studio Code Go extension is now disabled in Restricted Mode.

CVEs:CVE-2025-68120

Affected products

ProductStatusVendorPackageEcosystem
go affected go
Upstream advisory

GO-2025-4249

Open SourceActive exploitation (sightings)CRITICAL2025-12-29

Unexpected untrusted code execution in github.com/golang/vscode-go

Affected products

ProductStatusVendorPackageEcosystem
golang/vscode-go affected github.com github.com/golang/vscode-go
Upstream advisory

CVE-2025-62223

Open SourceActive exploitation (sightings)MEDIUM2025-12-04

User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network.

CVEs:CVE-2025-62223

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

GO-2025-4245

Open SourceActive exploitation (sightings)HIGH2025-12-22

Expr has Denial of Service via Unbounded Recursion in Builtin Functions in github.com/expr-lang/expr

Affected products

ProductStatusVendorPackageEcosystem
amazon-cloudwatch-agent affected chainguard amazon-cloudwatch-agent
amazon-cloudwatch-agent affected wolfi amazon-cloudwatch-agent
amazon-cloudwatch-agent-fips affected chainguard amazon-cloudwatch-agent-fips
argo-cd-3.0 affected chainguard argo-cd-3.0
argo-cd-3.1 affected chainguard argo-cd-3.1
argo-cd-3.2 affected chainguard argo-cd-3.2
argo-cd-3.2 affected wolfi argo-cd-3.2
argo-cd-fips-3.0 affected chainguard argo-cd-fips-3.0
argo-cd-fips-3.1 affected chainguard argo-cd-fips-3.1
argo-cd-fips-3.2 affected chainguard argo-cd-fips-3.2
argo-rollouts affected chainguard argo-rollouts
argo-rollouts affected wolfi argo-rollouts
argo-rollouts-fips affected chainguard argo-rollouts-fips
argo-workflows-3.6 affected chainguard argo-workflows-3.6
argo-workflows-3.7 affected chainguard argo-workflows-3.7
argo-workflows-3.7 affected wolfi argo-workflows-3.7
argo-workflows-fips-3.6 affected chainguard argo-workflows-fips-3.6
argo-workflows-fips-3.7 affected chainguard argo-workflows-fips-3.7
aws-otel-collector affected wolfi aws-otel-collector
aws-otel-collector affected chainguard aws-otel-collector
aws-otel-collector-fips affected chainguard aws-otel-collector-fips
coredns-1.12 affected chainguard coredns-1.12
coredns-1.13 affected chainguard coredns-1.13
coredns-1.13 affected wolfi coredns-1.13
coredns-fips-1.12 affected chainguard coredns-fips-1.12
coredns-fips-1.13 affected chainguard coredns-fips-1.13
datadog-agent-7.71 affected chainguard datadog-agent-7.71
datadog-agent-7.72 affected chainguard datadog-agent-7.72
datadog-agent-7.72 affected wolfi datadog-agent-7.72
datadog-agent-7.73 affected wolfi datadog-agent-7.73
datadog-agent-7.73 affected chainguard datadog-agent-7.73
datadog-agent-fips-7.71 affected chainguard datadog-agent-fips-7.71
datadog-agent-fips-7.72 affected chainguard datadog-agent-fips-7.72
datadog-agent-fips-7.73 affected chainguard datadog-agent-fips-7.73
eks-distro-1.29 affected chainguard eks-distro-1.29
eks-distro-1.30 affected chainguard eks-distro-1.30
eks-distro-1.31 affected chainguard eks-distro-1.31
eks-distro-1.32 affected chainguard eks-distro-1.32
eks-distro-1.33 affected chainguard eks-distro-1.33
eks-distro-1.34 affected chainguard eks-distro-1.34
eks-distro-fips-1.29 affected chainguard eks-distro-fips-1.29
eks-distro-fips-1.30 affected chainguard eks-distro-fips-1.30
eks-distro-fips-1.31 affected chainguard eks-distro-fips-1.31
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
eks-distro-fips-1.33 affected chainguard eks-distro-fips-1.33
eks-distro-fips-1.34 affected chainguard eks-distro-fips-1.34
elastic-agent affected chainguard elastic-agent
elastic-agent-8.17 affected chainguard elastic-agent-8.17
elastic-agent-8.18 affected chainguard elastic-agent-8.18
elastic-agent-9.0 affected chainguard elastic-agent-9.0
elastic-agent-9.3 affected chainguard elastic-agent-9.3
elastic-agent-fips-8.17 affected chainguard elastic-agent-fips-8.17
elastic-agent-fips-8.18 affected chainguard elastic-agent-fips-8.18
elastic-agent-fips-8.19 affected chainguard elastic-agent-fips-8.19
elastic-agent-fips-9.0 affected chainguard elastic-agent-fips-9.0
elastic-agent-fips-9.3 affected chainguard elastic-agent-fips-9.3
expr-lang/expr affected github.com github.com/expr-lang/expr
grafana-alloy affected wolfi grafana-alloy
grafana-alloy affected chainguard grafana-alloy
grafana-alloy-fips affected chainguard grafana-alloy-fips
jaeger-1 affected chainguard jaeger-1
jaeger-2 affected wolfi jaeger-2
jaeger-2 affected chainguard jaeger-2
jaeger-2-fips affected chainguard jaeger-2-fips
k3s affected wolfi k3s
k3s affected chainguard k3s
k3s-1.32 affected chainguard k3s-1.32
k3s-1.32 affected wolfi k3s-1.32
k3s-1.33 affected wolfi k3s-1.33
k3s-1.33 affected chainguard k3s-1.33
k8s_gateway affected chainguard k8s_gateway
k8s_gateway affected wolfi k8s_gateway
k8s_gateway-fips affected chainguard k8s_gateway-fips
k8sgpt affected chainguard k8sgpt
k8sgpt affected wolfi k8sgpt
kargo affected wolfi kargo
kargo affected chainguard kargo
keda-2.16 affected chainguard keda-2.16
keda-2.17 affected chainguard keda-2.17
keda-2.18 affected chainguard keda-2.18
keda-fips-2.16 affected chainguard keda-fips-2.16
keda-fips-2.17 affected chainguard keda-fips-2.17
keda-fips-2.18 affected chainguard keda-fips-2.18
kine affected chainguard kine
kine affected wolfi kine
kserve affected chainguard kserve
kserve affected wolfi kserve
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
nats affected wolfi nats
nats affected chainguard nats
nats-fips affected chainguard nats-fips
nrdot-collector-k8s affected chainguard nrdot-collector-k8s
nrdot-collector-k8s-fips affected chainguard nrdot-collector-k8s-fips
opentelemetry-collector affected wolfi opentelemetry-collector
opentelemetry-collector affected chainguard opentelemetry-collector
opentelemetry-collector-contrib affected chainguard opentelemetry-collector-contrib
opentelemetry-collector-contrib affected wolfi opentelemetry-collector-contrib
opentelemetry-collector-contrib-fips affected chainguard opentelemetry-collector-contrib-fips
opentelemetry-collector-fips affected chainguard opentelemetry-collector-fips
rke2-runtime-1.31 affected chainguard rke2-runtime-1.31
rke2-runtime-1.32 affected chainguard rke2-runtime-1.32
rke2-runtime-1.33 affected chainguard rke2-runtime-1.33
rke2-runtime-1.34 affected chainguard rke2-runtime-1.34
splunk-otel-collector affected chainguard splunk-otel-collector
splunk-otel-collector affected wolfi splunk-otel-collector
splunk-otel-collector-fips affected chainguard splunk-otel-collector-fips
tempo affected wolfi tempo
tempo affected chainguard tempo
vale affected chainguard vale
vale affected wolfi vale
verticadb-operator affected chainguard verticadb-operator
verticadb-operator affected wolfi verticadb-operator
verticadb-operator-fips affected chainguard verticadb-operator-fips
Upstream advisory

openSUSE-SU-2025:15832-1

Open SourceActive exploitation (sightings)2025-12-19

coredns-for-k8s1.35-1.13.1-2.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
coredns-for-k8s1.35 affected openSUSE:Tumbleweed coredns-for-k8s1.35
Upstream advisory

openSUSE-SU-2025:15825-1

Open SourceActive exploitation (sightings)2025-12-18

coredns-for-k8s1.33-1.12.0-2.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
coredns-for-k8s1.33 affected openSUSE:Tumbleweed coredns-for-k8s1.33
Upstream advisory

openSUSE-SU-2025:15826-1

Open SourceActive exploitation (sightings)2025-12-18

coredns-for-k8s1.34-1.12.1-2.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
coredns-for-k8s1.34 affected openSUSE:Tumbleweed coredns-for-k8s1.34
Upstream advisory

GHSA-cfpf-hrx2-8rv6

GoogleActive exploitation (sightings)CRITICAL2025-12-16

Expr has Denial of Service via Unbounded Recursion in Builtin Functions

Affected products

ProductStatusVendorPackageEcosystem
expr-lang/expr affected github.com github.com/expr-lang/expr
Upstream advisory

GHSA-cfpf-hrx2-8rv6

Open SourceActive exploitation (sightings)CRITICAL2025-12-16

Expr has Denial of Service via Unbounded Recursion in Builtin Functions

Affected products

ProductStatusVendorPackageEcosystem
amazon-cloudwatch-agent affected chainguard amazon-cloudwatch-agent
amazon-cloudwatch-agent affected wolfi amazon-cloudwatch-agent
amazon-cloudwatch-agent-fips affected chainguard amazon-cloudwatch-agent-fips
argo-cd-3.0 affected wolfi argo-cd-3.0
argo-cd-3.0 affected chainguard argo-cd-3.0
argo-cd-3.1 affected wolfi argo-cd-3.1
argo-cd-3.1 affected chainguard argo-cd-3.1
argo-cd-3.2 affected wolfi argo-cd-3.2
argo-cd-3.2 affected chainguard argo-cd-3.2
argo-cd-fips-3.0 affected chainguard argo-cd-fips-3.0
argo-cd-fips-3.1 affected chainguard argo-cd-fips-3.1
argo-cd-fips-3.2 affected chainguard argo-cd-fips-3.2
argo-rollouts affected chainguard argo-rollouts
argo-rollouts affected wolfi argo-rollouts
argo-rollouts-fips affected chainguard argo-rollouts-fips
argo-workflows-3.6 affected chainguard argo-workflows-3.6
argo-workflows-3.7 affected wolfi argo-workflows-3.7
argo-workflows-3.7 affected chainguard argo-workflows-3.7
argo-workflows-fips-3.6 affected chainguard argo-workflows-fips-3.6
argo-workflows-fips-3.7 affected chainguard argo-workflows-fips-3.7
aws-otel-collector affected chainguard aws-otel-collector
aws-otel-collector affected wolfi aws-otel-collector
aws-otel-collector-fips affected chainguard aws-otel-collector-fips
coredns-1.12 affected chainguard coredns-1.12
coredns-1.13 affected wolfi coredns-1.13
coredns-1.13 affected chainguard coredns-1.13
coredns-fips-1.12 affected chainguard coredns-fips-1.12
coredns-fips-1.13 affected chainguard coredns-fips-1.13
datadog-agent-7.71 affected chainguard datadog-agent-7.71
datadog-agent-7.72 affected wolfi datadog-agent-7.72
datadog-agent-7.72 affected chainguard datadog-agent-7.72
datadog-agent-7.73 affected chainguard datadog-agent-7.73
datadog-agent-7.73 affected wolfi datadog-agent-7.73
datadog-agent-fips-7.71 affected chainguard datadog-agent-fips-7.71
datadog-agent-fips-7.72 affected chainguard datadog-agent-fips-7.72
datadog-agent-fips-7.73 affected chainguard datadog-agent-fips-7.73
eks-distro-1.29 affected chainguard eks-distro-1.29
eks-distro-1.30 affected chainguard eks-distro-1.30
eks-distro-1.31 affected chainguard eks-distro-1.31
eks-distro-1.32 affected chainguard eks-distro-1.32
eks-distro-1.33 affected chainguard eks-distro-1.33
eks-distro-1.34 affected chainguard eks-distro-1.34
eks-distro-fips-1.29 affected chainguard eks-distro-fips-1.29
eks-distro-fips-1.30 affected chainguard eks-distro-fips-1.30
eks-distro-fips-1.31 affected chainguard eks-distro-fips-1.31
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
eks-distro-fips-1.33 affected chainguard eks-distro-fips-1.33
eks-distro-fips-1.34 affected chainguard eks-distro-fips-1.34
elastic-agent affected chainguard elastic-agent
elastic-agent-8.17 affected chainguard elastic-agent-8.17
elastic-agent-8.18 affected chainguard elastic-agent-8.18
elastic-agent-9.0 affected chainguard elastic-agent-9.0
elastic-agent-9.3 affected chainguard elastic-agent-9.3
elastic-agent-fips-8.17 affected chainguard elastic-agent-fips-8.17
elastic-agent-fips-8.18 affected chainguard elastic-agent-fips-8.18
elastic-agent-fips-8.19 affected chainguard elastic-agent-fips-8.19
elastic-agent-fips-9.0 affected chainguard elastic-agent-fips-9.0
elastic-agent-fips-9.3 affected chainguard elastic-agent-fips-9.3
expr-lang/expr affected github.com github.com/expr-lang/expr
grafana-alloy affected chainguard grafana-alloy
grafana-alloy affected wolfi grafana-alloy
grafana-alloy-fips affected chainguard grafana-alloy-fips
jaeger-1 affected chainguard jaeger-1
jaeger-2 affected wolfi jaeger-2
jaeger-2 affected chainguard jaeger-2
jaeger-2-fips affected chainguard jaeger-2-fips
k3s affected wolfi k3s
k3s affected chainguard k3s
k3s-1.32 affected wolfi k3s-1.32
k3s-1.32 affected chainguard k3s-1.32
k3s-1.33 affected chainguard k3s-1.33
k3s-1.33 affected wolfi k3s-1.33
k8s_gateway affected chainguard k8s_gateway
k8s_gateway affected wolfi k8s_gateway
k8s_gateway-fips affected chainguard k8s_gateway-fips
k8sgpt affected wolfi k8sgpt
k8sgpt affected chainguard k8sgpt
kargo affected chainguard kargo
kargo affected wolfi kargo
keda-2.16 affected wolfi keda-2.16
keda-2.16 affected chainguard keda-2.16
keda-2.17 affected wolfi keda-2.17
keda-2.17 affected chainguard keda-2.17
keda-2.18 affected wolfi keda-2.18
keda-2.18 affected chainguard keda-2.18
keda-fips-2.16 affected chainguard keda-fips-2.16
keda-fips-2.17 affected chainguard keda-fips-2.17
keda-fips-2.18 affected chainguard keda-fips-2.18
kine affected chainguard kine
kine affected wolfi kine
kserve affected wolfi kserve
kserve affected chainguard kserve
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
nats affected chainguard nats
nats affected wolfi nats
nats-fips affected chainguard nats-fips
nrdot-collector-k8s affected chainguard nrdot-collector-k8s
nrdot-collector-k8s-fips affected chainguard nrdot-collector-k8s-fips
opentelemetry-collector affected chainguard opentelemetry-collector
opentelemetry-collector affected wolfi opentelemetry-collector
opentelemetry-collector-contrib affected chainguard opentelemetry-collector-contrib
opentelemetry-collector-contrib affected wolfi opentelemetry-collector-contrib
opentelemetry-collector-contrib-fips affected chainguard opentelemetry-collector-contrib-fips
opentelemetry-collector-fips affected chainguard opentelemetry-collector-fips
rke2-runtime-1.31 affected chainguard rke2-runtime-1.31
rke2-runtime-1.32 affected chainguard rke2-runtime-1.32
rke2-runtime-1.33 affected chainguard rke2-runtime-1.33
rke2-runtime-1.34 affected chainguard rke2-runtime-1.34
splunk-otel-collector affected chainguard splunk-otel-collector
splunk-otel-collector affected wolfi splunk-otel-collector
splunk-otel-collector-fips affected chainguard splunk-otel-collector-fips
tempo affected chainguard tempo
tempo affected wolfi tempo
tempo-fips affected chainguard tempo-fips
vale affected wolfi vale
vale affected chainguard vale
verticadb-operator affected wolfi verticadb-operator
verticadb-operator affected chainguard verticadb-operator
verticadb-operator-fips affected chainguard verticadb-operator-fips
Upstream advisory

GHSA-v4hv-rgfq-gp49

Open SourceActive exploitation (sightings)HIGH2025-12-02

Angular Stored XSS Vulnerability via SVG Animation, SVG URL and MathML Attributes

Affected products

ProductStatusVendorPackageEcosystem
compiler affected angular @angular/compiler
Upstream advisory

GHSA-v4hv-rgfq-gp49

Open SourceActive exploitation (sightings)HIGH2025-12-02

Angular Stored XSS Vulnerability via SVG Animation, SVG URL and MathML Attributes

Affected products

ProductStatusVendorPackageEcosystem
compiler affected angular @angular/compiler
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-katib affected wolfi kubeflow-katib
Upstream advisory

CVE-2025-66412

Open SourceActive exploitation (sightings)HIGH2025-12-01

Angular Stored XSS Vulnerability via SVG Animation, SVG URL and MathML Attributes

CVEs:CVE-2025-66412

Affected products

ProductStatusVendorPackageEcosystem
compiler affected angular @angular/compiler
Upstream advisory

CVE-2025-66412

Open SourceActive exploitation (sightings)CRITICAL2025-12-01

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 21.0.2, 20.3.15, and 19.2.17, A Stored Cross-Site Scripting (XSS) vulnerability has been identified in the Angu...

CVEs:CVE-2025-66412

Affected products

ProductStatusVendorPackageEcosystem
angular affected angular
angular affected angular
Upstream advisory

CVE-2025-66412

Open SourceActive exploitation (sightings)HIGH2025-12-01

Angular Stored XSS Vulnerability via SVG Animation, SVG URL and MathML Attributes

CVEs:CVE-2025-66412

Affected products

ProductStatusVendorPackageEcosystem
compiler affected angular @angular/compiler
Upstream advisory

MINI-7hf9-9m7w-r63x

Open SourceActive exploitation (sightings)2025-12-17

MINI-7hf9-9m7w-r63x

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-1.33 affected MinimOS kube-apiserver-1.33
kube-apiserver-1.33-compat affected MinimOS kube-apiserver-1.33-compat
kube-controller-manager-1.33 affected MinimOS kube-controller-manager-1.33
kube-controller-manager-1.33-compat affected MinimOS kube-controller-manager-1.33-compat
kubectl-1.33 affected MinimOS kubectl-1.33
kubectl-1.33-advanced-compat affected MinimOS kubectl-1.33-advanced-compat
kubectl-1.33-compat affected MinimOS kubectl-1.33-compat
kube-proxy-1.33 affected MinimOS kube-proxy-1.33
kube-proxy-1.33-compat affected MinimOS kube-proxy-1.33-compat
kubernetes-1.33 affected MinimOS kubernetes-1.33
kube-scheduler-1.33 affected MinimOS kube-scheduler-1.33
kube-scheduler-1.33-compat affected MinimOS kube-scheduler-1.33-compat
Upstream advisory

MINI-p8m5-h44g-9j23

Open SourceActive exploitation (sightings)2025-12-17

MINI-p8m5-h44g-9j23

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-fips-1.32 affected MinimOS kube-apiserver-fips-1.32
kube-controller-manager-fips-1.32 affected MinimOS kube-controller-manager-fips-1.32
kubectl-fips-1.32 affected MinimOS kubectl-fips-1.32
kube-proxy-fips-1.32 affected MinimOS kube-proxy-fips-1.32
kubernetes-fips-1.32 affected MinimOS kubernetes-fips-1.32
kube-scheduler-fips-1.32 affected MinimOS kube-scheduler-fips-1.32
Upstream advisory

MINI-cwh4-wr4f-6ff4

Open SourceActive exploitation (sightings)2025-12-17

MINI-cwh4-wr4f-6ff4

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-1.34 affected MinimOS kube-apiserver-1.34
kube-apiserver-1.34-compat affected MinimOS kube-apiserver-1.34-compat
kube-controller-manager-1.34 affected MinimOS kube-controller-manager-1.34
kube-controller-manager-1.34-compat affected MinimOS kube-controller-manager-1.34-compat
kubectl-1.34 affected MinimOS kubectl-1.34
kubectl-1.34-advanced-compat affected MinimOS kubectl-1.34-advanced-compat
kubectl-1.34-compat affected MinimOS kubectl-1.34-compat
kube-proxy-1.34 affected MinimOS kube-proxy-1.34
kube-proxy-1.34-compat affected MinimOS kube-proxy-1.34-compat
kubernetes-1.34 affected MinimOS kubernetes-1.34
kube-scheduler-1.34 affected MinimOS kube-scheduler-1.34
kube-scheduler-1.34-compat affected MinimOS kube-scheduler-1.34-compat
Upstream advisory

MINI-9p23-p575-hcjm

Open SourceActive exploitation (sightings)2025-12-17

MINI-9p23-p575-hcjm

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-fips-1.34 affected MinimOS kube-apiserver-fips-1.34
kube-apiserver-fips-1.34-compat affected MinimOS kube-apiserver-fips-1.34-compat
kube-controller-manager-fips-1.34 affected MinimOS kube-controller-manager-fips-1.34
kube-controller-manager-fips-1.34-compat affected MinimOS kube-controller-manager-fips-1.34-compat
kubectl-fips-1.34 affected MinimOS kubectl-fips-1.34
kubectl-fips-1.34-compat affected MinimOS kubectl-fips-1.34-compat
kube-proxy-fips-1.34 affected MinimOS kube-proxy-fips-1.34
kube-proxy-fips-1.34-compat affected MinimOS kube-proxy-fips-1.34-compat
kubernetes-fips-1.34 affected MinimOS kubernetes-fips-1.34
kube-scheduler-fips-1.34 affected MinimOS kube-scheduler-fips-1.34
kube-scheduler-fips-1.34-compat affected MinimOS kube-scheduler-fips-1.34-compat
Upstream advisory

GO-2025-4240

Open SourceActive exploitation (sightings)2025-12-16

Half-blind Server Side Request Forgery in kube-controller-manager through in-tree Portworx StorageClass in k8s.io/kubernetes

Affected products

ProductStatusVendorPackageEcosystem
argo-cd-3.0 affected chainguard argo-cd-3.0
argo-cd-3.1 affected chainguard argo-cd-3.1
argo-cd-3.2 affected chainguard argo-cd-3.2
argo-cd-3.2 affected wolfi argo-cd-3.2
argo-cd-fips-3.0 affected chainguard argo-cd-fips-3.0
argo-cd-fips-3.1 affected chainguard argo-cd-fips-3.1
argo-cd-fips-3.2 affected chainguard argo-cd-fips-3.2
argocd-image-updater affected wolfi argocd-image-updater
argocd-image-updater affected chainguard argocd-image-updater
argocd-image-updater-fips affected chainguard argocd-image-updater-fips
argo-rollouts affected chainguard argo-rollouts
argo-rollouts affected wolfi argo-rollouts
argo-rollouts-fips affected chainguard argo-rollouts-fips
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
azuredisk-csi-1.32 affected chainguard azuredisk-csi-1.32
azuredisk-csi-1.33 affected chainguard azuredisk-csi-1.33
azuredisk-csi-fips-1.32 affected chainguard azuredisk-csi-fips-1.32
azuredisk-csi-fips-1.33 affected chainguard azuredisk-csi-fips-1.33
azurefile-csi-1.32 affected chainguard azurefile-csi-1.32
azurefile-csi-1.33 affected chainguard azurefile-csi-1.33
azurefile-csi-1.34 affected chainguard azurefile-csi-1.34
azurefile-csi-fips-1.32 affected chainguard azurefile-csi-fips-1.32
azurefile-csi-fips-1.33 affected chainguard azurefile-csi-fips-1.33
azurefile-csi-fips-1.34 affected chainguard azurefile-csi-fips-1.34
blob-csi-1.23 affected chainguard blob-csi-1.23
blob-csi-1.24 affected chainguard blob-csi-1.24
blob-csi-1.25 affected chainguard blob-csi-1.25
blob-csi-1.26 affected chainguard blob-csi-1.26
blob-csi-1.27 affected chainguard blob-csi-1.27
blob-csi-1.27 affected wolfi blob-csi-1.27
blob-csi-fips-1.23 affected chainguard blob-csi-fips-1.23
blob-csi-fips-1.24 affected chainguard blob-csi-fips-1.24
blob-csi-fips-1.25 affected chainguard blob-csi-fips-1.25
blob-csi-fips-1.26 affected chainguard blob-csi-fips-1.26
blob-csi-fips-1.27 affected chainguard blob-csi-fips-1.27
calico-3.30 affected chainguard calico-3.30
calico-3.31 affected wolfi calico-3.31
calico-3.31 affected chainguard calico-3.31
calico-fips-3.30 affected chainguard calico-fips-3.30
calico-fips-3.31 affected chainguard calico-fips-3.31
cephcsi affected chainguard cephcsi
cephcsi-fips affected chainguard cephcsi-fips
docker-machine-driver-harvester affected wolfi docker-machine-driver-harvester
docker-machine-driver-harvester affected chainguard docker-machine-driver-harvester
eks-distro-1.32 affected chainguard eks-distro-1.32
eks-distro-1.33 affected chainguard eks-distro-1.33
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
eks-distro-fips-1.33 affected chainguard eks-distro-fips-1.33
emissary affected chainguard emissary
emissary affected wolfi emissary
ip-masq-agent affected chainguard ip-masq-agent
ip-masq-agent affected wolfi ip-masq-agent
kapp affected chainguard kapp
kapp affected wolfi kapp
kapp-fips affected chainguard kapp-fips
kots affected wolfi kots
kots affected chainguard kots
kubernetes affected k8s.io k8s.io/kubernetes
kubernetes-1.32 affected wolfi kubernetes-1.32
kubernetes-1.32 affected chainguard kubernetes-1.32
kubernetes-csi-driver-hostpath affected wolfi kubernetes-csi-driver-hostpath
kubernetes-csi-driver-hostpath affected chainguard kubernetes-csi-driver-hostpath
kubernetes-csi-driver-nfs affected chainguard kubernetes-csi-driver-nfs
kubernetes-csi-driver-nfs affected wolfi kubernetes-csi-driver-nfs
kubernetes-csi-driver-nfs-fips affected chainguard kubernetes-csi-driver-nfs-fips
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
kubernetes-dns-node-cache-fips affected chainguard kubernetes-dns-node-cache-fips
local-static-provisioner affected chainguard local-static-provisioner
local-static-provisioner affected wolfi local-static-provisioner
local-static-provisioner-fips affected chainguard local-static-provisioner-fips
longhorn-manager-1.10 affected chainguard longhorn-manager-1.10
longhorn-manager-1.8 affected chainguard longhorn-manager-1.8
longhorn-manager-1.9 affected chainguard longhorn-manager-1.9
longhorn-manager-fips-1.10 affected chainguard longhorn-manager-fips-1.10
longhorn-manager-fips-1.8 affected chainguard longhorn-manager-fips-1.8
longhorn-manager-fips-1.9 affected chainguard longhorn-manager-fips-1.9
longhorn-share-manager-1.10 affected chainguard longhorn-share-manager-1.10
longhorn-share-manager-1.8 affected chainguard longhorn-share-manager-1.8
longhorn-share-manager-1.9 affected chainguard longhorn-share-manager-1.9
longhorn-share-manager-fips-1.10 affected chainguard longhorn-share-manager-fips-1.10
longhorn-share-manager-fips-1.8 affected chainguard longhorn-share-manager-fips-1.8
longhorn-share-manager-fips-1.9 affected chainguard longhorn-share-manager-fips-1.9
mesosphere-vsphere-csi affected chainguard mesosphere-vsphere-csi
mesosphere-vsphere-csi affected wolfi mesosphere-vsphere-csi
mesosphere-vsphere-csi-fips affected chainguard mesosphere-vsphere-csi-fips
node-feature-discovery-0.17 affected chainguard node-feature-discovery-0.17
node-feature-discovery-0.18 affected wolfi node-feature-discovery-0.18
node-feature-discovery-0.18 affected chainguard node-feature-discovery-0.18
node-feature-discovery-fips-0.17 affected chainguard node-feature-discovery-fips-0.17
node-feature-discovery-fips-0.18 affected chainguard node-feature-discovery-fips-0.18
nodetaint affected wolfi nodetaint
nodetaint affected chainguard nodetaint
rancher-2.11 affected chainguard rancher-2.11
rancher-2.12 affected chainguard rancher-2.12
rancher-2.13 affected chainguard rancher-2.13
rancher-2.13 affected wolfi rancher-2.13
rancher-agent-2.11 affected chainguard rancher-agent-2.11
rancher-agent-2.12 affected chainguard rancher-agent-2.12
rancher-agent-2.13 affected wolfi rancher-agent-2.13
rancher-agent-2.13 affected chainguard rancher-agent-2.13
rancher-support-bundle-kit affected chainguard rancher-support-bundle-kit
rancher-system-agent affected chainguard rancher-system-agent
rancher-system-agent affected wolfi rancher-system-agent
rancher-webhook-0.5 affected chainguard rancher-webhook-0.5
vcluster affected wolfi vcluster
vcluster affected chainguard vcluster
volcano affected chainguard volcano
volcano-fips affected chainguard volcano-fips
yunikorn-k8shim affected chainguard yunikorn-k8shim
yunikorn-k8shim affected wolfi yunikorn-k8shim
yunikorn-k8shim-fips affected chainguard yunikorn-k8shim-fips
Upstream advisory

GHSA-r6j8-c6r2-37rr

Open SourceActive exploitation (sightings)HIGH2025-12-15

kube-controller-manager is vulnerable to half-blind Server Side Request Forgery through in-tree Portworx StorageClass

Affected products

ProductStatusVendorPackageEcosystem
argo-cd-3.0 affected chainguard argo-cd-3.0
argo-cd-3.0 affected wolfi argo-cd-3.0
argo-cd-3.1 affected chainguard argo-cd-3.1
argo-cd-3.1 affected wolfi argo-cd-3.1
argo-cd-3.2 affected chainguard argo-cd-3.2
argo-cd-3.2 affected wolfi argo-cd-3.2
argo-cd-fips-3.0 affected chainguard argo-cd-fips-3.0
argo-cd-fips-3.1 affected chainguard argo-cd-fips-3.1
argo-cd-fips-3.2 affected chainguard argo-cd-fips-3.2
argocd-image-updater affected wolfi argocd-image-updater
argocd-image-updater affected chainguard argocd-image-updater
argocd-image-updater-fips affected chainguard argocd-image-updater-fips
argo-rollouts affected chainguard argo-rollouts
argo-rollouts affected wolfi argo-rollouts
argo-rollouts-fips affected chainguard argo-rollouts-fips
aws-efs-csi-driver affected chainguard aws-efs-csi-driver
aws-efs-csi-driver affected wolfi aws-efs-csi-driver
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
azuredisk-csi-1.32 affected chainguard azuredisk-csi-1.32
azuredisk-csi-1.33 affected wolfi azuredisk-csi-1.33
azuredisk-csi-1.33 affected chainguard azuredisk-csi-1.33
azuredisk-csi-fips-1.32 affected chainguard azuredisk-csi-fips-1.32
azuredisk-csi-fips-1.33 affected chainguard azuredisk-csi-fips-1.33
azurefile-csi-1.32 affected chainguard azurefile-csi-1.32
azurefile-csi-1.32 affected wolfi azurefile-csi-1.32
azurefile-csi-1.33 affected chainguard azurefile-csi-1.33
azurefile-csi-1.33 affected wolfi azurefile-csi-1.33
azurefile-csi-1.34 affected wolfi azurefile-csi-1.34
azurefile-csi-1.34 affected chainguard azurefile-csi-1.34
azurefile-csi-fips-1.32 affected chainguard azurefile-csi-fips-1.32
azurefile-csi-fips-1.33 affected chainguard azurefile-csi-fips-1.33
azurefile-csi-fips-1.34 affected chainguard azurefile-csi-fips-1.34
blob-csi-1.23 affected chainguard blob-csi-1.23
blob-csi-1.24 affected chainguard blob-csi-1.24
blob-csi-1.25 affected chainguard blob-csi-1.25
blob-csi-1.26 affected chainguard blob-csi-1.26
blob-csi-1.26 affected wolfi blob-csi-1.26
blob-csi-1.27 affected chainguard blob-csi-1.27
blob-csi-1.27 affected wolfi blob-csi-1.27
blob-csi-fips-1.23 affected chainguard blob-csi-fips-1.23
blob-csi-fips-1.24 affected chainguard blob-csi-fips-1.24
blob-csi-fips-1.25 affected chainguard blob-csi-fips-1.25
blob-csi-fips-1.26 affected chainguard blob-csi-fips-1.26
blob-csi-fips-1.27 affected chainguard blob-csi-fips-1.27
calico-3.30 affected chainguard calico-3.30
calico-3.30 affected wolfi calico-3.30
calico-3.31 affected wolfi calico-3.31
calico-3.31 affected chainguard calico-3.31
calico-fips-3.30 affected chainguard calico-fips-3.30
calico-fips-3.31 affected chainguard calico-fips-3.31
cephcsi affected chainguard cephcsi
cephcsi-fips affected chainguard cephcsi-fips
docker-machine-driver-harvester affected wolfi docker-machine-driver-harvester
docker-machine-driver-harvester affected chainguard docker-machine-driver-harvester
eks-distro-1.32 affected chainguard eks-distro-1.32
eks-distro-1.33 affected chainguard eks-distro-1.33
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
eks-distro-fips-1.33 affected chainguard eks-distro-fips-1.33
emissary affected chainguard emissary
emissary affected wolfi emissary
ip-masq-agent affected wolfi ip-masq-agent
ip-masq-agent affected chainguard ip-masq-agent
kapp affected chainguard kapp
kapp affected wolfi kapp
kapp-fips affected chainguard kapp-fips
kots affected chainguard kots
kots affected wolfi kots
kubernetes affected k8s.io k8s.io/kubernetes
kubernetes-1.32 affected wolfi kubernetes-1.32
kubernetes-1.32 affected chainguard kubernetes-1.32
kubernetes-csi-driver-hostpath affected chainguard kubernetes-csi-driver-hostpath
kubernetes-csi-driver-hostpath affected wolfi kubernetes-csi-driver-hostpath
kubernetes-csi-driver-nfs affected wolfi kubernetes-csi-driver-nfs
kubernetes-csi-driver-nfs affected chainguard kubernetes-csi-driver-nfs
kubernetes-csi-driver-nfs-fips affected chainguard kubernetes-csi-driver-nfs-fips
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
kubernetes-dns-node-cache-fips affected chainguard kubernetes-dns-node-cache-fips
local-static-provisioner affected chainguard local-static-provisioner
local-static-provisioner affected wolfi local-static-provisioner
local-static-provisioner-fips affected chainguard local-static-provisioner-fips
longhorn-manager-1.10 affected chainguard longhorn-manager-1.10
longhorn-manager-1.8 affected chainguard longhorn-manager-1.8
longhorn-manager-1.9 affected chainguard longhorn-manager-1.9
longhorn-manager-fips-1.10 affected chainguard longhorn-manager-fips-1.10
longhorn-manager-fips-1.8 affected chainguard longhorn-manager-fips-1.8
longhorn-manager-fips-1.9 affected chainguard longhorn-manager-fips-1.9
longhorn-share-manager-1.10 affected chainguard longhorn-share-manager-1.10
longhorn-share-manager-1.8 affected chainguard longhorn-share-manager-1.8
longhorn-share-manager-1.9 affected chainguard longhorn-share-manager-1.9
longhorn-share-manager-fips-1.10 affected chainguard longhorn-share-manager-fips-1.10
longhorn-share-manager-fips-1.8 affected chainguard longhorn-share-manager-fips-1.8
longhorn-share-manager-fips-1.9 affected chainguard longhorn-share-manager-fips-1.9
mesosphere-vsphere-csi affected chainguard mesosphere-vsphere-csi
mesosphere-vsphere-csi affected wolfi mesosphere-vsphere-csi
mesosphere-vsphere-csi-fips affected chainguard mesosphere-vsphere-csi-fips
node-feature-discovery-0.17 affected wolfi node-feature-discovery-0.17
node-feature-discovery-0.17 affected chainguard node-feature-discovery-0.17
node-feature-discovery-0.18 affected chainguard node-feature-discovery-0.18
node-feature-discovery-0.18 affected wolfi node-feature-discovery-0.18
node-feature-discovery-fips-0.17 affected chainguard node-feature-discovery-fips-0.17
node-feature-discovery-fips-0.18 affected chainguard node-feature-discovery-fips-0.18
nodetaint affected chainguard nodetaint
nodetaint affected wolfi nodetaint
rancher-2.11 affected wolfi rancher-2.11
rancher-2.11 affected chainguard rancher-2.11
rancher-2.12 affected chainguard rancher-2.12
rancher-2.12 affected wolfi rancher-2.12
rancher-2.13 affected chainguard rancher-2.13
rancher-2.13 affected wolfi rancher-2.13
rancher-agent-2.11 affected chainguard rancher-agent-2.11
rancher-agent-2.11 affected wolfi rancher-agent-2.11
rancher-agent-2.12 affected chainguard rancher-agent-2.12
rancher-agent-2.12 affected wolfi rancher-agent-2.12
rancher-agent-2.13 affected chainguard rancher-agent-2.13
rancher-agent-2.13 affected wolfi rancher-agent-2.13
rancher-support-bundle-kit affected chainguard rancher-support-bundle-kit
rancher-system-agent affected wolfi rancher-system-agent
rancher-system-agent affected chainguard rancher-system-agent
rancher-webhook-0.5 affected wolfi rancher-webhook-0.5
rancher-webhook-0.5 affected chainguard rancher-webhook-0.5
vcluster affected wolfi vcluster
vcluster affected chainguard vcluster
volcano affected chainguard volcano
volcano-fips affected chainguard volcano-fips
yunikorn-k8shim affected wolfi yunikorn-k8shim
yunikorn-k8shim affected chainguard yunikorn-k8shim
yunikorn-k8shim-fips affected chainguard yunikorn-k8shim-fips
Upstream advisory

GHSA-r6j8-c6r2-37rr

Open SourceActive exploitation (sightings)HIGH2025-12-15

kube-controller-manager is vulnerable to half-blind Server Side Request Forgery through in-tree Portworx StorageClass

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

AZL-72382

Open SourceActive exploitation (sightings)HIGH2025-12-14

CVE-2025-13281 affecting package kubernetes for versions less than 1.30.10-18

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected Azure Linux:3 kubernetes
Upstream advisory

AZL-72386

Open SourceActive exploitation (sightings)HIGH2025-12-14

CVE-2025-13281 affecting package kubernetes for versions less than 1.28.4-21

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected Azure Linux:2 kubernetes
Upstream advisory

DEBIAN-CVE-2025-13281

Open SourceActive exploitation (sightings)HIGH2025-12-14

DEBIAN-CVE-2025-13281

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected Debian:11 kubernetes
kubernetes affected Debian:12 kubernetes
kubernetes affected Debian:13 kubernetes
kubernetes affected Debian:14 kubernetes
Upstream advisory

OESA-2025-2819

Open SourceActive exploitation (sightings)HIGH2025-12-12

kubernetes security update

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected openEuler:24.03-LTS-SP1 kubernetes
Upstream advisory

OESA-2025-2818

Open SourceActive exploitation (sightings)HIGH2025-12-12

kubernetes security update

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected openEuler:24.03-LTS kubernetes
Upstream advisory

OESA-2025-2817

Open SourceActive exploitation (sightings)HIGH2025-12-12

kubernetes security update

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected openEuler:22.03-LTS-SP4 kubernetes
Upstream advisory

OESA-2025-2816

Open SourceActive exploitation (sightings)HIGH2025-12-12

kubernetes security update

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected openEuler:22.03-LTS-SP3 kubernetes
Upstream advisory

OESA-2025-2815

Open SourceActive exploitation (sightings)HIGH2025-12-12

kubernetes security update

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected openEuler:20.03-LTS-SP4 kubernetes
Upstream advisory

CVE-2025-13281

Open SourceActive exploitation (sightings)MEDIUM2025-12-01

kube-controller-manager is vulnerable to half-blind Server Side Request Forgery through in-tree Portworx StorageClass

CVEs:CVE-2025-13281

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected k8s.io k8s.io/kubernetes
Upstream advisory

CVE-2025-13281

GoogleActive exploitation (sightings)MEDIUM2025-12-01

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the con...

CVEs:CVE-2025-13281

Upstream advisory

CVE-2025-65046

Open SourceActive exploitation (sightings)LOW2025-12-09

Microsoft Edge (Chromium-based) Spoofing Vulnerability

CVEs:CVE-2025-65046

Affected products

ProductStatusVendorPackageEcosystem
edge_chromium affected microsoft
Upstream advisory

openSUSE-SU-2025:15820-1

Open SourceActive exploitation (sightings)2025-12-13

chromedriver-143.0.7499.109-1.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Tumbleweed chromium
Upstream advisory

GHSA-xmjj-27j3-8w2g

Open SourceActive exploitation (sightings)MEDIUM2025-12-12

GHSA-xmjj-27j3-8w2g

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

DEBIAN-CVE-2025-14373

Open SourceActive exploitation (sightings)MEDIUM2025-12-12

DEBIAN-CVE-2025-14373

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
chromium affected Debian
Upstream advisory

openSUSE-SU-2025:20161-1

Open SourceActive exploitation (sightings)CRITICAL2025-12-12

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Leap 16.0 chromium
Upstream advisory

DSA-6080-1

Open SourceActive exploitation (sightings)2025-12-12

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
Upstream advisory

CVE-2025-14373

GoogleActive exploitation (sightings)MEDIUM2025-12-10

Inappropriate implementation in Toolbar in Google Chrome on Android prior to 143.0.7499.110 allowed a remote attacker to perform domain spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2025-14373

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

GHSA-xm59-rqc7-hhvf

GoogleActive exploitation (sightings)CRITICAL2025-12-18

nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows

Affected products

ProductStatusVendorPackageEcosystem
nbconvert affected PyPI nbconvert
Upstream advisory

GHSA-xm59-rqc7-hhvf

Open SourceActive exploitation (sightings)CRITICAL2025-12-18

nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows

Affected products

ProductStatusVendorPackageEcosystem
jupyter-base-notebook affected wolfi jupyter-base-notebook
jupyter-base-notebook affected chainguard jupyter-base-notebook
kubeflow-pipelines-visualization-server affected wolfi kubeflow-pipelines-visualization-server
kubeflow-pipelines-visualization-server affected chainguard kubeflow-pipelines-visualization-server
nbconvert affected PyPI nbconvert
nbconvert affected PyPI nbconvert
py3-nbconvert affected wolfi py3-nbconvert
py3-nbconvert affected chainguard py3-nbconvert
tensorflow-cpu-jupyter affected wolfi tensorflow-cpu-jupyter
tensorflow-cpu-jupyter affected chainguard tensorflow-cpu-jupyter
tensorflow-gpu-jupyter affected chainguard tensorflow-gpu-jupyter
Upstream advisory

CVE-2025-58478

Open SourceActive exploitation (sightings)CRITICAL2025-12-01

Out-of-bounds write in libimagecodec.quram.so prior to SMR Dec-2025 Release 1 allows remote attackers to access out-of-bounds memory.

CVEs:CVE-2025-58478

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

DEBIAN-CVE-2025-14372

Open SourceActive exploitation (sightings)CRITICAL2025-12-12

DEBIAN-CVE-2025-14372

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2025-14372

GoogleActive exploitation (sightings)MEDIUM2025-12-10

Use after free in Password Manager in Google Chrome prior to 143.0.7499.110 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2025-14372

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

GHSA-cfr8-3v62-gpqj

Open SourceActive exploitation (sightings)HIGH2025-12-03

GHSA-cfr8-3v62-gpqj

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2025-13992

GoogleActive exploitation (sightings)HIGH2025-12-03

Side-channel information leakage in Navigation and Loading in Google Chrome prior to 139.0.7258.66 allowed a remote attacker to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2025-13992

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13992

Open SourceActive exploitation (sightings)HIGH2025-12-03

DEBIAN-CVE-2025-13992

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2025-21072

Open SourceActive exploitation (sightings)HIGH2025-12-01

Out-of-bounds write in decoding metadata in fingerprint trustlet prior to SMR Dec-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.

CVEs:CVE-2025-21072

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2025-48606

Open SourceActive exploitation (sightings)HIGH2025-12-08

In preparePackage of InstallPackageHelper.java, there is a possible way for an app to appear hidden upon installation without a mechanism to uninstall it due to a logic error in the code. This could lead to local escalation of privilege with no additio...

CVEs:CVE-2025-48606

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20768

Open SourceActive exploitation (sightings)HIGH2025-12-02

In display, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID...

CVEs:CVE-2025-20768

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20770

Open SourceActive exploitation (sightings)HIGH2025-12-02

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS101...

CVEs:CVE-2025-20770

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20771

Open SourceActive exploitation (sightings)MEDIUM2025-12-02

In display, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. ...

CVEs:CVE-2025-20771

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20767

Open SourceActive exploitation (sightings)HIGH2025-12-02

In display, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ...

CVEs:CVE-2025-20767

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20764

Open SourceActive exploitation (sightings)HIGH2025-12-02

In smi, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: A...

CVEs:CVE-2025-20764

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20765

Open SourceActive exploitation (sightings)MEDIUM2025-12-02

In aee daemon, there is a possible system crash due to a race condition. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10190802;...

CVEs:CVE-2025-20765

Affected products

ProductStatusVendorPackageEcosystem
android affected google
openwrt affected openwrt
yocto affected linuxfoundation
Upstream advisory

CVE-2025-48569

Open SourceActive exploitation (sightings)HIGH2025-12-08

In multiple locations, there is a possible permanent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-48569

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48608

Open SourceActive exploitation (sightings)MEDIUM2025-12-08

In isValidMediaUri of SettingsProvider.java, there is a possible cross user media read due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for...

CVEs:CVE-2025-48608

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48625

Open SourceActive exploitation (sightings)HIGH2025-12-08

In multiple locations of UsbDataAdvancedProtectionHook.java, there is a possible way to access USB data when the screen is off due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. Use...

CVEs:CVE-2025-48625

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

DSA-6089-1

Open SourceCoalition ESS > 63%2025-12-21

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
Upstream advisory

GHSA-r5qp-7h29-v42w

Open SourceCoalition ESS > 63%HIGH2025-12-17

GHSA-r5qp-7h29-v42w

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2025-14766

Open SourceCoalition ESS > 63%HIGH2025-12-16

DEBIAN-CVE-2025-14766

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2025-14766

GoogleCoalition ESS > 63%HIGH2025-12-16

Out of bounds read and write in V8 in Google Chrome prior to 143.0.7499.147 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2025-14766

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

MINI-fxp4-pxwq-mww8

Open SourcePoC exploit2025-12-02

MINI-fxp4-pxwq-mww8

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

MINI-rmfc-r9c4-ph89

Open SourcePoC exploit2025-12-02

MINI-rmfc-r9c4-ph89

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

GHSA-gv8f-9g4r-fj8q

Open SourcePoC exploitCRITICAL2025-12-17

GHSA-gv8f-9g4r-fj8q

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

DEBIAN-CVE-2025-14765

Open SourcePoC exploitCRITICAL2025-12-16

DEBIAN-CVE-2025-14765

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2025-14765

GooglePoC exploitHIGH2025-12-16

Use after free in WebGPU in Google Chrome prior to 143.0.7499.147 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2025-14765

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

PUB-A-438955204

GooglePoC exploitHIGH2025-12-01

PUB-A-438955204

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

MINI-xw8f-v5c9-8wm9

Open SourcePoC exploit2025-12-02

MINI-xw8f-v5c9-8wm9

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

CLSA-2025-1765231763

Open SourcePoC exploitHIGH2025-12-08

golang: Fix of 3 CVEs

Affected products

ProductStatusVendorPackageEcosystem
golang affected TuxCare:AlmaLinux:9.2 golang
golang-bin affected TuxCare:AlmaLinux:9.2 golang-bin
golang-docs affected TuxCare:AlmaLinux:9.2 golang-docs
golang-misc affected TuxCare:AlmaLinux:9.2 golang-misc
golang-src affected TuxCare:AlmaLinux:9.2 golang-src
golang-tests affected TuxCare:AlmaLinux:9.2 golang-tests
go-toolset affected TuxCare:AlmaLinux:9.2 go-toolset
Upstream advisory

MINI-743j-fvr7-v73f

Open SourcePoC exploit2025-12-02

MINI-743j-fvr7-v73f

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

MINI-6w94-f3f5-6q8w

Open SourcePoC exploit2025-12-25

MINI-6w94-f3f5-6q8w

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-metrics-scraper affected MinimOS kubernetes-dashboard-metrics-scraper
kubernetes-dashboard-metrics-scraper-compat affected MinimOS kubernetes-dashboard-metrics-scraper-compat
Upstream advisory

MINI-wrj8-9vmm-gc56

Open SourcePoC exploit2025-12-23

MINI-wrj8-9vmm-gc56

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-metrics-scraper-fips affected MinimOS kubernetes-dashboard-metrics-scraper-fips
Upstream advisory

MINI-2vjq-6xxr-h79v

Open SourcePoC exploit2025-12-02

MINI-2vjq-6xxr-h79v

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

MINI-38w9-v5vg-h9p3

Open SourcePoC exploit2025-12-09

MINI-38w9-v5vg-h9p3

Affected products

ProductStatusVendorPackageEcosystem
k8s-sidecar affected MinimOS k8s-sidecar
Upstream advisory

MINI-fcqc-vwm2-6257

Open SourcePoC exploit2025-12-09

MINI-fcqc-vwm2-6257

Affected products

ProductStatusVendorPackageEcosystem
k8s-sidecar affected MinimOS k8s-sidecar
Upstream advisory

GHSA-2xpw-w6gg-jr37

Open SourcePoC exploitCRITICAL2025-12-05

urllib3 streaming API improperly handles highly compressed data

Affected products

ProductStatusVendorPackageEcosystem
airflow-2 affected chainguard airflow-2
airflow-3 affected wolfi airflow-3
airflow-3 affected chainguard airflow-3
airflow-core-2 affected chainguard airflow-core-2
airflow-core-3 affected chainguard airflow-core-3
ansible-operator affected chainguard ansible-operator
ansible-operator affected wolfi ansible-operator
ansible-operator-fips affected chainguard ansible-operator-fips
apache-beam-python-3.11-sdk affected chainguard apache-beam-python-3.11-sdk
authentik affected chainguard authentik
awx affected chainguard awx
az affected chainguard az
az affected wolfi az
azure-functions-host affected chainguard azure-functions-host
barman affected chainguard barman
confluent-docker-utils affected chainguard confluent-docker-utils
confluent-docker-utils affected wolfi confluent-docker-utils
dask-gateway affected chainguard dask-gateway
dask-gateway affected wolfi dask-gateway
dask-kubernetes affected chainguard dask-kubernetes
dask-kubernetes affected wolfi dask-kubernetes
datadog-agent-7.71 affected chainguard datadog-agent-7.71
datadog-agent-7.72 affected chainguard datadog-agent-7.72
datadog-agent-7.72 affected wolfi datadog-agent-7.72
datadog-agent-7.73 affected wolfi datadog-agent-7.73
datadog-agent-7.73 affected chainguard datadog-agent-7.73
datadog-agent-7.74 affected chainguard datadog-agent-7.74
datadog-agent-7.74 affected wolfi datadog-agent-7.74
datadog-agent-7.75 affected chainguard datadog-agent-7.75
datadog-agent-7.75 affected wolfi datadog-agent-7.75
datadog-agent-7.76 affected chainguard datadog-agent-7.76
datadog-agent-7.76 affected wolfi datadog-agent-7.76
datadog-agent-7.77 affected wolfi datadog-agent-7.77
datadog-agent-7.77 affected chainguard datadog-agent-7.77
datadog-agent-fips-7.71 affected chainguard datadog-agent-fips-7.71
datadog-agent-fips-7.72 affected chainguard datadog-agent-fips-7.72
datadog-agent-fips-7.73 affected chainguard datadog-agent-fips-7.73
datadog-agent-fips-7.74 affected chainguard datadog-agent-fips-7.74
datadog-agent-fips-7.75 affected chainguard datadog-agent-fips-7.75
datadog-agent-fips-7.76 affected chainguard datadog-agent-fips-7.76
datadog-agent-fips-7.77 affected chainguard datadog-agent-fips-7.77
emissary affected chainguard emissary
emissary affected wolfi emissary
ggshield affected wolfi ggshield
ggshield affected chainguard ggshield
graalvm-25 affected chainguard graalvm-25
jupyter-base-notebook affected wolfi jupyter-base-notebook
jupyter-base-notebook affected chainguard jupyter-base-notebook
jwt-tool affected wolfi jwt-tool
jwt-tool affected chainguard jwt-tool
k8s-sidecar affected wolfi k8s-sidecar
k8s-sidecar affected chainguard k8s-sidecar
kserve affected chainguard kserve
kserve affected wolfi kserve
kubeflow-jupyter-web-app affected chainguard kubeflow-jupyter-web-app
kubeflow-jupyter-web-app affected wolfi kubeflow-jupyter-web-app
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines-visualization-server affected chainguard kubeflow-pipelines-visualization-server
kubeflow-pipelines-visualization-server affected wolfi kubeflow-pipelines-visualization-server
kubeflow-volumes-web-app affected chainguard kubeflow-volumes-web-app
kubeflow-volumes-web-app affected wolfi kubeflow-volumes-web-app
localstack affected chainguard localstack
mlflow affected chainguard mlflow
mlflow affected wolfi mlflow
nemo affected chainguard nemo
nvidia-nsight-compute-13.1 affected chainguard nvidia-nsight-compute-13.1
nvidia-nsight-compute-13.2 affected chainguard nvidia-nsight-compute-13.2
nvidia-nsight-compute-13.3 affected chainguard nvidia-nsight-compute-13.3
openstack-kolla-toolbox-2025.1 affected chainguard openstack-kolla-toolbox-2025.1
openstack-kolla-toolbox-2025.1-fips affected chainguard openstack-kolla-toolbox-2025.1-fips
openstack-kolla-toolbox-2025.2 affected chainguard openstack-kolla-toolbox-2025.2
openstack-kolla-toolbox-2025.2-fips affected chainguard openstack-kolla-toolbox-2025.2-fips
open-webui affected chainguard open-webui
open-webui affected wolfi open-webui
pgadmin4 affected chainguard pgadmin4
pgadmin4-fips affected chainguard pgadmin4-fips
py3.13-scanner-test-libraries affected chainguard py3.13-scanner-test-libraries
py3-cassandra-medusa affected wolfi py3-cassandra-medusa
py3-cassandra-medusa affected chainguard py3-cassandra-medusa
py3-hashin affected chainguard py3-hashin
py3-pip affected chainguard py3-pip
py3-pip affected wolfi py3-pip
py3-pipenv affected chainguard py3-pipenv
py3-pipenv affected wolfi py3-pipenv
py3-urllib3 affected wolfi py3-urllib3
py3-urllib3 affected chainguard py3-urllib3
pypy-3.10 affected chainguard pypy-3.10
pypy-3.10 affected wolfi pypy-3.10
pypy-3.11 affected chainguard pypy-3.11
pypy-3.11 affected wolfi pypy-3.11
request-1276 affected chainguard request-1276
semgrep affected chainguard semgrep
semgrep affected wolfi semgrep
spamcheck affected chainguard spamcheck
superset-5.0 affected chainguard superset-5.0
superset-5.0 affected wolfi superset-5.0
tensorflow-cpu-jupyter affected wolfi tensorflow-cpu-jupyter
tensorflow-cpu-jupyter affected chainguard tensorflow-cpu-jupyter
tensorflow-gpu-jupyter affected chainguard tensorflow-gpu-jupyter
text-generation-inference affected chainguard text-generation-inference
tritonserver-backend-vllm-cuda-12.9 affected chainguard tritonserver-backend-vllm-cuda-12.9
urllib3 affected PyPI urllib3
urllib3 affected PyPI
urllib3 affected PyPI urllib3
Upstream advisory

GHSA-2xpw-w6gg-jr37

GooglePoC exploitCRITICAL2025-12-05

urllib3 streaming API improperly handles highly compressed data

Affected products

ProductStatusVendorPackageEcosystem
urllib3 affected PyPI urllib3
Upstream advisory

GHSA-gm62-xv2j-4w53

Open SourcePoC exploitCRITICAL2025-12-05

urllib3 allows an unbounded number of links in the decompression chain

Affected products

ProductStatusVendorPackageEcosystem
airflow-2 affected chainguard airflow-2
airflow-3 affected chainguard airflow-3
airflow-3 affected wolfi airflow-3
airflow-core-2 affected chainguard airflow-core-2
airflow-core-3 affected chainguard airflow-core-3
ansible-operator affected chainguard ansible-operator
ansible-operator affected wolfi ansible-operator
ansible-operator-fips affected chainguard ansible-operator-fips
apache-beam-python-3.11-sdk affected chainguard apache-beam-python-3.11-sdk
authentik affected chainguard authentik
awx affected chainguard awx
az affected chainguard az
az affected wolfi az
azure-functions-host affected chainguard azure-functions-host
barman affected chainguard barman
confluent-docker-utils affected wolfi confluent-docker-utils
confluent-docker-utils affected chainguard confluent-docker-utils
dask-gateway affected wolfi dask-gateway
dask-gateway affected chainguard dask-gateway
dask-kubernetes affected chainguard dask-kubernetes
dask-kubernetes affected wolfi dask-kubernetes
datadog-agent-7.71 affected chainguard datadog-agent-7.71
datadog-agent-7.72 affected wolfi datadog-agent-7.72
datadog-agent-7.72 affected chainguard datadog-agent-7.72
datadog-agent-7.73 affected chainguard datadog-agent-7.73
datadog-agent-7.73 affected wolfi datadog-agent-7.73
datadog-agent-7.74 affected chainguard datadog-agent-7.74
datadog-agent-7.74 affected wolfi datadog-agent-7.74
datadog-agent-7.75 affected chainguard datadog-agent-7.75
datadog-agent-7.75 affected wolfi datadog-agent-7.75
datadog-agent-7.76 affected wolfi datadog-agent-7.76
datadog-agent-7.76 affected chainguard datadog-agent-7.76
datadog-agent-7.77 affected chainguard datadog-agent-7.77
datadog-agent-7.77 affected wolfi datadog-agent-7.77
datadog-agent-fips-7.71 affected chainguard datadog-agent-fips-7.71
datadog-agent-fips-7.72 affected chainguard datadog-agent-fips-7.72
datadog-agent-fips-7.73 affected chainguard datadog-agent-fips-7.73
datadog-agent-fips-7.74 affected chainguard datadog-agent-fips-7.74
datadog-agent-fips-7.75 affected chainguard datadog-agent-fips-7.75
datadog-agent-fips-7.76 affected chainguard datadog-agent-fips-7.76
datadog-agent-fips-7.77 affected chainguard datadog-agent-fips-7.77
emissary affected wolfi emissary
emissary affected chainguard emissary
ggshield affected wolfi ggshield
ggshield affected chainguard ggshield
graalvm-25 affected chainguard graalvm-25
jupyter-base-notebook affected wolfi jupyter-base-notebook
jupyter-base-notebook affected chainguard jupyter-base-notebook
jwt-tool affected wolfi jwt-tool
jwt-tool affected chainguard jwt-tool
k8s-sidecar affected chainguard k8s-sidecar
k8s-sidecar affected wolfi k8s-sidecar
kserve affected chainguard kserve
kserve affected wolfi kserve
kubeflow-jupyter-web-app affected chainguard kubeflow-jupyter-web-app
kubeflow-jupyter-web-app affected wolfi kubeflow-jupyter-web-app
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines-visualization-server affected wolfi kubeflow-pipelines-visualization-server
kubeflow-pipelines-visualization-server affected chainguard kubeflow-pipelines-visualization-server
kubeflow-volumes-web-app affected wolfi kubeflow-volumes-web-app
kubeflow-volumes-web-app affected chainguard kubeflow-volumes-web-app
localstack affected chainguard localstack
mlflow affected chainguard mlflow
mlflow affected wolfi mlflow
nemo affected chainguard nemo
nvidia-nsight-compute-13.1 affected chainguard nvidia-nsight-compute-13.1
nvidia-nsight-compute-13.2 affected chainguard nvidia-nsight-compute-13.2
nvidia-nsight-compute-13.3 affected chainguard nvidia-nsight-compute-13.3
openstack-kolla-toolbox-2025.1 affected chainguard openstack-kolla-toolbox-2025.1
openstack-kolla-toolbox-2025.1-fips affected chainguard openstack-kolla-toolbox-2025.1-fips
openstack-kolla-toolbox-2025.2 affected chainguard openstack-kolla-toolbox-2025.2
openstack-kolla-toolbox-2025.2-fips affected chainguard openstack-kolla-toolbox-2025.2-fips
open-webui affected wolfi open-webui
open-webui affected chainguard open-webui
pgadmin4 affected chainguard pgadmin4
pgadmin4-fips affected chainguard pgadmin4-fips
py3.13-scanner-test-libraries affected chainguard py3.13-scanner-test-libraries
py3-cassandra-medusa affected wolfi py3-cassandra-medusa
py3-cassandra-medusa affected chainguard py3-cassandra-medusa
py3-hashin affected chainguard py3-hashin
py3-pip affected chainguard py3-pip
py3-pip affected wolfi py3-pip
py3-pipenv affected chainguard py3-pipenv
py3-pipenv affected wolfi py3-pipenv
py3-urllib3 affected wolfi py3-urllib3
py3-urllib3 affected chainguard py3-urllib3
pypy-3.10 affected wolfi pypy-3.10
pypy-3.10 affected chainguard pypy-3.10
pypy-3.11 affected wolfi pypy-3.11
pypy-3.11 affected chainguard pypy-3.11
request-1276 affected chainguard request-1276
semgrep affected chainguard semgrep
semgrep affected wolfi semgrep
spamcheck affected chainguard spamcheck
superset-5.0 affected chainguard superset-5.0
superset-5.0 affected wolfi superset-5.0
tensorflow-cpu-jupyter affected chainguard tensorflow-cpu-jupyter
tensorflow-cpu-jupyter affected wolfi tensorflow-cpu-jupyter
tensorflow-gpu-jupyter affected chainguard tensorflow-gpu-jupyter
text-generation-inference affected chainguard text-generation-inference
tritonserver-backend-vllm-cuda-12.9 affected chainguard tritonserver-backend-vllm-cuda-12.9
urllib3 affected PyPI urllib3
urllib3 affected PyPI urllib3
urllib3 affected PyPI
Upstream advisory

GHSA-gm62-xv2j-4w53

GooglePoC exploitCRITICAL2025-12-05

urllib3 allows an unbounded number of links in the decompression chain

Affected products

ProductStatusVendorPackageEcosystem
urllib3 affected PyPI urllib3
Upstream advisory

GO-2025-4188

Open SourcePoC exploitHIGH2025-12-15

Logrus is vulnerable to DoS when using Entry.writerScanner in github.com/sirupsen/logrus

Affected products

ProductStatusVendorPackageEcosystem
aws-flb-cloudwatch affected wolfi aws-flb-cloudwatch
aws-flb-cloudwatch affected chainguard aws-flb-cloudwatch
aws-flb-cloudwatch-fips affected chainguard aws-flb-cloudwatch-fips
aws-flb-firehose affected chainguard aws-flb-firehose
aws-flb-firehose affected wolfi aws-flb-firehose
aws-flb-firehose-fips affected chainguard aws-flb-firehose-fips
aws-flb-kinesis affected chainguard aws-flb-kinesis
aws-flb-kinesis affected wolfi aws-flb-kinesis
aws-flb-kinesis-fips affected chainguard aws-flb-kinesis-fips
consul-1.18 affected chainguard consul-1.18
consul-1.19 affected chainguard consul-1.19
consul-1.20 affected chainguard consul-1.20
consul-1.21 affected chainguard consul-1.21
consul-fips-1.19 affected chainguard consul-fips-1.19
consul-fips-1.20 affected chainguard consul-fips-1.20
consul-fips-1.21 affected chainguard consul-fips-1.21
docker-credential-gcr affected chainguard docker-credential-gcr
docker-credential-gcr affected wolfi docker-credential-gcr
docker-credential-gcr-fips affected chainguard docker-credential-gcr-fips
falcoctl-fips-0.4 affected chainguard falcoctl-fips-0.4
go-discover affected wolfi go-discover
go-discover affected chainguard go-discover
go-discover-fips affected chainguard go-discover-fips
gostatsd affected wolfi gostatsd
gostatsd affected chainguard gostatsd
hello-world-golang affected chainguard hello-world-golang
hello-world-golang affected wolfi hello-world-golang
kiam affected chainguard kiam
kpt affected wolfi kpt
kpt affected chainguard kpt
kubeflow affected wolfi kubeflow
kubeflow affected chainguard kubeflow
kubeflow-fips affected chainguard kubeflow-fips
kube-fluentd-operator affected wolfi kube-fluentd-operator
kube-fluentd-operator affected chainguard kube-fluentd-operator
kubernetes-event-exporter-fips affected chainguard kubernetes-event-exporter-fips
neuvector-dbgen affected wolfi neuvector-dbgen
neuvector-dbgen affected chainguard neuvector-dbgen
neuvector-dbgen-fips affected chainguard neuvector-dbgen-fips
newrelic-nri-statsd affected chainguard newrelic-nri-statsd
newrelic-nri-statsd affected wolfi newrelic-nri-statsd
php-fpm_exporter affected chainguard php-fpm_exporter
php-fpm_exporter affected wolfi php-fpm_exporter
prometheus-beat-exporter affected chainguard prometheus-beat-exporter
prometheus-beat-exporter-fips affected chainguard prometheus-beat-exporter-fips
prometheus-mongodb-exporter-0.37 affected chainguard prometheus-mongodb-exporter-0.37
prometheus-mongodb-exporter-fips-0.37 affected chainguard prometheus-mongodb-exporter-fips-0.37
sirupsen/logrus affected github.com github.com/sirupsen/logrus
smokescreen affected wolfi smokescreen
smokescreen affected chainguard smokescreen
sonobuoy affected chainguard sonobuoy
sonobuoy affected wolfi sonobuoy
sonobuoy-fips affected chainguard sonobuoy-fips
src-fingerprint affected wolfi src-fingerprint
src-fingerprint affected chainguard src-fingerprint
src-fingerprint-fips affected chainguard src-fingerprint-fips
stakater-reloader-0.0.119 affected chainguard stakater-reloader-0.0.119
stakater-reloader-0.0.128 affected chainguard stakater-reloader-0.0.128
terraform-provider-google affected wolfi terraform-provider-google
terraform-provider-google affected chainguard terraform-provider-google
terraform-provider-google-fips affected chainguard terraform-provider-google-fips
wavefront-collector-for-kubernetes-1.12 affected chainguard wavefront-collector-for-kubernetes-1.12
wavefront-collector-for-kubernetes-1.13 affected chainguard wavefront-collector-for-kubernetes-1.13
Upstream advisory

MINI-h72p-r7x8-qhp5

Open SourcePoC exploit2025-12-09

MINI-h72p-r7x8-qhp5

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

MINI-g7hh-5p2g-2hvr

Open SourcePoC exploit2025-12-07

MINI-g7hh-5p2g-2hvr

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter-fips affected MinimOS kubernetes-event-exporter-fips
Upstream advisory

GHSA-4f99-4q7p-p3gh

GooglePoC exploitHIGH2025-12-04

Logrus is vulnerable to DoS when using Entry.Writer()

Affected products

ProductStatusVendorPackageEcosystem
sirupsen/logrus affected github.com github.com/sirupsen/logrus
Upstream advisory

GHSA-4f99-4q7p-p3gh

Open SourcePoC exploitHIGH2025-12-04

Logrus is vulnerable to DoS when using Entry.Writer()

Affected products

ProductStatusVendorPackageEcosystem
aws-flb-cloudwatch affected chainguard aws-flb-cloudwatch
aws-flb-cloudwatch affected wolfi aws-flb-cloudwatch
aws-flb-cloudwatch-fips affected chainguard aws-flb-cloudwatch-fips
aws-flb-firehose affected chainguard aws-flb-firehose
aws-flb-firehose affected wolfi aws-flb-firehose
aws-flb-firehose-fips affected chainguard aws-flb-firehose-fips
aws-flb-kinesis affected wolfi aws-flb-kinesis
aws-flb-kinesis affected chainguard aws-flb-kinesis
aws-flb-kinesis-fips affected chainguard aws-flb-kinesis-fips
consul-1.18 affected chainguard consul-1.18
consul-1.19 affected chainguard consul-1.19
consul-1.20 affected chainguard consul-1.20
consul-1.21 affected chainguard consul-1.21
consul-fips-1.19 affected chainguard consul-fips-1.19
consul-fips-1.20 affected chainguard consul-fips-1.20
consul-fips-1.21 affected chainguard consul-fips-1.21
docker-credential-gcr affected wolfi docker-credential-gcr
docker-credential-gcr affected chainguard docker-credential-gcr
docker-credential-gcr-fips affected chainguard docker-credential-gcr-fips
falcoctl-fips-0.4 affected chainguard falcoctl-fips-0.4
go-discover affected wolfi go-discover
go-discover affected chainguard go-discover
go-discover-fips affected chainguard go-discover-fips
gostatsd affected chainguard gostatsd
gostatsd affected wolfi gostatsd
hello-world-golang affected wolfi hello-world-golang
hello-world-golang affected chainguard hello-world-golang
kiam affected chainguard kiam
kpt affected wolfi kpt
kpt affected chainguard kpt
kubeflow affected chainguard kubeflow
kubeflow affected wolfi kubeflow
kubeflow-fips affected chainguard kubeflow-fips
kube-fluentd-operator affected chainguard kube-fluentd-operator
kube-fluentd-operator affected wolfi kube-fluentd-operator
kubernetes-event-exporter-fips affected chainguard kubernetes-event-exporter-fips
neuvector-dbgen affected chainguard neuvector-dbgen
neuvector-dbgen affected wolfi neuvector-dbgen
neuvector-dbgen-fips affected chainguard neuvector-dbgen-fips
newrelic-nri-statsd affected wolfi newrelic-nri-statsd
newrelic-nri-statsd affected chainguard newrelic-nri-statsd
php-fpm_exporter affected wolfi php-fpm_exporter
php-fpm_exporter affected chainguard php-fpm_exporter
prometheus-beat-exporter affected chainguard prometheus-beat-exporter
prometheus-beat-exporter affected wolfi prometheus-beat-exporter
prometheus-beat-exporter-fips affected chainguard prometheus-beat-exporter-fips
prometheus-mongodb-exporter-0.37 affected chainguard prometheus-mongodb-exporter-0.37
prometheus-mongodb-exporter-fips-0.37 affected chainguard prometheus-mongodb-exporter-fips-0.37
sirupsen/logrus affected github.com github.com/sirupsen/logrus
smokescreen affected chainguard smokescreen
smokescreen affected wolfi smokescreen
sonobuoy affected wolfi sonobuoy
sonobuoy affected chainguard sonobuoy
sonobuoy-fips affected chainguard sonobuoy-fips
src-fingerprint affected wolfi src-fingerprint
src-fingerprint affected chainguard src-fingerprint
src-fingerprint-fips affected chainguard src-fingerprint-fips
stakater-reloader-0.0.119 affected chainguard stakater-reloader-0.0.119
stakater-reloader-0.0.128 affected chainguard stakater-reloader-0.0.128
terraform-provider-google affected chainguard terraform-provider-google
terraform-provider-google affected wolfi terraform-provider-google
terraform-provider-google-fips affected chainguard terraform-provider-google-fips
wavefront-collector-for-kubernetes-1.12 affected chainguard wavefront-collector-for-kubernetes-1.12
wavefront-collector-for-kubernetes-1.13 affected chainguard wavefront-collector-for-kubernetes-1.13
Upstream advisory

AZL-71543

Open SourcePoC exploitHIGH2025-12-04

CVE-2025-65637 affecting package kubernetes for versions less than 1.30.10-18

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected Azure Linux:3 kubernetes
Upstream advisory

AZL-71617

Open SourcePoC exploitHIGH2025-12-04

CVE-2025-65637 affecting package kubernetes for versions less than 1.28.4-21

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected Azure Linux:2 kubernetes
Upstream advisory

DEBIAN-CVE-2025-65637

Open SourcePoC exploitHIGH2025-12-04

DEBIAN-CVE-2025-65637

Affected products

ProductStatusVendorPackageEcosystem
golang-logrus affected Debian:11 golang-logrus
golang-logrus affected Debian:12 golang-logrus
golang-logrus affected Debian:13 golang-logrus
golang-logrus affected Debian:14 golang-logrus
Upstream advisory

OESA-2025-2828

Open SourcePoC exploitCRITICAL2025-12-12

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:24.03-LTS-SP1 golang
Upstream advisory

OESA-2025-2781

Open SourcePoC exploit2025-12-05

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:24.03-LTS-SP2 golang
Upstream advisory

OESA-2025-2780

Open SourcePoC exploit2025-12-05

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP4 golang
Upstream advisory

MINI-cg78-w8wc-gpj7

Open SourcePoC exploit2025-12-10

MINI-cg78-w8wc-gpj7

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-api affected MinimOS kubernetes-dashboard-api
kubernetes-dashboard-api-compat affected MinimOS kubernetes-dashboard-api-compat
Upstream advisory

MINI-pxfj-49vm-xc4x

Open SourcePoC exploit2025-12-10

MINI-pxfj-49vm-xc4x

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-api-fips affected MinimOS kubernetes-dashboard-api-fips
kubernetes-dashboard-api-fips-compat affected MinimOS kubernetes-dashboard-api-fips-compat
Upstream advisory

MINI-598q-xgr5-2xxg

Open SourcePoC exploit2025-12-02

MINI-598q-xgr5-2xxg

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

GHSA-768j-98cg-p3fv

Open SourcePoC exploitCRITICAL2025-12-01

fontTools is Vulnerable to Arbitrary File Write and XML injection in fontTools.varLib

Affected products

ProductStatusVendorPackageEcosystem
fonttools affected PyPI fonttools
fonttools affected PyPI fonttools
mlflow affected chainguard mlflow
mlflow affected wolfi mlflow
open-webui affected wolfi open-webui
open-webui affected chainguard open-webui
tensorflow-cpu-jupyter affected chainguard tensorflow-cpu-jupyter
tensorflow-cpu-jupyter affected wolfi tensorflow-cpu-jupyter
tensorflow-gpu-jupyter affected chainguard tensorflow-gpu-jupyter
Upstream advisory

GHSA-768j-98cg-p3fv

GooglePoC exploitCRITICAL2025-12-01

fontTools is Vulnerable to Arbitrary File Write and XML injection in fontTools.varLib

Affected products

ProductStatusVendorPackageEcosystem
fonttools affected PyPI fonttools
Upstream advisory

MINI-3qg7-frm4-66r5

Open SourcePoC exploit2025-12-28

MINI-3qg7-frm4-66r5

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-metrics-scraper affected MinimOS kubernetes-dashboard-metrics-scraper
kubernetes-dashboard-metrics-scraper-compat affected MinimOS kubernetes-dashboard-metrics-scraper-compat
Upstream advisory

MINI-9vf4-4r52-p626

Open SourcePoC exploit2025-12-23

MINI-9vf4-4r52-p626

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-metrics-scraper-fips affected MinimOS kubernetes-dashboard-metrics-scraper-fips
Upstream advisory

MINI-jw78-xgvh-wh45

Open SourcePoC exploit2025-12-02

MINI-jw78-xgvh-wh45

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

OESA-2025-2868

Open SourcePoC exploitCRITICAL2025-12-30

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:24.03-LTS-SP2 golang
Upstream advisory

OESA-2025-2827

Open SourcePoC exploitCRITICAL2025-12-12

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:24.03-LTS golang
Upstream advisory

OESA-2025-2826

Open SourcePoC exploitCRITICAL2025-12-12

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP4 golang
Upstream advisory

OESA-2025-2783

Open SourcePoC exploitCRITICAL2025-12-05

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP3 golang
Upstream advisory

OESA-2025-2782

Open SourcePoC exploitCRITICAL2025-12-05

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:20.03-LTS-SP4 golang
Upstream advisory

CLSA-2025-1765379145

Open SourcePoC exploit2025-12-10

golang: Fix of CVE-2025-47906

Affected products

ProductStatusVendorPackageEcosystem
golang affected TuxCare:AlmaLinux:9.2 golang
golang-bin affected TuxCare:AlmaLinux:9.2 golang-bin
golang-docs affected TuxCare:AlmaLinux:9.2 golang-docs
golang-misc affected TuxCare:AlmaLinux:9.2 golang-misc
golang-src affected TuxCare:AlmaLinux:9.2 golang-src
golang-tests affected TuxCare:AlmaLinux:9.2 golang-tests
go-toolset affected TuxCare:AlmaLinux:9.2 go-toolset
Upstream advisory

RLSA-2025:22668

Open SourcePoC exploitHIGH2025-12-04

Moderate: go-toolset:rhel8 security update

Affected products

ProductStatusVendorPackageEcosystem
delve affected Rocky Linux:8 delve
golang affected Rocky Linux:8 golang
Upstream advisory

GHSA-hgf8-39gv-g3f2

GooglePoC exploitHIGH2025-12-02

Werkzeug safe_join() allows Windows special device names

Affected products

ProductStatusVendorPackageEcosystem
werkzeug affected PyPI werkzeug
Upstream advisory

GHSA-hgf8-39gv-g3f2

Open SourcePoC exploitHIGH2025-12-02

Werkzeug safe_join() allows Windows special device names

Affected products

ProductStatusVendorPackageEcosystem
airflow-2 affected chainguard airflow-2
airflow-3 affected wolfi airflow-3
airflow-3 affected chainguard airflow-3
airflow-core-2 affected chainguard airflow-core-2
azure-functions-python-worker affected chainguard azure-functions-python-worker
emissary affected chainguard emissary
emissary affected wolfi emissary
kubeflow-pipelines-visualization-server affected wolfi kubeflow-pipelines-visualization-server
kubeflow-pipelines-visualization-server affected chainguard kubeflow-pipelines-visualization-server
kubeflow-volumes-web-app affected wolfi kubeflow-volumes-web-app
kubeflow-volumes-web-app affected chainguard kubeflow-volumes-web-app
localstack affected chainguard localstack
mlflow affected chainguard mlflow
mlflow affected wolfi mlflow
superset-4.1 affected chainguard superset-4.1
superset-4.1 affected wolfi superset-4.1
superset-5.0 affected wolfi superset-5.0
superset-5.0 affected chainguard superset-5.0
tensorflow-cpu-jupyter affected wolfi tensorflow-cpu-jupyter
tensorflow-cpu-jupyter affected chainguard tensorflow-cpu-jupyter
tensorflow-gpu-jupyter affected chainguard tensorflow-gpu-jupyter
werkzeug affected PyPI werkzeug
werkzeug affected PyPI werkzeug
Upstream advisory

MINI-47hq-c333-42qh

Open SourcePoC exploit2025-12-10

MINI-47hq-c333-42qh

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-api affected MinimOS kubernetes-dashboard-api
kubernetes-dashboard-api-compat affected MinimOS kubernetes-dashboard-api-compat
Upstream advisory

MINI-mx65-86w3-6cw3

Open SourcePoC exploit2025-12-10

MINI-mx65-86w3-6cw3

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-api-fips affected MinimOS kubernetes-dashboard-api-fips
kubernetes-dashboard-api-fips-compat affected MinimOS kubernetes-dashboard-api-fips-compat
Upstream advisory

MINI-rvm4-9g2m-3427

Open SourcePoC exploit2025-12-02

MINI-rvm4-9g2m-3427

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

CVE-2025-48631

Open SourcePoC exploitHIGH2025-12-01

In onHeaderDecoded of LocalImageResolver.java, there is a possible persistent denial of service due to resource exhaustion. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for e...

CVEs:CVE-2025-48631

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

OESA-2025-2867

Open SourcePoC exploitCRITICAL2025-12-30

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:24.03-LTS-SP1 golang
Upstream advisory

OESA-2025-2865

Open SourcePoC exploitCRITICAL2025-12-30

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP4 golang
Upstream advisory

MGASA-2025-0326

Open SourcePoC exploitCRITICAL2025-12-13

Updated golang packages fix security vulnerabilities

Affected products

ProductStatusVendorPackageEcosystem
golang affected Mageia:9 golang
Upstream advisory

OESA-2025-2829

Open SourcePoC exploitCRITICAL2025-12-12

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:20.03-LTS-SP4 golang
Upstream advisory

OESA-2025-2825

Open SourcePoC exploitCRITICAL2025-12-12

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP3 golang
Upstream advisory

MINI-6f83-v3j4-vm7r

Open SourcePoC exploit2025-12-08

MINI-6f83-v3j4-vm7r

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.25 affected MinimOS istio-cni-fips-1.25
istioctl-bash-completion-fips-1.25 affected MinimOS istioctl-bash-completion-fips-1.25
istioctl-fips-1.25 affected MinimOS istioctl-fips-1.25
istioctl-zsh-completion-fips-1.25 affected MinimOS istioctl-zsh-completion-fips-1.25
istio-fips-1.25 affected MinimOS istio-fips-1.25
istio-install-cni-fips-1.25 affected MinimOS istio-install-cni-fips-1.25
istio-pilot-agent-fips-1.25 affected MinimOS istio-pilot-agent-fips-1.25
istio-pilot-discovery-fips-1.25 affected MinimOS istio-pilot-discovery-fips-1.25
Upstream advisory

MINI-xrpj-3qwx-3h88

Open SourcePoC exploit2025-12-07

MINI-xrpj-3qwx-3h88

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

MINI-894f-29gw-f75p

Open SourcePoC exploit2025-12-06

MINI-894f-29gw-f75p

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-1.33 affected MinimOS kube-apiserver-1.33
kube-apiserver-1.33-compat affected MinimOS kube-apiserver-1.33-compat
kube-controller-manager-1.33 affected MinimOS kube-controller-manager-1.33
kube-controller-manager-1.33-compat affected MinimOS kube-controller-manager-1.33-compat
kubectl-1.33 affected MinimOS kubectl-1.33
kubectl-1.33-advanced-compat affected MinimOS kubectl-1.33-advanced-compat
kubectl-1.33-compat affected MinimOS kubectl-1.33-compat
kube-proxy-1.33 affected MinimOS kube-proxy-1.33
kube-proxy-1.33-compat affected MinimOS kube-proxy-1.33-compat
kubernetes-1.33 affected MinimOS kubernetes-1.33
kube-scheduler-1.33 affected MinimOS kube-scheduler-1.33
kube-scheduler-1.33-compat affected MinimOS kube-scheduler-1.33-compat
Upstream advisory

MINI-gp33-jr4f-56q7

Open SourcePoC exploit2025-12-05

MINI-gp33-jr4f-56q7

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-1.34 affected MinimOS kube-apiserver-1.34
kube-apiserver-1.34-compat affected MinimOS kube-apiserver-1.34-compat
kube-controller-manager-1.34 affected MinimOS kube-controller-manager-1.34
kube-controller-manager-1.34-compat affected MinimOS kube-controller-manager-1.34-compat
kubectl-1.34 affected MinimOS kubectl-1.34
kubectl-1.34-advanced-compat affected MinimOS kubectl-1.34-advanced-compat
kubectl-1.34-compat affected MinimOS kubectl-1.34-compat
kube-proxy-1.34 affected MinimOS kube-proxy-1.34
kube-proxy-1.34-compat affected MinimOS kube-proxy-1.34-compat
kubernetes-1.34 affected MinimOS kubernetes-1.34
kube-scheduler-1.34 affected MinimOS kube-scheduler-1.34
kube-scheduler-1.34-compat affected MinimOS kube-scheduler-1.34-compat
Upstream advisory

MINI-wqcr-wjqx-8x6p

Open SourcePoC exploit2025-12-05

MINI-wqcr-wjqx-8x6p

Affected products

ProductStatusVendorPackageEcosystem
kubectl-fips-1.31 affected MinimOS kubectl-fips-1.31
kubernetes-fips-1.31 affected MinimOS kubernetes-fips-1.31
Upstream advisory

MINI-p5ww-x379-h2wm

Open SourcePoC exploit2025-12-05

MINI-p5ww-x379-h2wm

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter-fips affected MinimOS kubernetes-event-exporter-fips
Upstream advisory

MINI-p3r5-5pwm-g972

Open SourcePoC exploit2025-12-05

MINI-p3r5-5pwm-g972

Affected products

ProductStatusVendorPackageEcosystem
cni-plugins affected MinimOS cni-plugins
cni-plugins-aws-k8s-compat affected MinimOS cni-plugins-aws-k8s-compat
cni-plugins-bandwidth affected MinimOS cni-plugins-bandwidth
cni-plugins-bandwidth-compat affected MinimOS cni-plugins-bandwidth-compat
cni-plugins-bridge affected MinimOS cni-plugins-bridge
cni-plugins-bridge-compat affected MinimOS cni-plugins-bridge-compat
cni-plugins-dhcp affected MinimOS cni-plugins-dhcp
cni-plugins-dhcp-compat affected MinimOS cni-plugins-dhcp-compat
cni-plugins-dummy affected MinimOS cni-plugins-dummy
cni-plugins-dummy-compat affected MinimOS cni-plugins-dummy-compat
cni-plugins-firewall affected MinimOS cni-plugins-firewall
cni-plugins-firewall-compat affected MinimOS cni-plugins-firewall-compat
cni-plugins-host-device affected MinimOS cni-plugins-host-device
cni-plugins-host-device-compat affected MinimOS cni-plugins-host-device-compat
cni-plugins-host-local affected MinimOS cni-plugins-host-local
cni-plugins-host-local-compat affected MinimOS cni-plugins-host-local-compat
cni-plugins-ipam affected MinimOS cni-plugins-ipam
cni-plugins-ipvlan affected MinimOS cni-plugins-ipvlan
cni-plugins-ipvlan-compat affected MinimOS cni-plugins-ipvlan-compat
cni-plugins-loopback affected MinimOS cni-plugins-loopback
cni-plugins-loopback-compat affected MinimOS cni-plugins-loopback-compat
cni-plugins-macvlan affected MinimOS cni-plugins-macvlan
cni-plugins-macvlan-compat affected MinimOS cni-plugins-macvlan-compat
cni-plugins-main affected MinimOS cni-plugins-main
cni-plugins-meta affected MinimOS cni-plugins-meta
cni-plugins-portmap affected MinimOS cni-plugins-portmap
cni-plugins-portmap-compat affected MinimOS cni-plugins-portmap-compat
cni-plugins-ptp affected MinimOS cni-plugins-ptp
cni-plugins-ptp-compat affected MinimOS cni-plugins-ptp-compat
cni-plugins-sbr affected MinimOS cni-plugins-sbr
cni-plugins-sbr-compat affected MinimOS cni-plugins-sbr-compat
cni-plugins-static affected MinimOS cni-plugins-static
cni-plugins-static-compat affected MinimOS cni-plugins-static-compat
cni-plugins-tap affected MinimOS cni-plugins-tap
cni-plugins-tap-compat affected MinimOS cni-plugins-tap-compat
cni-plugins-tuning affected MinimOS cni-plugins-tuning
cni-plugins-tuning-compat affected MinimOS cni-plugins-tuning-compat
cni-plugins-vlan affected MinimOS cni-plugins-vlan
cni-plugins-vlan-compat affected MinimOS cni-plugins-vlan-compat
cni-plugins-vrf affected MinimOS cni-plugins-vrf
cni-plugins-vrf-compat affected MinimOS cni-plugins-vrf-compat
Upstream advisory

MINI-59xj-gh5g-rvxg

Open SourcePoC exploit2025-12-05

MINI-59xj-gh5g-rvxg

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-fips-1.34 affected MinimOS kube-apiserver-fips-1.34
kube-apiserver-fips-1.34-compat affected MinimOS kube-apiserver-fips-1.34-compat
kube-controller-manager-fips-1.34 affected MinimOS kube-controller-manager-fips-1.34
kube-controller-manager-fips-1.34-compat affected MinimOS kube-controller-manager-fips-1.34-compat
kubectl-fips-1.34 affected MinimOS kubectl-fips-1.34
kubectl-fips-1.34-compat affected MinimOS kubectl-fips-1.34-compat
kube-proxy-fips-1.34 affected MinimOS kube-proxy-fips-1.34
kube-proxy-fips-1.34-compat affected MinimOS kube-proxy-fips-1.34-compat
kubernetes-fips-1.34 affected MinimOS kubernetes-fips-1.34
kube-scheduler-fips-1.34 affected MinimOS kube-scheduler-fips-1.34
kube-scheduler-fips-1.34-compat affected MinimOS kube-scheduler-fips-1.34-compat
Upstream advisory

MINI-r9cf-jhhr-g55m

Open SourcePoC exploit2025-12-05

MINI-r9cf-jhhr-g55m

Affected products

ProductStatusVendorPackageEcosystem
istio-1.25 affected MinimOS istio-1.25
istio-cni-1.25 affected MinimOS istio-cni-1.25
istio-cni-1.25-compat affected MinimOS istio-cni-1.25-compat
istioctl-1.25 affected MinimOS istioctl-1.25
istioctl-bash-completion-1.25 affected MinimOS istioctl-bash-completion-1.25
istioctl-zsh-completion-1.25 affected MinimOS istioctl-zsh-completion-1.25
istio-install-cni-1.25 affected MinimOS istio-install-cni-1.25
istio-install-cni-1.25-compat affected MinimOS istio-install-cni-1.25-compat
istio-pilot-agent-1.25 affected MinimOS istio-pilot-agent-1.25
istio-pilot-agent-1.25-compat affected MinimOS istio-pilot-agent-1.25-compat
istio-pilot-discovery-1.25 affected MinimOS istio-pilot-discovery-1.25
istio-pilot-discovery-1.25-compat affected MinimOS istio-pilot-discovery-1.25-compat
Upstream advisory

MINI-8gf2-wwcj-wffj

Open SourcePoC exploit2025-12-05

MINI-8gf2-wwcj-wffj

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-fips-1.33 affected MinimOS kube-apiserver-fips-1.33
kube-apiserver-fips-1.33-compat affected MinimOS kube-apiserver-fips-1.33-compat
kube-controller-manager-fips-1.33 affected MinimOS kube-controller-manager-fips-1.33
kube-controller-manager-fips-1.33-compat affected MinimOS kube-controller-manager-fips-1.33-compat
kubectl-fips-1.33 affected MinimOS kubectl-fips-1.33
kubectl-fips-1.33-compat affected MinimOS kubectl-fips-1.33-compat
kube-proxy-fips-1.33 affected MinimOS kube-proxy-fips-1.33
kube-proxy-fips-1.33-compat affected MinimOS kube-proxy-fips-1.33-compat
kubernetes-fips-1.33 affected MinimOS kubernetes-fips-1.33
kube-scheduler-fips-1.33 affected MinimOS kube-scheduler-fips-1.33
kube-scheduler-fips-1.33-compat affected MinimOS kube-scheduler-fips-1.33-compat
Upstream advisory

MINI-8ghm-343g-338f

Open SourcePoC exploit2025-12-05

MINI-8ghm-343g-338f

Affected products

ProductStatusVendorPackageEcosystem
volume-modifier-for-k8s affected MinimOS volume-modifier-for-k8s
Upstream advisory

MINI-pwfj-frmq-r3h5

Open SourcePoC exploit2025-12-05

MINI-pwfj-frmq-r3h5

Affected products

ProductStatusVendorPackageEcosystem
bazelisk affected MinimOS bazelisk
bazelisk-default affected MinimOS bazelisk-default
Upstream advisory

MINI-p46f-j9v2-7g7r

Open SourcePoC exploit2025-12-05

MINI-p46f-j9v2-7g7r

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.27 affected MinimOS istio-cni-fips-1.27
istioctl-bash-completion-fips-1.27 affected MinimOS istioctl-bash-completion-fips-1.27
istioctl-fips-1.27 affected MinimOS istioctl-fips-1.27
istioctl-zsh-completion-fips-1.27 affected MinimOS istioctl-zsh-completion-fips-1.27
istio-fips-1.27 affected MinimOS istio-fips-1.27
istio-install-cni-fips-1.27 affected MinimOS istio-install-cni-fips-1.27
istio-pilot-agent-fips-1.27 affected MinimOS istio-pilot-agent-fips-1.27
istio-pilot-discovery-fips-1.27 affected MinimOS istio-pilot-discovery-fips-1.27
Upstream advisory

MINI-m4rv-g64q-v8hp

Open SourcePoC exploit2025-12-05

MINI-m4rv-g64q-v8hp

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.22 affected MinimOS istio-cni-fips-1.22
istioctl-bash-completion-fips-1.22 affected MinimOS istioctl-bash-completion-fips-1.22
istioctl-fips-1.22 affected MinimOS istioctl-fips-1.22
istioctl-zsh-completion-fips-1.22 affected MinimOS istioctl-zsh-completion-fips-1.22
istio-fips-1.22 affected MinimOS istio-fips-1.22
istio-install-cni-fips-1.22 affected MinimOS istio-install-cni-fips-1.22
istio-pilot-agent-fips-1.22 affected MinimOS istio-pilot-agent-fips-1.22
istio-pilot-discovery-fips-1.22 affected MinimOS istio-pilot-discovery-fips-1.22
Upstream advisory

MINI-9jhc-3pqj-97vf

Open SourcePoC exploit2025-12-05

MINI-9jhc-3pqj-97vf

Affected products

ProductStatusVendorPackageEcosystem
istio-1.26 affected MinimOS istio-1.26
istio-cni-1.26 affected MinimOS istio-cni-1.26
istio-cni-1.26-compat affected MinimOS istio-cni-1.26-compat
istioctl-1.26 affected MinimOS istioctl-1.26
istioctl-bash-completion-1.26 affected MinimOS istioctl-bash-completion-1.26
istioctl-zsh-completion-1.26 affected MinimOS istioctl-zsh-completion-1.26
istio-install-cni-1.26 affected MinimOS istio-install-cni-1.26
istio-install-cni-1.26-compat affected MinimOS istio-install-cni-1.26-compat
istio-pilot-agent-1.26 affected MinimOS istio-pilot-agent-1.26
istio-pilot-agent-1.26-compat affected MinimOS istio-pilot-agent-1.26-compat
istio-pilot-discovery-1.26 affected MinimOS istio-pilot-discovery-1.26
istio-pilot-discovery-1.26-compat affected MinimOS istio-pilot-discovery-1.26-compat
Upstream advisory

MINI-r457-rcm2-vv5x

Open SourcePoC exploit2025-12-05

MINI-r457-rcm2-vv5x

Affected products

ProductStatusVendorPackageEcosystem
istio-1.24 affected MinimOS istio-1.24
istio-cni-1.24 affected MinimOS istio-cni-1.24
istio-cni-1.24-compat affected MinimOS istio-cni-1.24-compat
istioctl-1.24 affected MinimOS istioctl-1.24
istioctl-bash-completion-1.24 affected MinimOS istioctl-bash-completion-1.24
istioctl-zsh-completion-1.24 affected MinimOS istioctl-zsh-completion-1.24
istio-install-cni-1.24 affected MinimOS istio-install-cni-1.24
istio-install-cni-1.24-compat affected MinimOS istio-install-cni-1.24-compat
istio-pilot-agent-1.24 affected MinimOS istio-pilot-agent-1.24
istio-pilot-agent-1.24-compat affected MinimOS istio-pilot-agent-1.24-compat
istio-pilot-discovery-1.24 affected MinimOS istio-pilot-discovery-1.24
istio-pilot-discovery-1.24-compat affected MinimOS istio-pilot-discovery-1.24-compat
Upstream advisory

MINI-94w7-2ggr-x772

Open SourcePoC exploit2025-12-05

MINI-94w7-2ggr-x772

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.24 affected MinimOS istio-cni-fips-1.24
istioctl-bash-completion-fips-1.24 affected MinimOS istioctl-bash-completion-fips-1.24
istioctl-fips-1.24 affected MinimOS istioctl-fips-1.24
istioctl-zsh-completion-fips-1.24 affected MinimOS istioctl-zsh-completion-fips-1.24
istio-fips-1.24 affected MinimOS istio-fips-1.24
istio-install-cni-fips-1.24 affected MinimOS istio-install-cni-fips-1.24
istio-pilot-agent-fips-1.24 affected MinimOS istio-pilot-agent-fips-1.24
istio-pilot-discovery-fips-1.24 affected MinimOS istio-pilot-discovery-fips-1.24
Upstream advisory

MINI-29qp-h6m9-mv4j

Open SourcePoC exploit2025-12-05

MINI-29qp-h6m9-mv4j

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.26 affected MinimOS istio-cni-fips-1.26
istioctl-bash-completion-fips-1.26 affected MinimOS istioctl-bash-completion-fips-1.26
istioctl-fips-1.26 affected MinimOS istioctl-fips-1.26
istioctl-zsh-completion-fips-1.26 affected MinimOS istioctl-zsh-completion-fips-1.26
istio-fips-1.26 affected MinimOS istio-fips-1.26
istio-install-cni-fips-1.26 affected MinimOS istio-install-cni-fips-1.26
istio-pilot-agent-fips-1.26 affected MinimOS istio-pilot-agent-fips-1.26
istio-pilot-discovery-fips-1.26 affected MinimOS istio-pilot-discovery-fips-1.26
Upstream advisory

MINI-2jgw-38rm-xprp

Open SourcePoC exploit2025-12-05

MINI-2jgw-38rm-xprp

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.23 affected MinimOS istio-cni-fips-1.23
istioctl-bash-completion-fips-1.23 affected MinimOS istioctl-bash-completion-fips-1.23
istioctl-fips-1.23 affected MinimOS istioctl-fips-1.23
istioctl-zsh-completion-fips-1.23 affected MinimOS istioctl-zsh-completion-fips-1.23
istio-fips-1.23 affected MinimOS istio-fips-1.23
istio-install-cni-fips-1.23 affected MinimOS istio-install-cni-fips-1.23
istio-pilot-agent-fips-1.23 affected MinimOS istio-pilot-agent-fips-1.23
istio-pilot-discovery-fips-1.23 affected MinimOS istio-pilot-discovery-fips-1.23
Upstream advisory

MINI-w46f-49mp-cmp8

Open SourcePoC exploit2025-12-05

MINI-w46f-49mp-cmp8

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-1.32 affected MinimOS kube-apiserver-1.32
kube-controller-manager-1.32 affected MinimOS kube-controller-manager-1.32
kubectl-1.32 affected MinimOS kubectl-1.32
kubectl-1.32-advanced-compat affected MinimOS kubectl-1.32-advanced-compat
kube-proxy-1.32 affected MinimOS kube-proxy-1.32
kubernetes-1.32 affected MinimOS kubernetes-1.32
kube-scheduler-1.32 affected MinimOS kube-scheduler-1.32
Upstream advisory

MINI-pxvg-fmgp-qmjv

Open SourcePoC exploit2025-12-05

MINI-pxvg-fmgp-qmjv

Affected products

ProductStatusVendorPackageEcosystem
kubectl-1.31 affected MinimOS kubectl-1.31
kubectl-1.31-advanced-compat affected MinimOS kubectl-1.31-advanced-compat
kubernetes-1.31 affected MinimOS kubernetes-1.31
Upstream advisory

MINI-cqpg-mp7p-whr2

Open SourcePoC exploit2025-12-04

MINI-cqpg-mp7p-whr2

Affected products

ProductStatusVendorPackageEcosystem
volume-modifier-for-k8s-fips affected MinimOS volume-modifier-for-k8s-fips
Upstream advisory

MINI-92r8-x3rj-2vg3

Open SourcePoC exploit2025-12-04

MINI-92r8-x3rj-2vg3

Affected products

ProductStatusVendorPackageEcosystem
cni-plugins-aws-k8s-compat-fips affected MinimOS cni-plugins-aws-k8s-compat-fips
cni-plugins-bandwidth-fips affected MinimOS cni-plugins-bandwidth-fips
cni-plugins-bridge-fips affected MinimOS cni-plugins-bridge-fips
cni-plugins-dhcp-fips affected MinimOS cni-plugins-dhcp-fips
cni-plugins-dummy-fips affected MinimOS cni-plugins-dummy-fips
cni-plugins-fips affected MinimOS cni-plugins-fips
cni-plugins-firewall-fips affected MinimOS cni-plugins-firewall-fips
cni-plugins-host-device-fips affected MinimOS cni-plugins-host-device-fips
cni-plugins-host-local-fips affected MinimOS cni-plugins-host-local-fips
cni-plugins-ipam-fips affected MinimOS cni-plugins-ipam-fips
cni-plugins-ipvlan-fips affected MinimOS cni-plugins-ipvlan-fips
cni-plugins-loopback-fips affected MinimOS cni-plugins-loopback-fips
cni-plugins-macvlan-fips affected MinimOS cni-plugins-macvlan-fips
cni-plugins-main-fips affected MinimOS cni-plugins-main-fips
cni-plugins-meta-fips affected MinimOS cni-plugins-meta-fips
cni-plugins-portmap-fips affected MinimOS cni-plugins-portmap-fips
cni-plugins-ptp-fips affected MinimOS cni-plugins-ptp-fips
cni-plugins-sbr-fips affected MinimOS cni-plugins-sbr-fips
cni-plugins-static-fips affected MinimOS cni-plugins-static-fips
cni-plugins-tap-fips affected MinimOS cni-plugins-tap-fips
cni-plugins-tuning-fips affected MinimOS cni-plugins-tuning-fips
cni-plugins-vlan-fips affected MinimOS cni-plugins-vlan-fips
cni-plugins-vrf-fips affected MinimOS cni-plugins-vrf-fips
Upstream advisory

MINI-3cmf-v9h4-ppj6

Open SourcePoC exploit2025-12-04

MINI-3cmf-v9h4-ppj6

Affected products

ProductStatusVendorPackageEcosystem
istio-1.22 affected MinimOS istio-1.22
istio-cni-1.22 affected MinimOS istio-cni-1.22
istio-cni-1.22-compat affected MinimOS istio-cni-1.22-compat
istioctl-1.22 affected MinimOS istioctl-1.22
istioctl-bash-completion-1.22 affected MinimOS istioctl-bash-completion-1.22
istioctl-zsh-completion-1.22 affected MinimOS istioctl-zsh-completion-1.22
istio-install-cni-1.22 affected MinimOS istio-install-cni-1.22
istio-install-cni-1.22-compat affected MinimOS istio-install-cni-1.22-compat
istio-pilot-agent-1.22 affected MinimOS istio-pilot-agent-1.22
istio-pilot-agent-1.22-compat affected MinimOS istio-pilot-agent-1.22-compat
istio-pilot-discovery-1.22 affected MinimOS istio-pilot-discovery-1.22
istio-pilot-discovery-1.22-compat affected MinimOS istio-pilot-discovery-1.22-compat
Upstream advisory

MINI-7qjf-xhgv-jr73

Open SourcePoC exploit2025-12-04

MINI-7qjf-xhgv-jr73

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.28 affected MinimOS istio-cni-fips-1.28
istioctl-bash-completion-fips-1.28 affected MinimOS istioctl-bash-completion-fips-1.28
istioctl-fips-1.28 affected MinimOS istioctl-fips-1.28
istioctl-zsh-completion-fips-1.28 affected MinimOS istioctl-zsh-completion-fips-1.28
istio-fips-1.28 affected MinimOS istio-fips-1.28
istio-install-cni-fips-1.28 affected MinimOS istio-install-cni-fips-1.28
istio-pilot-agent-fips-1.28 affected MinimOS istio-pilot-agent-fips-1.28
istio-pilot-discovery-fips-1.28 affected MinimOS istio-pilot-discovery-fips-1.28
Upstream advisory

BIT-golang-2025-61729

Open SourcePoC exploitCRITICAL2025-12-04

Excessive resource consumption when printing error string for host certificate validation in crypto/x509

Affected products

ProductStatusVendorPackageEcosystem
golang affected Bitnami golang
Upstream advisory

GHSA-7c64-f9jr-v9h2

Open SourcePoC exploitCRITICAL2025-12-02

GHSA-7c64-f9jr-v9h2

Affected products

ProductStatusVendorPackageEcosystem
aactl affected wolfi aactl
aactl affected chainguard aactl
actions-runner-controller affected wolfi actions-runner-controller
actions-runner-controller affected chainguard actions-runner-controller
actions-runner-controller-fips affected chainguard actions-runner-controller-fips
addon-resizer-fips affected chainguard addon-resizer-fips
age-fips affected chainguard age-fips
amazon-cloudwatch-agent-fips affected chainguard amazon-cloudwatch-agent-fips
amazon-cloudwatch-agent-operator-fips affected chainguard amazon-cloudwatch-agent-operator-fips
amazon-k8s-cni-fips affected chainguard amazon-k8s-cni-fips
amazon-ssm-agent-fips affected chainguard amazon-ssm-agent-fips
amazon-vpc-cni-plugins-fips affected chainguard amazon-vpc-cni-plugins-fips
ansible-operator affected wolfi ansible-operator
ansible-operator affected chainguard ansible-operator
apache-beam-java-sdk affected chainguard apache-beam-java-sdk
apache-exporter affected wolfi apache-exporter
apache-exporter affected chainguard apache-exporter
apisix-ingress-controller affected chainguard apisix-ingress-controller
apisix-ingress-controller affected wolfi apisix-ingress-controller
apm-server-fips-7.17 affected chainguard apm-server-fips-7.17
apm-server-fips-8.17 affected chainguard apm-server-fips-8.17
apm-server-fips-8.18 affected chainguard apm-server-fips-8.18
apm-server-fips-8.19 affected chainguard apm-server-fips-8.19
apm-server-fips-9.1 affected chainguard apm-server-fips-9.1
apm-server-fips-9.2 affected chainguard apm-server-fips-9.2
argo-cd-fips-3.0 affected chainguard argo-cd-fips-3.0
argo-cd-fips-3.1 affected chainguard argo-cd-fips-3.1
argo-cd-fips-3.2 affected chainguard argo-cd-fips-3.2
argocd-image-updater affected chainguard argocd-image-updater
argocd-image-updater affected wolfi argocd-image-updater
argo-rollouts-fips affected chainguard argo-rollouts-fips
authservice-fips affected chainguard authservice-fips
aws-application-networking-k8s-fips affected chainguard aws-application-networking-k8s-fips
aws-ebs-csi-driver-fips-1.49 affected chainguard aws-ebs-csi-driver-fips-1.49
aws-ebs-csi-driver-fips-1.50 affected chainguard aws-ebs-csi-driver-fips-1.50
aws-ebs-csi-driver-fips-1.51 affected chainguard aws-ebs-csi-driver-fips-1.51
aws-ebs-csi-driver-fips-1.52 affected chainguard aws-ebs-csi-driver-fips-1.52
aws-ebs-csi-driver-fips-1.53 affected chainguard aws-ebs-csi-driver-fips-1.53
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
aws-eks-pod-identity-agent-fips affected chainguard aws-eks-pod-identity-agent-fips
aws-flb-cloudwatch affected wolfi aws-flb-cloudwatch
aws-flb-cloudwatch affected chainguard aws-flb-cloudwatch
aws-flb-cloudwatch-fips affected chainguard aws-flb-cloudwatch-fips
aws-flb-firehose-fips affected chainguard aws-flb-firehose-fips
aws-iam-authenticator-fips affected chainguard aws-iam-authenticator-fips
aws-load-balancer-controller affected wolfi aws-load-balancer-controller
aws-load-balancer-controller affected chainguard aws-load-balancer-controller
aws-load-balancer-controller-fips affected chainguard aws-load-balancer-controller-fips
aws-network-policy-agent-fips affected chainguard aws-network-policy-agent-fips
aws-node-termination-handler-fips affected chainguard aws-node-termination-handler-fips
aws-nuke affected chainguard aws-nuke
aws-nuke affected wolfi aws-nuke
aws-nuke-fips affected chainguard aws-nuke-fips
aws-otel-collector-fips affected chainguard aws-otel-collector-fips
aws-privateca-issuer affected wolfi aws-privateca-issuer
aws-privateca-issuer affected chainguard aws-privateca-issuer
aws-privateca-issuer-fips affected chainguard aws-privateca-issuer-fips
aws-signer-notation-plugin-fips affected chainguard aws-signer-notation-plugin-fips
aws-sigv4-proxy-fips affected chainguard aws-sigv4-proxy-fips
azcopy-fips affected chainguard azcopy-fips
azure-container-networking affected chainguard azure-container-networking
azuredisk-csi-fips-1.28 affected chainguard azuredisk-csi-fips-1.28
azuredisk-csi-fips-1.29 affected chainguard azuredisk-csi-fips-1.29
azuredisk-csi-fips-1.30 affected chainguard azuredisk-csi-fips-1.30
azuredisk-csi-fips-1.31 affected chainguard azuredisk-csi-fips-1.31
azuredisk-csi-fips-1.32 affected chainguard azuredisk-csi-fips-1.32
azuredisk-csi-fips-1.33 affected chainguard azuredisk-csi-fips-1.33
azurefile-csi-1.33 affected chainguard azurefile-csi-1.33
azurefile-csi-1.33 affected wolfi azurefile-csi-1.33
azurefile-csi-fips-1.29 affected chainguard azurefile-csi-fips-1.29
azurefile-csi-fips-1.30 affected chainguard azurefile-csi-fips-1.30
azurefile-csi-fips-1.31 affected chainguard azurefile-csi-fips-1.31
azurefile-csi-fips-1.32 affected chainguard azurefile-csi-fips-1.32
azurefile-csi-fips-1.33 affected chainguard azurefile-csi-fips-1.33
azure-service-operator-fips affected chainguard azure-service-operator-fips
bank-vaults-fips affected chainguard bank-vaults-fips
beats-7 affected chainguard beats-7
beats-8.17 affected chainguard beats-8.17
beats-9.0 affected chainguard beats-9.0
blob-csi-fips-1.23 affected chainguard blob-csi-fips-1.23
blob-csi-fips-1.24 affected chainguard blob-csi-fips-1.24
blob-csi-fips-1.26 affected chainguard blob-csi-fips-1.26
blobfuse2-fips affected chainguard blobfuse2-fips
boring-registry affected chainguard boring-registry
boring-registry affected wolfi boring-registry
boring-registry-fips affected chainguard boring-registry-fips
buildkitd affected chainguard buildkitd
buildkitd affected wolfi buildkitd
buildkitd-fips affected chainguard buildkitd-fips
cass-operator-fips affected chainguard cass-operator-fips
cass-operator-fips-no-pvc-delete affected chainguard cass-operator-fips-no-pvc-delete
ceph-csi-operator-fips affected chainguard ceph-csi-operator-fips
cert-exporter-fips affected chainguard cert-exporter-fips
certificate-transparency-fips affected chainguard certificate-transparency-fips
cert-manager-csi-driver-fips affected chainguard cert-manager-csi-driver-fips
cert-manager-fips-1.16 affected chainguard cert-manager-fips-1.16
cert-manager-fips-1.17 affected chainguard cert-manager-fips-1.17
cert-manager-fips-1.18 affected chainguard cert-manager-fips-1.18
cert-manager-fips-1.19 affected chainguard cert-manager-fips-1.19
cert-manager-google-cas-issuer-fips affected chainguard cert-manager-google-cas-issuer-fips
cert-manager-istio-csr-fips affected chainguard cert-manager-istio-csr-fips
cert-manager-openshift-routes-fips affected chainguard cert-manager-openshift-routes-fips
cert-manager-webhook-pdns affected chainguard cert-manager-webhook-pdns
cert-manager-webhook-pdns affected wolfi cert-manager-webhook-pdns
cert-manager-webhook-pdns-fips affected chainguard cert-manager-webhook-pdns-fips
cfssl-fips affected chainguard cfssl-fips
chainctl affected chainguard chainctl
chartmuseum-fips affected chainguard chartmuseum-fips
chart-testing-fips affected chainguard chart-testing-fips
chisel affected chainguard chisel
chisel affected wolfi chisel
chisel-fips affected chainguard chisel-fips
cilium-1.14 affected wolfi cilium-1.14
cilium-1.14 affected chainguard cilium-1.14
cilium-certgen-0.2 affected wolfi cilium-certgen-0.2
cilium-certgen-0.2 affected chainguard cilium-certgen-0.2
cilium-envoy-fips-1.14 affected chainguard cilium-envoy-fips-1.14
cilium-envoy-fips-1.15 affected chainguard cilium-envoy-fips-1.15
cilium-envoy-fips-1.16 affected chainguard cilium-envoy-fips-1.16
cilium-envoy-fips-1.17 affected chainguard cilium-envoy-fips-1.17
cilium-envoy-fips-1.18 affected chainguard cilium-envoy-fips-1.18
cilium-fips-1.14 affected chainguard cilium-fips-1.14
cinder-csi-plugin-fips affected chainguard cinder-csi-plugin-fips
cis-operator-1.4 affected chainguard cis-operator-1.4
cis-operator-1.4 affected wolfi cis-operator-1.4
cloudbeat-9.1 affected chainguard cloudbeat-9.1
cloudbeat-fips-8.17 affected chainguard cloudbeat-fips-8.17
cloudbeat-fips-8.18 affected chainguard cloudbeat-fips-8.18
cloudbeat-fips-8.19 affected chainguard cloudbeat-fips-8.19
cloudbeat-fips-9.0 affected chainguard cloudbeat-fips-9.0
cloudbeat-fips-9.1 affected chainguard cloudbeat-fips-9.1
cloudbeat-fips-9.2 affected chainguard cloudbeat-fips-9.2
cloudflared-fips affected chainguard cloudflared-fips
cloudnative-pg-fips affected chainguard cloudnative-pg-fips
cloudprober-fips affected chainguard cloudprober-fips
cloud-provider-aws-fips-1.28 affected chainguard cloud-provider-aws-fips-1.28
cloud-provider-aws-fips-1.29 affected chainguard cloud-provider-aws-fips-1.29
cloud-provider-aws-fips-1.30 affected chainguard cloud-provider-aws-fips-1.30
cloud-provider-aws-fips-1.31 affected chainguard cloud-provider-aws-fips-1.31
cloud-provider-aws-fips-1.32 affected chainguard cloud-provider-aws-fips-1.32
cloud-provider-aws-fips-1.33 affected chainguard cloud-provider-aws-fips-1.33
cloud-provider-aws-fips-1.34 affected chainguard cloud-provider-aws-fips-1.34
cloud-provider-azure-fips-1.27 affected chainguard cloud-provider-azure-fips-1.27
cloud-provider-azure-fips-1.28 affected chainguard cloud-provider-azure-fips-1.28
cloud-provider-azure-fips-1.29 affected chainguard cloud-provider-azure-fips-1.29
cloud-provider-azure-fips-1.30 affected chainguard cloud-provider-azure-fips-1.30
cloud-provider-azure-fips-1.31 affected chainguard cloud-provider-azure-fips-1.31
cloud-provider-azure-fips-1.32 affected chainguard cloud-provider-azure-fips-1.32
cloud-provider-azure-fips-1.33 affected chainguard cloud-provider-azure-fips-1.33
cloud-provider-azure-fips-1.34 affected chainguard cloud-provider-azure-fips-1.34
cloud-provider-vsphere affected wolfi cloud-provider-vsphere
cloud-provider-vsphere affected chainguard cloud-provider-vsphere
cloud-sql-proxy-fips affected chainguard cloud-sql-proxy-fips
cluster-api-aws-controller affected wolfi cluster-api-aws-controller
cluster-api-aws-controller affected chainguard cluster-api-aws-controller
cluster-api-aws-controller-fips affected chainguard cluster-api-aws-controller-fips
cluster-api-azure-controller-fips affected chainguard cluster-api-azure-controller-fips
cluster-api-fips-1.11 affected chainguard cluster-api-fips-1.11
cluster-api-fips-1.7 affected chainguard cluster-api-fips-1.7
cluster-api-fips-1.9 affected chainguard cluster-api-fips-1.9
cluster-api-gcp-controller-fips affected chainguard cluster-api-gcp-controller-fips
cluster-api-provider-vsphere-fips affected chainguard cluster-api-provider-vsphere-fips
cluster-autoscaler-fips-1.31 affected chainguard cluster-autoscaler-fips-1.31
cluster-autoscaler-fips-1.32 affected chainguard cluster-autoscaler-fips-1.32
cluster-autoscaler-fips-1.33 affected chainguard cluster-autoscaler-fips-1.33
cluster-autoscaler-fips-1.34 affected chainguard cluster-autoscaler-fips-1.34
cluster-proportional-autoscaler-fips affected chainguard cluster-proportional-autoscaler-fips
configmap-reload-fips affected chainguard configmap-reload-fips
configmap-reload-fips-0.11 affected chainguard configmap-reload-fips-0.11
configmap-reload-fips-0.12 affected chainguard configmap-reload-fips-0.12
conftest-fips affected chainguard conftest-fips
consul-1.20 affected chainguard consul-1.20
consul-1.21 affected chainguard consul-1.21
consul-1.22 affected chainguard consul-1.22
consul-fips-1.19 affected chainguard consul-fips-1.19
consul-fips-1.20 affected chainguard consul-fips-1.20
consul-fips-1.21 affected chainguard consul-fips-1.21
consul-fips-1.22 affected chainguard consul-fips-1.22
consul-k8s-fips-1.1 affected chainguard consul-k8s-fips-1.1
consul-k8s-fips-1.3 affected chainguard consul-k8s-fips-1.3
consul-k8s-fips-1.4 affected chainguard consul-k8s-fips-1.4
consul-k8s-fips-1.5 affected chainguard consul-k8s-fips-1.5
consul-k8s-fips-1.6 affected chainguard consul-k8s-fips-1.6
container-object-storage-interface-fips affected chainguard container-object-storage-interface-fips
contour-fips-1.30 affected chainguard contour-fips-1.30
contour-fips-1.31 affected chainguard contour-fips-1.31
contour-fips-1.32 affected chainguard contour-fips-1.32
contour-fips-1.33 affected chainguard contour-fips-1.33
coredns-fips-1.12 affected chainguard coredns-fips-1.12
coredns-fips-1.13 affected chainguard coredns-fips-1.13
cosign-fips affected chainguard cosign-fips
cosign-fips affected wolfi cosign-fips
crane-fips affected chainguard crane-fips
crossplane-aws-provider-fips affected chainguard crossplane-aws-provider-fips
crossplane-fips-1.20 affected chainguard crossplane-fips-1.20
crossplane-fips-2.0 affected chainguard crossplane-fips-2.0
crossplane-fips-2.1 affected chainguard crossplane-fips-2.1
crossplane-function-auto-ready-fips affected chainguard crossplane-function-auto-ready-fips
crossplane-function-environment-configs-fips affected chainguard crossplane-function-environment-configs-fips
crossplane-provider-gitlab-fips affected chainguard crossplane-provider-gitlab-fips
crossplane-provider-keycloak affected chainguard crossplane-provider-keycloak
crossplane-provider-keycloak affected wolfi crossplane-provider-keycloak
crossplane-provider-kubernetes-fips affected chainguard crossplane-provider-kubernetes-fips
crossplane-provider-sql-fips affected chainguard crossplane-provider-sql-fips
crossplane-provider-terraform-fips affected chainguard crossplane-provider-terraform-fips
ctop affected chainguard ctop
ctop affected wolfi ctop
cue-fips affected chainguard cue-fips
custom-pod-autoscaler affected wolfi custom-pod-autoscaler
custom-pod-autoscaler affected chainguard custom-pod-autoscaler
custom-pod-autoscaler-fips affected chainguard custom-pod-autoscaler-fips
custom-pod-autoscaler-operator-fips affected chainguard custom-pod-autoscaler-operator-fips
cyberark-secrets-provider-for-k8s-fips affected chainguard cyberark-secrets-provider-for-k8s-fips
dask-gateway affected wolfi dask-gateway
dask-gateway affected chainguard dask-gateway
datadog-operator-fips affected chainguard datadog-operator-fips
dataplaneapi-fips affected chainguard dataplaneapi-fips
db-operator affected wolfi db-operator
db-operator affected chainguard db-operator
dcgm-exporter-fips affected chainguard dcgm-exporter-fips
deck-fips affected chainguard deck-fips
descheduler-fips affected chainguard descheduler-fips
dex-fips affected chainguard dex-fips
dfc affected wolfi dfc
dfc affected chainguard dfc
dgraph affected chainguard dgraph
dgraph affected wolfi dgraph
distribution-fips affected chainguard distribution-fips
dive affected chainguard dive
dive affected wolfi dive
dkron-fips affected chainguard dkron-fips
docker-cli-fips affected chainguard docker-cli-fips
docker-credential-acr-env affected chainguard docker-credential-acr-env
docker-credential-acr-env affected wolfi docker-credential-acr-env
docker-credential-acr-env-fips affected chainguard docker-credential-acr-env-fips
docker-credential-ecr-login-fips affected chainguard docker-credential-ecr-login-fips
docker-credential-gcr-fips affected chainguard docker-credential-gcr-fips
dockerize-fips affected chainguard dockerize-fips
dragonfly-operator-fips affected chainguard dragonfly-operator-fips
dynamic-localpv-provisioner-fips affected chainguard dynamic-localpv-provisioner-fips
eck-operator-fips affected chainguard eck-operator-fips
eks-distro-fips-1.29 affected chainguard eks-distro-fips-1.29
eks-distro-fips-1.30 affected chainguard eks-distro-fips-1.30
eks-distro-fips-1.31 affected chainguard eks-distro-fips-1.31
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
eks-distro-fips-1.33 affected chainguard eks-distro-fips-1.33
eks-distro-fips-1.34 affected chainguard eks-distro-fips-1.34
elastic-agent-8.18 affected chainguard elastic-agent-8.18
envoy-gateway-fips affected chainguard envoy-gateway-fips
etcd-3.4 affected chainguard etcd-3.4
etcd-3.6 affected chainguard etcd-3.6
etcd-3.6 affected wolfi etcd-3.6
etcd-fips-3.4 affected chainguard etcd-fips-3.4
etcd-fips-3.5 affected chainguard etcd-fips-3.5
etcd-fips-3.6 affected chainguard etcd-fips-3.6
external-dns-0.20 affected chainguard external-dns-0.20
external-dns-0.20 affected wolfi external-dns-0.20
external-dns-fips-0.17 affected chainguard external-dns-fips-0.17
external-dns-fips-0.18 affected chainguard external-dns-fips-0.18
external-dns-fips-0.19 affected chainguard external-dns-fips-0.19
external-dns-fips-0.20 affected chainguard external-dns-fips-0.20
external-secrets-fips affected chainguard external-secrets-fips
external-secrets-operator-fips-0.17 affected chainguard external-secrets-operator-fips-0.17
external-secrets-operator-fips-0.18 affected chainguard external-secrets-operator-fips-0.18
external-secrets-operator-fips-0.19 affected chainguard external-secrets-operator-fips-0.19
external-secrets-operator-fips-0.20 affected chainguard external-secrets-operator-fips-0.20
external-secrets-operator-fips-1.0 affected chainguard external-secrets-operator-fips-1.0
falcoctl-fips affected chainguard falcoctl-fips
falcoctl-fips-0.4 affected chainguard falcoctl-fips-0.4
falco-exporter affected chainguard falco-exporter
falco-exporter affected wolfi falco-exporter
falco-exporter-fips affected chainguard falco-exporter-fips
falco-no-driver affected wolfi falco-no-driver
falco-no-driver affected chainguard falco-no-driver
falcosidekick-fips affected chainguard falcosidekick-fips
flannel-cni-plugin affected chainguard flannel-cni-plugin
flannel-cni-plugin affected wolfi flannel-cni-plugin
flannel-cni-plugin-fips affected chainguard flannel-cni-plugin-fips
fleet-server-8.17 affected chainguard fleet-server-8.17
fleet-server-8.18 affected chainguard fleet-server-8.18
fleet-server-8.19 affected chainguard fleet-server-8.19
fleet-server-9.0 affected chainguard fleet-server-9.0
fleet-server-fips-8.17 affected chainguard fleet-server-fips-8.17
fleet-server-fips-8.18 affected chainguard fleet-server-fips-8.18
fleet-server-fips-8.19 affected chainguard fleet-server-fips-8.19
fleet-server-fips-9.0 affected chainguard fleet-server-fips-9.0
fleet-server-fips-9.1 affected chainguard fleet-server-fips-9.1
fleet-server-fips-9.2 affected chainguard fleet-server-fips-9.2
fluent-operator-fips affected chainguard fluent-operator-fips
fluxcd-kustomize-mutating-webhook-fips affected chainguard fluxcd-kustomize-mutating-webhook-fips
flux-helm-controller-fips affected chainguard flux-helm-controller-fips
flux-image-automation-controller-fips affected chainguard flux-image-automation-controller-fips
flux-image-reflector-controller affected wolfi flux-image-reflector-controller
flux-image-reflector-controller affected chainguard flux-image-reflector-controller
flux-image-reflector-controller-fips affected chainguard flux-image-reflector-controller-fips
flux-kustomize-controller-fips affected chainguard flux-kustomize-controller-fips
flux-notification-controller-fips affected chainguard flux-notification-controller-fips
flux-source-controller-fips affected chainguard flux-source-controller-fips
flux-source-watcher-fips affected chainguard flux-source-watcher-fips
frp affected wolfi frp
frp affected chainguard frp
fuse-overlayfs-snapshotter affected chainguard fuse-overlayfs-snapshotter
fuse-overlayfs-snapshotter affected wolfi fuse-overlayfs-snapshotter
gatekeeper-3.18 affected chainguard gatekeeper-3.18
gatekeeper-3.18 affected wolfi gatekeeper-3.18
gatekeeper-fips-3.18 affected chainguard gatekeeper-fips-3.18
gatekeeper-fips-3.20 affected chainguard gatekeeper-fips-3.20
gcp-compute-persistent-disk-csi-driver-fips-1.12 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.12
gcp-compute-persistent-disk-csi-driver-fips-1.13 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.13
gcp-compute-persistent-disk-csi-driver-fips-1.14 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.14
gcp-compute-persistent-disk-csi-driver-fips-1.15 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.15
gcp-compute-persistent-disk-csi-driver-fips-1.16 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.16
gcp-compute-persistent-disk-csi-driver-fips-1.17 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.17
gcp-compute-persistent-disk-csi-driver-fips-1.18 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.18
gcp-compute-persistent-disk-csi-driver-fips-1.19 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.19
gcp-compute-persistent-disk-csi-driver-fips-1.20 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.20
gitaly-18.6 affected chainguard gitaly-18.6
gitaly-18.6 affected wolfi gitaly-18.6
gitaly-fips-18.5 affected chainguard gitaly-fips-18.5
gitaly-fips-18.6 affected chainguard gitaly-fips-18.6
gitea affected wolfi gitea
gitea affected chainguard gitea
github-mcp-server affected chainguard github-mcp-server
github-mcp-server affected wolfi github-mcp-server
gitlab-cng-18.6 affected chainguard gitlab-cng-18.6
gitlab-kas-18.6 affected wolfi gitlab-kas-18.6
gitlab-kas-18.6 affected chainguard gitlab-kas-18.6
gitlab-kas-fips-18.4 affected chainguard gitlab-kas-fips-18.4
gitlab-kas-fips-18.5 affected chainguard gitlab-kas-fips-18.5
gitlab-kas-fips-18.6 affected chainguard gitlab-kas-fips-18.6
gitlab-operator-fips affected chainguard gitlab-operator-fips
gitlab-pages-18.6 affected chainguard gitlab-pages-18.6
gitlab-pages-18.6 affected wolfi gitlab-pages-18.6
gitlab-pages-fips-18.4 affected chainguard gitlab-pages-fips-18.4
gitlab-pages-fips-18.5 affected chainguard gitlab-pages-fips-18.5
gitlab-pages-fips-18.6 affected chainguard gitlab-pages-fips-18.6
gitlab-rails-ce-18.2 affected chainguard gitlab-rails-ce-18.2
gitlab-rails-ce-fips-18.1 affected chainguard gitlab-rails-ce-fips-18.1
gitlab-rails-ce-fips-18.3 affected chainguard gitlab-rails-ce-fips-18.3
gitlab-runner-fips-18.4 affected chainguard gitlab-runner-fips-18.4
gitlab-runner-fips-18.5 affected chainguard gitlab-runner-fips-18.5
gitlab-runner-fips-18.6 affected chainguard gitlab-runner-fips-18.6
gitlab-workhorse-ce-18.1 affected chainguard gitlab-workhorse-ce-18.1
gitlab-workhorse-ce-18.2 affected chainguard gitlab-workhorse-ce-18.2
gitlab-workhorse-ce-18.3 affected chainguard gitlab-workhorse-ce-18.3
gitlab-workhorse-ce-18.4 affected chainguard gitlab-workhorse-ce-18.4
gitlab-workhorse-ce-18.5 affected chainguard gitlab-workhorse-ce-18.5
gitlab-workhorse-ce-18.6 affected chainguard gitlab-workhorse-ce-18.6
gitlab-workhorse-ce-fips-18.1 affected chainguard gitlab-workhorse-ce-fips-18.1
gitlab-workhorse-ce-fips-18.2 affected chainguard gitlab-workhorse-ce-fips-18.2
gitlab-workhorse-ce-fips-18.3 affected chainguard gitlab-workhorse-ce-fips-18.3
gitlab-workhorse-ce-fips-18.4 affected chainguard gitlab-workhorse-ce-fips-18.4
gitlab-workhorse-ce-fips-18.5 affected chainguard gitlab-workhorse-ce-fips-18.5
gitlab-workhorse-ce-fips-18.6 affected chainguard gitlab-workhorse-ce-fips-18.6
gitleaks affected chainguard gitleaks
gitleaks affected wolfi gitleaks
git-lfs-fips affected chainguard git-lfs-fips
gitness affected wolfi gitness
gitness affected chainguard gitness
gitsign affected wolfi gitsign
gitsign affected chainguard gitsign
git-sync-fips affected chainguard git-sync-fips
gke-gcloud-auth-plugin affected wolfi gke-gcloud-auth-plugin
gke-gcloud-auth-plugin affected chainguard gke-gcloud-auth-plugin
glab affected wolfi glab
glab affected chainguard glab
glow affected wolfi glow
glow affected chainguard glow
gobump affected wolfi gobump
gobump affected chainguard gobump
gobuster affected chainguard gobuster
gobuster affected wolfi gobuster
go-discover affected wolfi go-discover
go-discover affected chainguard go-discover
go-discover-fips affected chainguard go-discover-fips
go-fips-1.23 affected chainguard go-fips-1.23
gofumpt affected chainguard gofumpt
gofumpt affected wolfi gofumpt
gogatekeeper affected wolfi gogatekeeper
gogatekeeper affected chainguard gogatekeeper
go-jsonnet affected wolfi go-jsonnet
go-jsonnet affected chainguard go-jsonnet
go-licenses affected chainguard go-licenses
go-licenses affected wolfi go-licenses
go-md2man affected wolfi go-md2man
go-md2man affected chainguard go-md2man
gomplate affected chainguard gomplate
gomplate affected wolfi gomplate
gomplate-fips affected chainguard gomplate-fips
gops affected chainguard gops
gops affected wolfi gops
goreleaser affected wolfi goreleaser
goreleaser affected chainguard goreleaser
go-slim-1.23 affected chainguard go-slim-1.23
gostatsd affected wolfi gostatsd
gostatsd affected chainguard gostatsd
gosu affected wolfi gosu
gosu affected chainguard gosu
gosu-fips affected chainguard gosu-fips
gotestsum affected chainguard gotestsum
gotestsum affected wolfi gotestsum
go-tools affected wolfi go-tools
go-tools affected chainguard go-tools
govulncheck affected wolfi govulncheck
govulncheck affected chainguard govulncheck
gptscript affected wolfi gptscript
gptscript affected chainguard gptscript
gpu-feature-discovery affected chainguard gpu-feature-discovery
gpu-operator-fips-24.9 affected chainguard gpu-operator-fips-24.9
gpu-operator-fips-25.3 affected chainguard gpu-operator-fips-25.3
grafana-12.2 affected chainguard grafana-12.2
grafana-12.2 affected wolfi grafana-12.2
grafana-12.3 affected chainguard grafana-12.3
grafana-12.3 affected wolfi grafana-12.3
grafana-agent-operator affected wolfi grafana-agent-operator
grafana-agent-operator affected chainguard grafana-agent-operator
grafana-alloy affected chainguard grafana-alloy
grafana-alloy affected wolfi grafana-alloy
grafana-image-renderer affected chainguard grafana-image-renderer
grafana-image-renderer affected wolfi grafana-image-renderer
grafana-mimir affected chainguard grafana-mimir
grafana-mimir affected wolfi grafana-mimir
grafana-operator affected wolfi grafana-operator
grafana-operator affected chainguard grafana-operator
grafana-operator-fips affected chainguard grafana-operator-fips
grafana-pyroscope-1.13 affected wolfi grafana-pyroscope-1.13
grafana-pyroscope-1.13 affected chainguard grafana-pyroscope-1.13
grafana-rollout-operator affected wolfi grafana-rollout-operator
grafana-rollout-operator affected chainguard grafana-rollout-operator
grpc-health-probe affected wolfi grpc-health-probe
grpc-health-probe affected chainguard grpc-health-probe
grpc-health-probe-fips affected chainguard grpc-health-probe-fips
grpcurl affected wolfi grpcurl
grpcurl affected chainguard grpcurl
grpcurl-fips affected chainguard grpcurl-fips
grype affected wolfi grype
grype affected chainguard grype
grype-fips affected chainguard grype-fips
guac affected chainguard guac
guac affected wolfi guac
haproxy-ingress affected wolfi haproxy-ingress
haproxy-ingress affected chainguard haproxy-ingress
harbor-2.14 affected wolfi harbor-2.14
harbor-2.14 affected chainguard harbor-2.14
harbor-cli affected chainguard harbor-cli
harbor-cli affected wolfi harbor-cli
harbor-fips-2.11 affected chainguard harbor-fips-2.11
harbor-fips-2.12 affected chainguard harbor-fips-2.12
harbor-fips-2.13 affected chainguard harbor-fips-2.13
harbor-fips-2.14 affected chainguard harbor-fips-2.14
harbor-registry affected wolfi harbor-registry
harbor-registry affected chainguard harbor-registry
harbor-registry-fips-2.8 affected chainguard harbor-registry-fips-2.8
harbor-scanner-trivy affected chainguard harbor-scanner-trivy
harbor-scanner-trivy affected wolfi harbor-scanner-trivy
harbor-scanner-trivy-fips affected chainguard harbor-scanner-trivy-fips
hcloud affected chainguard hcloud
hcloud affected wolfi hcloud
headlamp affected wolfi headlamp
headlamp affected chainguard headlamp
headlamp-fips affected chainguard headlamp-fips
hello-world-golang affected chainguard hello-world-golang
hello-world-golang affected wolfi hello-world-golang
helm-3 affected chainguard helm-3
helm-3 affected wolfi helm-3
helm-4 affected chainguard helm-4
helm-4 affected wolfi helm-4
helm-diff-fips affected chainguard helm-diff-fips
helm-docs affected wolfi helm-docs
helm-docs affected chainguard helm-docs
helm-fips-3 affected chainguard helm-fips-3
helm-fips-4 affected chainguard helm-fips-4
helm-mapkubeapis affected wolfi helm-mapkubeapis
helm-mapkubeapis affected chainguard helm-mapkubeapis
helm-operator affected wolfi helm-operator
helm-operator affected chainguard helm-operator
helm-operator-fips affected chainguard helm-operator-fips
helm-push affected chainguard helm-push
helm-push affected wolfi helm-push
helm-set-status affected chainguard helm-set-status
helm-set-status affected wolfi helm-set-status
hey affected wolfi hey
hey affected chainguard hey
hivemind affected wolfi hivemind
hivemind affected chainguard hivemind
http-echo affected wolfi http-echo
http-echo affected chainguard http-echo
hubble affected chainguard hubble
hubble affected wolfi hubble
hubble-ui affected chainguard hubble-ui
hubble-ui affected wolfi hubble-ui
hubble-ui-backend affected chainguard hubble-ui-backend
hubble-ui-backend-fips affected chainguard hubble-ui-backend-fips
hugo affected chainguard hugo
hugo affected wolfi hugo
hugo-extended affected wolfi hugo-extended
hugo-extended affected chainguard hugo-extended
hydra affected chainguard hydra
hydra affected wolfi hydra
hydra-fips affected chainguard hydra-fips
image-factory-fips affected chainguard image-factory-fips
incert affected chainguard incert
incert affected wolfi incert
infinispan-operator affected wolfi infinispan-operator
infinispan-operator affected chainguard infinispan-operator
influx affected wolfi influx
influx affected chainguard influx
influxd-2.7 affected wolfi influxd-2.7
influxd-2.7 affected chainguard influxd-2.7
ingress-nginx-controller-1.14 affected chainguard ingress-nginx-controller-1.14
ingress-nginx-controller-1.14 affected wolfi ingress-nginx-controller-1.14
ingress-nginx-controller-fips-1.12 affected chainguard ingress-nginx-controller-fips-1.12
ingress-nginx-controller-fips-1.13 affected chainguard ingress-nginx-controller-fips-1.13
ingress-nginx-controller-fips-1.14 affected chainguard ingress-nginx-controller-fips-1.14
ini-file affected wolfi ini-file
ini-file affected chainguard ini-file
ipfs-cluster affected chainguard ipfs-cluster
ipfs-cluster affected wolfi ipfs-cluster
ip-masq-agent affected wolfi ip-masq-agent
ip-masq-agent affected chainguard ip-masq-agent
jaeger-operator affected chainguard jaeger-operator
jaeger-operator affected wolfi jaeger-operator
jaeger-operator-fips affected chainguard jaeger-operator-fips
jitsucom-bulker affected wolfi jitsucom-bulker
jitsucom-bulker affected chainguard jitsucom-bulker
juicefs-1.3 affected wolfi juicefs-1.3
juicefs-1.3 affected chainguard juicefs-1.3
jupyterhub-k8s-image-awaiter-fips affected chainguard jupyterhub-k8s-image-awaiter-fips
k3d affected chainguard k3d
k3d affected wolfi k3d
k3s affected wolfi k3s
k3s affected chainguard k3s
k3s-1.32 affected chainguard k3s-1.32
k3s-1.32 affected wolfi k3s-1.32
k3s-1.33 affected wolfi k3s-1.33
k3s-1.33 affected chainguard k3s-1.33
k6 affected chainguard k6
k6 affected wolfi k6
k6-fips affected chainguard k6-fips
k6-operator-fips affected chainguard k6-operator-fips
k8s-agents-operator-fips affected chainguard k8s-agents-operator-fips
k8s-device-plugin affected wolfi k8s-device-plugin
k8s-device-plugin affected chainguard k8s-device-plugin
k8s-device-plugin-fips affected chainguard k8s-device-plugin-fips
k8s_gateway affected chainguard k8s_gateway
k8s_gateway affected wolfi k8s_gateway
k8s_gateway-fips affected chainguard k8s_gateway-fips
k8sgpt affected wolfi k8sgpt
k8sgpt affected chainguard k8sgpt
k8sgpt-operator affected chainguard k8sgpt-operator
k8sgpt-operator affected wolfi k8sgpt-operator
k8s-metacollector-fips affected chainguard k8s-metacollector-fips
k8ssandra-client affected chainguard k8ssandra-client
k8ssandra-client affected wolfi k8ssandra-client
k8ssandra-client-fips affected chainguard k8ssandra-client-fips
k8ssandra-operator affected wolfi k8ssandra-operator
k8ssandra-operator affected chainguard k8ssandra-operator
k9s affected wolfi k9s
k9s affected chainguard k9s
k9s-fips affected chainguard k9s-fips
kaf affected chainguard kaf
kaf affected wolfi kaf
kafka_exporter affected chainguard kafka_exporter
kafka_exporter affected wolfi kafka_exporter
kafka_exporter-fips affected chainguard kafka_exporter-fips
kafka-proxy affected chainguard kafka-proxy
kafka-proxy affected wolfi kafka-proxy
kafka-proxy-fips affected chainguard kafka-proxy-fips
kapp affected wolfi kapp
kapp affected chainguard kapp
kapp-controller affected wolfi kapp-controller
kapp-controller affected chainguard kapp-controller
kargo affected chainguard kargo
kargo affected wolfi kargo
karma affected chainguard karma
karma affected wolfi karma
karma-fips affected chainguard karma-fips
karpenter-1.8 affected chainguard karpenter-1.8
karpenter-1.8 affected wolfi karpenter-1.8
kbld affected wolfi kbld
kbld affected chainguard kbld
kbld-fips affected chainguard kbld-fips
keda-2.18 affected chainguard keda-2.18
keda-2.18 affected wolfi keda-2.18
keda-fips-2.16 affected chainguard keda-fips-2.16
keda-fips-2.17 affected chainguard keda-fips-2.17
keda-fips-2.18 affected chainguard keda-fips-2.18
kiali affected chainguard kiali
kiali affected wolfi kiali
kiali-fips affected chainguard kiali-fips
kind affected wolfi kind
kind affected chainguard kind
kine affected wolfi kine
kine affected chainguard kine
knative-client affected wolfi knative-client
knative-client affected chainguard knative-client
knative-eventing-1.19 affected chainguard knative-eventing-1.19
knative-eventing-1.19 affected wolfi knative-eventing-1.19
knative-operator-1.19 affected chainguard knative-operator-1.19
knative-operator-1.19 affected wolfi knative-operator-1.19
knative-operator-fips-1.17 affected chainguard knative-operator-fips-1.17
knative-operator-fips-1.18 affected chainguard knative-operator-fips-1.18
knative-operator-fips-1.19 affected chainguard knative-operator-fips-1.19
knative-serving-1.19 affected wolfi knative-serving-1.19
knative-serving-1.19 affected chainguard knative-serving-1.19
ko affected chainguard ko
ko affected wolfi ko
ko-fips affected wolfi ko-fips
ko-fips affected chainguard ko-fips
kor affected chainguard kor
kor affected wolfi kor
kots affected chainguard kots
kots affected wolfi kots
kots-compat affected chainguard kots-compat
kpt affected wolfi kpt
kpt affected chainguard kpt
kratos affected wolfi kratos
kratos affected chainguard kratos
kserve affected chainguard kserve
kserve affected wolfi kserve
kserve-modelmesh-serving affected chainguard kserve-modelmesh-serving
kserve-modelmesh-serving affected wolfi kserve-modelmesh-serving
kserve-rest-proxy affected wolfi kserve-rest-proxy
kserve-rest-proxy affected chainguard kserve-rest-proxy
ksops affected chainguard ksops
ksops affected wolfi ksops
kube-bench affected wolfi kube-bench
kube-bench affected chainguard kube-bench
kubebuilder affected chainguard kubebuilder
kubebuilder affected wolfi kubebuilder
kubecolor affected chainguard kubecolor
kubecolor affected wolfi kubecolor
kubeflow affected wolfi kubeflow
kubeflow affected chainguard kubeflow
kubeflow-fips affected chainguard kubeflow-fips
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kube-fluentd-operator affected wolfi kube-fluentd-operator
kube-fluentd-operator affected chainguard kube-fluentd-operator
kubelet-csr-approver affected chainguard kubelet-csr-approver
kubelet-csr-approver affected wolfi kubelet-csr-approver
kubelet-csr-approver-fips affected chainguard kubelet-csr-approver-fips
kube-logging-operator affected wolfi kube-logging-operator
kube-logging-operator affected chainguard kube-logging-operator
kube-logging-operator-custom-runner affected wolfi kube-logging-operator-custom-runner
kube-logging-operator-custom-runner affected chainguard kube-logging-operator-custom-runner
kube-logging-operator-custom-runner-fips affected chainguard kube-logging-operator-custom-runner-fips
kube-metrics-adapter affected wolfi kube-metrics-adapter
kube-metrics-adapter affected chainguard kube-metrics-adapter
kube-metrics-adapter-fips affected chainguard kube-metrics-adapter-fips
kuberay-operator affected wolfi kuberay-operator
kuberay-operator affected chainguard kuberay-operator
kuberay-operator-fips affected chainguard kuberay-operator-fips
kube-rbac-proxy affected wolfi kube-rbac-proxy
kube-rbac-proxy affected chainguard kube-rbac-proxy
kube-rbac-proxy-fips affected chainguard kube-rbac-proxy-fips
kuberlr affected wolfi kuberlr
kuberlr affected chainguard kuberlr
kubernetes-1.33 affected wolfi kubernetes-1.33
kubernetes-1.33 affected chainguard kubernetes-1.33
kubernetes-1.34 affected chainguard kubernetes-1.34
kubernetes-1.34 affected wolfi kubernetes-1.34
kubernetes-csi-driver-hostpath affected chainguard kubernetes-csi-driver-hostpath
kubernetes-csi-driver-hostpath affected wolfi kubernetes-csi-driver-hostpath
kubernetes-csi-driver-nfs affected wolfi kubernetes-csi-driver-nfs
kubernetes-csi-driver-nfs affected chainguard kubernetes-csi-driver-nfs
kubernetes-csi-driver-nfs-fips affected chainguard kubernetes-csi-driver-nfs-fips
kubernetes-csi-external-attacher affected wolfi kubernetes-csi-external-attacher
kubernetes-csi-external-attacher affected chainguard kubernetes-csi-external-attacher
kubernetes-csi-external-attacher-fips affected chainguard kubernetes-csi-external-attacher-fips
kubernetes-csi-external-health-monitor affected wolfi kubernetes-csi-external-health-monitor
kubernetes-csi-external-health-monitor affected chainguard kubernetes-csi-external-health-monitor
kubernetes-csi-external-provisioner affected chainguard kubernetes-csi-external-provisioner
kubernetes-csi-external-provisioner affected wolfi kubernetes-csi-external-provisioner
kubernetes-csi-external-provisioner-fips affected chainguard kubernetes-csi-external-provisioner-fips
kubernetes-csi-external-resizer affected wolfi kubernetes-csi-external-resizer
kubernetes-csi-external-resizer affected chainguard kubernetes-csi-external-resizer
kubernetes-csi-external-resizer-fips affected chainguard kubernetes-csi-external-resizer-fips
kubernetes-csi-external-snapshotter-8.3 affected wolfi kubernetes-csi-external-snapshotter-8.3
kubernetes-csi-external-snapshotter-8.3 affected chainguard kubernetes-csi-external-snapshotter-8.3
kubernetes-csi-external-snapshotter-8.4 affected wolfi kubernetes-csi-external-snapshotter-8.4
kubernetes-csi-external-snapshotter-8.4 affected chainguard kubernetes-csi-external-snapshotter-8.4
kubernetes-csi-external-snapshotter-fips-8.2 affected chainguard kubernetes-csi-external-snapshotter-fips-8.2
kubernetes-csi-external-snapshotter-fips-8.3 affected chainguard kubernetes-csi-external-snapshotter-fips-8.3
kubernetes-csi-external-snapshotter-fips-8.4 affected chainguard kubernetes-csi-external-snapshotter-fips-8.4
kubernetes-csi-livenessprobe affected wolfi kubernetes-csi-livenessprobe
kubernetes-csi-livenessprobe affected chainguard kubernetes-csi-livenessprobe
kubernetes-csi-livenessprobe-fips affected chainguard kubernetes-csi-livenessprobe-fips
kubernetes-csi-livenessprobe-fips-2.10 affected chainguard kubernetes-csi-livenessprobe-fips-2.10
kubernetes-csi-node-driver-registrar-2.15 affected chainguard kubernetes-csi-node-driver-registrar-2.15
kubernetes-csi-node-driver-registrar-2.15 affected wolfi kubernetes-csi-node-driver-registrar-2.15
kubernetes-csi-node-driver-registrar-fips-2.14 affected chainguard kubernetes-csi-node-driver-registrar-fips-2.14
kubernetes-csi-node-driver-registrar-fips-2.15 affected chainguard kubernetes-csi-node-driver-registrar-fips-2.15
kubernetes-dashboard affected chainguard kubernetes-dashboard
kubernetes-dashboard affected wolfi kubernetes-dashboard
kubernetes-dashboard-api affected chainguard kubernetes-dashboard-api
kubernetes-dashboard-api affected wolfi kubernetes-dashboard-api
kubernetes-dashboard-api-fips affected chainguard kubernetes-dashboard-api-fips
kubernetes-dashboard-auth affected wolfi kubernetes-dashboard-auth
kubernetes-dashboard-auth affected chainguard kubernetes-dashboard-auth
kubernetes-dashboard-auth-fips affected chainguard kubernetes-dashboard-auth-fips
kubernetes-dashboard-metrics-scraper affected chainguard kubernetes-dashboard-metrics-scraper
kubernetes-dashboard-metrics-scraper affected wolfi kubernetes-dashboard-metrics-scraper
kubernetes-dashboard-web affected wolfi kubernetes-dashboard-web
kubernetes-dashboard-web affected chainguard kubernetes-dashboard-web
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
kubernetes-dns-node-cache-fips affected chainguard kubernetes-dns-node-cache-fips
kubernetes-event-exporter affected chainguard kubernetes-event-exporter
kubernetes-event-exporter affected wolfi kubernetes-event-exporter
kubernetes-event-exporter-fips affected chainguard kubernetes-event-exporter-fips
kubernetes-ingress-defaultbackend-fips affected chainguard kubernetes-ingress-defaultbackend-fips
kubernetes-release affected wolfi kubernetes-release
kubernetes-release affected chainguard kubernetes-release
kubernetes-release-fips affected chainguard kubernetes-release-fips
kubernetes-replicator affected chainguard kubernetes-replicator
kubernetes-replicator affected wolfi kubernetes-replicator
kubernetes-replicator-fips affected chainguard kubernetes-replicator-fips
kubescape affected chainguard kubescape
kubescape affected wolfi kubescape
kube-state-metrics affected chainguard kube-state-metrics
kube-state-metrics affected wolfi kube-state-metrics
kube-vip affected chainguard kube-vip
kube-vip affected wolfi kube-vip
kube-vip-cloud-provider affected wolfi kube-vip-cloud-provider
kube-vip-cloud-provider affected chainguard kube-vip-cloud-provider
kubo-fips affected chainguard kubo-fips
kuma-2.12 affected wolfi kuma-2.12
kuma-2.12 affected chainguard kuma-2.12
kustomize-fips affected chainguard kustomize-fips
kyverno-notation-aws-fips affected chainguard kyverno-notation-aws-fips
kyverno-policy-reporter-plugins-kyverno-fips affected chainguard kyverno-policy-reporter-plugins-kyverno-fips
kyverno-policy-reporter-plugins-trivy-fips affected chainguard kyverno-policy-reporter-plugins-trivy-fips
kyverno-policy-reporter-ui-fips affected chainguard kyverno-policy-reporter-ui-fips
langfuse-2 affected chainguard langfuse-2
langfuse-fips-2 affected chainguard langfuse-fips-2
langfuse-fips-3 affected chainguard langfuse-fips-3
local-path-provisioner-fips affected chainguard local-path-provisioner-fips
localstack affected chainguard localstack
logstash-8.17 affected chainguard logstash-8.17
logstash-8.18 affected chainguard logstash-8.18
logstash-9.0 affected chainguard logstash-9.0
logstash-exporter-fips affected chainguard logstash-exporter-fips
loki-2.9 affected chainguard loki-2.9
longhorn-backing-image-manager-1.9 affected chainguard longhorn-backing-image-manager-1.9
longhorn-backing-image-manager-fips-1.10 affected chainguard longhorn-backing-image-manager-fips-1.10
longhorn-backing-image-manager-fips-1.8 affected chainguard longhorn-backing-image-manager-fips-1.8
longhorn-backing-image-manager-fips-1.9 affected chainguard longhorn-backing-image-manager-fips-1.9
longhorn-manager-fips-1.10 affected chainguard longhorn-manager-fips-1.10
longhorn-manager-fips-1.8 affected chainguard longhorn-manager-fips-1.8
longhorn-manager-fips-1.9 affected chainguard longhorn-manager-fips-1.9
longhorn-share-manager-fips-1.10 affected chainguard longhorn-share-manager-fips-1.10
longhorn-share-manager-fips-1.8 affected chainguard longhorn-share-manager-fips-1.8
longhorn-share-manager-fips-1.9 affected chainguard longhorn-share-manager-fips-1.9
lvm-driver-fips affected chainguard lvm-driver-fips
mariadb-operator-fips affected chainguard mariadb-operator-fips
memcached-exporter-fips affected chainguard memcached-exporter-fips
mesosphere-vsphere-csi affected wolfi mesosphere-vsphere-csi
mesosphere-vsphere-csi affected chainguard mesosphere-vsphere-csi
metrics-agent affected wolfi metrics-agent
metrics-agent affected chainguard metrics-agent
metrics-agent-fips affected chainguard metrics-agent-fips
metrics-server affected wolfi metrics-server
metrics-server affected chainguard metrics-server
metrics-server-fips affected chainguard metrics-server-fips
migrate affected chainguard migrate
migrate affected wolfi migrate
minify affected chainguard minify
minify affected wolfi minify
minify-fips affected chainguard minify-fips
minio-object-browser affected wolfi minio-object-browser
minio-object-browser affected chainguard minio-object-browser
minio-object-browser-fips affected chainguard minio-object-browser-fips
minio-operator affected chainguard minio-operator
minio-operator affected wolfi minio-operator
minio-operator-fips affected chainguard minio-operator-fips
mkcert affected chainguard mkcert
mkcert affected wolfi mkcert
mockery affected chainguard mockery
mockery affected wolfi mockery
mockgen affected chainguard mockgen
mockgen affected wolfi mockgen
mods affected wolfi mods
mods affected chainguard mods
mongodb-k8s-operator-version-upgrade-post-start-hook affected chainguard mongodb-k8s-operator-version-upgrade-post-start-hook
mongodb-k8s-operator-version-upgrade-post-start-hook-fips affected chainguard mongodb-k8s-operator-version-upgrade-post-start-hook-fips
mongodb-kubernetes-operator affected wolfi mongodb-kubernetes-operator
mongodb-kubernetes-operator affected chainguard mongodb-kubernetes-operator
mongodb-kubernetes-operator-fips affected chainguard mongodb-kubernetes-operator-fips
mongo-tools affected wolfi mongo-tools
mongo-tools affected chainguard mongo-tools
mongo-tools-fips affected chainguard mongo-tools-fips
monstache affected chainguard monstache
mountpoint-s3-csi-driver-2.2 affected wolfi mountpoint-s3-csi-driver-2.2
mountpoint-s3-csi-driver-2.2 affected chainguard mountpoint-s3-csi-driver-2.2
multus-cni affected wolfi multus-cni
multus-cni affected chainguard multus-cni
multus-cni-fips affected chainguard multus-cni-fips
multus-cni-fips-4.0.2 affected chainguard multus-cni-fips-4.0.2
nats affected wolfi nats
nats affected chainguard nats
nats-fips affected chainguard nats-fips
nats-server affected chainguard nats-server
nats-server affected wolfi nats-server
nats-top affected chainguard nats-top
nats-top affected wolfi nats-top
nemo affected chainguard nemo
nerdctl affected chainguard nerdctl
nerdctl affected wolfi nerdctl
net-kourier-1.19 affected chainguard net-kourier-1.19
net-kourier-1.19 affected wolfi net-kourier-1.19
net-kourier-fips-1.16 affected chainguard net-kourier-fips-1.16
net-kourier-fips-1.17 affected chainguard net-kourier-fips-1.17
net-kourier-fips-1.18 affected chainguard net-kourier-fips-1.18
neuvector-dbgen affected chainguard neuvector-dbgen
neuvector-dbgen affected wolfi neuvector-dbgen
neuvector-dbgen-fips affected chainguard neuvector-dbgen-fips
neuvector-sigstore-interface affected wolfi neuvector-sigstore-interface
neuvector-sigstore-interface affected chainguard neuvector-sigstore-interface
neuvector-sigstore-interface-fips affected chainguard neuvector-sigstore-interface-fips
newrelic-fluent-bit-output affected wolfi newrelic-fluent-bit-output
newrelic-fluent-bit-output affected chainguard newrelic-fluent-bit-output
newrelic-fluent-bit-output-fips affected chainguard newrelic-fluent-bit-output-fips
newrelic-infra-operator affected wolfi newrelic-infra-operator
newrelic-infra-operator affected chainguard newrelic-infra-operator
newrelic-infrastructure-agent affected chainguard newrelic-infrastructure-agent
newrelic-infrastructure-agent affected wolfi newrelic-infrastructure-agent
newrelic-infrastructure-agent-fips affected chainguard newrelic-infrastructure-agent-fips
newrelic-k8s-metadata-injection affected wolfi newrelic-k8s-metadata-injection
newrelic-k8s-metadata-injection affected chainguard newrelic-k8s-metadata-injection
newrelic-k8s-metadata-injection-fips affected chainguard newrelic-k8s-metadata-injection-fips
newrelic-nri-kube-events affected chainguard newrelic-nri-kube-events
newrelic-nri-kube-events affected wolfi newrelic-nri-kube-events
newrelic-nri-kube-events-fips affected chainguard newrelic-nri-kube-events-fips
newrelic-nri-statsd affected wolfi newrelic-nri-statsd
newrelic-nri-statsd affected chainguard newrelic-nri-statsd
newrelic-prometheus-configurator affected chainguard newrelic-prometheus-configurator
newrelic-prometheus-configurator affected wolfi newrelic-prometheus-configurator
nfpm affected chainguard nfpm
nfpm affected wolfi nfpm
nfs-subdir-external-provisioner affected wolfi nfs-subdir-external-provisioner
nfs-subdir-external-provisioner affected chainguard nfs-subdir-external-provisioner
nfs-subdir-external-provisioner-fips affected chainguard nfs-subdir-external-provisioner-fips
nginx-prometheus-exporter affected chainguard nginx-prometheus-exporter
nginx-prometheus-exporter affected wolfi nginx-prometheus-exporter
nginx-prometheus-exporter-fips affected chainguard nginx-prometheus-exporter-fips
node-feature-discovery-0.18 affected chainguard node-feature-discovery-0.18
node-feature-discovery-0.18 affected wolfi node-feature-discovery-0.18
node-feature-discovery-fips-0.16 affected chainguard node-feature-discovery-fips-0.16
node-feature-discovery-fips-0.18 affected chainguard node-feature-discovery-fips-0.18
node-problem-detector-0.8 affected chainguard node-problem-detector-0.8
node-problem-detector-0.8 affected wolfi node-problem-detector-0.8
node-problem-detector-fips-0.8 affected chainguard node-problem-detector-fips-0.8
nodetaint affected wolfi nodetaint
nodetaint affected chainguard nodetaint
nova affected chainguard nova
nova affected wolfi nova
nova-fips affected chainguard nova-fips
nrdot-collector-k8s affected chainguard nrdot-collector-k8s
nrdot-collector-k8s-fips affected chainguard nrdot-collector-k8s-fips
nri-apache affected wolfi nri-apache
nri-apache affected chainguard nri-apache
nri-cassandra affected chainguard nri-cassandra
nri-cassandra affected wolfi nri-cassandra
nri-consul affected wolfi nri-consul
nri-consul affected chainguard nri-consul
nri-couchbase affected chainguard nri-couchbase
nri-couchbase affected wolfi nri-couchbase
nri-discovery-kubernetes affected wolfi nri-discovery-kubernetes
nri-discovery-kubernetes affected chainguard nri-discovery-kubernetes
nri-discovery-kubernetes-fips affected chainguard nri-discovery-kubernetes-fips
nri-elasticsearch affected chainguard nri-elasticsearch
nri-elasticsearch affected wolfi nri-elasticsearch
nri-f5 affected wolfi nri-f5
nri-f5 affected chainguard nri-f5
nri-haproxy affected wolfi nri-haproxy
nri-haproxy affected chainguard nri-haproxy
nri-jmx affected chainguard nri-jmx
nri-jmx affected wolfi nri-jmx
nri-kafka affected chainguard nri-kafka
nri-kafka affected wolfi nri-kafka
nri-kubernetes affected wolfi nri-kubernetes
nri-kubernetes affected chainguard nri-kubernetes
nri-memcached affected wolfi nri-memcached
nri-memcached affected chainguard nri-memcached
nri-mongodb affected chainguard nri-mongodb
nri-mongodb affected wolfi nri-mongodb
nri-mssql affected wolfi nri-mssql
nri-mssql affected chainguard nri-mssql
nri-mysql affected chainguard nri-mysql
nri-mysql affected wolfi nri-mysql
nri-nagios affected chainguard nri-nagios
nri-nagios affected wolfi nri-nagios
nri-nginx affected wolfi nri-nginx
nri-nginx affected chainguard nri-nginx
nri-postgresql affected wolfi nri-postgresql
nri-postgresql affected chainguard nri-postgresql
nri-rabbitmq affected wolfi nri-rabbitmq
nri-rabbitmq affected chainguard nri-rabbitmq
nri-redis affected chainguard nri-redis
nri-redis affected wolfi nri-redis
nsc affected wolfi nsc
nsc affected chainguard nsc
nuclei affected wolfi nuclei
nuclei affected chainguard nuclei
nvidia-container-toolkit affected chainguard nvidia-container-toolkit
nvidia-container-toolkit affected wolfi nvidia-container-toolkit
nvidia-nsight-compute-12.8 affected chainguard nvidia-nsight-compute-12.8
nvidia-nsight-compute-12.9 affected chainguard nvidia-nsight-compute-12.9
nvidia-nsight-compute-13.0 affected chainguard nvidia-nsight-compute-13.0
nvidia-nsight-compute-13.1 affected chainguard nvidia-nsight-compute-13.1
nvidia-nsight-compute-13.2 affected chainguard nvidia-nsight-compute-13.2
oauth2-proxy affected wolfi oauth2-proxy
oauth2-proxy affected chainguard oauth2-proxy
oauth2-proxy-fips affected chainguard oauth2-proxy-fips
octo-sts affected chainguard octo-sts
octo-sts affected wolfi octo-sts
ollama-fips affected chainguard ollama-fips
opa affected chainguard opa
opa affected wolfi opa
opa-envoy affected chainguard opa-envoy
opa-envoy affected wolfi opa-envoy
opa-fips affected chainguard opa-fips
opa-fips-envoy affected chainguard opa-fips-envoy
openbao affected chainguard openbao
openbao affected wolfi openbao
openbao-k8s affected chainguard openbao-k8s
openbao-k8s affected wolfi openbao-k8s
openbao-k8s-fips affected chainguard openbao-k8s-fips
opencost affected chainguard opencost
opencost affected wolfi opencost
opencost-fips affected chainguard opencost-fips
openfga-fips affected chainguard openfga-fips
opensearch-k8s-operator affected wolfi opensearch-k8s-operator
opensearch-k8s-operator affected chainguard opensearch-k8s-operator
opentelemetry-collector affected chainguard opentelemetry-collector
opentelemetry-collector affected wolfi opentelemetry-collector
opentelemetry-collector-contrib affected chainguard opentelemetry-collector-contrib
opentelemetry-collector-contrib affected wolfi opentelemetry-collector-contrib
opentelemetry-operator affected wolfi opentelemetry-operator
opentelemetry-operator affected chainguard opentelemetry-operator
opentofu-1.10 affected wolfi opentofu-1.10
opentofu-1.10 affected chainguard opentofu-1.10
opentofu-fips-1.10 affected chainguard opentofu-fips-1.10
opentofu-fips-1.7 affected chainguard opentofu-fips-1.7
opentofu-fips-1.8 affected chainguard opentofu-fips-1.8
opentofu-fips-1.9 affected chainguard opentofu-fips-1.9
op-geth affected chainguard op-geth
op-geth affected wolfi op-geth
oras affected wolfi oras
oras affected chainguard oras
oras-fips affected chainguard oras-fips
osv-scanner affected chainguard osv-scanner
osv-scanner affected wolfi osv-scanner
otel-cli affected wolfi otel-cli
otel-cli affected chainguard otel-cli
overmind affected wolfi overmind
overmind affected chainguard overmind
paranoia affected chainguard paranoia
paranoia affected wolfi paranoia
pdfcpu affected chainguard pdfcpu
pdfcpu affected wolfi pdfcpu
percona-server-mongodb-operator affected wolfi percona-server-mongodb-operator
percona-server-mongodb-operator affected chainguard percona-server-mongodb-operator
petname affected wolfi petname
petname affected chainguard petname
pgpool2_exporter affected chainguard pgpool2_exporter
pgpool2_exporter affected wolfi pgpool2_exporter
pgpool2_exporter-fips affected chainguard pgpool2_exporter-fips
pg_timetable affected chainguard pg_timetable
pg_timetable affected wolfi pg_timetable
pg_timetable-fips affected chainguard pg_timetable-fips
pg_user affected wolfi pg_user
pg_user affected chainguard pg_user
php-fpm_exporter affected wolfi php-fpm_exporter
php-fpm_exporter affected chainguard php-fpm_exporter
plugin-barman-cloud-fips affected chainguard plugin-barman-cloud-fips
pluto affected wolfi pluto
pluto affected chainguard pluto
pluto-fips affected chainguard pluto-fips
podinfo affected chainguard podinfo
podinfo affected wolfi podinfo
podman affected chainguard podman
podman affected wolfi podman
podman-fips affected chainguard podman-fips
polaris affected chainguard polaris
polaris affected wolfi polaris
polaris-fips affected chainguard polaris-fips
policy-controller affected wolfi policy-controller
policy-controller affected chainguard policy-controller
policy-controller-fips affected chainguard policy-controller-fips
pombump affected chainguard pombump
pombump affected wolfi pombump
portieris affected wolfi portieris
portieris affected chainguard portieris
portieris-fips affected chainguard portieris-fips
postgres-operator affected wolfi postgres-operator
postgres-operator affected chainguard postgres-operator
postgres-operator-fips affected chainguard postgres-operator-fips
prometheus-3.7 affected chainguard prometheus-3.7
prometheus-3.7 affected wolfi prometheus-3.7
prometheus-adapter affected chainguard prometheus-adapter
prometheus-adapter affected wolfi prometheus-adapter
prometheus-adapter-fips affected chainguard prometheus-adapter-fips
prometheus-adapter-fips-0.10 affected chainguard prometheus-adapter-fips-0.10
prometheus-alertmanager affected chainguard prometheus-alertmanager
prometheus-alertmanager affected wolfi prometheus-alertmanager
prometheus-beat-exporter-fips affected chainguard prometheus-beat-exporter-fips
prometheus-blackbox-exporter-fips affected chainguard prometheus-blackbox-exporter-fips
prometheus-mysqld-exporter-fips affected chainguard prometheus-mysqld-exporter-fips
prometheus-node-exporter-fips affected chainguard prometheus-node-exporter-fips
prometheus-operator affected wolfi prometheus-operator
prometheus-operator affected chainguard prometheus-operator
prometheus-operator-fips affected chainguard prometheus-operator-fips
prometheus-pgbouncer-exporter-fips affected chainguard prometheus-pgbouncer-exporter-fips
prometheus-podman-exporter-fips affected chainguard prometheus-podman-exporter-fips
prometheus-postgres-exporter-0.10 affected chainguard prometheus-postgres-exporter-0.10
prometheus-postgres-exporter-fips affected chainguard prometheus-postgres-exporter-fips
prometheus-process-exporter-fips affected chainguard prometheus-process-exporter-fips
prometheus-pushgateway-fips-1.4 affected chainguard prometheus-pushgateway-fips-1.4
prometheus-statsd-exporter-fips affected chainguard prometheus-statsd-exporter-fips
promxy affected wolfi promxy
promxy affected chainguard promxy
promxy-fips affected chainguard promxy-fips
protoc-gen-go affected chainguard protoc-gen-go
protoc-gen-go affected wolfi protoc-gen-go
protoc-gen-go-grpc affected wolfi protoc-gen-go-grpc
protoc-gen-go-grpc affected chainguard protoc-gen-go-grpc
pulumi-kubernetes-operator affected chainguard pulumi-kubernetes-operator
pulumi-kubernetes-operator affected wolfi pulumi-kubernetes-operator
pulumi-language-dotnet affected chainguard pulumi-language-dotnet
pulumi-language-dotnet affected wolfi pulumi-language-dotnet
pulumi-language-yaml affected wolfi pulumi-language-yaml
pulumi-language-yaml affected chainguard pulumi-language-yaml
pushprox-fips affected chainguard pushprox-fips
pvc-autoresizer affected wolfi pvc-autoresizer
pvc-autoresizer affected chainguard pvc-autoresizer
q affected wolfi q
q affected chainguard q
quic-go-fips affected chainguard quic-go-fips
rabbitmq-cluster-operator affected wolfi rabbitmq-cluster-operator
rabbitmq-cluster-operator affected chainguard rabbitmq-cluster-operator
rabbitmq-cluster-operator-fips affected chainguard rabbitmq-cluster-operator-fips
rabbitmq-default-user-credential-updater affected wolfi rabbitmq-default-user-credential-updater
rabbitmq-default-user-credential-updater affected chainguard rabbitmq-default-user-credential-updater
rabbitmq-default-user-credential-updater-fips affected chainguard rabbitmq-default-user-credential-updater-fips
rabbitmq-messaging-topology-operator affected wolfi rabbitmq-messaging-topology-operator
rabbitmq-messaging-topology-operator affected chainguard rabbitmq-messaging-topology-operator
rabbitmq-messaging-topology-operator-fips affected chainguard rabbitmq-messaging-topology-operator-fips
rancher-2.12 affected wolfi rancher-2.12
rancher-2.12 affected chainguard rancher-2.12
rancher-agent-2.12 affected chainguard rancher-agent-2.12
rancher-agent-2.12 affected wolfi rancher-agent-2.12
rancher-fleet affected wolfi rancher-fleet
rancher-fleet affected chainguard rancher-fleet
rancher-fleet-fips affected chainguard rancher-fleet-fips
rancher-helm-3 affected wolfi rancher-helm-3
rancher-helm-3 affected chainguard rancher-helm-3
rancher-loglevel affected wolfi rancher-loglevel
rancher-loglevel affected chainguard rancher-loglevel
rancher-machine affected wolfi rancher-machine
rancher-machine affected chainguard rancher-machine
rancher-security-scan-0.6 affected chainguard rancher-security-scan-0.6
rancher-security-scan-0.6 affected wolfi rancher-security-scan-0.6
rancher-security-scan-fips-0.3 affected chainguard rancher-security-scan-fips-0.3
rancher-security-scan-fips-0.4 affected chainguard rancher-security-scan-fips-0.4
rancher-security-scan-fips-0.5 affected chainguard rancher-security-scan-fips-0.5
rancher-security-scan-fips-0.6 affected chainguard rancher-security-scan-fips-0.6
rancher-system-agent affected wolfi rancher-system-agent
rancher-system-agent affected chainguard rancher-system-agent
rancher-system-upgrade-controller affected wolfi rancher-system-upgrade-controller
rancher-system-upgrade-controller affected chainguard rancher-system-upgrade-controller
rancher-telemetry affected wolfi rancher-telemetry
rancher-telemetry affected chainguard rancher-telemetry
rancher-webhook-0.6 affected chainguard rancher-webhook-0.6
rancher-webhook-0.6 affected wolfi rancher-webhook-0.6
rancher-webhook-fips-0.4 affected chainguard rancher-webhook-fips-0.4
rancher-webhook-fips-0.5 affected chainguard rancher-webhook-fips-0.5
rancher-webhook-fips-0.6 affected chainguard rancher-webhook-fips-0.6
ratify affected wolfi ratify
ratify affected chainguard ratify
ratify-fips affected chainguard ratify-fips
rclone affected wolfi rclone
rclone affected chainguard rclone
redis-operator affected wolfi redis-operator
redis-operator affected chainguard redis-operator
redis-operator-fips affected chainguard redis-operator-fips
redka affected wolfi redka
redka affected chainguard redka
regclient affected chainguard regclient
regclient affected wolfi regclient
regclient-fips affected chainguard regclient-fips
rekor affected wolfi rekor
rekor affected chainguard rekor
rekor-fips affected chainguard rekor-fips
render-template affected chainguard render-template
render-template affected wolfi render-template
request-1279 affected chainguard request-1279
request-1279-1-14 affected chainguard request-1279-1-14
restic affected chainguard restic
restic affected wolfi restic
restic-fips affected chainguard restic-fips
rke2-cloud-provider affected chainguard rke2-cloud-provider
rke2-cloud-provider affected wolfi rke2-cloud-provider
rke2-cloud-provider-fips affected chainguard rke2-cloud-provider-fips
rook-fips affected chainguard rook-fips
rootlesskit affected chainguard rootlesskit
rootlesskit affected wolfi rootlesskit
rootlesskit-fips affected chainguard rootlesskit-fips
runc affected wolfi runc
runc affected chainguard runc
runc-fips affected chainguard runc-fips
s5cmd affected wolfi s5cmd
s5cmd affected chainguard s5cmd
sbom-convert affected chainguard sbom-convert
sbom-convert affected wolfi sbom-convert
sbom-scorecard affected chainguard sbom-scorecard
sbom-scorecard affected wolfi sbom-scorecard
scanner-test-golang-vulnerability-fixed affected chainguard scanner-test-golang-vulnerability-fixed
scorecard affected wolfi scorecard
scorecard affected chainguard scorecard
scuttle-fips affected chainguard scuttle-fips
sealed-secrets affected chainguard sealed-secrets
sealed-secrets affected wolfi sealed-secrets
sealed-secrets-fips affected chainguard sealed-secrets-fips
seaweedfs affected chainguard seaweedfs
seaweedfs affected wolfi seaweedfs
seaweedfs-operator-fips affected chainguard seaweedfs-operator-fips
secrets-store-csi-driver affected wolfi secrets-store-csi-driver
secrets-store-csi-driver affected chainguard secrets-store-csi-driver
secrets-store-csi-driver-fips affected chainguard secrets-store-csi-driver-fips
secrets-store-csi-driver-provider-aws affected wolfi secrets-store-csi-driver-provider-aws
secrets-store-csi-driver-provider-aws affected chainguard secrets-store-csi-driver-provider-aws
secrets-store-csi-driver-provider-aws-fips affected chainguard secrets-store-csi-driver-provider-aws-fips
secrets-store-csi-driver-provider-azure affected chainguard secrets-store-csi-driver-provider-azure
secrets-store-csi-driver-provider-azure affected wolfi secrets-store-csi-driver-provider-azure
secrets-store-csi-driver-provider-azure-fips affected chainguard secrets-store-csi-driver-provider-azure-fips
secrets-store-csi-driver-provider-gcp affected chainguard secrets-store-csi-driver-provider-gcp
secrets-store-csi-driver-provider-gcp affected wolfi secrets-store-csi-driver-provider-gcp
secrets-store-csi-driver-provider-gcp-fips affected chainguard secrets-store-csi-driver-provider-gcp-fips
sftpgo affected wolfi sftpgo
sftpgo affected chainguard sftpgo
sftpgo-plugin-eventsearch affected wolfi sftpgo-plugin-eventsearch
sftpgo-plugin-eventsearch affected chainguard sftpgo-plugin-eventsearch
sftpgo-plugin-eventstore affected chainguard sftpgo-plugin-eventstore
sftpgo-plugin-eventstore affected wolfi sftpgo-plugin-eventstore
sftpgo-plugin-geoipfilter affected chainguard sftpgo-plugin-geoipfilter
sftpgo-plugin-geoipfilter affected wolfi sftpgo-plugin-geoipfilter
sftpgo-plugin-kms affected wolfi sftpgo-plugin-kms
sftpgo-plugin-kms affected chainguard sftpgo-plugin-kms
sftpgo-plugin-pubsub affected wolfi sftpgo-plugin-pubsub
sftpgo-plugin-pubsub affected chainguard sftpgo-plugin-pubsub
shfmt affected chainguard shfmt
shfmt affected wolfi shfmt
sigstore-scaffolding affected wolfi sigstore-scaffolding
sigstore-scaffolding affected chainguard sigstore-scaffolding
sigstore-scaffolding-fips affected chainguard sigstore-scaffolding-fips
skaffold affected wolfi skaffold
skaffold affected chainguard skaffold
slsa-verifier affected wolfi slsa-verifier
slsa-verifier affected chainguard slsa-verifier
smarter-device-manager affected wolfi smarter-device-manager
smarter-device-manager affected chainguard smarter-device-manager
smarter-device-manager-fips affected chainguard smarter-device-manager-fips
snyk-cli affected wolfi snyk-cli
snyk-cli affected chainguard snyk-cli
sonobuoy affected wolfi sonobuoy
sonobuoy affected chainguard sonobuoy
sonobuoy-fips affected chainguard sonobuoy-fips
sops affected wolfi sops
sops affected chainguard sops
sops-fips affected chainguard sops-fips
spark-operator affected wolfi spark-operator
spark-operator affected chainguard spark-operator
spark-operator-fips affected chainguard spark-operator-fips
spark-operator-fips-2.2 affected chainguard spark-operator-fips-2.2
spegel affected chainguard spegel
spegel affected wolfi spegel
spegel-fips affected chainguard spegel-fips
spicedb affected chainguard spicedb
spicedb affected wolfi spicedb
spicedb-fips affected chainguard spicedb-fips
spicedb-operator affected wolfi spicedb-operator
spicedb-operator affected chainguard spicedb-operator
spicedb-operator-fips affected chainguard spicedb-operator-fips
spiffe-helper affected chainguard spiffe-helper
spiffe-helper affected wolfi spiffe-helper
spiffe-helper-fips affected chainguard spiffe-helper-fips
spire-controller-manager affected wolfi spire-controller-manager
spire-controller-manager affected chainguard spire-controller-manager
spire-controller-manager-fips affected chainguard spire-controller-manager-fips
spire-server affected chainguard spire-server
spire-server affected wolfi spire-server
spire-server-fips affected chainguard spire-server-fips
splunk-otel-collector affected chainguard splunk-otel-collector
splunk-otel-collector affected wolfi splunk-otel-collector
splunk-otel-collector-fips affected chainguard splunk-otel-collector-fips
spqr affected chainguard spqr
spqr affected wolfi spqr
sql_exporter affected chainguard sql_exporter
sql_exporter affected wolfi sql_exporter
sql_exporter-fips affected chainguard sql_exporter-fips
src affected wolfi src
src affected chainguard src
src-fingerprint affected chainguard src-fingerprint
src-fingerprint affected wolfi src-fingerprint
src-fingerprint-fips affected chainguard src-fingerprint-fips
sriov-network-device-plugin affected wolfi sriov-network-device-plugin
sriov-network-device-plugin affected chainguard sriov-network-device-plugin
stakater-reloader affected wolfi stakater-reloader
stakater-reloader affected chainguard stakater-reloader
stakater-reloader-0.0.119 affected chainguard stakater-reloader-0.0.119
stakater-reloader-0.0.128 affected chainguard stakater-reloader-0.0.128
stakater-reloader-fips affected chainguard stakater-reloader-fips
steampipe affected wolfi steampipe
steampipe affected chainguard steampipe
stern affected chainguard stern
stern affected wolfi stern
supercronic affected wolfi supercronic
supercronic affected chainguard supercronic
syft affected wolfi syft
syft affected chainguard syft
syft-fips affected chainguard syft-fips
tailscale affected wolfi tailscale
tailscale affected chainguard tailscale
task affected wolfi task
task affected chainguard task
tekton-chains affected wolfi tekton-chains
tekton-chains affected chainguard tekton-chains
tekton-pipelines-1.5 affected wolfi tekton-pipelines-1.5
tekton-pipelines-1.5 affected chainguard tekton-pipelines-1.5
telegraf-1.33 affected chainguard telegraf-1.33
telegraf-1.33 affected wolfi telegraf-1.33
telegraf-1.34 affected chainguard telegraf-1.34
telegraf-1.34 affected wolfi telegraf-1.34
telegraf-1.36 affected chainguard telegraf-1.36
telegraf-1.36 affected wolfi telegraf-1.36
teleport-15 affected chainguard teleport-15
teleport-17 affected wolfi teleport-17
teleport-17 affected chainguard teleport-17
tempo affected wolfi tempo
tempo affected chainguard tempo
temporal affected chainguard temporal
temporal affected wolfi temporal
temporal-fips affected chainguard temporal-fips
temporal-server affected wolfi temporal-server
temporal-server affected chainguard temporal-server
temporal-ui-server affected chainguard temporal-ui-server
temporal-ui-server affected wolfi temporal-ui-server
temporal-ui-server-fips affected chainguard temporal-ui-server-fips
terraform affected chainguard terraform
terraform affected wolfi terraform
terraform-1.7 affected chainguard terraform-1.7
terraform-1.8 affected chainguard terraform-1.8
terraform-docs affected wolfi terraform-docs
terraform-docs affected chainguard terraform-docs
terraform-ls affected chainguard terraform-ls
terraform-mcp-server affected chainguard terraform-mcp-server
terraform-mcp-server affected wolfi terraform-mcp-server
terraform-provider-azuread affected wolfi terraform-provider-azuread
terraform-provider-azuread affected chainguard terraform-provider-azuread
terraform-provider-azuread-fips affected chainguard terraform-provider-azuread-fips
terraform-provider-azurerm affected wolfi terraform-provider-azurerm
terraform-provider-azurerm affected chainguard terraform-provider-azurerm
terraform-provider-google affected chainguard terraform-provider-google
terraform-provider-google affected wolfi terraform-provider-google
terraform-provider-google-fips affected chainguard terraform-provider-google-fips
terraform-provider-random affected chainguard terraform-provider-random
terraform-provider-random affected wolfi terraform-provider-random
terraform-provider-random-fips affected chainguard terraform-provider-random-fips
terraform-provider-sendgrid affected wolfi terraform-provider-sendgrid
terraform-provider-sendgrid affected chainguard terraform-provider-sendgrid
terraform-provider-sendgrid-fips affected chainguard terraform-provider-sendgrid-fips
terraform-provider-time affected chainguard terraform-provider-time
terraform-provider-time affected wolfi terraform-provider-time
terraform-provider-time-fips affected chainguard terraform-provider-time-fips
terraform-provider-tls affected chainguard terraform-provider-tls
terraform-provider-tls affected wolfi terraform-provider-tls
terraform-provider-tls-fips affected chainguard terraform-provider-tls-fips
tetragon-fips affected chainguard tetragon-fips
tflint-fips affected chainguard tflint-fips
tfsec affected chainguard tfsec
tfsec affected wolfi tfsec
thanos affected chainguard thanos
thanos affected wolfi thanos
thanos-operator affected wolfi thanos-operator
thanos-operator affected chainguard thanos-operator
thanos-operator-fips affected chainguard thanos-operator-fips
tigera-operator-1.28 affected chainguard tigera-operator-1.28
tigera-operator-fips-1.29 affected chainguard tigera-operator-fips-1.29
tigera-operator-fips-1.34 affected chainguard tigera-operator-fips-1.34
tigera-operator-fips-1.36 affected chainguard tigera-operator-fips-1.36
tigera-operator-fips-1.37 affected chainguard tigera-operator-fips-1.37
tigera-operator-fips-1.38 affected chainguard tigera-operator-fips-1.38
tigera-operator-fips-1.40 affected chainguard tigera-operator-fips-1.40
timescaledb-tune affected wolfi timescaledb-tune
timescaledb-tune affected chainguard timescaledb-tune
timestamp-authority affected chainguard timestamp-authority
timestamp-authority affected wolfi timestamp-authority
timestamp-authority-fips affected chainguard timestamp-authority-fips
tkn-fips affected chainguard tkn-fips
tofu-controller affected wolfi tofu-controller
tofu-controller affected chainguard tofu-controller
tofu-controller-fips affected chainguard tofu-controller-fips
traefik-fips-3.4 affected chainguard traefik-fips-3.4
traefik-fips-3.5 affected chainguard traefik-fips-3.5
traefik-fips-3.6 affected chainguard traefik-fips-3.6
trillian-fips affected chainguard trillian-fips
trivy-operator-fips affected chainguard trivy-operator-fips
trufflehog-fips affected chainguard trufflehog-fips
trust-manager-fips affected chainguard trust-manager-fips
vault-1.16 affected chainguard vault-1.16
vault-1.17 affected chainguard vault-1.17
vault-1.18 affected chainguard vault-1.18
vault-1.19 affected chainguard vault-1.19
vault-1.21 affected chainguard vault-1.21
vault-csi-provider-fips affected chainguard vault-csi-provider-fips
vault-fips-1.19 affected chainguard vault-fips-1.19
vault-k8s-fips affected chainguard vault-k8s-fips
velero-fips affected chainguard velero-fips
velero-plugin-for-aws-fips affected chainguard velero-plugin-for-aws-fips
velero-plugin-for-csi-fips affected chainguard velero-plugin-for-csi-fips
velero-plugin-for-microsoft-azure-fips affected chainguard velero-plugin-for-microsoft-azure-fips
vendir-fips affected chainguard vendir-fips
vertical-pod-autoscaler-fips affected chainguard vertical-pod-autoscaler-fips
vgpu-util affected chainguard vgpu-util
volcano-fips affected chainguard volcano-fips
volume-modifier-for-k8s-fips affected chainguard volume-modifier-for-k8s-fips
wave-fips affected chainguard wave-fips
wazero-fips affected chainguard wazero-fips
whereabouts-fips affected chainguard whereabouts-fips
x509-certificate-exporter-fips affected chainguard x509-certificate-exporter-fips
xeol-fips affected chainguard xeol-fips
yace-fips affected chainguard yace-fips
yq-fips affected chainguard yq-fips
ytt-fips affected chainguard ytt-fips
yunikorn-k8shim-fips affected chainguard yunikorn-k8shim-fips
yunikorn-web-fips affected chainguard yunikorn-web-fips
Upstream advisory

ECHO-151b-e2c7-b7f1

Open SourcePoC exploit2025-12-02

ECHO-151b-e2c7-b7f1

Affected products

ProductStatusVendorPackageEcosystem
golang-1.24 affected Echo golang-1.24
Upstream advisory

AZL-71255

Open SourcePoC exploitCRITICAL2025-12-02

CVE-2025-61729 affecting package golang 1.26.0-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

AZL-71305

Open SourcePoC exploitCRITICAL2025-12-02

CVE-2025-61729 affecting package msft-golang 1.24.13-1

Affected products

ProductStatusVendorPackageEcosystem
msft-golang affected Azure Linux:2 msft-golang
Upstream advisory

AZL-71960

Open SourcePoC exploitCRITICAL2025-12-02

CVE-2025-61729 affecting package golang for versions less than 1.25.5-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

AZL-78931

Open SourcePoC exploitCRITICAL2025-12-02

CVE-2025-61729 affecting package golang 1.25.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

DEBIAN-CVE-2025-61729

Open SourcePoC exploitCRITICAL2025-12-02

DEBIAN-CVE-2025-61729

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
golang-1.19 affected Debian:12 golang-1.19
golang-1.24 affected Debian:13 golang-1.24
golang-1.25 affected Debian:14 golang-1.25
Upstream advisory

CVE-2025-61729

GooglePoC exploitCRITICAL2025-12-02

Within HostnameError.Error(), when constructing an error string, there is no limit to the number of hosts that will be printed out. Furthermore, the error string is constructed by repeated string concatenation, leading to quadratic runtime. Therefore, ...

CVEs:CVE-2025-61729

Affected products

ProductStatusVendorPackageEcosystem
go affected golang
Upstream advisory

GO-2025-4155

Open SourcePoC exploitCRITICAL2025-12-02

Excessive resource consumption when printing error string for host certificate validation in crypto/x509

Affected products

ProductStatusVendorPackageEcosystem
aactl affected chainguard aactl
aactl affected wolfi aactl
actions-runner-controller affected wolfi actions-runner-controller
actions-runner-controller affected chainguard actions-runner-controller
actions-runner-controller-fips affected chainguard actions-runner-controller-fips
addon-resizer-fips affected chainguard addon-resizer-fips
age-fips affected chainguard age-fips
amazon-cloudwatch-agent-fips affected chainguard amazon-cloudwatch-agent-fips
amazon-cloudwatch-agent-operator-fips affected chainguard amazon-cloudwatch-agent-operator-fips
amazon-k8s-cni-fips affected chainguard amazon-k8s-cni-fips
amazon-ssm-agent-fips affected chainguard amazon-ssm-agent-fips
amazon-vpc-cni-plugins-fips affected chainguard amazon-vpc-cni-plugins-fips
ansible-operator affected chainguard ansible-operator
apache-beam-java-sdk affected chainguard apache-beam-java-sdk
apache-exporter affected chainguard apache-exporter
apache-exporter affected wolfi apache-exporter
apisix-ingress-controller affected chainguard apisix-ingress-controller
apisix-ingress-controller affected wolfi apisix-ingress-controller
apm-server-fips-7.17 affected chainguard apm-server-fips-7.17
apm-server-fips-8.17 affected chainguard apm-server-fips-8.17
apm-server-fips-8.18 affected chainguard apm-server-fips-8.18
apm-server-fips-8.19 affected chainguard apm-server-fips-8.19
apm-server-fips-9.1 affected chainguard apm-server-fips-9.1
apm-server-fips-9.2 affected chainguard apm-server-fips-9.2
argo-cd-fips-3.0 affected chainguard argo-cd-fips-3.0
argo-cd-fips-3.1 affected chainguard argo-cd-fips-3.1
argo-cd-fips-3.2 affected chainguard argo-cd-fips-3.2
argocd-image-updater affected wolfi argocd-image-updater
argocd-image-updater affected chainguard argocd-image-updater
argo-rollouts-fips affected chainguard argo-rollouts-fips
authservice-fips affected chainguard authservice-fips
aws-application-networking-k8s-fips affected chainguard aws-application-networking-k8s-fips
aws-ebs-csi-driver-fips-1.49 affected chainguard aws-ebs-csi-driver-fips-1.49
aws-ebs-csi-driver-fips-1.50 affected chainguard aws-ebs-csi-driver-fips-1.50
aws-ebs-csi-driver-fips-1.51 affected chainguard aws-ebs-csi-driver-fips-1.51
aws-ebs-csi-driver-fips-1.52 affected chainguard aws-ebs-csi-driver-fips-1.52
aws-ebs-csi-driver-fips-1.53 affected chainguard aws-ebs-csi-driver-fips-1.53
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
aws-eks-pod-identity-agent-fips affected chainguard aws-eks-pod-identity-agent-fips
aws-flb-cloudwatch affected wolfi aws-flb-cloudwatch
aws-flb-cloudwatch affected chainguard aws-flb-cloudwatch
aws-flb-cloudwatch-fips affected chainguard aws-flb-cloudwatch-fips
aws-flb-firehose-fips affected chainguard aws-flb-firehose-fips
aws-iam-authenticator-fips affected chainguard aws-iam-authenticator-fips
aws-load-balancer-controller affected wolfi aws-load-balancer-controller
aws-load-balancer-controller affected chainguard aws-load-balancer-controller
aws-load-balancer-controller-fips affected chainguard aws-load-balancer-controller-fips
aws-network-policy-agent-fips affected chainguard aws-network-policy-agent-fips
aws-node-termination-handler-fips affected chainguard aws-node-termination-handler-fips
aws-nuke affected chainguard aws-nuke
aws-nuke affected wolfi aws-nuke
aws-nuke-fips affected chainguard aws-nuke-fips
aws-otel-collector-fips affected chainguard aws-otel-collector-fips
aws-privateca-issuer affected chainguard aws-privateca-issuer
aws-privateca-issuer affected wolfi aws-privateca-issuer
aws-privateca-issuer-fips affected chainguard aws-privateca-issuer-fips
aws-signer-notation-plugin-fips affected chainguard aws-signer-notation-plugin-fips
aws-sigv4-proxy-fips affected chainguard aws-sigv4-proxy-fips
azcopy-fips affected chainguard azcopy-fips
azure-container-networking affected chainguard azure-container-networking
azuredisk-csi-fips-1.28 affected chainguard azuredisk-csi-fips-1.28
azuredisk-csi-fips-1.29 affected chainguard azuredisk-csi-fips-1.29
azuredisk-csi-fips-1.30 affected chainguard azuredisk-csi-fips-1.30
azuredisk-csi-fips-1.31 affected chainguard azuredisk-csi-fips-1.31
azuredisk-csi-fips-1.32 affected chainguard azuredisk-csi-fips-1.32
azuredisk-csi-fips-1.33 affected chainguard azuredisk-csi-fips-1.33
azurefile-csi-1.33 affected chainguard azurefile-csi-1.33
azurefile-csi-fips-1.29 affected chainguard azurefile-csi-fips-1.29
azurefile-csi-fips-1.30 affected chainguard azurefile-csi-fips-1.30
azurefile-csi-fips-1.31 affected chainguard azurefile-csi-fips-1.31
azurefile-csi-fips-1.32 affected chainguard azurefile-csi-fips-1.32
azurefile-csi-fips-1.33 affected chainguard azurefile-csi-fips-1.33
azure-service-operator-fips affected chainguard azure-service-operator-fips
bank-vaults-fips affected chainguard bank-vaults-fips
beats-7 affected chainguard beats-7
beats-8.17 affected chainguard beats-8.17
beats-9.0 affected chainguard beats-9.0
blob-csi-fips-1.23 affected chainguard blob-csi-fips-1.23
blob-csi-fips-1.24 affected chainguard blob-csi-fips-1.24
blob-csi-fips-1.26 affected chainguard blob-csi-fips-1.26
blobfuse2-fips affected chainguard blobfuse2-fips
boring-registry affected wolfi boring-registry
boring-registry affected chainguard boring-registry
boring-registry-fips affected chainguard boring-registry-fips
buildkitd affected chainguard buildkitd
buildkitd affected wolfi buildkitd
buildkitd-fips affected chainguard buildkitd-fips
cass-operator-fips affected chainguard cass-operator-fips
cass-operator-fips-no-pvc-delete affected chainguard cass-operator-fips-no-pvc-delete
ceph-csi-operator-fips affected chainguard ceph-csi-operator-fips
cert-exporter-fips affected chainguard cert-exporter-fips
certificate-transparency-fips affected chainguard certificate-transparency-fips
cert-manager-csi-driver-fips affected chainguard cert-manager-csi-driver-fips
cert-manager-fips-1.17 affected chainguard cert-manager-fips-1.17
cert-manager-fips-1.18 affected chainguard cert-manager-fips-1.18
cert-manager-fips-1.19 affected chainguard cert-manager-fips-1.19
cert-manager-google-cas-issuer-fips affected chainguard cert-manager-google-cas-issuer-fips
cert-manager-istio-csr-fips affected chainguard cert-manager-istio-csr-fips
cert-manager-openshift-routes-fips affected chainguard cert-manager-openshift-routes-fips
cert-manager-webhook-pdns affected wolfi cert-manager-webhook-pdns
cert-manager-webhook-pdns affected chainguard cert-manager-webhook-pdns
cert-manager-webhook-pdns-fips affected chainguard cert-manager-webhook-pdns-fips
cfssl-fips affected chainguard cfssl-fips
chainctl affected chainguard chainctl
chartmuseum-fips affected chainguard chartmuseum-fips
chart-testing-fips affected chainguard chart-testing-fips
chisel affected chainguard chisel
chisel affected wolfi chisel
chisel-fips affected chainguard chisel-fips
cilium-certgen-0.2 affected chainguard cilium-certgen-0.2
cilium-envoy-fips-1.15 affected chainguard cilium-envoy-fips-1.15
cilium-envoy-fips-1.16 affected chainguard cilium-envoy-fips-1.16
cilium-envoy-fips-1.17 affected chainguard cilium-envoy-fips-1.17
cilium-envoy-fips-1.18 affected chainguard cilium-envoy-fips-1.18
cinder-csi-plugin-fips affected chainguard cinder-csi-plugin-fips
cis-operator-1.4 affected chainguard cis-operator-1.4
cis-operator-1.4 affected wolfi cis-operator-1.4
cloudbeat-9.1 affected chainguard cloudbeat-9.1
cloudbeat-fips-8.17 affected chainguard cloudbeat-fips-8.17
cloudbeat-fips-8.18 affected chainguard cloudbeat-fips-8.18
cloudbeat-fips-8.19 affected chainguard cloudbeat-fips-8.19
cloudbeat-fips-9.0 affected chainguard cloudbeat-fips-9.0
cloudbeat-fips-9.1 affected chainguard cloudbeat-fips-9.1
cloudbeat-fips-9.2 affected chainguard cloudbeat-fips-9.2
cloudflared-fips affected chainguard cloudflared-fips
cloudnative-pg-fips affected chainguard cloudnative-pg-fips
cloudprober-fips affected chainguard cloudprober-fips
cloud-provider-aws-fips-1.28 affected chainguard cloud-provider-aws-fips-1.28
cloud-provider-aws-fips-1.29 affected chainguard cloud-provider-aws-fips-1.29
cloud-provider-aws-fips-1.30 affected chainguard cloud-provider-aws-fips-1.30
cloud-provider-aws-fips-1.31 affected chainguard cloud-provider-aws-fips-1.31
cloud-provider-aws-fips-1.32 affected chainguard cloud-provider-aws-fips-1.32
cloud-provider-aws-fips-1.33 affected chainguard cloud-provider-aws-fips-1.33
cloud-provider-aws-fips-1.34 affected chainguard cloud-provider-aws-fips-1.34
cloud-provider-azure-fips-1.27 affected chainguard cloud-provider-azure-fips-1.27
cloud-provider-azure-fips-1.28 affected chainguard cloud-provider-azure-fips-1.28
cloud-provider-azure-fips-1.29 affected chainguard cloud-provider-azure-fips-1.29
cloud-provider-azure-fips-1.30 affected chainguard cloud-provider-azure-fips-1.30
cloud-provider-azure-fips-1.31 affected chainguard cloud-provider-azure-fips-1.31
cloud-provider-azure-fips-1.32 affected chainguard cloud-provider-azure-fips-1.32
cloud-provider-azure-fips-1.33 affected chainguard cloud-provider-azure-fips-1.33
cloud-provider-azure-fips-1.34 affected chainguard cloud-provider-azure-fips-1.34
cloud-provider-vsphere affected chainguard cloud-provider-vsphere
cloud-provider-vsphere affected wolfi cloud-provider-vsphere
cloud-sql-proxy-fips affected chainguard cloud-sql-proxy-fips
cluster-api-aws-controller affected chainguard cluster-api-aws-controller
cluster-api-aws-controller affected wolfi cluster-api-aws-controller
cluster-api-aws-controller-fips affected chainguard cluster-api-aws-controller-fips
cluster-api-azure-controller-fips affected chainguard cluster-api-azure-controller-fips
cluster-api-fips-1.11 affected chainguard cluster-api-fips-1.11
cluster-api-fips-1.7 affected chainguard cluster-api-fips-1.7
cluster-api-fips-1.9 affected chainguard cluster-api-fips-1.9
cluster-api-gcp-controller-fips affected chainguard cluster-api-gcp-controller-fips
cluster-api-provider-vsphere-fips affected chainguard cluster-api-provider-vsphere-fips
cluster-autoscaler-fips-1.31 affected chainguard cluster-autoscaler-fips-1.31
cluster-autoscaler-fips-1.32 affected chainguard cluster-autoscaler-fips-1.32
cluster-autoscaler-fips-1.33 affected chainguard cluster-autoscaler-fips-1.33
cluster-autoscaler-fips-1.34 affected chainguard cluster-autoscaler-fips-1.34
cluster-proportional-autoscaler-fips affected chainguard cluster-proportional-autoscaler-fips
configmap-reload-fips affected chainguard configmap-reload-fips
configmap-reload-fips-0.11 affected chainguard configmap-reload-fips-0.11
configmap-reload-fips-0.12 affected chainguard configmap-reload-fips-0.12
conftest-fips affected chainguard conftest-fips
consul-1.20 affected chainguard consul-1.20
consul-1.21 affected chainguard consul-1.21
consul-1.22 affected chainguard consul-1.22
consul-fips-1.19 affected chainguard consul-fips-1.19
consul-fips-1.20 affected chainguard consul-fips-1.20
consul-fips-1.21 affected chainguard consul-fips-1.21
consul-fips-1.22 affected chainguard consul-fips-1.22
consul-k8s-fips-1.1 affected chainguard consul-k8s-fips-1.1
consul-k8s-fips-1.3 affected chainguard consul-k8s-fips-1.3
consul-k8s-fips-1.4 affected chainguard consul-k8s-fips-1.4
consul-k8s-fips-1.5 affected chainguard consul-k8s-fips-1.5
consul-k8s-fips-1.6 affected chainguard consul-k8s-fips-1.6
container-object-storage-interface-fips affected chainguard container-object-storage-interface-fips
contour-fips-1.30 affected chainguard contour-fips-1.30
contour-fips-1.31 affected chainguard contour-fips-1.31
contour-fips-1.32 affected chainguard contour-fips-1.32
contour-fips-1.33 affected chainguard contour-fips-1.33
coredns-fips-1.12 affected chainguard coredns-fips-1.12
coredns-fips-1.13 affected chainguard coredns-fips-1.13
cosign-fips affected chainguard cosign-fips
crane-fips affected chainguard crane-fips
crossplane-aws-provider-fips affected chainguard crossplane-aws-provider-fips
crossplane-fips-1.20 affected chainguard crossplane-fips-1.20
crossplane-fips-2.0 affected chainguard crossplane-fips-2.0
crossplane-fips-2.1 affected chainguard crossplane-fips-2.1
crossplane-function-auto-ready-fips affected chainguard crossplane-function-auto-ready-fips
crossplane-function-environment-configs-fips affected chainguard crossplane-function-environment-configs-fips
crossplane-provider-gitlab-fips affected chainguard crossplane-provider-gitlab-fips
crossplane-provider-keycloak affected chainguard crossplane-provider-keycloak
crossplane-provider-keycloak affected wolfi crossplane-provider-keycloak
crossplane-provider-kubernetes-fips affected chainguard crossplane-provider-kubernetes-fips
crossplane-provider-sql-fips affected chainguard crossplane-provider-sql-fips
crossplane-provider-terraform-fips affected chainguard crossplane-provider-terraform-fips
ctop affected chainguard ctop
ctop affected wolfi ctop
cue-fips affected chainguard cue-fips
custom-pod-autoscaler affected wolfi custom-pod-autoscaler
custom-pod-autoscaler affected chainguard custom-pod-autoscaler
custom-pod-autoscaler-fips affected chainguard custom-pod-autoscaler-fips
custom-pod-autoscaler-operator-fips affected chainguard custom-pod-autoscaler-operator-fips
cyberark-secrets-provider-for-k8s-fips affected chainguard cyberark-secrets-provider-for-k8s-fips
dask-gateway affected wolfi dask-gateway
dask-gateway affected chainguard dask-gateway
datadog-operator-fips affected chainguard datadog-operator-fips
dataplaneapi-fips affected chainguard dataplaneapi-fips
db-operator affected chainguard db-operator
db-operator affected wolfi db-operator
dcgm-exporter-fips affected chainguard dcgm-exporter-fips
deck-fips affected chainguard deck-fips
descheduler-fips affected chainguard descheduler-fips
dex-fips affected chainguard dex-fips
dfc affected chainguard dfc
dfc affected wolfi dfc
dgraph affected wolfi dgraph
dgraph affected chainguard dgraph
distribution-fips affected chainguard distribution-fips
dive affected chainguard dive
dive affected wolfi dive
dkron-fips affected chainguard dkron-fips
docker-cli-fips affected chainguard docker-cli-fips
docker-credential-acr-env affected wolfi docker-credential-acr-env
docker-credential-acr-env affected chainguard docker-credential-acr-env
docker-credential-acr-env-fips affected chainguard docker-credential-acr-env-fips
docker-credential-ecr-login-fips affected chainguard docker-credential-ecr-login-fips
docker-credential-gcr-fips affected chainguard docker-credential-gcr-fips
dockerize-fips affected chainguard dockerize-fips
dragonfly-operator-fips affected chainguard dragonfly-operator-fips
dynamic-localpv-provisioner-fips affected chainguard dynamic-localpv-provisioner-fips
eck-operator-fips affected chainguard eck-operator-fips
eks-distro-fips-1.29 affected chainguard eks-distro-fips-1.29
eks-distro-fips-1.30 affected chainguard eks-distro-fips-1.30
eks-distro-fips-1.31 affected chainguard eks-distro-fips-1.31
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
eks-distro-fips-1.33 affected chainguard eks-distro-fips-1.33
eks-distro-fips-1.34 affected chainguard eks-distro-fips-1.34
elastic-agent-8.18 affected chainguard elastic-agent-8.18
envoy-gateway-fips affected chainguard envoy-gateway-fips
etcd-3.4 affected chainguard etcd-3.4
etcd-3.6 affected wolfi etcd-3.6
etcd-3.6 affected chainguard etcd-3.6
etcd-fips-3.4 affected chainguard etcd-fips-3.4
etcd-fips-3.5 affected chainguard etcd-fips-3.5
etcd-fips-3.6 affected chainguard etcd-fips-3.6
external-dns-0.20 affected chainguard external-dns-0.20
external-dns-0.20 affected wolfi external-dns-0.20
external-dns-fips-0.18 affected chainguard external-dns-fips-0.18
external-dns-fips-0.19 affected chainguard external-dns-fips-0.19
external-dns-fips-0.20 affected chainguard external-dns-fips-0.20
external-secrets-fips affected chainguard external-secrets-fips
external-secrets-operator-fips-0.19 affected chainguard external-secrets-operator-fips-0.19
external-secrets-operator-fips-0.20 affected chainguard external-secrets-operator-fips-0.20
external-secrets-operator-fips-1.0 affected chainguard external-secrets-operator-fips-1.0
falcoctl-fips affected chainguard falcoctl-fips
falcoctl-fips-0.4 affected chainguard falcoctl-fips-0.4
falco-exporter affected wolfi falco-exporter
falco-exporter affected chainguard falco-exporter
falco-exporter-fips affected chainguard falco-exporter-fips
falco-no-driver affected chainguard falco-no-driver
falco-no-driver affected wolfi falco-no-driver
falcosidekick-fips affected chainguard falcosidekick-fips
flannel-cni-plugin affected chainguard flannel-cni-plugin
flannel-cni-plugin affected wolfi flannel-cni-plugin
flannel-cni-plugin-fips affected chainguard flannel-cni-plugin-fips
fleet-server-8.17 affected chainguard fleet-server-8.17
fleet-server-8.18 affected chainguard fleet-server-8.18
fleet-server-8.19 affected chainguard fleet-server-8.19
fleet-server-9.0 affected chainguard fleet-server-9.0
fleet-server-fips-8.17 affected chainguard fleet-server-fips-8.17
fleet-server-fips-8.18 affected chainguard fleet-server-fips-8.18
fleet-server-fips-8.19 affected chainguard fleet-server-fips-8.19
fleet-server-fips-9.0 affected chainguard fleet-server-fips-9.0
fleet-server-fips-9.1 affected chainguard fleet-server-fips-9.1
fleet-server-fips-9.2 affected chainguard fleet-server-fips-9.2
fluent-operator-fips affected chainguard fluent-operator-fips
fluxcd-kustomize-mutating-webhook-fips affected chainguard fluxcd-kustomize-mutating-webhook-fips
flux-helm-controller-fips affected chainguard flux-helm-controller-fips
flux-image-automation-controller-fips affected chainguard flux-image-automation-controller-fips
flux-image-reflector-controller affected wolfi flux-image-reflector-controller
flux-image-reflector-controller affected chainguard flux-image-reflector-controller
flux-image-reflector-controller-fips affected chainguard flux-image-reflector-controller-fips
flux-kustomize-controller-fips affected chainguard flux-kustomize-controller-fips
flux-notification-controller-fips affected chainguard flux-notification-controller-fips
flux-source-controller-fips affected chainguard flux-source-controller-fips
flux-source-watcher-fips affected chainguard flux-source-watcher-fips
frp affected wolfi frp
frp affected chainguard frp
fuse-overlayfs-snapshotter affected wolfi fuse-overlayfs-snapshotter
fuse-overlayfs-snapshotter affected chainguard fuse-overlayfs-snapshotter
gatekeeper-fips-3.20 affected chainguard gatekeeper-fips-3.20
gcp-compute-persistent-disk-csi-driver-fips-1.12 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.12
gcp-compute-persistent-disk-csi-driver-fips-1.13 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.13
gcp-compute-persistent-disk-csi-driver-fips-1.14 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.14
gcp-compute-persistent-disk-csi-driver-fips-1.15 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.15
gcp-compute-persistent-disk-csi-driver-fips-1.16 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.16
gcp-compute-persistent-disk-csi-driver-fips-1.17 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.17
gcp-compute-persistent-disk-csi-driver-fips-1.18 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.18
gcp-compute-persistent-disk-csi-driver-fips-1.19 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.19
gcp-compute-persistent-disk-csi-driver-fips-1.20 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.20
gitaly-18.6 affected chainguard gitaly-18.6
gitaly-18.6 affected wolfi gitaly-18.6
gitaly-fips-18.6 affected chainguard gitaly-fips-18.6
gitea affected chainguard gitea
gitea affected wolfi gitea
github-mcp-server affected wolfi github-mcp-server
github-mcp-server affected chainguard github-mcp-server
gitlab-cng-18.6 affected chainguard gitlab-cng-18.6
gitlab-kas-18.6 affected wolfi gitlab-kas-18.6
gitlab-kas-18.6 affected chainguard gitlab-kas-18.6
gitlab-kas-fips-18.6 affected chainguard gitlab-kas-fips-18.6
gitlab-operator-fips affected chainguard gitlab-operator-fips
gitlab-pages-18.6 affected wolfi gitlab-pages-18.6
gitlab-pages-18.6 affected chainguard gitlab-pages-18.6
gitlab-pages-fips-18.6 affected chainguard gitlab-pages-fips-18.6
gitlab-rails-ce-18.2 affected chainguard gitlab-rails-ce-18.2
gitlab-rails-ce-fips-18.1 affected chainguard gitlab-rails-ce-fips-18.1
gitlab-rails-ce-fips-18.3 affected chainguard gitlab-rails-ce-fips-18.3
gitlab-runner-fips-18.6 affected chainguard gitlab-runner-fips-18.6
gitlab-workhorse-ce-18.1 affected chainguard gitlab-workhorse-ce-18.1
gitlab-workhorse-ce-18.2 affected chainguard gitlab-workhorse-ce-18.2
gitlab-workhorse-ce-18.3 affected chainguard gitlab-workhorse-ce-18.3
gitlab-workhorse-ce-18.4 affected chainguard gitlab-workhorse-ce-18.4
gitlab-workhorse-ce-18.5 affected chainguard gitlab-workhorse-ce-18.5
gitlab-workhorse-ce-18.6 affected chainguard gitlab-workhorse-ce-18.6
gitlab-workhorse-ce-fips-18.1 affected chainguard gitlab-workhorse-ce-fips-18.1
gitlab-workhorse-ce-fips-18.2 affected chainguard gitlab-workhorse-ce-fips-18.2
gitlab-workhorse-ce-fips-18.3 affected chainguard gitlab-workhorse-ce-fips-18.3
gitlab-workhorse-ce-fips-18.4 affected chainguard gitlab-workhorse-ce-fips-18.4
gitlab-workhorse-ce-fips-18.5 affected chainguard gitlab-workhorse-ce-fips-18.5
gitlab-workhorse-ce-fips-18.6 affected chainguard gitlab-workhorse-ce-fips-18.6
gitleaks affected wolfi gitleaks
gitleaks affected chainguard gitleaks
git-lfs-fips affected chainguard git-lfs-fips
gitness affected wolfi gitness
gitness affected chainguard gitness
gitsign affected chainguard gitsign
gitsign affected wolfi gitsign
git-sync-fips affected chainguard git-sync-fips
gke-gcloud-auth-plugin affected chainguard gke-gcloud-auth-plugin
gke-gcloud-auth-plugin affected wolfi gke-gcloud-auth-plugin
glab affected chainguard glab
glab affected wolfi glab
glow affected wolfi glow
glow affected chainguard glow
gobump affected wolfi gobump
gobump affected chainguard gobump
gobuster affected wolfi gobuster
gobuster affected chainguard gobuster
go-discover affected chainguard go-discover
go-discover affected wolfi go-discover
go-discover-fips affected chainguard go-discover-fips
go-fips-1.23 affected chainguard go-fips-1.23
gofumpt affected chainguard gofumpt
gofumpt affected wolfi gofumpt
gogatekeeper affected chainguard gogatekeeper
gogatekeeper affected wolfi gogatekeeper
go-jsonnet affected wolfi go-jsonnet
go-jsonnet affected chainguard go-jsonnet
go-licenses affected wolfi go-licenses
go-licenses affected chainguard go-licenses
go-md2man affected wolfi go-md2man
go-md2man affected chainguard go-md2man
gomplate affected wolfi gomplate
gomplate affected chainguard gomplate
gomplate-fips affected chainguard gomplate-fips
gops affected wolfi gops
gops affected chainguard gops
goreleaser affected wolfi goreleaser
goreleaser affected chainguard goreleaser
gostatsd affected wolfi gostatsd
gostatsd affected chainguard gostatsd
gosu affected wolfi gosu
gosu affected chainguard gosu
gosu-fips affected chainguard gosu-fips
gotestsum affected chainguard gotestsum
gotestsum affected wolfi gotestsum
go-tools affected chainguard go-tools
go-tools affected wolfi go-tools
govulncheck affected wolfi govulncheck
govulncheck affected chainguard govulncheck
gptscript affected chainguard gptscript
gptscript affected wolfi gptscript
gpu-operator-fips-24.9 affected chainguard gpu-operator-fips-24.9
gpu-operator-fips-25.3 affected chainguard gpu-operator-fips-25.3
grafana-12.2 affected chainguard grafana-12.2
grafana-12.3 affected chainguard grafana-12.3
grafana-12.3 affected wolfi grafana-12.3
grafana-agent-operator affected chainguard grafana-agent-operator
grafana-agent-operator affected wolfi grafana-agent-operator
grafana-alloy affected chainguard grafana-alloy
grafana-alloy affected wolfi grafana-alloy
grafana-image-renderer affected wolfi grafana-image-renderer
grafana-image-renderer affected chainguard grafana-image-renderer
grafana-mimir affected chainguard grafana-mimir
grafana-mimir affected wolfi grafana-mimir
grafana-operator affected wolfi grafana-operator
grafana-operator affected chainguard grafana-operator
grafana-operator-fips affected chainguard grafana-operator-fips
grafana-pyroscope-1.13 affected chainguard grafana-pyroscope-1.13
grafana-rollout-operator affected chainguard grafana-rollout-operator
grafana-rollout-operator affected wolfi grafana-rollout-operator
grpc-health-probe affected wolfi grpc-health-probe
grpc-health-probe affected chainguard grpc-health-probe
grpc-health-probe-fips affected chainguard grpc-health-probe-fips
grpcurl affected chainguard grpcurl
grpcurl affected wolfi grpcurl
grpcurl-fips affected chainguard grpcurl-fips
grype affected wolfi grype
grype affected chainguard grype
grype-fips affected chainguard grype-fips
guac affected chainguard guac
guac affected wolfi guac
haproxy-ingress affected chainguard haproxy-ingress
haproxy-ingress affected wolfi haproxy-ingress
harbor-2.14 affected chainguard harbor-2.14
harbor-2.14 affected wolfi harbor-2.14
harbor-cli affected wolfi harbor-cli
harbor-cli affected chainguard harbor-cli
harbor-fips-2.11 affected chainguard harbor-fips-2.11
harbor-fips-2.12 affected chainguard harbor-fips-2.12
harbor-fips-2.13 affected chainguard harbor-fips-2.13
harbor-fips-2.14 affected chainguard harbor-fips-2.14
harbor-registry affected chainguard harbor-registry
harbor-registry affected wolfi harbor-registry
harbor-scanner-trivy affected wolfi harbor-scanner-trivy
harbor-scanner-trivy affected chainguard harbor-scanner-trivy
harbor-scanner-trivy-fips affected chainguard harbor-scanner-trivy-fips
hcloud affected wolfi hcloud
hcloud affected chainguard hcloud
headlamp affected chainguard headlamp
headlamp affected wolfi headlamp
headlamp-fips affected chainguard headlamp-fips
hello-world-golang affected wolfi hello-world-golang
hello-world-golang affected chainguard hello-world-golang
helm-3 affected wolfi helm-3
helm-3 affected chainguard helm-3
helm-4 affected chainguard helm-4
helm-4 affected wolfi helm-4
helm-diff-fips affected chainguard helm-diff-fips
helm-docs affected chainguard helm-docs
helm-docs affected wolfi helm-docs
helm-fips-3 affected chainguard helm-fips-3
helm-fips-4 affected chainguard helm-fips-4
helm-mapkubeapis affected wolfi helm-mapkubeapis
helm-mapkubeapis affected chainguard helm-mapkubeapis
helm-operator affected chainguard helm-operator
helm-operator affected wolfi helm-operator
helm-operator-fips affected chainguard helm-operator-fips
helm-push affected chainguard helm-push
helm-push affected wolfi helm-push
helm-set-status affected chainguard helm-set-status
helm-set-status affected wolfi helm-set-status
hey affected wolfi hey
hey affected chainguard hey
hivemind affected chainguard hivemind
hivemind affected wolfi hivemind
http-echo affected wolfi http-echo
http-echo affected chainguard http-echo
hubble affected chainguard hubble
hubble affected wolfi hubble
hubble-ui affected chainguard hubble-ui
hubble-ui affected wolfi hubble-ui
hubble-ui-backend-fips affected chainguard hubble-ui-backend-fips
hugo affected wolfi hugo
hugo affected chainguard hugo
hugo-extended affected chainguard hugo-extended
hugo-extended affected wolfi hugo-extended
hydra affected wolfi hydra
hydra affected chainguard hydra
hydra-fips affected chainguard hydra-fips
image-factory-fips affected chainguard image-factory-fips
incert affected chainguard incert
incert affected wolfi incert
infinispan-operator affected chainguard infinispan-operator
infinispan-operator affected wolfi infinispan-operator
influx affected chainguard influx
influx affected wolfi influx
influxd-2.7 affected chainguard influxd-2.7
ingress-nginx-controller-1.14 affected chainguard ingress-nginx-controller-1.14
ingress-nginx-controller-1.14 affected wolfi ingress-nginx-controller-1.14
ingress-nginx-controller-fips-1.12 affected chainguard ingress-nginx-controller-fips-1.12
ingress-nginx-controller-fips-1.13 affected chainguard ingress-nginx-controller-fips-1.13
ingress-nginx-controller-fips-1.14 affected chainguard ingress-nginx-controller-fips-1.14
ini-file affected wolfi ini-file
ini-file affected chainguard ini-file
ipfs-cluster affected wolfi ipfs-cluster
ipfs-cluster affected chainguard ipfs-cluster
ip-masq-agent affected wolfi ip-masq-agent
ip-masq-agent affected chainguard ip-masq-agent
jaeger-operator affected chainguard jaeger-operator
jaeger-operator affected wolfi jaeger-operator
jaeger-operator-fips affected chainguard jaeger-operator-fips
jitsucom-bulker affected wolfi jitsucom-bulker
jitsucom-bulker affected chainguard jitsucom-bulker
juicefs-1.3 affected wolfi juicefs-1.3
juicefs-1.3 affected chainguard juicefs-1.3
jupyterhub-k8s-image-awaiter-fips affected chainguard jupyterhub-k8s-image-awaiter-fips
k3d affected chainguard k3d
k3d affected wolfi k3d
k3s affected wolfi k3s
k3s affected chainguard k3s
k3s-1.32 affected wolfi k3s-1.32
k3s-1.32 affected chainguard k3s-1.32
k3s-1.33 affected wolfi k3s-1.33
k3s-1.33 affected chainguard k3s-1.33
k6 affected wolfi k6
k6 affected chainguard k6
k6-fips affected chainguard k6-fips
k6-operator-fips affected chainguard k6-operator-fips
k8s-agents-operator-fips affected chainguard k8s-agents-operator-fips
k8s-device-plugin affected chainguard k8s-device-plugin
k8s-device-plugin affected wolfi k8s-device-plugin
k8s-device-plugin-fips affected chainguard k8s-device-plugin-fips
k8s_gateway affected chainguard k8s_gateway
k8s_gateway affected wolfi k8s_gateway
k8s_gateway-fips affected chainguard k8s_gateway-fips
k8sgpt affected wolfi k8sgpt
k8sgpt affected chainguard k8sgpt
k8sgpt-operator affected chainguard k8sgpt-operator
k8sgpt-operator affected wolfi k8sgpt-operator
k8s-metacollector-fips affected chainguard k8s-metacollector-fips
k8ssandra-client affected chainguard k8ssandra-client
k8ssandra-client affected wolfi k8ssandra-client
k8ssandra-client-fips affected chainguard k8ssandra-client-fips
k8ssandra-operator affected chainguard k8ssandra-operator
k8ssandra-operator affected wolfi k8ssandra-operator
k9s affected wolfi k9s
k9s affected chainguard k9s
k9s-fips affected chainguard k9s-fips
kaf affected chainguard kaf
kaf affected wolfi kaf
kafka_exporter affected chainguard kafka_exporter
kafka_exporter affected wolfi kafka_exporter
kafka_exporter-fips affected chainguard kafka_exporter-fips
kafka-proxy affected chainguard kafka-proxy
kafka-proxy affected wolfi kafka-proxy
kafka-proxy-fips affected chainguard kafka-proxy-fips
kapp affected chainguard kapp
kapp affected wolfi kapp
kapp-controller affected wolfi kapp-controller
kapp-controller affected chainguard kapp-controller
kargo affected wolfi kargo
kargo affected chainguard kargo
karma affected chainguard karma
karma affected wolfi karma
karma-fips affected chainguard karma-fips
karpenter-1.8 affected chainguard karpenter-1.8
karpenter-1.8 affected wolfi karpenter-1.8
kbld affected chainguard kbld
kbld affected wolfi kbld
kbld-fips affected chainguard kbld-fips
keda-2.18 affected chainguard keda-2.18
keda-fips-2.16 affected chainguard keda-fips-2.16
keda-fips-2.17 affected chainguard keda-fips-2.17
keda-fips-2.18 affected chainguard keda-fips-2.18
kiali affected chainguard kiali
kiali affected wolfi kiali
kiali-fips affected chainguard kiali-fips
kind affected wolfi kind
kind affected chainguard kind
kine affected chainguard kine
kine affected wolfi kine
knative-client affected chainguard knative-client
knative-client affected wolfi knative-client
knative-eventing-1.19 affected chainguard knative-eventing-1.19
knative-operator-1.19 affected chainguard knative-operator-1.19
knative-operator-fips-1.17 affected chainguard knative-operator-fips-1.17
knative-operator-fips-1.18 affected chainguard knative-operator-fips-1.18
knative-operator-fips-1.19 affected chainguard knative-operator-fips-1.19
knative-serving-1.19 affected chainguard knative-serving-1.19
ko affected chainguard ko
ko affected wolfi ko
ko-fips affected chainguard ko-fips
kor affected chainguard kor
kor affected wolfi kor
kots affected chainguard kots
kots affected wolfi kots
kpt affected chainguard kpt
kpt affected wolfi kpt
kratos affected chainguard kratos
kratos affected wolfi kratos
kserve affected wolfi kserve
kserve affected chainguard kserve
kserve-modelmesh-serving affected wolfi kserve-modelmesh-serving
kserve-modelmesh-serving affected chainguard kserve-modelmesh-serving
kserve-rest-proxy affected wolfi kserve-rest-proxy
kserve-rest-proxy affected chainguard kserve-rest-proxy
ksops affected wolfi ksops
ksops affected chainguard ksops
kube-bench affected wolfi kube-bench
kube-bench affected chainguard kube-bench
kubebuilder affected chainguard kubebuilder
kubebuilder affected wolfi kubebuilder
kubecolor affected wolfi kubecolor
kubecolor affected chainguard kubecolor
kubeflow affected chainguard kubeflow
kubeflow affected wolfi kubeflow
kubeflow-fips affected chainguard kubeflow-fips
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kube-fluentd-operator affected wolfi kube-fluentd-operator
kube-fluentd-operator affected chainguard kube-fluentd-operator
kubelet-csr-approver affected wolfi kubelet-csr-approver
kubelet-csr-approver affected chainguard kubelet-csr-approver
kubelet-csr-approver-fips affected chainguard kubelet-csr-approver-fips
kube-logging-operator affected chainguard kube-logging-operator
kube-logging-operator affected wolfi kube-logging-operator
kube-logging-operator-custom-runner affected wolfi kube-logging-operator-custom-runner
kube-logging-operator-custom-runner affected chainguard kube-logging-operator-custom-runner
kube-logging-operator-custom-runner-fips affected chainguard kube-logging-operator-custom-runner-fips
kube-metrics-adapter affected wolfi kube-metrics-adapter
kube-metrics-adapter affected chainguard kube-metrics-adapter
kube-metrics-adapter-fips affected chainguard kube-metrics-adapter-fips
kuberay-operator affected wolfi kuberay-operator
kuberay-operator affected chainguard kuberay-operator
kuberay-operator-fips affected chainguard kuberay-operator-fips
kube-rbac-proxy affected chainguard kube-rbac-proxy
kube-rbac-proxy affected wolfi kube-rbac-proxy
kube-rbac-proxy-fips affected chainguard kube-rbac-proxy-fips
kuberlr affected chainguard kuberlr
kuberlr affected wolfi kuberlr
kubernetes-1.33 affected chainguard kubernetes-1.33
kubernetes-1.33 affected wolfi kubernetes-1.33
kubernetes-1.34 affected wolfi kubernetes-1.34
kubernetes-1.34 affected chainguard kubernetes-1.34
kubernetes-csi-driver-hostpath affected chainguard kubernetes-csi-driver-hostpath
kubernetes-csi-driver-hostpath affected wolfi kubernetes-csi-driver-hostpath
kubernetes-csi-driver-nfs affected chainguard kubernetes-csi-driver-nfs
kubernetes-csi-driver-nfs affected wolfi kubernetes-csi-driver-nfs
kubernetes-csi-driver-nfs-fips affected chainguard kubernetes-csi-driver-nfs-fips
kubernetes-csi-external-attacher affected chainguard kubernetes-csi-external-attacher
kubernetes-csi-external-attacher affected wolfi kubernetes-csi-external-attacher
kubernetes-csi-external-attacher-fips affected chainguard kubernetes-csi-external-attacher-fips
kubernetes-csi-external-health-monitor affected wolfi kubernetes-csi-external-health-monitor
kubernetes-csi-external-health-monitor affected chainguard kubernetes-csi-external-health-monitor
kubernetes-csi-external-provisioner affected chainguard kubernetes-csi-external-provisioner
kubernetes-csi-external-provisioner affected wolfi kubernetes-csi-external-provisioner
kubernetes-csi-external-provisioner-fips affected chainguard kubernetes-csi-external-provisioner-fips
kubernetes-csi-external-resizer affected wolfi kubernetes-csi-external-resizer
kubernetes-csi-external-resizer affected chainguard kubernetes-csi-external-resizer
kubernetes-csi-external-resizer-fips affected chainguard kubernetes-csi-external-resizer-fips
kubernetes-csi-external-snapshotter-8.3 affected chainguard kubernetes-csi-external-snapshotter-8.3
kubernetes-csi-external-snapshotter-8.4 affected chainguard kubernetes-csi-external-snapshotter-8.4
kubernetes-csi-external-snapshotter-8.4 affected wolfi kubernetes-csi-external-snapshotter-8.4
kubernetes-csi-external-snapshotter-fips-8.2 affected chainguard kubernetes-csi-external-snapshotter-fips-8.2
kubernetes-csi-external-snapshotter-fips-8.3 affected chainguard kubernetes-csi-external-snapshotter-fips-8.3
kubernetes-csi-external-snapshotter-fips-8.4 affected chainguard kubernetes-csi-external-snapshotter-fips-8.4
kubernetes-csi-livenessprobe affected chainguard kubernetes-csi-livenessprobe
kubernetes-csi-livenessprobe affected wolfi kubernetes-csi-livenessprobe
kubernetes-csi-livenessprobe-fips affected chainguard kubernetes-csi-livenessprobe-fips
kubernetes-csi-livenessprobe-fips-2.10 affected chainguard kubernetes-csi-livenessprobe-fips-2.10
kubernetes-csi-node-driver-registrar-2.15 affected chainguard kubernetes-csi-node-driver-registrar-2.15
kubernetes-csi-node-driver-registrar-2.15 affected wolfi kubernetes-csi-node-driver-registrar-2.15
kubernetes-csi-node-driver-registrar-fips-2.14 affected chainguard kubernetes-csi-node-driver-registrar-fips-2.14
kubernetes-csi-node-driver-registrar-fips-2.15 affected chainguard kubernetes-csi-node-driver-registrar-fips-2.15
kubernetes-dashboard affected wolfi kubernetes-dashboard
kubernetes-dashboard affected chainguard kubernetes-dashboard
kubernetes-dashboard-api affected wolfi kubernetes-dashboard-api
kubernetes-dashboard-api affected chainguard kubernetes-dashboard-api
kubernetes-dashboard-api-fips affected chainguard kubernetes-dashboard-api-fips
kubernetes-dashboard-auth affected chainguard kubernetes-dashboard-auth
kubernetes-dashboard-auth affected wolfi kubernetes-dashboard-auth
kubernetes-dashboard-auth-fips affected chainguard kubernetes-dashboard-auth-fips
kubernetes-dashboard-metrics-scraper affected chainguard kubernetes-dashboard-metrics-scraper
kubernetes-dashboard-metrics-scraper affected wolfi kubernetes-dashboard-metrics-scraper
kubernetes-dashboard-web affected wolfi kubernetes-dashboard-web
kubernetes-dashboard-web affected chainguard kubernetes-dashboard-web
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
kubernetes-dns-node-cache-fips affected chainguard kubernetes-dns-node-cache-fips
kubernetes-event-exporter affected wolfi kubernetes-event-exporter
kubernetes-event-exporter affected chainguard kubernetes-event-exporter
kubernetes-event-exporter-fips affected chainguard kubernetes-event-exporter-fips
kubernetes-ingress-defaultbackend-fips affected chainguard kubernetes-ingress-defaultbackend-fips
kubernetes-release affected wolfi kubernetes-release
kubernetes-release affected chainguard kubernetes-release
kubernetes-release-fips affected chainguard kubernetes-release-fips
kubernetes-replicator affected chainguard kubernetes-replicator
kubernetes-replicator affected wolfi kubernetes-replicator
kubernetes-replicator-fips affected chainguard kubernetes-replicator-fips
kubescape affected wolfi kubescape
kubescape affected chainguard kubescape
kube-state-metrics affected chainguard kube-state-metrics
kube-state-metrics affected wolfi kube-state-metrics
kube-vip affected chainguard kube-vip
kube-vip affected wolfi kube-vip
kube-vip-cloud-provider affected wolfi kube-vip-cloud-provider
kube-vip-cloud-provider affected chainguard kube-vip-cloud-provider
kubo-fips affected chainguard kubo-fips
kuma-2.12 affected chainguard kuma-2.12
kuma-2.12 affected wolfi kuma-2.12
kustomize-fips affected chainguard kustomize-fips
kyverno-notation-aws-fips affected chainguard kyverno-notation-aws-fips
kyverno-policy-reporter-plugins-kyverno-fips affected chainguard kyverno-policy-reporter-plugins-kyverno-fips
kyverno-policy-reporter-plugins-trivy-fips affected chainguard kyverno-policy-reporter-plugins-trivy-fips
kyverno-policy-reporter-ui-fips affected chainguard kyverno-policy-reporter-ui-fips
langfuse-2 affected chainguard langfuse-2
langfuse-fips-2 affected chainguard langfuse-fips-2
langfuse-fips-3 affected chainguard langfuse-fips-3
local-path-provisioner-fips affected chainguard local-path-provisioner-fips
localstack affected chainguard localstack
logstash-8.17 affected chainguard logstash-8.17
logstash-8.18 affected chainguard logstash-8.18
logstash-9.0 affected chainguard logstash-9.0
logstash-exporter-fips affected chainguard logstash-exporter-fips
loki-2.9 affected chainguard loki-2.9
longhorn-backing-image-manager-1.9 affected chainguard longhorn-backing-image-manager-1.9
longhorn-backing-image-manager-fips-1.10 affected chainguard longhorn-backing-image-manager-fips-1.10
longhorn-backing-image-manager-fips-1.8 affected chainguard longhorn-backing-image-manager-fips-1.8
longhorn-backing-image-manager-fips-1.9 affected chainguard longhorn-backing-image-manager-fips-1.9
longhorn-manager-fips-1.10 affected chainguard longhorn-manager-fips-1.10
longhorn-manager-fips-1.8 affected chainguard longhorn-manager-fips-1.8
longhorn-manager-fips-1.9 affected chainguard longhorn-manager-fips-1.9
longhorn-share-manager-fips-1.10 affected chainguard longhorn-share-manager-fips-1.10
longhorn-share-manager-fips-1.8 affected chainguard longhorn-share-manager-fips-1.8
longhorn-share-manager-fips-1.9 affected chainguard longhorn-share-manager-fips-1.9
lvm-driver-fips affected chainguard lvm-driver-fips
mariadb-operator-fips affected chainguard mariadb-operator-fips
memcached-exporter-fips affected chainguard memcached-exporter-fips
mesosphere-vsphere-csi affected chainguard mesosphere-vsphere-csi
mesosphere-vsphere-csi affected wolfi mesosphere-vsphere-csi
metrics-agent affected wolfi metrics-agent
metrics-agent affected chainguard metrics-agent
metrics-agent-fips affected chainguard metrics-agent-fips
metrics-server affected wolfi metrics-server
metrics-server affected chainguard metrics-server
metrics-server-fips affected chainguard metrics-server-fips
migrate affected wolfi migrate
migrate affected chainguard migrate
minify affected wolfi minify
minify affected chainguard minify
minify-fips affected chainguard minify-fips
minio-object-browser affected chainguard minio-object-browser
minio-object-browser affected wolfi minio-object-browser
minio-object-browser-fips affected chainguard minio-object-browser-fips
minio-operator affected chainguard minio-operator
minio-operator affected wolfi minio-operator
minio-operator-fips affected chainguard minio-operator-fips
mkcert affected wolfi mkcert
mkcert affected chainguard mkcert
mockery affected wolfi mockery
mockery affected chainguard mockery
mockgen affected chainguard mockgen
mockgen affected wolfi mockgen
mods affected chainguard mods
mods affected wolfi mods
mongodb-k8s-operator-version-upgrade-post-start-hook affected chainguard mongodb-k8s-operator-version-upgrade-post-start-hook
mongodb-k8s-operator-version-upgrade-post-start-hook-fips affected chainguard mongodb-k8s-operator-version-upgrade-post-start-hook-fips
mongodb-kubernetes-operator affected chainguard mongodb-kubernetes-operator
mongodb-kubernetes-operator affected wolfi mongodb-kubernetes-operator
mongodb-kubernetes-operator-fips affected chainguard mongodb-kubernetes-operator-fips
mongo-tools affected wolfi mongo-tools
mongo-tools affected chainguard mongo-tools
mongo-tools-fips affected chainguard mongo-tools-fips
monstache affected chainguard monstache
mountpoint-s3-csi-driver-2.2 affected chainguard mountpoint-s3-csi-driver-2.2
mountpoint-s3-csi-driver-2.2 affected wolfi mountpoint-s3-csi-driver-2.2
multus-cni affected chainguard multus-cni
multus-cni affected wolfi multus-cni
multus-cni-fips affected chainguard multus-cni-fips
multus-cni-fips-4.0.2 affected chainguard multus-cni-fips-4.0.2
nats affected chainguard nats
nats affected wolfi nats
nats-fips affected chainguard nats-fips
nats-server affected chainguard nats-server
nats-server affected wolfi nats-server
nats-top affected chainguard nats-top
nats-top affected wolfi nats-top
nemo affected chainguard nemo
nerdctl affected wolfi nerdctl
nerdctl affected chainguard nerdctl
net-kourier-1.19 affected chainguard net-kourier-1.19
net-kourier-fips-1.16 affected chainguard net-kourier-fips-1.16
net-kourier-fips-1.17 affected chainguard net-kourier-fips-1.17
net-kourier-fips-1.18 affected chainguard net-kourier-fips-1.18
neuvector-dbgen affected chainguard neuvector-dbgen
neuvector-dbgen affected wolfi neuvector-dbgen
neuvector-dbgen-fips affected chainguard neuvector-dbgen-fips
neuvector-sigstore-interface affected chainguard neuvector-sigstore-interface
neuvector-sigstore-interface affected wolfi neuvector-sigstore-interface
neuvector-sigstore-interface-fips affected chainguard neuvector-sigstore-interface-fips
newrelic-fluent-bit-output affected chainguard newrelic-fluent-bit-output
newrelic-fluent-bit-output affected wolfi newrelic-fluent-bit-output
newrelic-fluent-bit-output-fips affected chainguard newrelic-fluent-bit-output-fips
newrelic-infra-operator affected chainguard newrelic-infra-operator
newrelic-infra-operator affected wolfi newrelic-infra-operator
newrelic-infrastructure-agent affected wolfi newrelic-infrastructure-agent
newrelic-infrastructure-agent affected chainguard newrelic-infrastructure-agent
newrelic-infrastructure-agent-fips affected chainguard newrelic-infrastructure-agent-fips
newrelic-k8s-metadata-injection affected chainguard newrelic-k8s-metadata-injection
newrelic-k8s-metadata-injection affected wolfi newrelic-k8s-metadata-injection
newrelic-k8s-metadata-injection-fips affected chainguard newrelic-k8s-metadata-injection-fips
newrelic-nri-kube-events affected wolfi newrelic-nri-kube-events
newrelic-nri-kube-events affected chainguard newrelic-nri-kube-events
newrelic-nri-kube-events-fips affected chainguard newrelic-nri-kube-events-fips
newrelic-nri-statsd affected wolfi newrelic-nri-statsd
newrelic-nri-statsd affected chainguard newrelic-nri-statsd
newrelic-prometheus-configurator affected chainguard newrelic-prometheus-configurator
newrelic-prometheus-configurator affected wolfi newrelic-prometheus-configurator
nfpm affected chainguard nfpm
nfpm affected wolfi nfpm
nfs-subdir-external-provisioner affected wolfi nfs-subdir-external-provisioner
nfs-subdir-external-provisioner affected chainguard nfs-subdir-external-provisioner
nfs-subdir-external-provisioner-fips affected chainguard nfs-subdir-external-provisioner-fips
nginx-prometheus-exporter affected wolfi nginx-prometheus-exporter
nginx-prometheus-exporter affected chainguard nginx-prometheus-exporter
nginx-prometheus-exporter-fips affected chainguard nginx-prometheus-exporter-fips
node-feature-discovery-0.18 affected chainguard node-feature-discovery-0.18
node-feature-discovery-0.18 affected wolfi node-feature-discovery-0.18
node-feature-discovery-fips-0.16 affected chainguard node-feature-discovery-fips-0.16
node-feature-discovery-fips-0.18 affected chainguard node-feature-discovery-fips-0.18
node-problem-detector-0.8 affected chainguard node-problem-detector-0.8
node-problem-detector-fips-0.8 affected chainguard node-problem-detector-fips-0.8
nodetaint affected wolfi nodetaint
nodetaint affected chainguard nodetaint
nova affected chainguard nova
nova affected wolfi nova
nova-fips affected chainguard nova-fips
nrdot-collector-k8s affected chainguard nrdot-collector-k8s
nrdot-collector-k8s-fips affected chainguard nrdot-collector-k8s-fips
nri-apache affected chainguard nri-apache
nri-apache affected wolfi nri-apache
nri-cassandra affected wolfi nri-cassandra
nri-cassandra affected chainguard nri-cassandra
nri-consul affected wolfi nri-consul
nri-consul affected chainguard nri-consul
nri-couchbase affected wolfi nri-couchbase
nri-couchbase affected chainguard nri-couchbase
nri-discovery-kubernetes affected chainguard nri-discovery-kubernetes
nri-discovery-kubernetes affected wolfi nri-discovery-kubernetes
nri-discovery-kubernetes-fips affected chainguard nri-discovery-kubernetes-fips
nri-elasticsearch affected wolfi nri-elasticsearch
nri-elasticsearch affected chainguard nri-elasticsearch
nri-f5 affected chainguard nri-f5
nri-f5 affected wolfi nri-f5
nri-haproxy affected wolfi nri-haproxy
nri-haproxy affected chainguard nri-haproxy
nri-jmx affected chainguard nri-jmx
nri-jmx affected wolfi nri-jmx
nri-kafka affected chainguard nri-kafka
nri-kafka affected wolfi nri-kafka
nri-kubernetes affected chainguard nri-kubernetes
nri-kubernetes affected wolfi nri-kubernetes
nri-memcached affected chainguard nri-memcached
nri-memcached affected wolfi nri-memcached
nri-mongodb affected wolfi nri-mongodb
nri-mongodb affected chainguard nri-mongodb
nri-mssql affected chainguard nri-mssql
nri-mssql affected wolfi nri-mssql
nri-mysql affected wolfi nri-mysql
nri-mysql affected chainguard nri-mysql
nri-nagios affected wolfi nri-nagios
nri-nagios affected chainguard nri-nagios
nri-nginx affected wolfi nri-nginx
nri-nginx affected chainguard nri-nginx
nri-postgresql affected chainguard nri-postgresql
nri-postgresql affected wolfi nri-postgresql
nri-rabbitmq affected chainguard nri-rabbitmq
nri-rabbitmq affected wolfi nri-rabbitmq
nri-redis affected wolfi nri-redis
nri-redis affected chainguard nri-redis
nsc affected chainguard nsc
nsc affected wolfi nsc
nuclei affected chainguard nuclei
nuclei affected wolfi nuclei
nvidia-container-toolkit affected wolfi nvidia-container-toolkit
nvidia-container-toolkit affected chainguard nvidia-container-toolkit
nvidia-nsight-compute-12.8 affected chainguard nvidia-nsight-compute-12.8
nvidia-nsight-compute-12.9 affected chainguard nvidia-nsight-compute-12.9
nvidia-nsight-compute-13.0 affected chainguard nvidia-nsight-compute-13.0
nvidia-nsight-compute-13.1 affected chainguard nvidia-nsight-compute-13.1
nvidia-nsight-compute-13.2 affected chainguard nvidia-nsight-compute-13.2
oauth2-proxy affected wolfi oauth2-proxy
oauth2-proxy affected chainguard oauth2-proxy
oauth2-proxy-fips affected chainguard oauth2-proxy-fips
octo-sts affected chainguard octo-sts
octo-sts affected wolfi octo-sts
ollama-fips affected chainguard ollama-fips
opa affected chainguard opa
opa affected wolfi opa
opa-envoy affected chainguard opa-envoy
opa-envoy affected wolfi opa-envoy
opa-fips affected chainguard opa-fips
opa-fips-envoy affected chainguard opa-fips-envoy
openbao affected chainguard openbao
openbao affected wolfi openbao
openbao-k8s affected chainguard openbao-k8s
openbao-k8s affected wolfi openbao-k8s
openbao-k8s-fips affected chainguard openbao-k8s-fips
opencost affected wolfi opencost
opencost affected chainguard opencost
opencost-fips affected chainguard opencost-fips
openfga-fips affected chainguard openfga-fips
opensearch-k8s-operator affected chainguard opensearch-k8s-operator
opensearch-k8s-operator affected wolfi opensearch-k8s-operator
opentelemetry-collector affected chainguard opentelemetry-collector
opentelemetry-collector affected wolfi opentelemetry-collector
opentelemetry-collector-contrib affected wolfi opentelemetry-collector-contrib
opentelemetry-collector-contrib affected chainguard opentelemetry-collector-contrib
opentelemetry-operator affected wolfi opentelemetry-operator
opentelemetry-operator affected chainguard opentelemetry-operator
opentofu-1.10 affected chainguard opentofu-1.10
opentofu-1.10 affected wolfi opentofu-1.10
opentofu-fips-1.10 affected chainguard opentofu-fips-1.10
opentofu-fips-1.8 affected chainguard opentofu-fips-1.8
opentofu-fips-1.9 affected chainguard opentofu-fips-1.9
op-geth affected wolfi op-geth
op-geth affected chainguard op-geth
oras affected wolfi oras
oras affected chainguard oras
oras-fips affected chainguard oras-fips
osv-scanner affected chainguard osv-scanner
osv-scanner affected wolfi osv-scanner
otel-cli affected chainguard otel-cli
otel-cli affected wolfi otel-cli
overmind affected wolfi overmind
overmind affected chainguard overmind
paranoia affected wolfi paranoia
paranoia affected chainguard paranoia
pdfcpu affected wolfi pdfcpu
pdfcpu affected chainguard pdfcpu
percona-server-mongodb-operator affected chainguard percona-server-mongodb-operator
percona-server-mongodb-operator affected wolfi percona-server-mongodb-operator
petname affected chainguard petname
petname affected wolfi petname
pgpool2_exporter affected wolfi pgpool2_exporter
pgpool2_exporter affected chainguard pgpool2_exporter
pgpool2_exporter-fips affected chainguard pgpool2_exporter-fips
pg_timetable affected chainguard pg_timetable
pg_timetable affected wolfi pg_timetable
pg_timetable-fips affected chainguard pg_timetable-fips
pg_user affected wolfi pg_user
pg_user affected chainguard pg_user
php-fpm_exporter affected chainguard php-fpm_exporter
php-fpm_exporter affected wolfi php-fpm_exporter
plugin-barman-cloud-fips affected chainguard plugin-barman-cloud-fips
pluto affected chainguard pluto
pluto affected wolfi pluto
pluto-fips affected chainguard pluto-fips
podinfo affected chainguard podinfo
podinfo affected wolfi podinfo
podman affected chainguard podman
podman affected wolfi podman
polaris affected chainguard polaris
polaris affected wolfi polaris
polaris-fips affected chainguard polaris-fips
policy-controller affected chainguard policy-controller
policy-controller affected wolfi policy-controller
policy-controller-fips affected chainguard policy-controller-fips
pombump affected chainguard pombump
pombump affected wolfi pombump
portieris affected chainguard portieris
portieris affected wolfi portieris
portieris-fips affected chainguard portieris-fips
postgres-operator affected chainguard postgres-operator
postgres-operator affected wolfi postgres-operator
prometheus-3.7 affected chainguard prometheus-3.7
prometheus-adapter affected wolfi prometheus-adapter
prometheus-adapter affected chainguard prometheus-adapter
prometheus-adapter-fips affected chainguard prometheus-adapter-fips
prometheus-adapter-fips-0.10 affected chainguard prometheus-adapter-fips-0.10
prometheus-alertmanager affected wolfi prometheus-alertmanager
prometheus-alertmanager affected chainguard prometheus-alertmanager
prometheus-beat-exporter-fips affected chainguard prometheus-beat-exporter-fips
prometheus-blackbox-exporter-fips affected chainguard prometheus-blackbox-exporter-fips
prometheus-mysqld-exporter-fips affected chainguard prometheus-mysqld-exporter-fips
prometheus-node-exporter-fips affected chainguard prometheus-node-exporter-fips
prometheus-operator affected wolfi prometheus-operator
prometheus-operator affected chainguard prometheus-operator
prometheus-operator-fips affected chainguard prometheus-operator-fips
prometheus-pgbouncer-exporter-fips affected chainguard prometheus-pgbouncer-exporter-fips
prometheus-podman-exporter-fips affected chainguard prometheus-podman-exporter-fips
prometheus-postgres-exporter-0.10 affected chainguard prometheus-postgres-exporter-0.10
prometheus-postgres-exporter-fips affected chainguard prometheus-postgres-exporter-fips
prometheus-process-exporter-fips affected chainguard prometheus-process-exporter-fips
prometheus-pushgateway-fips-1.4 affected chainguard prometheus-pushgateway-fips-1.4
prometheus-statsd-exporter-fips affected chainguard prometheus-statsd-exporter-fips
promxy affected wolfi promxy
promxy affected chainguard promxy
promxy-fips affected chainguard promxy-fips
protoc-gen-go affected wolfi protoc-gen-go
protoc-gen-go affected chainguard protoc-gen-go
protoc-gen-go-grpc affected wolfi protoc-gen-go-grpc
protoc-gen-go-grpc affected chainguard protoc-gen-go-grpc
pulumi-kubernetes-operator affected chainguard pulumi-kubernetes-operator
pulumi-kubernetes-operator affected wolfi pulumi-kubernetes-operator
pulumi-language-dotnet affected wolfi pulumi-language-dotnet
pulumi-language-dotnet affected chainguard pulumi-language-dotnet
pulumi-language-yaml affected wolfi pulumi-language-yaml
pulumi-language-yaml affected chainguard pulumi-language-yaml
pushprox-fips affected chainguard pushprox-fips
pvc-autoresizer affected chainguard pvc-autoresizer
pvc-autoresizer affected wolfi pvc-autoresizer
q affected wolfi q
q affected chainguard q
quic-go-fips affected chainguard quic-go-fips
rabbitmq-cluster-operator affected chainguard rabbitmq-cluster-operator
rabbitmq-cluster-operator affected wolfi rabbitmq-cluster-operator
rabbitmq-cluster-operator-fips affected chainguard rabbitmq-cluster-operator-fips
rabbitmq-default-user-credential-updater affected wolfi rabbitmq-default-user-credential-updater
rabbitmq-default-user-credential-updater affected chainguard rabbitmq-default-user-credential-updater
rabbitmq-default-user-credential-updater-fips affected chainguard rabbitmq-default-user-credential-updater-fips
rabbitmq-messaging-topology-operator affected chainguard rabbitmq-messaging-topology-operator
rabbitmq-messaging-topology-operator affected wolfi rabbitmq-messaging-topology-operator
rabbitmq-messaging-topology-operator-fips affected chainguard rabbitmq-messaging-topology-operator-fips
rancher-2.12 affected chainguard rancher-2.12
rancher-agent-2.12 affected chainguard rancher-agent-2.12
rancher-fleet affected wolfi rancher-fleet
rancher-fleet affected chainguard rancher-fleet
rancher-fleet-fips affected chainguard rancher-fleet-fips
rancher-helm-3 affected chainguard rancher-helm-3
rancher-helm-3 affected wolfi rancher-helm-3
rancher-loglevel affected wolfi rancher-loglevel
rancher-loglevel affected chainguard rancher-loglevel
rancher-machine affected wolfi rancher-machine
rancher-machine affected chainguard rancher-machine
rancher-security-scan-0.6 affected chainguard rancher-security-scan-0.6
rancher-security-scan-fips-0.3 affected chainguard rancher-security-scan-fips-0.3
rancher-security-scan-fips-0.4 affected chainguard rancher-security-scan-fips-0.4
rancher-security-scan-fips-0.5 affected chainguard rancher-security-scan-fips-0.5
rancher-security-scan-fips-0.6 affected chainguard rancher-security-scan-fips-0.6
rancher-system-agent affected chainguard rancher-system-agent
rancher-system-agent affected wolfi rancher-system-agent
rancher-system-upgrade-controller affected chainguard rancher-system-upgrade-controller
rancher-system-upgrade-controller affected wolfi rancher-system-upgrade-controller
rancher-telemetry affected wolfi rancher-telemetry
rancher-telemetry affected chainguard rancher-telemetry
rancher-webhook-0.6 affected chainguard rancher-webhook-0.6
rancher-webhook-0.6 affected wolfi rancher-webhook-0.6
rancher-webhook-fips-0.4 affected chainguard rancher-webhook-fips-0.4
rancher-webhook-fips-0.5 affected chainguard rancher-webhook-fips-0.5
rancher-webhook-fips-0.6 affected chainguard rancher-webhook-fips-0.6
ratify affected chainguard ratify
ratify affected wolfi ratify
ratify-fips affected chainguard ratify-fips
rclone affected chainguard rclone
rclone affected wolfi rclone
redis-operator affected chainguard redis-operator
redis-operator affected wolfi redis-operator
redis-operator-fips affected chainguard redis-operator-fips
redka affected chainguard redka
redka affected wolfi redka
regclient affected chainguard regclient
regclient affected wolfi regclient
regclient-fips affected chainguard regclient-fips
rekor affected wolfi rekor
rekor affected chainguard rekor
rekor-fips affected chainguard rekor-fips
render-template affected wolfi render-template
render-template affected chainguard render-template
request-1279 affected chainguard request-1279
request-1279-1-14 affected chainguard request-1279-1-14
restic affected wolfi restic
restic affected chainguard restic
restic-fips affected chainguard restic-fips
rke2-cloud-provider affected chainguard rke2-cloud-provider
rke2-cloud-provider affected wolfi rke2-cloud-provider
rke2-cloud-provider-fips affected chainguard rke2-cloud-provider-fips
rook-fips affected chainguard rook-fips
rootlesskit affected chainguard rootlesskit
rootlesskit affected wolfi rootlesskit
rootlesskit-fips affected chainguard rootlesskit-fips
runc affected chainguard runc
runc affected wolfi runc
runc-fips affected chainguard runc-fips
s5cmd affected wolfi s5cmd
s5cmd affected chainguard s5cmd
sbom-convert affected wolfi sbom-convert
sbom-convert affected chainguard sbom-convert
sbom-scorecard affected wolfi sbom-scorecard
sbom-scorecard affected chainguard sbom-scorecard
scanner-test-golang-vulnerability-fixed affected chainguard scanner-test-golang-vulnerability-fixed
scorecard affected wolfi scorecard
scorecard affected chainguard scorecard
scuttle-fips affected chainguard scuttle-fips
sealed-secrets affected chainguard sealed-secrets
sealed-secrets affected wolfi sealed-secrets
sealed-secrets-fips affected chainguard sealed-secrets-fips
seaweedfs affected chainguard seaweedfs
seaweedfs affected wolfi seaweedfs
seaweedfs-operator-fips affected chainguard seaweedfs-operator-fips
secrets-store-csi-driver affected wolfi secrets-store-csi-driver
secrets-store-csi-driver affected chainguard secrets-store-csi-driver
secrets-store-csi-driver-fips affected chainguard secrets-store-csi-driver-fips
secrets-store-csi-driver-provider-aws affected chainguard secrets-store-csi-driver-provider-aws
secrets-store-csi-driver-provider-aws affected wolfi secrets-store-csi-driver-provider-aws
secrets-store-csi-driver-provider-aws-fips affected chainguard secrets-store-csi-driver-provider-aws-fips
secrets-store-csi-driver-provider-azure affected wolfi secrets-store-csi-driver-provider-azure
secrets-store-csi-driver-provider-azure affected chainguard secrets-store-csi-driver-provider-azure
secrets-store-csi-driver-provider-azure-fips affected chainguard secrets-store-csi-driver-provider-azure-fips
secrets-store-csi-driver-provider-gcp affected chainguard secrets-store-csi-driver-provider-gcp
secrets-store-csi-driver-provider-gcp affected wolfi secrets-store-csi-driver-provider-gcp
secrets-store-csi-driver-provider-gcp-fips affected chainguard secrets-store-csi-driver-provider-gcp-fips
sftpgo affected chainguard sftpgo
sftpgo affected wolfi sftpgo
sftpgo-plugin-eventsearch affected chainguard sftpgo-plugin-eventsearch
sftpgo-plugin-eventsearch affected wolfi sftpgo-plugin-eventsearch
sftpgo-plugin-eventstore affected wolfi sftpgo-plugin-eventstore
sftpgo-plugin-eventstore affected chainguard sftpgo-plugin-eventstore
sftpgo-plugin-geoipfilter affected wolfi sftpgo-plugin-geoipfilter
sftpgo-plugin-geoipfilter affected chainguard sftpgo-plugin-geoipfilter
sftpgo-plugin-kms affected chainguard sftpgo-plugin-kms
sftpgo-plugin-kms affected wolfi sftpgo-plugin-kms
sftpgo-plugin-pubsub affected wolfi sftpgo-plugin-pubsub
sftpgo-plugin-pubsub affected chainguard sftpgo-plugin-pubsub
shfmt affected wolfi shfmt
shfmt affected chainguard shfmt
sigstore-scaffolding affected chainguard sigstore-scaffolding
sigstore-scaffolding affected wolfi sigstore-scaffolding
sigstore-scaffolding-fips affected chainguard sigstore-scaffolding-fips
skaffold affected chainguard skaffold
skaffold affected wolfi skaffold
slsa-verifier affected chainguard slsa-verifier
slsa-verifier affected wolfi slsa-verifier
smarter-device-manager affected chainguard smarter-device-manager
smarter-device-manager affected wolfi smarter-device-manager
smarter-device-manager-fips affected chainguard smarter-device-manager-fips
snyk-cli affected chainguard snyk-cli
snyk-cli affected wolfi snyk-cli
sonobuoy affected chainguard sonobuoy
sonobuoy affected wolfi sonobuoy
sonobuoy-fips affected chainguard sonobuoy-fips
sops affected chainguard sops
sops affected wolfi sops
sops-fips affected chainguard sops-fips
spark-operator affected chainguard spark-operator
spark-operator affected wolfi spark-operator
spark-operator-fips affected chainguard spark-operator-fips
spark-operator-fips-2.2 affected chainguard spark-operator-fips-2.2
spegel affected chainguard spegel
spegel affected wolfi spegel
spegel-fips affected chainguard spegel-fips
spicedb affected wolfi spicedb
spicedb affected chainguard spicedb
spicedb-fips affected chainguard spicedb-fips
spicedb-operator affected chainguard spicedb-operator
spicedb-operator affected wolfi spicedb-operator
spicedb-operator-fips affected chainguard spicedb-operator-fips
spiffe-helper affected wolfi spiffe-helper
spiffe-helper affected chainguard spiffe-helper
spiffe-helper-fips affected chainguard spiffe-helper-fips
spire-controller-manager affected wolfi spire-controller-manager
spire-controller-manager affected chainguard spire-controller-manager
spire-controller-manager-fips affected chainguard spire-controller-manager-fips
spire-server affected chainguard spire-server
spire-server affected wolfi spire-server
spire-server-fips affected chainguard spire-server-fips
splunk-otel-collector affected wolfi splunk-otel-collector
splunk-otel-collector affected chainguard splunk-otel-collector
splunk-otel-collector-fips affected chainguard splunk-otel-collector-fips
spqr affected chainguard spqr
spqr affected wolfi spqr
sql_exporter affected wolfi sql_exporter
sql_exporter affected chainguard sql_exporter
sql_exporter-fips affected chainguard sql_exporter-fips
src affected chainguard src
src affected wolfi src
src-fingerprint affected wolfi src-fingerprint
src-fingerprint affected chainguard src-fingerprint
src-fingerprint-fips affected chainguard src-fingerprint-fips
sriov-network-device-plugin affected chainguard sriov-network-device-plugin
sriov-network-device-plugin affected wolfi sriov-network-device-plugin
stakater-reloader affected chainguard stakater-reloader
stakater-reloader affected wolfi stakater-reloader
stakater-reloader-0.0.119 affected chainguard stakater-reloader-0.0.119
stakater-reloader-0.0.128 affected chainguard stakater-reloader-0.0.128
stakater-reloader-fips affected chainguard stakater-reloader-fips
stdlib affected Go stdlib
steampipe affected chainguard steampipe
steampipe affected wolfi steampipe
stern affected chainguard stern
stern affected wolfi stern
supercronic affected chainguard supercronic
supercronic affected wolfi supercronic
syft affected chainguard syft
syft affected wolfi syft
syft-fips affected chainguard syft-fips
tailscale affected chainguard tailscale
tailscale affected wolfi tailscale
task affected wolfi task
task affected chainguard task
tekton-chains affected wolfi tekton-chains
tekton-chains affected chainguard tekton-chains
tekton-pipelines-1.5 affected chainguard tekton-pipelines-1.5
telegraf-1.36 affected chainguard telegraf-1.36
telegraf-1.36 affected wolfi telegraf-1.36
teleport-15 affected chainguard teleport-15
teleport-17 affected chainguard teleport-17
tempo affected chainguard tempo
tempo affected wolfi tempo
temporal affected wolfi temporal
temporal affected chainguard temporal
temporal-fips affected chainguard temporal-fips
temporal-server affected chainguard temporal-server
temporal-server affected wolfi temporal-server
temporal-ui-server affected chainguard temporal-ui-server
temporal-ui-server affected wolfi temporal-ui-server
temporal-ui-server-fips affected chainguard temporal-ui-server-fips
terraform affected wolfi terraform
terraform affected chainguard terraform
terraform-docs affected wolfi terraform-docs
terraform-docs affected chainguard terraform-docs
terraform-ls affected chainguard terraform-ls
terraform-mcp-server affected chainguard terraform-mcp-server
terraform-mcp-server affected wolfi terraform-mcp-server
terraform-provider-azuread affected chainguard terraform-provider-azuread
terraform-provider-azuread affected wolfi terraform-provider-azuread
terraform-provider-azuread-fips affected chainguard terraform-provider-azuread-fips
terraform-provider-azurerm affected chainguard terraform-provider-azurerm
terraform-provider-azurerm affected wolfi terraform-provider-azurerm
terraform-provider-google affected chainguard terraform-provider-google
terraform-provider-google affected wolfi terraform-provider-google
terraform-provider-google-fips affected chainguard terraform-provider-google-fips
terraform-provider-random affected chainguard terraform-provider-random
terraform-provider-random affected wolfi terraform-provider-random
terraform-provider-random-fips affected chainguard terraform-provider-random-fips
terraform-provider-sendgrid affected chainguard terraform-provider-sendgrid
terraform-provider-sendgrid affected wolfi terraform-provider-sendgrid
terraform-provider-sendgrid-fips affected chainguard terraform-provider-sendgrid-fips
terraform-provider-time affected wolfi terraform-provider-time
terraform-provider-time affected chainguard terraform-provider-time
terraform-provider-time-fips affected chainguard terraform-provider-time-fips
terraform-provider-tls affected wolfi terraform-provider-tls
terraform-provider-tls affected chainguard terraform-provider-tls
terraform-provider-tls-fips affected chainguard terraform-provider-tls-fips
tetragon-fips affected chainguard tetragon-fips
tflint-fips affected chainguard tflint-fips
tfsec affected wolfi tfsec
tfsec affected chainguard tfsec
thanos affected wolfi thanos
thanos affected chainguard thanos
thanos-operator affected wolfi thanos-operator
thanos-operator affected chainguard thanos-operator
thanos-operator-fips affected chainguard thanos-operator-fips
tigera-operator-1.28 affected chainguard tigera-operator-1.28
tigera-operator-fips-1.29 affected chainguard tigera-operator-fips-1.29
tigera-operator-fips-1.34 affected chainguard tigera-operator-fips-1.34
tigera-operator-fips-1.36 affected chainguard tigera-operator-fips-1.36
tigera-operator-fips-1.37 affected chainguard tigera-operator-fips-1.37
tigera-operator-fips-1.38 affected chainguard tigera-operator-fips-1.38
tigera-operator-fips-1.40 affected chainguard tigera-operator-fips-1.40
timescaledb-tune affected chainguard timescaledb-tune
timescaledb-tune affected wolfi timescaledb-tune
timestamp-authority affected wolfi timestamp-authority
timestamp-authority affected chainguard timestamp-authority
timestamp-authority-fips affected chainguard timestamp-authority-fips
tkn-fips affected chainguard tkn-fips
tofu-controller affected chainguard tofu-controller
tofu-controller affected wolfi tofu-controller
tofu-controller-fips affected chainguard tofu-controller-fips
traefik-fips-3.5 affected chainguard traefik-fips-3.5
traefik-fips-3.6 affected chainguard traefik-fips-3.6
trillian-fips affected chainguard trillian-fips
trivy-operator-fips affected chainguard trivy-operator-fips
trufflehog-fips affected chainguard trufflehog-fips
trust-manager-fips affected chainguard trust-manager-fips
vault-1.16 affected chainguard vault-1.16
vault-1.17 affected chainguard vault-1.17
vault-1.18 affected chainguard vault-1.18
vault-1.19 affected chainguard vault-1.19
vault-1.21 affected chainguard vault-1.21
vault-csi-provider-fips affected chainguard vault-csi-provider-fips
vault-k8s-fips affected chainguard vault-k8s-fips
velero-fips affected chainguard velero-fips
velero-plugin-for-aws-fips affected chainguard velero-plugin-for-aws-fips
velero-plugin-for-csi-fips affected chainguard velero-plugin-for-csi-fips
velero-plugin-for-microsoft-azure-fips affected chainguard velero-plugin-for-microsoft-azure-fips
vendir-fips affected chainguard vendir-fips
vertical-pod-autoscaler-fips affected chainguard vertical-pod-autoscaler-fips
vgpu-util affected chainguard vgpu-util
volcano-fips affected chainguard volcano-fips
volume-modifier-for-k8s-fips affected chainguard volume-modifier-for-k8s-fips
wave-fips affected chainguard wave-fips
wazero-fips affected chainguard wazero-fips
whereabouts-fips affected chainguard whereabouts-fips
x509-certificate-exporter-fips affected chainguard x509-certificate-exporter-fips
xeol-fips affected chainguard xeol-fips
yace-fips affected chainguard yace-fips
yq-fips affected chainguard yq-fips
ytt-fips affected chainguard ytt-fips
yunikorn-k8shim-fips affected chainguard yunikorn-k8shim-fips
yunikorn-web-fips affected chainguard yunikorn-web-fips
Upstream advisory

GHSA-6rw7-vpxm-498p

GooglePoC exploitCRITICAL2025-12-30

qs's arrayLimit bypass in its bracket notation allows DoS via memory exhaustion

Affected products

ProductStatusVendorPackageEcosystem
qs affected npm qs
Upstream advisory

GHSA-6rw7-vpxm-498p

Open SourcePoC exploitCRITICAL2025-12-30

qs's arrayLimit bypass in its bracket notation allows DoS via memory exhaustion

Affected products

ProductStatusVendorPackageEcosystem
arangodb-3.11 affected chainguard arangodb-3.11
arangodb-3.12 affected chainguard arangodb-3.12
argo-workflows-3.6 affected chainguard argo-workflows-3.6
argo-workflows-3.7 affected chainguard argo-workflows-3.7
argo-workflows-3.7 affected wolfi argo-workflows-3.7
code-server affected chainguard code-server
code-server affected wolfi code-server
gitlab-rails-ce-19.0 affected chainguard gitlab-rails-ce-19.0
gitlab-rails-ce-19.1 affected chainguard gitlab-rails-ce-19.1
gitlab-rails-ce-19.2 affected chainguard gitlab-rails-ce-19.2
gitlab-rails-ce-19.3 affected chainguard gitlab-rails-ce-19.3
gitlab-rails-ce-fips-18.1 affected chainguard gitlab-rails-ce-fips-18.1
gitlab-rails-ce-fips-19.1 affected chainguard gitlab-rails-ce-fips-19.1
gitlab-rails-ce-fips-19.2 affected chainguard gitlab-rails-ce-fips-19.2
gitlab-rails-ce-fips-19.3 affected chainguard gitlab-rails-ce-fips-19.3
json-server affected chainguard json-server
json-server affected wolfi json-server
kibana-9.1 affected chainguard kibana-9.1
kibana-9.2 affected chainguard kibana-9.2
kubeflow-centraldashboard affected chainguard kubeflow-centraldashboard
kubeflow-centraldashboard affected wolfi kubeflow-centraldashboard
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
langfuse-2 affected chainguard langfuse-2
langfuse-3 affected chainguard langfuse-3
langfuse-3 affected wolfi langfuse-3
langfuse-fips-2 affected chainguard langfuse-fips-2
langfuse-fips-3 affected chainguard langfuse-fips-3
librechat affected chainguard librechat
opensearch-dashboards-2 affected wolfi opensearch-dashboards-2
opensearch-dashboards-2 affected chainguard opensearch-dashboards-2
opensearch-dashboards-2-fips affected chainguard opensearch-dashboards-2-fips
opensearch-dashboards-3 affected wolfi opensearch-dashboards-3
opensearch-dashboards-3 affected chainguard opensearch-dashboards-3
opensearch-dashboards-3-fips affected chainguard opensearch-dashboards-3-fips
py3-jupyterlab affected chainguard py3-jupyterlab
py3-jupyterlab affected wolfi py3-jupyterlab
qs affected npm qs
qs affected npm
redisinsight affected chainguard redisinsight
renovate affected wolfi renovate
renovate affected chainguard renovate
saf affected wolfi saf
saf affected chainguard saf
sqlpad affected wolfi sqlpad
sqlpad affected chainguard sqlpad
tensorflow-cpu-jupyter affected chainguard tensorflow-cpu-jupyter
thingsboard affected chainguard thingsboard
thingsboard affected wolfi thingsboard
tileserver-gl affected chainguard tileserver-gl
tileserver-gl affected wolfi tileserver-gl
tileserver-gl-fips affected chainguard tileserver-gl-fips
wazuh-dashboard affected chainguard wazuh-dashboard
wazuh-dashboard-fips affected chainguard wazuh-dashboard-fips
Upstream advisory

DEBIAN-CVE-2025-66564

Open SourcePoC exploitHIGH2025-12-04

DEBIAN-CVE-2025-66564

Affected products

ProductStatusVendorPackageEcosystem
golang-github-sigstore-timestamp-authority affected Debian:13 golang-github-sigstore-timestamp-authority
golang-github-sigstore-timestamp-authority affected Debian:14 golang-github-sigstore-timestamp-authority
Upstream advisory

DSA-6072-1

Open SourcePoC exploit2025-12-04

chromium - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
Upstream advisory

openSUSE-SU-2025:15794-1

Open SourcePoC exploit2025-12-03

chromedriver-143.0.7499.40-2.1 on GA media

Affected products

ProductStatusVendorPackageEcosystem
chromium affected openSUSE:Tumbleweed chromium
Upstream advisory

MINI-wvg6-w26r-v3p8

Open SourcePoC exploit2025-12-25

MINI-wvg6-w26r-v3p8

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-metrics-scraper affected MinimOS kubernetes-dashboard-metrics-scraper
kubernetes-dashboard-metrics-scraper-compat affected MinimOS kubernetes-dashboard-metrics-scraper-compat
Upstream advisory

MINI-cm53-2gxg-r9g5

Open SourcePoC exploit2025-12-23

MINI-cm53-2gxg-r9g5

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-dashboard-metrics-scraper-fips affected MinimOS kubernetes-dashboard-metrics-scraper-fips
Upstream advisory

MINI-7p2h-c68w-69c8

Open SourcePoC exploit2025-12-02

MINI-7p2h-c68w-69c8

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

GHSA-84h7-rjj3-6jx4

GooglePoC exploitMEDIUM2025-12-15

Netty has a CRLF Injection vulnerability in io.netty.handler.codec.http.HttpRequestEncoder

Affected products

ProductStatusVendorPackageEcosystem
io.netty:netty-codec-http affected Maven io.netty:netty-codec-http
Upstream advisory

GHSA-84h7-rjj3-6jx4

Open SourcePoC exploitMEDIUM2025-12-15

Netty has a CRLF Injection vulnerability in io.netty.handler.codec.http.HttpRequestEncoder

Affected products

ProductStatusVendorPackageEcosystem
akhq affected wolfi akhq
akhq affected chainguard akhq
apache-activemq-artemis affected chainguard apache-activemq-artemis
apache-activemq-artemis affected wolfi apache-activemq-artemis
apache-hop affected chainguard apache-hop
apache-hop-fips affected chainguard apache-hop-fips
apache-nifi affected wolfi apache-nifi
apache-nifi affected chainguard apache-nifi
apache-nifi-registry affected chainguard apache-nifi-registry
apache-nifi-registry affected wolfi apache-nifi-registry
apache-pulsar affected chainguard apache-pulsar
apache-pulsar affected wolfi apache-pulsar
apicurio-registry affected wolfi apicurio-registry
apicurio-registry affected chainguard apicurio-registry
camunda-zeebe-8.3 affected chainguard camunda-zeebe-8.3
camunda-zeebe-8.4 affected chainguard camunda-zeebe-8.4
camunda-zeebe-8.5 affected chainguard camunda-zeebe-8.5
camunda-zeebe-8.6 affected chainguard camunda-zeebe-8.6
camunda-zeebe-8.7 affected chainguard camunda-zeebe-8.7
camunda-zeebe-8.8 affected chainguard camunda-zeebe-8.8
celeborn-0.5 affected wolfi celeborn-0.5
celeborn-0.5 affected chainguard celeborn-0.5
celeborn-0.6 affected wolfi celeborn-0.6
celeborn-0.6 affected chainguard celeborn-0.6
docker-selenium affected wolfi docker-selenium
docker-selenium affected chainguard docker-selenium
druid affected wolfi druid
druid affected chainguard druid
elasticsearch-7 affected chainguard elasticsearch-7
elasticsearch-8.17 affected chainguard elasticsearch-8.17
elasticsearch-8.18 affected chainguard elasticsearch-8.18
elasticsearch-8.19 affected chainguard elasticsearch-8.19
elasticsearch-9.0 affected chainguard elasticsearch-9.0
elasticsearch-9.1 affected chainguard elasticsearch-9.1
elasticsearch-9.2 affected chainguard elasticsearch-9.2
elasticsearch-fips-8.17 affected chainguard elasticsearch-fips-8.17
elasticsearch-fips-8.18 affected chainguard elasticsearch-fips-8.18
elasticsearch-fips-8.19 affected chainguard elasticsearch-fips-8.19
elasticsearch-fips-9.0 affected chainguard elasticsearch-fips-9.0
elasticsearch-fips-9.1 affected chainguard elasticsearch-fips-9.1
elasticsearch-fips-9.2 affected chainguard elasticsearch-fips-9.2
flyway affected chainguard flyway
flyway affected wolfi flyway
grpc-java-fips-1.56.0 affected chainguard grpc-java-fips-1.56.0
hadoop-fips-3.3.6 affected chainguard hadoop-fips-3.3.6
hadoop-fips-3.5 affected chainguard hadoop-fips-3.5
infinispan-15.0 affected chainguard infinispan-15.0
infinispan-15.1 affected chainguard infinispan-15.1
infinispan-15.2 affected chainguard infinispan-15.2
infinispan-15.2 affected wolfi infinispan-15.2
io.netty:netty-codec-http affected Maven io.netty:netty-codec-http
kafbat-ui affected chainguard kafbat-ui
kafka-bridge affected chainguard kafka-bridge
kafka-bridge-fips affected chainguard kafka-bridge-fips
kayenta-2025.0 affected chainguard kayenta-2025.0
kayenta-2025.1 affected chainguard kayenta-2025.1
kayenta-2025.2 affected chainguard kayenta-2025.2
kayenta-fips-2025.0 affected chainguard kayenta-fips-2025.0
kayenta-fips-2025.1 affected chainguard kayenta-fips-2025.1
kayenta-fips-2025.2 affected chainguard kayenta-fips-2025.2
keycloak-26.2 affected chainguard keycloak-26.2
keycloak-26.3 affected chainguard keycloak-26.3
keycloak-26.3 affected wolfi keycloak-26.3
keycloak-26.4 affected wolfi keycloak-26.4
keycloak-26.4 affected chainguard keycloak-26.4
keycloak-fips-26.2 affected chainguard keycloak-fips-26.2
keycloak-fips-26.3 affected chainguard keycloak-fips-26.3
keycloak-fips-26.4 affected chainguard keycloak-fips-26.4
knative-kafka-broker-1.17 affected chainguard knative-kafka-broker-1.17
knative-kafka-broker-1.18 affected chainguard knative-kafka-broker-1.18
knative-kafka-broker-1.19 affected chainguard knative-kafka-broker-1.19
knative-kafka-broker-1.20 affected chainguard knative-kafka-broker-1.20
knative-kafka-broker-1.21 affected chainguard knative-kafka-broker-1.21
knative-kafka-broker-1.22 affected chainguard knative-kafka-broker-1.22
knative-kafka-broker-fips-1.22 affected chainguard knative-kafka-broker-fips-1.22
kserve-modelmesh affected chainguard kserve-modelmesh
kserve-modelmesh affected wolfi kserve-modelmesh
localstack affected chainguard localstack
logstash-8.17 affected chainguard logstash-8.17
logstash-8.18 affected chainguard logstash-8.18
logstash-8.19 affected chainguard logstash-8.19
logstash-9.0 affected chainguard logstash-9.0
logstash-9.1 affected chainguard logstash-9.1
logstash-9.1 affected wolfi logstash-9.1
logstash-9.2 affected chainguard logstash-9.2
logstash-9.2 affected wolfi logstash-9.2
logstash-input-http affected wolfi logstash-input-http
logstash-input-http affected chainguard logstash-input-http
management-api-for-apache-cassandra-4.0 affected chainguard management-api-for-apache-cassandra-4.0
management-api-for-apache-cassandra-4.1 affected chainguard management-api-for-apache-cassandra-4.1
management-api-for-apache-cassandra-4.1 affected wolfi management-api-for-apache-cassandra-4.1
management-api-for-apache-cassandra-5.0 affected wolfi management-api-for-apache-cassandra-5.0
management-api-for-apache-cassandra-5.0 affected chainguard management-api-for-apache-cassandra-5.0
neo4j-2025.05 affected chainguard neo4j-2025.05
neo4j-2025.05 affected wolfi neo4j-2025.05
neo4j-2025.06 affected wolfi neo4j-2025.06
neo4j-2025.06 affected chainguard neo4j-2025.06
neo4j-2025.09 affected wolfi neo4j-2025.09
neo4j-2025.09 affected chainguard neo4j-2025.09
neo4j-2025.10 affected wolfi neo4j-2025.10
neo4j-2025.10 affected chainguard neo4j-2025.10
neo4j-4.4 affected chainguard neo4j-4.4
neo4j-5.26 affected chainguard neo4j-5.26
neo4j-5.26 affected wolfi neo4j-5.26
opensearch-2 affected wolfi opensearch-2
opensearch-2 affected chainguard opensearch-2
opensearch-3 affected chainguard opensearch-3
opensearch-3 affected wolfi opensearch-3
opensearch-fips-3 affected chainguard opensearch-fips-3
seata affected chainguard seata
sonarqube affected chainguard sonarqube
sonarqube affected wolfi sonarqube
spark-3.5 affected wolfi spark-3.5
spark-3.5 affected chainguard spark-3.5
spark-4.0 affected chainguard spark-4.0
spark-4.0 affected wolfi spark-4.0
spark-4.1 affected wolfi spark-4.1
spark-4.1 affected chainguard spark-4.1
spark-fips-3.5 affected chainguard spark-fips-3.5
strimzi-kafka-operator affected chainguard strimzi-kafka-operator
strimzi-kafka-operator affected wolfi strimzi-kafka-operator
tez affected chainguard tez
tez affected wolfi tez
thingsboard affected wolfi thingsboard
thingsboard affected chainguard thingsboard
tinkerpop affected chainguard tinkerpop
trino affected chainguard trino
trino affected wolfi trino
wavefront-proxy affected wolfi wavefront-proxy
wavefront-proxy affected chainguard wavefront-proxy
wildfly affected chainguard wildfly
wildfly affected wolfi wildfly
zipkin affected wolfi zipkin
zipkin affected chainguard zipkin
Upstream advisory

CVE-2025-63895

Open SourcePoC exploitHIGH2025-12-10

An issue in the Bluetooth firmware of JXL 9 Inch Car Android Double Din Player Android v12.0 allows attackers to cause a Denial of Service (DoS) via sending a crafted Link Manager Protocol (LMP) packet.

CVEs:CVE-2025-63895

Affected products

ProductStatusVendorPackageEcosystem
jxl_9_inch_car_android_double_din_player_firmware affected jxlindia
Upstream advisory

CVE-2025-63896

Open SourcePoC exploitHIGH2025-12-04

An issue in the Bluetooth Human Interface Device (HID) of JXL 9 Inch Car Android Double Din Player Android v12.0 allows attackers to inject arbitrary keystrokes via a spoofed Bluetooth HID device.

CVEs:CVE-2025-63896

Affected products

ProductStatusVendorPackageEcosystem
jxl_9_inch_car_android_double_din_player_firmware affected jxlindia
Upstream advisory

OESA-2025-2866

Open SourcePoC exploit2025-12-30

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:24.03-LTS golang
Upstream advisory

OESA-2025-2864

Open SourcePoC exploit2025-12-30

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:22.03-LTS-SP3 golang
Upstream advisory

OESA-2025-2863

Open SourcePoC exploit2025-12-30

golang security update

Affected products

ProductStatusVendorPackageEcosystem
golang affected openEuler:20.03-LTS-SP4 golang
Upstream advisory

MINI-5wv6-2qfq-5594

Open SourcePoC exploit2025-12-08

MINI-5wv6-2qfq-5594

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.25 affected MinimOS istio-cni-fips-1.25
istioctl-bash-completion-fips-1.25 affected MinimOS istioctl-bash-completion-fips-1.25
istioctl-fips-1.25 affected MinimOS istioctl-fips-1.25
istioctl-zsh-completion-fips-1.25 affected MinimOS istioctl-zsh-completion-fips-1.25
istio-fips-1.25 affected MinimOS istio-fips-1.25
istio-install-cni-fips-1.25 affected MinimOS istio-install-cni-fips-1.25
istio-pilot-agent-fips-1.25 affected MinimOS istio-pilot-agent-fips-1.25
istio-pilot-discovery-fips-1.25 affected MinimOS istio-pilot-discovery-fips-1.25
Upstream advisory

MINI-4vw3-78qx-hh7p

Open SourcePoC exploit2025-12-07

MINI-4vw3-78qx-hh7p

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

MINI-wx4q-cwx4-pgfw

Open SourcePoC exploit2025-12-07

MINI-wx4q-cwx4-pgfw

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.26 affected MinimOS istio-cni-fips-1.26
istioctl-bash-completion-fips-1.26 affected MinimOS istioctl-bash-completion-fips-1.26
istioctl-fips-1.26 affected MinimOS istioctl-fips-1.26
istioctl-zsh-completion-fips-1.26 affected MinimOS istioctl-zsh-completion-fips-1.26
istio-fips-1.26 affected MinimOS istio-fips-1.26
istio-install-cni-fips-1.26 affected MinimOS istio-install-cni-fips-1.26
istio-pilot-agent-fips-1.26 affected MinimOS istio-pilot-agent-fips-1.26
istio-pilot-discovery-fips-1.26 affected MinimOS istio-pilot-discovery-fips-1.26
Upstream advisory

MINI-g28m-3987-jgmj

Open SourcePoC exploit2025-12-07

MINI-g28m-3987-jgmj

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-1.33 affected MinimOS kube-apiserver-1.33
kube-apiserver-1.33-compat affected MinimOS kube-apiserver-1.33-compat
kube-controller-manager-1.33 affected MinimOS kube-controller-manager-1.33
kube-controller-manager-1.33-compat affected MinimOS kube-controller-manager-1.33-compat
kubectl-1.33 affected MinimOS kubectl-1.33
kubectl-1.33-advanced-compat affected MinimOS kubectl-1.33-advanced-compat
kubectl-1.33-compat affected MinimOS kubectl-1.33-compat
kube-proxy-1.33 affected MinimOS kube-proxy-1.33
kube-proxy-1.33-compat affected MinimOS kube-proxy-1.33-compat
kubernetes-1.33 affected MinimOS kubernetes-1.33
kube-scheduler-1.33 affected MinimOS kube-scheduler-1.33
kube-scheduler-1.33-compat affected MinimOS kube-scheduler-1.33-compat
Upstream advisory

MINI-73gc-q8pc-25qc

Open SourcePoC exploit2025-12-07

MINI-73gc-q8pc-25qc

Affected products

ProductStatusVendorPackageEcosystem
istio-1.25 affected MinimOS istio-1.25
istio-cni-1.25 affected MinimOS istio-cni-1.25
istio-cni-1.25-compat affected MinimOS istio-cni-1.25-compat
istioctl-1.25 affected MinimOS istioctl-1.25
istioctl-bash-completion-1.25 affected MinimOS istioctl-bash-completion-1.25
istioctl-zsh-completion-1.25 affected MinimOS istioctl-zsh-completion-1.25
istio-install-cni-1.25 affected MinimOS istio-install-cni-1.25
istio-install-cni-1.25-compat affected MinimOS istio-install-cni-1.25-compat
istio-pilot-agent-1.25 affected MinimOS istio-pilot-agent-1.25
istio-pilot-agent-1.25-compat affected MinimOS istio-pilot-agent-1.25-compat
istio-pilot-discovery-1.25 affected MinimOS istio-pilot-discovery-1.25
istio-pilot-discovery-1.25-compat affected MinimOS istio-pilot-discovery-1.25-compat
Upstream advisory

MINI-674g-mfw2-92pc

Open SourcePoC exploit2025-12-06

MINI-674g-mfw2-92pc

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.27 affected MinimOS istio-cni-fips-1.27
istioctl-bash-completion-fips-1.27 affected MinimOS istioctl-bash-completion-fips-1.27
istioctl-fips-1.27 affected MinimOS istioctl-fips-1.27
istioctl-zsh-completion-fips-1.27 affected MinimOS istioctl-zsh-completion-fips-1.27
istio-fips-1.27 affected MinimOS istio-fips-1.27
istio-install-cni-fips-1.27 affected MinimOS istio-install-cni-fips-1.27
istio-pilot-agent-fips-1.27 affected MinimOS istio-pilot-agent-fips-1.27
istio-pilot-discovery-fips-1.27 affected MinimOS istio-pilot-discovery-fips-1.27
Upstream advisory

MINI-4wrj-w5wc-2m7c

Open SourcePoC exploit2025-12-06

MINI-4wrj-w5wc-2m7c

Affected products

ProductStatusVendorPackageEcosystem
istio-1.22 affected MinimOS istio-1.22
istio-cni-1.22 affected MinimOS istio-cni-1.22
istio-cni-1.22-compat affected MinimOS istio-cni-1.22-compat
istioctl-1.22 affected MinimOS istioctl-1.22
istioctl-bash-completion-1.22 affected MinimOS istioctl-bash-completion-1.22
istioctl-zsh-completion-1.22 affected MinimOS istioctl-zsh-completion-1.22
istio-install-cni-1.22 affected MinimOS istio-install-cni-1.22
istio-install-cni-1.22-compat affected MinimOS istio-install-cni-1.22-compat
istio-pilot-agent-1.22 affected MinimOS istio-pilot-agent-1.22
istio-pilot-agent-1.22-compat affected MinimOS istio-pilot-agent-1.22-compat
istio-pilot-discovery-1.22 affected MinimOS istio-pilot-discovery-1.22
istio-pilot-discovery-1.22-compat affected MinimOS istio-pilot-discovery-1.22-compat
Upstream advisory

MINI-hwwj-6mh7-6hmx

Open SourcePoC exploit2025-12-06

MINI-hwwj-6mh7-6hmx

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-fips-1.32 affected MinimOS kube-apiserver-fips-1.32
kube-controller-manager-fips-1.32 affected MinimOS kube-controller-manager-fips-1.32
kubectl-fips-1.32 affected MinimOS kubectl-fips-1.32
kube-proxy-fips-1.32 affected MinimOS kube-proxy-fips-1.32
kubernetes-fips-1.32 affected MinimOS kubernetes-fips-1.32
kube-scheduler-fips-1.32 affected MinimOS kube-scheduler-fips-1.32
Upstream advisory

MINI-hx98-xpq8-4jc6

Open SourcePoC exploit2025-12-06

MINI-hx98-xpq8-4jc6

Affected products

ProductStatusVendorPackageEcosystem
kubectl-fips-1.31 affected MinimOS kubectl-fips-1.31
kubernetes-fips-1.31 affected MinimOS kubernetes-fips-1.31
Upstream advisory

MINI-52vc-2v24-rfm7

Open SourcePoC exploit2025-12-06

MINI-52vc-2v24-rfm7

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.28 affected MinimOS istio-cni-fips-1.28
istioctl-bash-completion-fips-1.28 affected MinimOS istioctl-bash-completion-fips-1.28
istioctl-fips-1.28 affected MinimOS istioctl-fips-1.28
istioctl-zsh-completion-fips-1.28 affected MinimOS istioctl-zsh-completion-fips-1.28
istio-fips-1.28 affected MinimOS istio-fips-1.28
istio-install-cni-fips-1.28 affected MinimOS istio-install-cni-fips-1.28
istio-pilot-agent-fips-1.28 affected MinimOS istio-pilot-agent-fips-1.28
istio-pilot-discovery-fips-1.28 affected MinimOS istio-pilot-discovery-fips-1.28
Upstream advisory

MINI-5r65-gwwx-xqr6

Open SourcePoC exploit2025-12-06

MINI-5r65-gwwx-xqr6

Affected products

ProductStatusVendorPackageEcosystem
bazelisk affected MinimOS bazelisk
bazelisk-default affected MinimOS bazelisk-default
Upstream advisory

MINI-2pvg-jg9p-3h27

Open SourcePoC exploit2025-12-06

MINI-2pvg-jg9p-3h27

Affected products

ProductStatusVendorPackageEcosystem
istio-1.24 affected MinimOS istio-1.24
istio-cni-1.24 affected MinimOS istio-cni-1.24
istio-cni-1.24-compat affected MinimOS istio-cni-1.24-compat
istioctl-1.24 affected MinimOS istioctl-1.24
istioctl-bash-completion-1.24 affected MinimOS istioctl-bash-completion-1.24
istioctl-zsh-completion-1.24 affected MinimOS istioctl-zsh-completion-1.24
istio-install-cni-1.24 affected MinimOS istio-install-cni-1.24
istio-install-cni-1.24-compat affected MinimOS istio-install-cni-1.24-compat
istio-pilot-agent-1.24 affected MinimOS istio-pilot-agent-1.24
istio-pilot-agent-1.24-compat affected MinimOS istio-pilot-agent-1.24-compat
istio-pilot-discovery-1.24 affected MinimOS istio-pilot-discovery-1.24
istio-pilot-discovery-1.24-compat affected MinimOS istio-pilot-discovery-1.24-compat
Upstream advisory

MINI-rjwf-f8wg-jff7

Open SourcePoC exploit2025-12-06

MINI-rjwf-f8wg-jff7

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.23 affected MinimOS istio-cni-fips-1.23
istioctl-bash-completion-fips-1.23 affected MinimOS istioctl-bash-completion-fips-1.23
istioctl-fips-1.23 affected MinimOS istioctl-fips-1.23
istioctl-zsh-completion-fips-1.23 affected MinimOS istioctl-zsh-completion-fips-1.23
istio-fips-1.23 affected MinimOS istio-fips-1.23
istio-install-cni-fips-1.23 affected MinimOS istio-install-cni-fips-1.23
istio-pilot-agent-fips-1.23 affected MinimOS istio-pilot-agent-fips-1.23
istio-pilot-discovery-fips-1.23 affected MinimOS istio-pilot-discovery-fips-1.23
Upstream advisory

MINI-7xxp-9f9q-24p4

Open SourcePoC exploit2025-12-06

MINI-7xxp-9f9q-24p4

Affected products

ProductStatusVendorPackageEcosystem
volume-modifier-for-k8s-fips affected MinimOS volume-modifier-for-k8s-fips
Upstream advisory

MINI-658j-xj2x-hvc8

Open SourcePoC exploit2025-12-06

MINI-658j-xj2x-hvc8

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.24 affected MinimOS istio-cni-fips-1.24
istioctl-bash-completion-fips-1.24 affected MinimOS istioctl-bash-completion-fips-1.24
istioctl-fips-1.24 affected MinimOS istioctl-fips-1.24
istioctl-zsh-completion-fips-1.24 affected MinimOS istioctl-zsh-completion-fips-1.24
istio-fips-1.24 affected MinimOS istio-fips-1.24
istio-install-cni-fips-1.24 affected MinimOS istio-install-cni-fips-1.24
istio-pilot-agent-fips-1.24 affected MinimOS istio-pilot-agent-fips-1.24
istio-pilot-discovery-fips-1.24 affected MinimOS istio-pilot-discovery-fips-1.24
Upstream advisory

MINI-wh5q-jg7h-mhqm

Open SourcePoC exploit2025-12-06

MINI-wh5q-jg7h-mhqm

Affected products

ProductStatusVendorPackageEcosystem
cni-plugins-aws-k8s-compat-fips affected MinimOS cni-plugins-aws-k8s-compat-fips
cni-plugins-bandwidth-fips affected MinimOS cni-plugins-bandwidth-fips
cni-plugins-bridge-fips affected MinimOS cni-plugins-bridge-fips
cni-plugins-dhcp-fips affected MinimOS cni-plugins-dhcp-fips
cni-plugins-dummy-fips affected MinimOS cni-plugins-dummy-fips
cni-plugins-fips affected MinimOS cni-plugins-fips
cni-plugins-firewall-fips affected MinimOS cni-plugins-firewall-fips
cni-plugins-host-device-fips affected MinimOS cni-plugins-host-device-fips
cni-plugins-host-local-fips affected MinimOS cni-plugins-host-local-fips
cni-plugins-ipam-fips affected MinimOS cni-plugins-ipam-fips
cni-plugins-ipvlan-fips affected MinimOS cni-plugins-ipvlan-fips
cni-plugins-loopback-fips affected MinimOS cni-plugins-loopback-fips
cni-plugins-macvlan-fips affected MinimOS cni-plugins-macvlan-fips
cni-plugins-main-fips affected MinimOS cni-plugins-main-fips
cni-plugins-meta-fips affected MinimOS cni-plugins-meta-fips
cni-plugins-portmap-fips affected MinimOS cni-plugins-portmap-fips
cni-plugins-ptp-fips affected MinimOS cni-plugins-ptp-fips
cni-plugins-sbr-fips affected MinimOS cni-plugins-sbr-fips
cni-plugins-static-fips affected MinimOS cni-plugins-static-fips
cni-plugins-tap-fips affected MinimOS cni-plugins-tap-fips
cni-plugins-tuning-fips affected MinimOS cni-plugins-tuning-fips
cni-plugins-vlan-fips affected MinimOS cni-plugins-vlan-fips
cni-plugins-vrf-fips affected MinimOS cni-plugins-vrf-fips
Upstream advisory

MINI-xrc8-fgc9-2fqm

Open SourcePoC exploit2025-12-06

MINI-xrc8-fgc9-2fqm

Affected products

ProductStatusVendorPackageEcosystem
istio-1.27 affected MinimOS istio-1.27
istio-cni-1.27 affected MinimOS istio-cni-1.27
istio-cni-1.27-compat affected MinimOS istio-cni-1.27-compat
istioctl-1.27 affected MinimOS istioctl-1.27
istioctl-bash-completion-1.27 affected MinimOS istioctl-bash-completion-1.27
istioctl-zsh-completion-1.27 affected MinimOS istioctl-zsh-completion-1.27
istio-install-cni-1.27 affected MinimOS istio-install-cni-1.27
istio-install-cni-1.27-compat affected MinimOS istio-install-cni-1.27-compat
istio-pilot-agent-1.27 affected MinimOS istio-pilot-agent-1.27
istio-pilot-agent-1.27-compat affected MinimOS istio-pilot-agent-1.27-compat
istio-pilot-discovery-1.27 affected MinimOS istio-pilot-discovery-1.27
istio-pilot-discovery-1.27-compat affected MinimOS istio-pilot-discovery-1.27-compat
Upstream advisory

MINI-qpgr-24f5-47fg

Open SourcePoC exploit2025-12-06

MINI-qpgr-24f5-47fg

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-fips-1.33 affected MinimOS kube-apiserver-fips-1.33
kube-apiserver-fips-1.33-compat affected MinimOS kube-apiserver-fips-1.33-compat
kube-controller-manager-fips-1.33 affected MinimOS kube-controller-manager-fips-1.33
kube-controller-manager-fips-1.33-compat affected MinimOS kube-controller-manager-fips-1.33-compat
kubectl-fips-1.33 affected MinimOS kubectl-fips-1.33
kubectl-fips-1.33-compat affected MinimOS kubectl-fips-1.33-compat
kube-proxy-fips-1.33 affected MinimOS kube-proxy-fips-1.33
kube-proxy-fips-1.33-compat affected MinimOS kube-proxy-fips-1.33-compat
kubernetes-fips-1.33 affected MinimOS kubernetes-fips-1.33
kube-scheduler-fips-1.33 affected MinimOS kube-scheduler-fips-1.33
kube-scheduler-fips-1.33-compat affected MinimOS kube-scheduler-fips-1.33-compat
Upstream advisory

MINI-ppph-rrg3-x466

Open SourcePoC exploit2025-12-06

MINI-ppph-rrg3-x466

Affected products

ProductStatusVendorPackageEcosystem
volume-modifier-for-k8s affected MinimOS volume-modifier-for-k8s
Upstream advisory

MINI-gp9c-cvhj-gg26

Open SourcePoC exploit2025-12-06

MINI-gp9c-cvhj-gg26

Affected products

ProductStatusVendorPackageEcosystem
kubectl-1.31 affected MinimOS kubectl-1.31
kubectl-1.31-advanced-compat affected MinimOS kubectl-1.31-advanced-compat
kubernetes-1.31 affected MinimOS kubernetes-1.31
Upstream advisory

MINI-gph4-8hx2-9q28

Open SourcePoC exploit2025-12-06

MINI-gph4-8hx2-9q28

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter-fips affected MinimOS kubernetes-event-exporter-fips
Upstream advisory

MINI-2xq2-7w22-x7h5

Open SourcePoC exploit2025-12-06

MINI-2xq2-7w22-x7h5

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-1.34 affected MinimOS kube-apiserver-1.34
kube-apiserver-1.34-compat affected MinimOS kube-apiserver-1.34-compat
kube-controller-manager-1.34 affected MinimOS kube-controller-manager-1.34
kube-controller-manager-1.34-compat affected MinimOS kube-controller-manager-1.34-compat
kubectl-1.34 affected MinimOS kubectl-1.34
kubectl-1.34-advanced-compat affected MinimOS kubectl-1.34-advanced-compat
kubectl-1.34-compat affected MinimOS kubectl-1.34-compat
kube-proxy-1.34 affected MinimOS kube-proxy-1.34
kube-proxy-1.34-compat affected MinimOS kube-proxy-1.34-compat
kubernetes-1.34 affected MinimOS kubernetes-1.34
kube-scheduler-1.34 affected MinimOS kube-scheduler-1.34
kube-scheduler-1.34-compat affected MinimOS kube-scheduler-1.34-compat
Upstream advisory

MINI-ggxq-6j78-4wj9

Open SourcePoC exploit2025-12-06

MINI-ggxq-6j78-4wj9

Affected products

ProductStatusVendorPackageEcosystem
istio-1.26 affected MinimOS istio-1.26
istio-cni-1.26 affected MinimOS istio-cni-1.26
istio-cni-1.26-compat affected MinimOS istio-cni-1.26-compat
istioctl-1.26 affected MinimOS istioctl-1.26
istioctl-bash-completion-1.26 affected MinimOS istioctl-bash-completion-1.26
istioctl-zsh-completion-1.26 affected MinimOS istioctl-zsh-completion-1.26
istio-install-cni-1.26 affected MinimOS istio-install-cni-1.26
istio-install-cni-1.26-compat affected MinimOS istio-install-cni-1.26-compat
istio-pilot-agent-1.26 affected MinimOS istio-pilot-agent-1.26
istio-pilot-agent-1.26-compat affected MinimOS istio-pilot-agent-1.26-compat
istio-pilot-discovery-1.26 affected MinimOS istio-pilot-discovery-1.26
istio-pilot-discovery-1.26-compat affected MinimOS istio-pilot-discovery-1.26-compat
Upstream advisory

MINI-m4p2-9jjp-ch7p

Open SourcePoC exploit2025-12-06

MINI-m4p2-9jjp-ch7p

Affected products

ProductStatusVendorPackageEcosystem
kube-apiserver-fips-1.34 affected MinimOS kube-apiserver-fips-1.34
kube-apiserver-fips-1.34-compat affected MinimOS kube-apiserver-fips-1.34-compat
kube-controller-manager-fips-1.34 affected MinimOS kube-controller-manager-fips-1.34
kube-controller-manager-fips-1.34-compat affected MinimOS kube-controller-manager-fips-1.34-compat
kubectl-fips-1.34 affected MinimOS kubectl-fips-1.34
kubectl-fips-1.34-compat affected MinimOS kubectl-fips-1.34-compat
kube-proxy-fips-1.34 affected MinimOS kube-proxy-fips-1.34
kube-proxy-fips-1.34-compat affected MinimOS kube-proxy-fips-1.34-compat
kubernetes-fips-1.34 affected MinimOS kubernetes-fips-1.34
kube-scheduler-fips-1.34 affected MinimOS kube-scheduler-fips-1.34
kube-scheduler-fips-1.34-compat affected MinimOS kube-scheduler-fips-1.34-compat
Upstream advisory

MINI-56hm-hc39-r3w2

Open SourcePoC exploit2025-12-06

MINI-56hm-hc39-r3w2

Affected products

ProductStatusVendorPackageEcosystem
cni-plugins affected MinimOS cni-plugins
cni-plugins-aws-k8s-compat affected MinimOS cni-plugins-aws-k8s-compat
cni-plugins-bandwidth affected MinimOS cni-plugins-bandwidth
cni-plugins-bandwidth-compat affected MinimOS cni-plugins-bandwidth-compat
cni-plugins-bridge affected MinimOS cni-plugins-bridge
cni-plugins-bridge-compat affected MinimOS cni-plugins-bridge-compat
cni-plugins-dhcp affected MinimOS cni-plugins-dhcp
cni-plugins-dhcp-compat affected MinimOS cni-plugins-dhcp-compat
cni-plugins-dummy affected MinimOS cni-plugins-dummy
cni-plugins-dummy-compat affected MinimOS cni-plugins-dummy-compat
cni-plugins-firewall affected MinimOS cni-plugins-firewall
cni-plugins-firewall-compat affected MinimOS cni-plugins-firewall-compat
cni-plugins-host-device affected MinimOS cni-plugins-host-device
cni-plugins-host-device-compat affected MinimOS cni-plugins-host-device-compat
cni-plugins-host-local affected MinimOS cni-plugins-host-local
cni-plugins-host-local-compat affected MinimOS cni-plugins-host-local-compat
cni-plugins-ipam affected MinimOS cni-plugins-ipam
cni-plugins-ipvlan affected MinimOS cni-plugins-ipvlan
cni-plugins-ipvlan-compat affected MinimOS cni-plugins-ipvlan-compat
cni-plugins-loopback affected MinimOS cni-plugins-loopback
cni-plugins-loopback-compat affected MinimOS cni-plugins-loopback-compat
cni-plugins-macvlan affected MinimOS cni-plugins-macvlan
cni-plugins-macvlan-compat affected MinimOS cni-plugins-macvlan-compat
cni-plugins-main affected MinimOS cni-plugins-main
cni-plugins-meta affected MinimOS cni-plugins-meta
cni-plugins-portmap affected MinimOS cni-plugins-portmap
cni-plugins-portmap-compat affected MinimOS cni-plugins-portmap-compat
cni-plugins-ptp affected MinimOS cni-plugins-ptp
cni-plugins-ptp-compat affected MinimOS cni-plugins-ptp-compat
cni-plugins-sbr affected MinimOS cni-plugins-sbr
cni-plugins-sbr-compat affected MinimOS cni-plugins-sbr-compat
cni-plugins-static affected MinimOS cni-plugins-static
cni-plugins-static-compat affected MinimOS cni-plugins-static-compat
cni-plugins-tap affected MinimOS cni-plugins-tap
cni-plugins-tap-compat affected MinimOS cni-plugins-tap-compat
cni-plugins-tuning affected MinimOS cni-plugins-tuning
cni-plugins-tuning-compat affected MinimOS cni-plugins-tuning-compat
cni-plugins-vlan affected MinimOS cni-plugins-vlan
cni-plugins-vlan-compat affected MinimOS cni-plugins-vlan-compat
cni-plugins-vrf affected MinimOS cni-plugins-vrf
cni-plugins-vrf-compat affected MinimOS cni-plugins-vrf-compat
Upstream advisory

BIT-golang-2025-61727

Open SourcePoC exploitMEDIUM2025-12-06

Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509

Affected products

ProductStatusVendorPackageEcosystem
golang affected Bitnami golang
Upstream advisory

GHSA-5mh9-3jwc-rp59

Open SourcePoC exploitMEDIUM2025-12-03

GHSA-5mh9-3jwc-rp59

Affected products

ProductStatusVendorPackageEcosystem
actions-runner-controller-fips affected chainguard actions-runner-controller-fips
amazon-cloudwatch-agent-fips affected chainguard amazon-cloudwatch-agent-fips
amazon-cloudwatch-agent-operator-fips affected chainguard amazon-cloudwatch-agent-operator-fips
amazon-vpc-cni-plugins-fips affected chainguard amazon-vpc-cni-plugins-fips
apm-server-fips-8.17 affected chainguard apm-server-fips-8.17
apm-server-fips-8.18 affected chainguard apm-server-fips-8.18
argo-cd-fips-3.0 affected chainguard argo-cd-fips-3.0
argo-cd-fips-3.2 affected chainguard argo-cd-fips-3.2
argo-rollouts-fips affected chainguard argo-rollouts-fips
authservice-fips affected chainguard authservice-fips
aws-application-networking-k8s-fips affected chainguard aws-application-networking-k8s-fips
aws-ebs-csi-driver-fips-1.49 affected chainguard aws-ebs-csi-driver-fips-1.49
aws-ebs-csi-driver-fips-1.50 affected chainguard aws-ebs-csi-driver-fips-1.50
aws-ebs-csi-driver-fips-1.53 affected chainguard aws-ebs-csi-driver-fips-1.53
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
aws-eks-pod-identity-agent-fips affected chainguard aws-eks-pod-identity-agent-fips
aws-flb-cloudwatch-fips affected chainguard aws-flb-cloudwatch-fips
aws-flb-firehose-fips affected chainguard aws-flb-firehose-fips
aws-iam-authenticator-fips affected chainguard aws-iam-authenticator-fips
aws-load-balancer-controller-fips affected chainguard aws-load-balancer-controller-fips
aws-nuke-fips affected chainguard aws-nuke-fips
aws-privateca-issuer-fips affected chainguard aws-privateca-issuer-fips
aws-signer-notation-plugin-fips affected chainguard aws-signer-notation-plugin-fips
aws-sigv4-proxy-fips affected chainguard aws-sigv4-proxy-fips
azuredisk-csi-fips-1.31 affected chainguard azuredisk-csi-fips-1.31
azuredisk-csi-fips-1.32 affected chainguard azuredisk-csi-fips-1.32
azurefile-csi-fips-1.30 affected chainguard azurefile-csi-fips-1.30
azurefile-csi-fips-1.32 affected chainguard azurefile-csi-fips-1.32
azure-service-operator-fips affected chainguard azure-service-operator-fips
bank-vaults-fips affected chainguard bank-vaults-fips
beats-7 affected chainguard beats-7
boring-registry-fips affected chainguard boring-registry-fips
cass-operator-fips affected chainguard cass-operator-fips
ceph-csi-operator-fips affected chainguard ceph-csi-operator-fips
cert-exporter-fips affected chainguard cert-exporter-fips
cert-manager-csi-driver-fips affected chainguard cert-manager-csi-driver-fips
cert-manager-fips-1.17 affected chainguard cert-manager-fips-1.17
cert-manager-fips-1.18 affected chainguard cert-manager-fips-1.18
cert-manager-google-cas-issuer-fips affected chainguard cert-manager-google-cas-issuer-fips
cert-manager-webhook-pdns affected wolfi cert-manager-webhook-pdns
cert-manager-webhook-pdns affected chainguard cert-manager-webhook-pdns
cfssl-fips affected chainguard cfssl-fips
chartmuseum-fips affected chainguard chartmuseum-fips
chisel affected chainguard chisel
chisel affected wolfi chisel
chisel-fips affected chainguard chisel-fips
cilium-1.14 affected wolfi cilium-1.14
cilium-1.14 affected chainguard cilium-1.14
cilium-envoy-fips-1.15 affected chainguard cilium-envoy-fips-1.15
cilium-envoy-fips-1.16 affected chainguard cilium-envoy-fips-1.16
cilium-envoy-fips-1.17 affected chainguard cilium-envoy-fips-1.17
cilium-envoy-fips-1.18 affected chainguard cilium-envoy-fips-1.18
cilium-fips-1.14 affected chainguard cilium-fips-1.14
cinder-csi-plugin-fips affected chainguard cinder-csi-plugin-fips
cloudbeat-fips-8.17 affected chainguard cloudbeat-fips-8.17
cloudbeat-fips-8.18 affected chainguard cloudbeat-fips-8.18
cloudbeat-fips-8.19 affected chainguard cloudbeat-fips-8.19
cloudbeat-fips-9.1 affected chainguard cloudbeat-fips-9.1
cloudnative-pg-fips affected chainguard cloudnative-pg-fips
cloudprober-fips affected chainguard cloudprober-fips
cloud-provider-aws-fips-1.34 affected chainguard cloud-provider-aws-fips-1.34
cloud-provider-azure-fips-1.27 affected chainguard cloud-provider-azure-fips-1.27
cloud-provider-azure-fips-1.29 affected chainguard cloud-provider-azure-fips-1.29
cloud-provider-azure-fips-1.30 affected chainguard cloud-provider-azure-fips-1.30
cloud-provider-azure-fips-1.31 affected chainguard cloud-provider-azure-fips-1.31
cloud-provider-azure-fips-1.33 affected chainguard cloud-provider-azure-fips-1.33
cloud-provider-azure-fips-1.34 affected chainguard cloud-provider-azure-fips-1.34
cluster-api-aws-controller-fips affected chainguard cluster-api-aws-controller-fips
cluster-api-fips-1.11 affected chainguard cluster-api-fips-1.11
cluster-api-gcp-controller-fips affected chainguard cluster-api-gcp-controller-fips
cluster-autoscaler-fips-1.31 affected chainguard cluster-autoscaler-fips-1.31
cluster-autoscaler-fips-1.32 affected chainguard cluster-autoscaler-fips-1.32
cluster-proportional-autoscaler-fips affected chainguard cluster-proportional-autoscaler-fips
configmap-reload-fips affected chainguard configmap-reload-fips
configmap-reload-fips-0.11 affected chainguard configmap-reload-fips-0.11
configmap-reload-fips-0.12 affected chainguard configmap-reload-fips-0.12
conftest-fips affected chainguard conftest-fips
consul-1.20 affected chainguard consul-1.20
consul-1.21 affected chainguard consul-1.21
consul-1.22 affected chainguard consul-1.22
consul-fips-1.19 affected chainguard consul-fips-1.19
consul-k8s-fips-1.3 affected chainguard consul-k8s-fips-1.3
consul-k8s-fips-1.4 affected chainguard consul-k8s-fips-1.4
consul-k8s-fips-1.5 affected chainguard consul-k8s-fips-1.5
consul-k8s-fips-1.6 affected chainguard consul-k8s-fips-1.6
contour-fips-1.30 affected chainguard contour-fips-1.30
contour-fips-1.31 affected chainguard contour-fips-1.31
contour-fips-1.32 affected chainguard contour-fips-1.32
coredns-fips-1.12 affected chainguard coredns-fips-1.12
coredns-fips-1.13 affected chainguard coredns-fips-1.13
crossplane-aws-provider-fips affected chainguard crossplane-aws-provider-fips
crossplane-fips-1.20 affected chainguard crossplane-fips-1.20
crossplane-fips-2.0 affected chainguard crossplane-fips-2.0
crossplane-function-environment-configs-fips affected chainguard crossplane-function-environment-configs-fips
crossplane-provider-gitlab-fips affected chainguard crossplane-provider-gitlab-fips
crossplane-provider-sql-fips affected chainguard crossplane-provider-sql-fips
crossplane-provider-terraform-fips affected chainguard crossplane-provider-terraform-fips
cue-fips affected chainguard cue-fips
custom-pod-autoscaler-fips affected chainguard custom-pod-autoscaler-fips
custom-pod-autoscaler-operator-fips affected chainguard custom-pod-autoscaler-operator-fips
dataplaneapi-fips affected chainguard dataplaneapi-fips
deck-fips affected chainguard deck-fips
dex-fips affected chainguard dex-fips
distribution-fips affected chainguard distribution-fips
docker-credential-acr-env-fips affected chainguard docker-credential-acr-env-fips
dragonfly-operator-fips affected chainguard dragonfly-operator-fips
dynamic-localpv-provisioner-fips affected chainguard dynamic-localpv-provisioner-fips
eck-operator-fips affected chainguard eck-operator-fips
eks-distro-fips-1.31 affected chainguard eks-distro-fips-1.31
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
etcd-3.4 affected chainguard etcd-3.4
etcd-fips-3.4 affected chainguard etcd-fips-3.4
etcd-fips-3.5 affected chainguard etcd-fips-3.5
etcd-fips-3.6 affected chainguard etcd-fips-3.6
external-dns-fips-0.18 affected chainguard external-dns-fips-0.18
external-secrets-operator-fips-0.17 affected chainguard external-secrets-operator-fips-0.17
external-secrets-operator-fips-0.20 affected chainguard external-secrets-operator-fips-0.20
external-secrets-operator-fips-1.0 affected chainguard external-secrets-operator-fips-1.0
falcoctl-fips affected chainguard falcoctl-fips
falcoctl-fips-0.4 affected chainguard falcoctl-fips-0.4
falco-exporter-fips affected chainguard falco-exporter-fips
falco-no-driver affected wolfi falco-no-driver
falco-no-driver affected chainguard falco-no-driver
flannel-cni-plugin-fips affected chainguard flannel-cni-plugin-fips
fleet-server-8.17 affected chainguard fleet-server-8.17
fleet-server-8.18 affected chainguard fleet-server-8.18
fleet-server-8.19 affected chainguard fleet-server-8.19
fleet-server-9.0 affected chainguard fleet-server-9.0
fleet-server-fips-8.18 affected chainguard fleet-server-fips-8.18
fleet-server-fips-8.19 affected chainguard fleet-server-fips-8.19
fleet-server-fips-9.0 affected chainguard fleet-server-fips-9.0
fleet-server-fips-9.2 affected chainguard fleet-server-fips-9.2
fluent-operator-fips affected chainguard fluent-operator-fips
fluxcd-kustomize-mutating-webhook-fips affected chainguard fluxcd-kustomize-mutating-webhook-fips
flux-helm-controller-fips affected chainguard flux-helm-controller-fips
flux-image-automation-controller-fips affected chainguard flux-image-automation-controller-fips
flux-image-reflector-controller-fips affected chainguard flux-image-reflector-controller-fips
flux-kustomize-controller-fips affected chainguard flux-kustomize-controller-fips
flux-notification-controller-fips affected chainguard flux-notification-controller-fips
flux-source-controller-fips affected chainguard flux-source-controller-fips
frp affected wolfi frp
frp affected chainguard frp
gatekeeper-3.18 affected chainguard gatekeeper-3.18
gatekeeper-3.18 affected wolfi gatekeeper-3.18
gatekeeper-fips-3.18 affected chainguard gatekeeper-fips-3.18
gatekeeper-fips-3.20 affected chainguard gatekeeper-fips-3.20
gcp-compute-persistent-disk-csi-driver-fips-1.12 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.12
gcp-compute-persistent-disk-csi-driver-fips-1.15 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.15
gcp-compute-persistent-disk-csi-driver-fips-1.16 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.16
gcp-compute-persistent-disk-csi-driver-fips-1.18 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.18
gitaly-fips-18.5 affected chainguard gitaly-fips-18.5
gitaly-fips-18.6 affected chainguard gitaly-fips-18.6
gitea affected chainguard gitea
gitea affected wolfi gitea
github-mcp-server affected wolfi github-mcp-server
github-mcp-server affected chainguard github-mcp-server
gitlab-cng-18.6 affected chainguard gitlab-cng-18.6
gitlab-kas-fips-18.4 affected chainguard gitlab-kas-fips-18.4
gitlab-kas-fips-18.5 affected chainguard gitlab-kas-fips-18.5
gitlab-kas-fips-18.6 affected chainguard gitlab-kas-fips-18.6
gitlab-pages-fips-18.5 affected chainguard gitlab-pages-fips-18.5
gitlab-rails-ce-fips-18.1 affected chainguard gitlab-rails-ce-fips-18.1
gitlab-rails-ce-fips-18.3 affected chainguard gitlab-rails-ce-fips-18.3
gitlab-runner-fips-18.4 affected chainguard gitlab-runner-fips-18.4
gitlab-runner-fips-18.5 affected chainguard gitlab-runner-fips-18.5
gitlab-workhorse-ce-18.1 affected chainguard gitlab-workhorse-ce-18.1
gitlab-workhorse-ce-18.2 affected chainguard gitlab-workhorse-ce-18.2
gitlab-workhorse-ce-18.3 affected chainguard gitlab-workhorse-ce-18.3
gitlab-workhorse-ce-18.4 affected chainguard gitlab-workhorse-ce-18.4
gitlab-workhorse-ce-18.5 affected chainguard gitlab-workhorse-ce-18.5
gitlab-workhorse-ce-18.6 affected chainguard gitlab-workhorse-ce-18.6
gitlab-workhorse-ce-fips-18.1 affected chainguard gitlab-workhorse-ce-fips-18.1
gitlab-workhorse-ce-fips-18.2 affected chainguard gitlab-workhorse-ce-fips-18.2
gitlab-workhorse-ce-fips-18.3 affected chainguard gitlab-workhorse-ce-fips-18.3
gitlab-workhorse-ce-fips-18.4 affected chainguard gitlab-workhorse-ce-fips-18.4
gitlab-workhorse-ce-fips-18.5 affected chainguard gitlab-workhorse-ce-fips-18.5
gitlab-workhorse-ce-fips-18.6 affected chainguard gitlab-workhorse-ce-fips-18.6
git-lfs-fips affected chainguard git-lfs-fips
gitness affected wolfi gitness
gitness affected chainguard gitness
gitsign affected wolfi gitsign
gitsign affected chainguard gitsign
git-sync-fips affected chainguard git-sync-fips
go-discover affected chainguard go-discover
go-discover affected wolfi go-discover
go-discover-fips affected chainguard go-discover-fips
go-fips-1.23 affected chainguard go-fips-1.23
gofumpt affected wolfi gofumpt
gofumpt affected chainguard gofumpt
gogatekeeper affected wolfi gogatekeeper
gogatekeeper affected chainguard gogatekeeper
go-slim-1.23 affected chainguard go-slim-1.23
gosu-fips affected chainguard gosu-fips
go-tools affected chainguard go-tools
go-tools affected wolfi go-tools
gpu-feature-discovery affected chainguard gpu-feature-discovery
gpu-operator-fips-24.9 affected chainguard gpu-operator-fips-24.9
grafana-12.3 affected chainguard grafana-12.3
grafana-12.3 affected wolfi grafana-12.3
grafana-image-renderer affected wolfi grafana-image-renderer
grafana-image-renderer affected chainguard grafana-image-renderer
grafana-pyroscope-1.13 affected wolfi grafana-pyroscope-1.13
grafana-pyroscope-1.13 affected chainguard grafana-pyroscope-1.13
grpc-health-probe affected chainguard grpc-health-probe
grpc-health-probe affected wolfi grpc-health-probe
grpc-health-probe-fips affected chainguard grpc-health-probe-fips
grpcurl-fips affected chainguard grpcurl-fips
harbor-fips-2.11 affected chainguard harbor-fips-2.11
harbor-fips-2.12 affected chainguard harbor-fips-2.12
harbor-fips-2.14 affected chainguard harbor-fips-2.14
harbor-scanner-trivy affected chainguard harbor-scanner-trivy
harbor-scanner-trivy affected wolfi harbor-scanner-trivy
headlamp affected wolfi headlamp
headlamp affected chainguard headlamp
headlamp-fips affected chainguard headlamp-fips
helm-diff-fips affected chainguard helm-diff-fips
helm-operator affected chainguard helm-operator
helm-operator affected wolfi helm-operator
helm-operator-fips affected chainguard helm-operator-fips
helm-push affected wolfi helm-push
helm-push affected chainguard helm-push
hivemind affected wolfi hivemind
hivemind affected chainguard hivemind
hubble-ui-backend-fips affected chainguard hubble-ui-backend-fips
hydra-fips affected chainguard hydra-fips
image-factory-fips affected chainguard image-factory-fips
infinispan-operator affected wolfi infinispan-operator
infinispan-operator affected chainguard infinispan-operator
ingress-nginx-controller-fips-1.12 affected chainguard ingress-nginx-controller-fips-1.12
ipfs-cluster affected wolfi ipfs-cluster
ipfs-cluster affected chainguard ipfs-cluster
k3d affected wolfi k3d
k3d affected chainguard k3d
k6-fips affected chainguard k6-fips
k6-operator-fips affected chainguard k6-operator-fips
k8s-device-plugin affected chainguard k8s-device-plugin
k8s-device-plugin affected wolfi k8s-device-plugin
k8s-device-plugin-fips affected chainguard k8s-device-plugin-fips
k8s_gateway-fips affected chainguard k8s_gateway-fips
k8sgpt affected wolfi k8sgpt
k8sgpt affected chainguard k8sgpt
k8s-metacollector-fips affected chainguard k8s-metacollector-fips
k8ssandra-client affected wolfi k8ssandra-client
k8ssandra-client affected chainguard k8ssandra-client
k8ssandra-client-fips affected chainguard k8ssandra-client-fips
k9s affected chainguard k9s
k9s affected wolfi k9s
kafka-proxy-fips affected chainguard kafka-proxy-fips
kargo affected wolfi kargo
kargo affected chainguard kargo
karma affected wolfi karma
karma affected chainguard karma
karma-fips affected chainguard karma-fips
keda-2.18 affected wolfi keda-2.18
keda-2.18 affected chainguard keda-2.18
keda-fips-2.17 affected chainguard keda-fips-2.17
keda-fips-2.18 affected chainguard keda-fips-2.18
kiali affected wolfi kiali
kiali affected chainguard kiali
kiali-fips affected chainguard kiali-fips
kind affected wolfi kind
kind affected chainguard kind
knative-operator-fips-1.17 affected chainguard knative-operator-fips-1.17
knative-operator-fips-1.18 affected chainguard knative-operator-fips-1.18
ko affected chainguard ko
ko affected wolfi ko
ko-fips affected chainguard ko-fips
ko-fips affected wolfi ko-fips
kpt affected chainguard kpt
kpt affected wolfi kpt
kserve-rest-proxy affected wolfi kserve-rest-proxy
kserve-rest-proxy affected chainguard kserve-rest-proxy
kube-bench affected chainguard kube-bench
kube-bench affected wolfi kube-bench
kubeflow affected chainguard kubeflow
kubeflow affected wolfi kubeflow
kubeflow-fips affected chainguard kubeflow-fips
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-pipelines affected chainguard kubeflow-pipelines
kubeflow-pipelines affected wolfi kubeflow-pipelines
kube-fluentd-operator affected chainguard kube-fluentd-operator
kube-fluentd-operator affected wolfi kube-fluentd-operator
kubelet-csr-approver affected wolfi kubelet-csr-approver
kubelet-csr-approver affected chainguard kubelet-csr-approver
kube-logging-operator-custom-runner-fips affected chainguard kube-logging-operator-custom-runner-fips
kube-metrics-adapter affected chainguard kube-metrics-adapter
kube-metrics-adapter affected wolfi kube-metrics-adapter
kube-metrics-adapter-fips affected chainguard kube-metrics-adapter-fips
kuberay-operator-fips affected chainguard kuberay-operator-fips
kube-rbac-proxy affected chainguard kube-rbac-proxy
kube-rbac-proxy affected wolfi kube-rbac-proxy
kube-rbac-proxy-fips affected chainguard kube-rbac-proxy-fips
kubernetes-csi-driver-nfs-fips affected chainguard kubernetes-csi-driver-nfs-fips
kubernetes-csi-external-attacher-fips affected chainguard kubernetes-csi-external-attacher-fips
kubernetes-csi-external-provisioner-fips affected chainguard kubernetes-csi-external-provisioner-fips
kubernetes-csi-external-resizer affected chainguard kubernetes-csi-external-resizer
kubernetes-csi-external-resizer affected wolfi kubernetes-csi-external-resizer
kubernetes-csi-external-resizer-fips affected chainguard kubernetes-csi-external-resizer-fips
kubernetes-csi-external-snapshotter-fips-8.3 affected chainguard kubernetes-csi-external-snapshotter-fips-8.3
kubernetes-csi-livenessprobe affected chainguard kubernetes-csi-livenessprobe
kubernetes-csi-livenessprobe affected wolfi kubernetes-csi-livenessprobe
kubernetes-csi-livenessprobe-fips-2.10 affected chainguard kubernetes-csi-livenessprobe-fips-2.10
kubernetes-csi-node-driver-registrar-fips-2.14 affected chainguard kubernetes-csi-node-driver-registrar-fips-2.14
kubernetes-csi-node-driver-registrar-fips-2.15 affected chainguard kubernetes-csi-node-driver-registrar-fips-2.15
kubernetes-dashboard-auth affected wolfi kubernetes-dashboard-auth
kubernetes-dashboard-auth affected chainguard kubernetes-dashboard-auth
kubernetes-dashboard-auth-fips affected chainguard kubernetes-dashboard-auth-fips
kubernetes-dashboard-web affected chainguard kubernetes-dashboard-web
kubernetes-dashboard-web affected wolfi kubernetes-dashboard-web
kubernetes-dns-node-cache-fips affected chainguard kubernetes-dns-node-cache-fips
kubernetes-event-exporter affected chainguard kubernetes-event-exporter
kubernetes-event-exporter affected wolfi kubernetes-event-exporter
kubernetes-event-exporter-fips affected chainguard kubernetes-event-exporter-fips
kubernetes-release affected chainguard kubernetes-release
kubernetes-release affected wolfi kubernetes-release
kubernetes-replicator affected wolfi kubernetes-replicator
kubernetes-replicator affected chainguard kubernetes-replicator
kubernetes-replicator-fips affected chainguard kubernetes-replicator-fips
kubo-fips affected chainguard kubo-fips
kustomize-fips affected chainguard kustomize-fips
kyverno-notation-aws-fips affected chainguard kyverno-notation-aws-fips
kyverno-policy-reporter-plugins-kyverno-fips affected chainguard kyverno-policy-reporter-plugins-kyverno-fips
kyverno-policy-reporter-plugins-trivy-fips affected chainguard kyverno-policy-reporter-plugins-trivy-fips
kyverno-policy-reporter-ui-fips affected chainguard kyverno-policy-reporter-ui-fips
localstack affected chainguard localstack
logstash-8.17 affected chainguard logstash-8.17
logstash-8.18 affected chainguard logstash-8.18
logstash-9.0 affected chainguard logstash-9.0
logstash-exporter-fips affected chainguard logstash-exporter-fips
longhorn-backing-image-manager-1.9 affected chainguard longhorn-backing-image-manager-1.9
longhorn-backing-image-manager-fips-1.9 affected chainguard longhorn-backing-image-manager-fips-1.9
longhorn-manager-fips-1.10 affected chainguard longhorn-manager-fips-1.10
longhorn-manager-fips-1.8 affected chainguard longhorn-manager-fips-1.8
longhorn-manager-fips-1.9 affected chainguard longhorn-manager-fips-1.9
longhorn-share-manager-fips-1.8 affected chainguard longhorn-share-manager-fips-1.8
longhorn-share-manager-fips-1.9 affected chainguard longhorn-share-manager-fips-1.9
mariadb-operator-fips affected chainguard mariadb-operator-fips
mesosphere-vsphere-csi affected wolfi mesosphere-vsphere-csi
mesosphere-vsphere-csi affected chainguard mesosphere-vsphere-csi
metrics-agent affected chainguard metrics-agent
metrics-agent affected wolfi metrics-agent
metrics-server affected wolfi metrics-server
metrics-server affected chainguard metrics-server
metrics-server-fips affected chainguard metrics-server-fips
minify-fips affected chainguard minify-fips
mkcert affected wolfi mkcert
mkcert affected chainguard mkcert
mockery affected wolfi mockery
mockery affected chainguard mockery
mockgen affected chainguard mockgen
mockgen affected wolfi mockgen
mongodb-k8s-operator-version-upgrade-post-start-hook affected chainguard mongodb-k8s-operator-version-upgrade-post-start-hook
mongodb-kubernetes-operator affected chainguard mongodb-kubernetes-operator
mongodb-kubernetes-operator affected wolfi mongodb-kubernetes-operator
mongo-tools affected chainguard mongo-tools
mongo-tools affected wolfi mongo-tools
mongo-tools-fips affected chainguard mongo-tools-fips
monstache affected chainguard monstache
mountpoint-s3-csi-driver-2.2 affected wolfi mountpoint-s3-csi-driver-2.2
mountpoint-s3-csi-driver-2.2 affected chainguard mountpoint-s3-csi-driver-2.2
nats-fips affected chainguard nats-fips
nats-server affected chainguard nats-server
nats-server affected wolfi nats-server
nemo affected chainguard nemo
net-kourier-fips-1.17 affected chainguard net-kourier-fips-1.17
net-kourier-fips-1.18 affected chainguard net-kourier-fips-1.18
neuvector-dbgen-fips affected chainguard neuvector-dbgen-fips
newrelic-fluent-bit-output-fips affected chainguard newrelic-fluent-bit-output-fips
newrelic-infrastructure-agent affected chainguard newrelic-infrastructure-agent
newrelic-infrastructure-agent affected wolfi newrelic-infrastructure-agent
newrelic-infrastructure-agent-fips affected chainguard newrelic-infrastructure-agent-fips
newrelic-nri-kube-events affected chainguard newrelic-nri-kube-events
newrelic-nri-kube-events affected wolfi newrelic-nri-kube-events
newrelic-nri-kube-events-fips affected chainguard newrelic-nri-kube-events-fips
nfpm affected wolfi nfpm
nfpm affected chainguard nfpm
nfs-subdir-external-provisioner-fips affected chainguard nfs-subdir-external-provisioner-fips
nginx-prometheus-exporter-fips affected chainguard nginx-prometheus-exporter-fips
node-feature-discovery-fips-0.16 affected chainguard node-feature-discovery-fips-0.16
node-problem-detector-fips-0.8 affected chainguard node-problem-detector-fips-0.8
nova affected chainguard nova
nova affected wolfi nova
nova-fips affected chainguard nova-fips
nri-apache affected wolfi nri-apache
nri-apache affected chainguard nri-apache
nri-consul affected wolfi nri-consul
nri-consul affected chainguard nri-consul
nri-couchbase affected wolfi nri-couchbase
nri-couchbase affected chainguard nri-couchbase
nri-discovery-kubernetes-fips affected chainguard nri-discovery-kubernetes-fips
nri-f5 affected wolfi nri-f5
nri-f5 affected chainguard nri-f5
nri-haproxy affected chainguard nri-haproxy
nri-haproxy affected wolfi nri-haproxy
nri-jmx affected chainguard nri-jmx
nri-jmx affected wolfi nri-jmx
nri-kafka affected wolfi nri-kafka
nri-kafka affected chainguard nri-kafka
nri-mssql affected wolfi nri-mssql
nri-mssql affected chainguard nri-mssql
nri-nagios affected wolfi nri-nagios
nri-nagios affected chainguard nri-nagios
nri-rabbitmq affected chainguard nri-rabbitmq
nri-rabbitmq affected wolfi nri-rabbitmq
nvidia-container-toolkit affected chainguard nvidia-container-toolkit
nvidia-container-toolkit affected wolfi nvidia-container-toolkit
nvidia-nsight-compute-12.8 affected chainguard nvidia-nsight-compute-12.8
nvidia-nsight-compute-12.9 affected chainguard nvidia-nsight-compute-12.9
nvidia-nsight-compute-13.0 affected chainguard nvidia-nsight-compute-13.0
nvidia-nsight-compute-13.1 affected chainguard nvidia-nsight-compute-13.1
nvidia-nsight-compute-13.2 affected chainguard nvidia-nsight-compute-13.2
oauth2-proxy affected wolfi oauth2-proxy
oauth2-proxy affected chainguard oauth2-proxy
octo-sts affected chainguard octo-sts
octo-sts affected wolfi octo-sts
opa affected wolfi opa
opa affected chainguard opa
opa-envoy affected wolfi opa-envoy
opa-envoy affected chainguard opa-envoy
opa-fips affected chainguard opa-fips
opa-fips-envoy affected chainguard opa-fips-envoy
opencost affected wolfi opencost
opencost affected chainguard opencost
opensearch-k8s-operator affected wolfi opensearch-k8s-operator
opensearch-k8s-operator affected chainguard opensearch-k8s-operator
opentelemetry-collector affected wolfi opentelemetry-collector
opentelemetry-collector affected chainguard opentelemetry-collector
opentelemetry-collector-contrib affected wolfi opentelemetry-collector-contrib
opentelemetry-collector-contrib affected chainguard opentelemetry-collector-contrib
opentofu-1.10 affected chainguard opentofu-1.10
opentofu-1.10 affected wolfi opentofu-1.10
opentofu-fips-1.10 affected chainguard opentofu-fips-1.10
opentofu-fips-1.7 affected chainguard opentofu-fips-1.7
opentofu-fips-1.8 affected chainguard opentofu-fips-1.8
opentofu-fips-1.9 affected chainguard opentofu-fips-1.9
osv-scanner affected chainguard osv-scanner
osv-scanner affected wolfi osv-scanner
overmind affected chainguard overmind
overmind affected wolfi overmind
paranoia affected wolfi paranoia
paranoia affected chainguard paranoia
pg_timetable affected chainguard pg_timetable
pg_timetable affected wolfi pg_timetable
pg_timetable-fips affected chainguard pg_timetable-fips
php-fpm_exporter affected wolfi php-fpm_exporter
php-fpm_exporter affected chainguard php-fpm_exporter
plugin-barman-cloud-fips affected chainguard plugin-barman-cloud-fips
pluto affected chainguard pluto
pluto affected wolfi pluto
pluto-fips affected chainguard pluto-fips
polaris affected wolfi polaris
polaris affected chainguard polaris
polaris-fips affected chainguard polaris-fips
policy-controller affected chainguard policy-controller
policy-controller affected wolfi policy-controller
portieris affected wolfi portieris
portieris affected chainguard portieris
portieris-fips affected chainguard portieris-fips
postgres-operator affected chainguard postgres-operator
postgres-operator affected wolfi postgres-operator
postgres-operator-fips affected chainguard postgres-operator-fips
prometheus-adapter affected chainguard prometheus-adapter
prometheus-adapter affected wolfi prometheus-adapter
prometheus-adapter-fips-0.10 affected chainguard prometheus-adapter-fips-0.10
prometheus-beat-exporter-fips affected chainguard prometheus-beat-exporter-fips
prometheus-mysqld-exporter-fips affected chainguard prometheus-mysqld-exporter-fips
prometheus-node-exporter-fips affected chainguard prometheus-node-exporter-fips
prometheus-operator affected wolfi prometheus-operator
prometheus-operator affected chainguard prometheus-operator
prometheus-pgbouncer-exporter-fips affected chainguard prometheus-pgbouncer-exporter-fips
prometheus-podman-exporter-fips affected chainguard prometheus-podman-exporter-fips
prometheus-postgres-exporter-fips affected chainguard prometheus-postgres-exporter-fips
prometheus-statsd-exporter-fips affected chainguard prometheus-statsd-exporter-fips
promxy affected chainguard promxy
promxy affected wolfi promxy
promxy-fips affected chainguard promxy-fips
protoc-gen-go affected chainguard protoc-gen-go
protoc-gen-go affected wolfi protoc-gen-go
pulumi-kubernetes-operator affected wolfi pulumi-kubernetes-operator
pulumi-kubernetes-operator affected chainguard pulumi-kubernetes-operator
quic-go-fips affected chainguard quic-go-fips
rabbitmq-cluster-operator-fips affected chainguard rabbitmq-cluster-operator-fips
rabbitmq-messaging-topology-operator affected wolfi rabbitmq-messaging-topology-operator
rabbitmq-messaging-topology-operator affected chainguard rabbitmq-messaging-topology-operator
rancher-2.12 affected wolfi rancher-2.12
rancher-2.12 affected chainguard rancher-2.12
rancher-helm-3 affected chainguard rancher-helm-3
rancher-helm-3 affected wolfi rancher-helm-3
rancher-loglevel affected wolfi rancher-loglevel
rancher-loglevel affected chainguard rancher-loglevel
rancher-security-scan-0.6 affected chainguard rancher-security-scan-0.6
rancher-security-scan-0.6 affected wolfi rancher-security-scan-0.6
rancher-security-scan-fips-0.5 affected chainguard rancher-security-scan-fips-0.5
rancher-system-agent affected chainguard rancher-system-agent
rancher-system-agent affected wolfi rancher-system-agent
rancher-telemetry affected chainguard rancher-telemetry
rancher-telemetry affected wolfi rancher-telemetry
rancher-webhook-fips-0.5 affected chainguard rancher-webhook-fips-0.5
ratify-fips affected chainguard ratify-fips
redis-operator-fips affected chainguard redis-operator-fips
regclient affected chainguard regclient
regclient affected wolfi regclient
rekor-fips affected chainguard rekor-fips
render-template affected chainguard render-template
render-template affected wolfi render-template
rke2-cloud-provider affected chainguard rke2-cloud-provider
rke2-cloud-provider affected wolfi rke2-cloud-provider
rke2-cloud-provider-fips affected chainguard rke2-cloud-provider-fips
rook-fips affected chainguard rook-fips
rootlesskit affected wolfi rootlesskit
rootlesskit affected chainguard rootlesskit
rootlesskit-fips affected chainguard rootlesskit-fips
runc affected chainguard runc
runc affected wolfi runc
runc-fips affected chainguard runc-fips
s5cmd affected wolfi s5cmd
s5cmd affected chainguard s5cmd
sbom-scorecard affected wolfi sbom-scorecard
sbom-scorecard affected chainguard sbom-scorecard
scanner-test-golang-vulnerability-fixed affected chainguard scanner-test-golang-vulnerability-fixed
sealed-secrets-fips affected chainguard sealed-secrets-fips
seaweedfs affected chainguard seaweedfs
seaweedfs affected wolfi seaweedfs
secrets-store-csi-driver affected wolfi secrets-store-csi-driver
secrets-store-csi-driver affected chainguard secrets-store-csi-driver
secrets-store-csi-driver-provider-aws-fips affected chainguard secrets-store-csi-driver-provider-aws-fips
secrets-store-csi-driver-provider-azure affected wolfi secrets-store-csi-driver-provider-azure
secrets-store-csi-driver-provider-azure affected chainguard secrets-store-csi-driver-provider-azure
sftpgo-plugin-eventsearch affected chainguard sftpgo-plugin-eventsearch
sftpgo-plugin-eventsearch affected wolfi sftpgo-plugin-eventsearch
sftpgo-plugin-eventstore affected chainguard sftpgo-plugin-eventstore
sftpgo-plugin-eventstore affected wolfi sftpgo-plugin-eventstore
sftpgo-plugin-kms affected chainguard sftpgo-plugin-kms
sftpgo-plugin-kms affected wolfi sftpgo-plugin-kms
sftpgo-plugin-pubsub affected wolfi sftpgo-plugin-pubsub
sftpgo-plugin-pubsub affected chainguard sftpgo-plugin-pubsub
shfmt affected wolfi shfmt
shfmt affected chainguard shfmt
sigstore-scaffolding-fips affected chainguard sigstore-scaffolding-fips
skaffold affected chainguard skaffold
skaffold affected wolfi skaffold
slsa-verifier affected wolfi slsa-verifier
slsa-verifier affected chainguard slsa-verifier
smarter-device-manager-fips affected chainguard smarter-device-manager-fips
snyk-cli affected chainguard snyk-cli
snyk-cli affected wolfi snyk-cli
sonobuoy affected chainguard sonobuoy
sonobuoy affected wolfi sonobuoy
sonobuoy-fips affected chainguard sonobuoy-fips
sops affected chainguard sops
sops affected wolfi sops
sops-fips affected chainguard sops-fips
spark-operator-fips-2.2 affected chainguard spark-operator-fips-2.2
spicedb-fips affected chainguard spicedb-fips
spicedb-operator affected wolfi spicedb-operator
spicedb-operator affected chainguard spicedb-operator
spicedb-operator-fips affected chainguard spicedb-operator-fips
spiffe-helper-fips affected chainguard spiffe-helper-fips
spire-controller-manager affected chainguard spire-controller-manager
spire-controller-manager affected wolfi spire-controller-manager
spire-server-fips affected chainguard spire-server-fips
splunk-otel-collector affected wolfi splunk-otel-collector
splunk-otel-collector affected chainguard splunk-otel-collector
spqr affected chainguard spqr
spqr affected wolfi spqr
sql_exporter-fips affected chainguard sql_exporter-fips
src affected wolfi src
src affected chainguard src
src-fingerprint-fips affected chainguard src-fingerprint-fips
stakater-reloader affected wolfi stakater-reloader
stakater-reloader affected chainguard stakater-reloader
stakater-reloader-0.0.119 affected chainguard stakater-reloader-0.0.119
stakater-reloader-0.0.128 affected chainguard stakater-reloader-0.0.128
stakater-reloader-fips affected chainguard stakater-reloader-fips
steampipe affected chainguard steampipe
steampipe affected wolfi steampipe
supercronic affected chainguard supercronic
supercronic affected wolfi supercronic
syft-fips affected chainguard syft-fips
task affected wolfi task
task affected chainguard task
telegraf-1.33 affected wolfi telegraf-1.33
telegraf-1.33 affected chainguard telegraf-1.33
telegraf-1.34 affected chainguard telegraf-1.34
telegraf-1.34 affected wolfi telegraf-1.34
tempo affected wolfi tempo
tempo affected chainguard tempo
temporal affected wolfi temporal
temporal affected chainguard temporal
temporal-fips affected chainguard temporal-fips
temporal-server affected wolfi temporal-server
temporal-server affected chainguard temporal-server
terraform affected wolfi terraform
terraform affected chainguard terraform
terraform-1.7 affected chainguard terraform-1.7
terraform-1.8 affected chainguard terraform-1.8
terraform-docs affected wolfi terraform-docs
terraform-docs affected chainguard terraform-docs
terraform-ls affected chainguard terraform-ls
terraform-mcp-server affected chainguard terraform-mcp-server
terraform-mcp-server affected wolfi terraform-mcp-server
terraform-provider-azuread affected chainguard terraform-provider-azuread
terraform-provider-azuread affected wolfi terraform-provider-azuread
terraform-provider-google affected chainguard terraform-provider-google
terraform-provider-google affected wolfi terraform-provider-google
terraform-provider-google-fips affected chainguard terraform-provider-google-fips
terraform-provider-random-fips affected chainguard terraform-provider-random-fips
terraform-provider-sendgrid affected wolfi terraform-provider-sendgrid
terraform-provider-sendgrid affected chainguard terraform-provider-sendgrid
terraform-provider-sendgrid-fips affected chainguard terraform-provider-sendgrid-fips
terraform-provider-time affected wolfi terraform-provider-time
terraform-provider-time affected chainguard terraform-provider-time
terraform-provider-tls-fips affected chainguard terraform-provider-tls-fips
tetragon-fips affected chainguard tetragon-fips
thanos-operator affected chainguard thanos-operator
thanos-operator affected wolfi thanos-operator
thanos-operator-fips affected chainguard thanos-operator-fips
tigera-operator-1.28 affected chainguard tigera-operator-1.28
tigera-operator-fips-1.29 affected chainguard tigera-operator-fips-1.29
tigera-operator-fips-1.34 affected chainguard tigera-operator-fips-1.34
tigera-operator-fips-1.36 affected chainguard tigera-operator-fips-1.36
tigera-operator-fips-1.37 affected chainguard tigera-operator-fips-1.37
tigera-operator-fips-1.40 affected chainguard tigera-operator-fips-1.40
timescaledb-tune affected wolfi timescaledb-tune
timescaledb-tune affected chainguard timescaledb-tune
traefik-fips-3.4 affected chainguard traefik-fips-3.4
trillian-fips affected chainguard trillian-fips
trivy-operator-fips affected chainguard trivy-operator-fips
trust-manager-fips affected chainguard trust-manager-fips
vault-1.16 affected chainguard vault-1.16
vault-1.17 affected chainguard vault-1.17
vault-1.18 affected chainguard vault-1.18
vault-1.19 affected chainguard vault-1.19
vault-1.21 affected chainguard vault-1.21
vault-fips-1.19 affected chainguard vault-fips-1.19
vault-k8s-fips affected chainguard vault-k8s-fips
velero-fips affected chainguard velero-fips
velero-plugin-for-aws-fips affected chainguard velero-plugin-for-aws-fips
velero-plugin-for-csi-fips affected chainguard velero-plugin-for-csi-fips
vendir-fips affected chainguard vendir-fips
vertical-pod-autoscaler-fips affected chainguard vertical-pod-autoscaler-fips
vgpu-util affected chainguard vgpu-util
wave-fips affected chainguard wave-fips
whereabouts-fips affected chainguard whereabouts-fips
x509-certificate-exporter-fips affected chainguard x509-certificate-exporter-fips
yq-fips affected chainguard yq-fips
ytt-fips affected chainguard ytt-fips
Upstream advisory

AZL-71447

Open SourcePoC exploit2025-12-03

CVE-2025-61727 affecting package golang 1.26.0-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

AZL-71635

Open SourcePoC exploit2025-12-03

CVE-2025-61727 affecting package msft-golang 1.24.13-1

Affected products

ProductStatusVendorPackageEcosystem
msft-golang affected Azure Linux:2 msft-golang
Upstream advisory

AZL-78927

Open SourcePoC exploit2025-12-03

CVE-2025-61727 affecting package golang 1.25.7-1

Affected products

ProductStatusVendorPackageEcosystem
golang affected Azure Linux:3 golang
Upstream advisory

DEBIAN-CVE-2025-61727

Open SourcePoC exploitMEDIUM2025-12-03

DEBIAN-CVE-2025-61727

Affected products

ProductStatusVendorPackageEcosystem
golang-1.15 affected Debian:11 golang-1.15
golang-1.19 affected Debian:12 golang-1.19
golang-1.24 affected Debian:13 golang-1.24
golang-1.25 affected Debian:14 golang-1.25
Upstream advisory

ECHO-1a65-69ef-ad72

Open SourcePoC exploit2025-12-02

ECHO-1a65-69ef-ad72

Affected products

ProductStatusVendorPackageEcosystem
golang-1.24 affected Echo golang-1.24
Upstream advisory

CVE-2025-61727

GooglePoC exploitMEDIUM2025-12-02

An excluded subdomain constraint in a certificate chain does not restrict the usage of wildcard SANs in the leaf certificate. For example a constraint that excludes the subdomain test.example.com does not prevent a leaf certificate from claiming the SA...

CVEs:CVE-2025-61727

Affected products

ProductStatusVendorPackageEcosystem
go affected golang
Upstream advisory

GO-2025-4175

Open SourcePoC exploit2025-12-02

Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509

Affected products

ProductStatusVendorPackageEcosystem
actions-runner-controller-fips affected chainguard actions-runner-controller-fips
amazon-cloudwatch-agent-fips affected chainguard amazon-cloudwatch-agent-fips
amazon-cloudwatch-agent-operator-fips affected chainguard amazon-cloudwatch-agent-operator-fips
amazon-vpc-cni-plugins-fips affected chainguard amazon-vpc-cni-plugins-fips
apm-server-fips-8.17 affected chainguard apm-server-fips-8.17
apm-server-fips-8.18 affected chainguard apm-server-fips-8.18
argo-cd-fips-3.0 affected chainguard argo-cd-fips-3.0
argo-cd-fips-3.2 affected chainguard argo-cd-fips-3.2
argo-rollouts-fips affected chainguard argo-rollouts-fips
authservice-fips affected chainguard authservice-fips
aws-application-networking-k8s-fips affected chainguard aws-application-networking-k8s-fips
aws-ebs-csi-driver-fips-1.49 affected chainguard aws-ebs-csi-driver-fips-1.49
aws-ebs-csi-driver-fips-1.50 affected chainguard aws-ebs-csi-driver-fips-1.50
aws-ebs-csi-driver-fips-1.53 affected chainguard aws-ebs-csi-driver-fips-1.53
aws-efs-csi-driver-fips affected chainguard aws-efs-csi-driver-fips
aws-eks-pod-identity-agent-fips affected chainguard aws-eks-pod-identity-agent-fips
aws-flb-cloudwatch-fips affected chainguard aws-flb-cloudwatch-fips
aws-flb-firehose-fips affected chainguard aws-flb-firehose-fips
aws-iam-authenticator-fips affected chainguard aws-iam-authenticator-fips
aws-load-balancer-controller-fips affected chainguard aws-load-balancer-controller-fips
aws-nuke-fips affected chainguard aws-nuke-fips
aws-privateca-issuer-fips affected chainguard aws-privateca-issuer-fips
aws-signer-notation-plugin-fips affected chainguard aws-signer-notation-plugin-fips
aws-sigv4-proxy-fips affected chainguard aws-sigv4-proxy-fips
azuredisk-csi-fips-1.31 affected chainguard azuredisk-csi-fips-1.31
azuredisk-csi-fips-1.32 affected chainguard azuredisk-csi-fips-1.32
azurefile-csi-fips-1.30 affected chainguard azurefile-csi-fips-1.30
azurefile-csi-fips-1.32 affected chainguard azurefile-csi-fips-1.32
azure-service-operator-fips affected chainguard azure-service-operator-fips
bank-vaults-fips affected chainguard bank-vaults-fips
beats-7 affected chainguard beats-7
boring-registry-fips affected chainguard boring-registry-fips
cass-operator-fips affected chainguard cass-operator-fips
ceph-csi-operator-fips affected chainguard ceph-csi-operator-fips
cert-exporter-fips affected chainguard cert-exporter-fips
cert-manager-csi-driver-fips affected chainguard cert-manager-csi-driver-fips
cert-manager-fips-1.17 affected chainguard cert-manager-fips-1.17
cert-manager-fips-1.18 affected chainguard cert-manager-fips-1.18
cert-manager-google-cas-issuer-fips affected chainguard cert-manager-google-cas-issuer-fips
cert-manager-webhook-pdns affected wolfi cert-manager-webhook-pdns
cert-manager-webhook-pdns affected chainguard cert-manager-webhook-pdns
cfssl-fips affected chainguard cfssl-fips
chartmuseum-fips affected chainguard chartmuseum-fips
chisel affected chainguard chisel
chisel affected wolfi chisel
chisel-fips affected chainguard chisel-fips
cilium-envoy-fips-1.15 affected chainguard cilium-envoy-fips-1.15
cilium-envoy-fips-1.16 affected chainguard cilium-envoy-fips-1.16
cilium-envoy-fips-1.17 affected chainguard cilium-envoy-fips-1.17
cilium-envoy-fips-1.18 affected chainguard cilium-envoy-fips-1.18
cinder-csi-plugin-fips affected chainguard cinder-csi-plugin-fips
cloudbeat-fips-8.17 affected chainguard cloudbeat-fips-8.17
cloudbeat-fips-8.18 affected chainguard cloudbeat-fips-8.18
cloudbeat-fips-8.19 affected chainguard cloudbeat-fips-8.19
cloudbeat-fips-9.1 affected chainguard cloudbeat-fips-9.1
cloudnative-pg-fips affected chainguard cloudnative-pg-fips
cloudprober-fips affected chainguard cloudprober-fips
cloud-provider-aws-fips-1.34 affected chainguard cloud-provider-aws-fips-1.34
cloud-provider-azure-fips-1.27 affected chainguard cloud-provider-azure-fips-1.27
cloud-provider-azure-fips-1.29 affected chainguard cloud-provider-azure-fips-1.29
cloud-provider-azure-fips-1.30 affected chainguard cloud-provider-azure-fips-1.30
cloud-provider-azure-fips-1.31 affected chainguard cloud-provider-azure-fips-1.31
cloud-provider-azure-fips-1.33 affected chainguard cloud-provider-azure-fips-1.33
cloud-provider-azure-fips-1.34 affected chainguard cloud-provider-azure-fips-1.34
cluster-api-aws-controller-fips affected chainguard cluster-api-aws-controller-fips
cluster-api-fips-1.11 affected chainguard cluster-api-fips-1.11
cluster-api-gcp-controller-fips affected chainguard cluster-api-gcp-controller-fips
cluster-autoscaler-fips-1.31 affected chainguard cluster-autoscaler-fips-1.31
cluster-autoscaler-fips-1.32 affected chainguard cluster-autoscaler-fips-1.32
cluster-proportional-autoscaler-fips affected chainguard cluster-proportional-autoscaler-fips
configmap-reload-fips affected chainguard configmap-reload-fips
configmap-reload-fips-0.11 affected chainguard configmap-reload-fips-0.11
configmap-reload-fips-0.12 affected chainguard configmap-reload-fips-0.12
conftest-fips affected chainguard conftest-fips
consul-1.20 affected chainguard consul-1.20
consul-1.21 affected chainguard consul-1.21
consul-1.22 affected chainguard consul-1.22
consul-fips-1.19 affected chainguard consul-fips-1.19
consul-k8s-fips-1.3 affected chainguard consul-k8s-fips-1.3
consul-k8s-fips-1.4 affected chainguard consul-k8s-fips-1.4
consul-k8s-fips-1.5 affected chainguard consul-k8s-fips-1.5
consul-k8s-fips-1.6 affected chainguard consul-k8s-fips-1.6
contour-fips-1.30 affected chainguard contour-fips-1.30
contour-fips-1.31 affected chainguard contour-fips-1.31
contour-fips-1.32 affected chainguard contour-fips-1.32
coredns-fips-1.12 affected chainguard coredns-fips-1.12
coredns-fips-1.13 affected chainguard coredns-fips-1.13
crossplane-aws-provider-fips affected chainguard crossplane-aws-provider-fips
crossplane-fips-1.20 affected chainguard crossplane-fips-1.20
crossplane-fips-2.0 affected chainguard crossplane-fips-2.0
crossplane-function-environment-configs-fips affected chainguard crossplane-function-environment-configs-fips
crossplane-provider-gitlab-fips affected chainguard crossplane-provider-gitlab-fips
crossplane-provider-sql-fips affected chainguard crossplane-provider-sql-fips
crossplane-provider-terraform-fips affected chainguard crossplane-provider-terraform-fips
cue-fips affected chainguard cue-fips
custom-pod-autoscaler-fips affected chainguard custom-pod-autoscaler-fips
custom-pod-autoscaler-operator-fips affected chainguard custom-pod-autoscaler-operator-fips
dataplaneapi-fips affected chainguard dataplaneapi-fips
deck-fips affected chainguard deck-fips
dex-fips affected chainguard dex-fips
distribution-fips affected chainguard distribution-fips
docker-credential-acr-env-fips affected chainguard docker-credential-acr-env-fips
dragonfly-operator-fips affected chainguard dragonfly-operator-fips
dynamic-localpv-provisioner-fips affected chainguard dynamic-localpv-provisioner-fips
eck-operator-fips affected chainguard eck-operator-fips
eks-distro-fips-1.31 affected chainguard eks-distro-fips-1.31
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
etcd-3.4 affected chainguard etcd-3.4
etcd-fips-3.4 affected chainguard etcd-fips-3.4
etcd-fips-3.5 affected chainguard etcd-fips-3.5
etcd-fips-3.6 affected chainguard etcd-fips-3.6
external-dns-fips-0.18 affected chainguard external-dns-fips-0.18
external-secrets-operator-fips-0.20 affected chainguard external-secrets-operator-fips-0.20
external-secrets-operator-fips-1.0 affected chainguard external-secrets-operator-fips-1.0
falcoctl-fips affected chainguard falcoctl-fips
falcoctl-fips-0.4 affected chainguard falcoctl-fips-0.4
falco-exporter-fips affected chainguard falco-exporter-fips
falco-no-driver affected wolfi falco-no-driver
falco-no-driver affected chainguard falco-no-driver
flannel-cni-plugin-fips affected chainguard flannel-cni-plugin-fips
fleet-server-8.17 affected chainguard fleet-server-8.17
fleet-server-8.18 affected chainguard fleet-server-8.18
fleet-server-8.19 affected chainguard fleet-server-8.19
fleet-server-9.0 affected chainguard fleet-server-9.0
fleet-server-fips-8.18 affected chainguard fleet-server-fips-8.18
fleet-server-fips-8.19 affected chainguard fleet-server-fips-8.19
fleet-server-fips-9.0 affected chainguard fleet-server-fips-9.0
fleet-server-fips-9.2 affected chainguard fleet-server-fips-9.2
fluent-operator-fips affected chainguard fluent-operator-fips
fluxcd-kustomize-mutating-webhook-fips affected chainguard fluxcd-kustomize-mutating-webhook-fips
flux-helm-controller-fips affected chainguard flux-helm-controller-fips
flux-image-automation-controller-fips affected chainguard flux-image-automation-controller-fips
flux-image-reflector-controller-fips affected chainguard flux-image-reflector-controller-fips
flux-kustomize-controller-fips affected chainguard flux-kustomize-controller-fips
flux-notification-controller-fips affected chainguard flux-notification-controller-fips
flux-source-controller-fips affected chainguard flux-source-controller-fips
frp affected wolfi frp
frp affected chainguard frp
gatekeeper-fips-3.20 affected chainguard gatekeeper-fips-3.20
gcp-compute-persistent-disk-csi-driver-fips-1.12 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.12
gcp-compute-persistent-disk-csi-driver-fips-1.15 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.15
gcp-compute-persistent-disk-csi-driver-fips-1.16 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.16
gcp-compute-persistent-disk-csi-driver-fips-1.18 affected chainguard gcp-compute-persistent-disk-csi-driver-fips-1.18
gitaly-fips-18.6 affected chainguard gitaly-fips-18.6
gitea affected wolfi gitea
gitea affected chainguard gitea
github-mcp-server affected wolfi github-mcp-server
github-mcp-server affected chainguard github-mcp-server
gitlab-cng-18.6 affected chainguard gitlab-cng-18.6
gitlab-kas-fips-18.6 affected chainguard gitlab-kas-fips-18.6
gitlab-rails-ce-fips-18.1 affected chainguard gitlab-rails-ce-fips-18.1
gitlab-rails-ce-fips-18.3 affected chainguard gitlab-rails-ce-fips-18.3
gitlab-workhorse-ce-18.1 affected chainguard gitlab-workhorse-ce-18.1
gitlab-workhorse-ce-18.2 affected chainguard gitlab-workhorse-ce-18.2
gitlab-workhorse-ce-18.3 affected chainguard gitlab-workhorse-ce-18.3
gitlab-workhorse-ce-18.4 affected chainguard gitlab-workhorse-ce-18.4
gitlab-workhorse-ce-18.5 affected chainguard gitlab-workhorse-ce-18.5
gitlab-workhorse-ce-18.6 affected chainguard gitlab-workhorse-ce-18.6
gitlab-workhorse-ce-fips-18.1 affected chainguard gitlab-workhorse-ce-fips-18.1
gitlab-workhorse-ce-fips-18.2 affected chainguard gitlab-workhorse-ce-fips-18.2
gitlab-workhorse-ce-fips-18.3 affected chainguard gitlab-workhorse-ce-fips-18.3
gitlab-workhorse-ce-fips-18.4 affected chainguard gitlab-workhorse-ce-fips-18.4
gitlab-workhorse-ce-fips-18.5 affected chainguard gitlab-workhorse-ce-fips-18.5
gitlab-workhorse-ce-fips-18.6 affected chainguard gitlab-workhorse-ce-fips-18.6
git-lfs-fips affected chainguard git-lfs-fips
gitness affected wolfi gitness
gitness affected chainguard gitness
gitsign affected chainguard gitsign
gitsign affected wolfi gitsign
git-sync-fips affected chainguard git-sync-fips
go-discover affected wolfi go-discover
go-discover affected chainguard go-discover
go-discover-fips affected chainguard go-discover-fips
go-fips-1.23 affected chainguard go-fips-1.23
gofumpt affected chainguard gofumpt
gofumpt affected wolfi gofumpt
gogatekeeper affected chainguard gogatekeeper
gogatekeeper affected wolfi gogatekeeper
gosu-fips affected chainguard gosu-fips
go-tools affected wolfi go-tools
go-tools affected chainguard go-tools
gpu-operator-fips-24.9 affected chainguard gpu-operator-fips-24.9
grafana-12.3 affected chainguard grafana-12.3
grafana-12.3 affected wolfi grafana-12.3
grafana-image-renderer affected chainguard grafana-image-renderer
grafana-image-renderer affected wolfi grafana-image-renderer
grafana-pyroscope-1.13 affected chainguard grafana-pyroscope-1.13
grpc-health-probe affected wolfi grpc-health-probe
grpc-health-probe affected chainguard grpc-health-probe
grpc-health-probe-fips affected chainguard grpc-health-probe-fips
grpcurl-fips affected chainguard grpcurl-fips
harbor-fips-2.11 affected chainguard harbor-fips-2.11
harbor-fips-2.12 affected chainguard harbor-fips-2.12
harbor-fips-2.14 affected chainguard harbor-fips-2.14
harbor-scanner-trivy affected wolfi harbor-scanner-trivy
harbor-scanner-trivy affected chainguard harbor-scanner-trivy
headlamp affected wolfi headlamp
headlamp affected chainguard headlamp
headlamp-fips affected chainguard headlamp-fips
helm-diff-fips affected chainguard helm-diff-fips
helm-operator affected wolfi helm-operator
helm-operator affected chainguard helm-operator
helm-operator-fips affected chainguard helm-operator-fips
helm-push affected chainguard helm-push
helm-push affected wolfi helm-push
hivemind affected wolfi hivemind
hivemind affected chainguard hivemind
hubble-ui-backend-fips affected chainguard hubble-ui-backend-fips
hydra-fips affected chainguard hydra-fips
image-factory-fips affected chainguard image-factory-fips
infinispan-operator affected chainguard infinispan-operator
infinispan-operator affected wolfi infinispan-operator
ingress-nginx-controller-fips-1.12 affected chainguard ingress-nginx-controller-fips-1.12
ipfs-cluster affected chainguard ipfs-cluster
ipfs-cluster affected wolfi ipfs-cluster
k3d affected wolfi k3d
k3d affected chainguard k3d
k6-fips affected chainguard k6-fips
k6-operator-fips affected chainguard k6-operator-fips
k8s-device-plugin affected chainguard k8s-device-plugin
k8s-device-plugin affected wolfi k8s-device-plugin
k8s-device-plugin-fips affected chainguard k8s-device-plugin-fips
k8s_gateway-fips affected chainguard k8s_gateway-fips
k8sgpt affected wolfi k8sgpt
k8sgpt affected chainguard k8sgpt
k8s-metacollector-fips affected chainguard k8s-metacollector-fips
k8ssandra-client affected wolfi k8ssandra-client
k8ssandra-client affected chainguard k8ssandra-client
k8ssandra-client-fips affected chainguard k8ssandra-client-fips
k9s affected wolfi k9s
k9s affected chainguard k9s
kafka-proxy-fips affected chainguard kafka-proxy-fips
kargo affected chainguard kargo
kargo affected wolfi kargo
karma affected chainguard karma
karma affected wolfi karma
karma-fips affected chainguard karma-fips
keda-2.18 affected chainguard keda-2.18
keda-fips-2.17 affected chainguard keda-fips-2.17
keda-fips-2.18 affected chainguard keda-fips-2.18
kiali affected wolfi kiali
kiali affected chainguard kiali
kiali-fips affected chainguard kiali-fips
kind affected wolfi kind
kind affected chainguard kind
knative-operator-fips-1.17 affected chainguard knative-operator-fips-1.17
knative-operator-fips-1.18 affected chainguard knative-operator-fips-1.18
ko affected wolfi ko
ko affected chainguard ko
ko-fips affected chainguard ko-fips
kpt affected chainguard kpt
kpt affected wolfi kpt
kserve-rest-proxy affected chainguard kserve-rest-proxy
kserve-rest-proxy affected wolfi kserve-rest-proxy
kube-bench affected chainguard kube-bench
kube-bench affected wolfi kube-bench
kubeflow affected chainguard kubeflow
kubeflow affected wolfi kubeflow
kubeflow-fips affected chainguard kubeflow-fips
kubeflow-katib affected chainguard kubeflow-katib
kubeflow-katib affected wolfi kubeflow-katib
kubeflow-pipelines affected wolfi kubeflow-pipelines
kubeflow-pipelines affected chainguard kubeflow-pipelines
kube-fluentd-operator affected wolfi kube-fluentd-operator
kube-fluentd-operator affected chainguard kube-fluentd-operator
kubelet-csr-approver affected wolfi kubelet-csr-approver
kubelet-csr-approver affected chainguard kubelet-csr-approver
kube-logging-operator-custom-runner-fips affected chainguard kube-logging-operator-custom-runner-fips
kube-metrics-adapter affected chainguard kube-metrics-adapter
kube-metrics-adapter affected wolfi kube-metrics-adapter
kube-metrics-adapter-fips affected chainguard kube-metrics-adapter-fips
kuberay-operator-fips affected chainguard kuberay-operator-fips
kube-rbac-proxy affected wolfi kube-rbac-proxy
kube-rbac-proxy affected chainguard kube-rbac-proxy
kube-rbac-proxy-fips affected chainguard kube-rbac-proxy-fips
kubernetes-csi-driver-nfs-fips affected chainguard kubernetes-csi-driver-nfs-fips
kubernetes-csi-external-attacher-fips affected chainguard kubernetes-csi-external-attacher-fips
kubernetes-csi-external-provisioner-fips affected chainguard kubernetes-csi-external-provisioner-fips
kubernetes-csi-external-resizer affected chainguard kubernetes-csi-external-resizer
kubernetes-csi-external-resizer affected wolfi kubernetes-csi-external-resizer
kubernetes-csi-external-resizer-fips affected chainguard kubernetes-csi-external-resizer-fips
kubernetes-csi-external-snapshotter-fips-8.3 affected chainguard kubernetes-csi-external-snapshotter-fips-8.3
kubernetes-csi-livenessprobe affected wolfi kubernetes-csi-livenessprobe
kubernetes-csi-livenessprobe affected chainguard kubernetes-csi-livenessprobe
kubernetes-csi-livenessprobe-fips-2.10 affected chainguard kubernetes-csi-livenessprobe-fips-2.10
kubernetes-csi-node-driver-registrar-fips-2.14 affected chainguard kubernetes-csi-node-driver-registrar-fips-2.14
kubernetes-csi-node-driver-registrar-fips-2.15 affected chainguard kubernetes-csi-node-driver-registrar-fips-2.15
kubernetes-dashboard-auth affected wolfi kubernetes-dashboard-auth
kubernetes-dashboard-auth affected chainguard kubernetes-dashboard-auth
kubernetes-dashboard-auth-fips affected chainguard kubernetes-dashboard-auth-fips
kubernetes-dashboard-web affected chainguard kubernetes-dashboard-web
kubernetes-dashboard-web affected wolfi kubernetes-dashboard-web
kubernetes-dns-node-cache-fips affected chainguard kubernetes-dns-node-cache-fips
kubernetes-event-exporter affected wolfi kubernetes-event-exporter
kubernetes-event-exporter affected chainguard kubernetes-event-exporter
kubernetes-event-exporter-fips affected chainguard kubernetes-event-exporter-fips
kubernetes-release affected chainguard kubernetes-release
kubernetes-release affected wolfi kubernetes-release
kubernetes-replicator affected wolfi kubernetes-replicator
kubernetes-replicator affected chainguard kubernetes-replicator
kubernetes-replicator-fips affected chainguard kubernetes-replicator-fips
kubo-fips affected chainguard kubo-fips
kustomize-fips affected chainguard kustomize-fips
kyverno-notation-aws-fips affected chainguard kyverno-notation-aws-fips
kyverno-policy-reporter-plugins-kyverno-fips affected chainguard kyverno-policy-reporter-plugins-kyverno-fips
kyverno-policy-reporter-plugins-trivy-fips affected chainguard kyverno-policy-reporter-plugins-trivy-fips
kyverno-policy-reporter-ui-fips affected chainguard kyverno-policy-reporter-ui-fips
localstack affected chainguard localstack
logstash-8.17 affected chainguard logstash-8.17
logstash-8.18 affected chainguard logstash-8.18
logstash-9.0 affected chainguard logstash-9.0
logstash-exporter-fips affected chainguard logstash-exporter-fips
longhorn-backing-image-manager-1.9 affected chainguard longhorn-backing-image-manager-1.9
longhorn-backing-image-manager-fips-1.9 affected chainguard longhorn-backing-image-manager-fips-1.9
longhorn-manager-fips-1.10 affected chainguard longhorn-manager-fips-1.10
longhorn-manager-fips-1.8 affected chainguard longhorn-manager-fips-1.8
longhorn-manager-fips-1.9 affected chainguard longhorn-manager-fips-1.9
longhorn-share-manager-fips-1.8 affected chainguard longhorn-share-manager-fips-1.8
longhorn-share-manager-fips-1.9 affected chainguard longhorn-share-manager-fips-1.9
mariadb-operator-fips affected chainguard mariadb-operator-fips
mesosphere-vsphere-csi affected wolfi mesosphere-vsphere-csi
mesosphere-vsphere-csi affected chainguard mesosphere-vsphere-csi
metrics-agent affected wolfi metrics-agent
metrics-agent affected chainguard metrics-agent
metrics-server affected chainguard metrics-server
metrics-server affected wolfi metrics-server
metrics-server-fips affected chainguard metrics-server-fips
minify-fips affected chainguard minify-fips
mkcert affected chainguard mkcert
mkcert affected wolfi mkcert
mockery affected chainguard mockery
mockery affected wolfi mockery
mockgen affected chainguard mockgen
mockgen affected wolfi mockgen
mongodb-k8s-operator-version-upgrade-post-start-hook affected chainguard mongodb-k8s-operator-version-upgrade-post-start-hook
mongodb-kubernetes-operator affected wolfi mongodb-kubernetes-operator
mongodb-kubernetes-operator affected chainguard mongodb-kubernetes-operator
mongo-tools affected chainguard mongo-tools
mongo-tools affected wolfi mongo-tools
mongo-tools-fips affected chainguard mongo-tools-fips
monstache affected chainguard monstache
mountpoint-s3-csi-driver-2.2 affected wolfi mountpoint-s3-csi-driver-2.2
mountpoint-s3-csi-driver-2.2 affected chainguard mountpoint-s3-csi-driver-2.2
nats-fips affected chainguard nats-fips
nats-server affected wolfi nats-server
nats-server affected chainguard nats-server
nemo affected chainguard nemo
net-kourier-fips-1.17 affected chainguard net-kourier-fips-1.17
net-kourier-fips-1.18 affected chainguard net-kourier-fips-1.18
neuvector-dbgen-fips affected chainguard neuvector-dbgen-fips
newrelic-fluent-bit-output-fips affected chainguard newrelic-fluent-bit-output-fips
newrelic-infrastructure-agent affected chainguard newrelic-infrastructure-agent
newrelic-infrastructure-agent affected wolfi newrelic-infrastructure-agent
newrelic-infrastructure-agent-fips affected chainguard newrelic-infrastructure-agent-fips
newrelic-nri-kube-events affected wolfi newrelic-nri-kube-events
newrelic-nri-kube-events affected chainguard newrelic-nri-kube-events
newrelic-nri-kube-events-fips affected chainguard newrelic-nri-kube-events-fips
nfpm affected wolfi nfpm
nfpm affected chainguard nfpm
nfs-subdir-external-provisioner-fips affected chainguard nfs-subdir-external-provisioner-fips
nginx-prometheus-exporter-fips affected chainguard nginx-prometheus-exporter-fips
node-feature-discovery-fips-0.16 affected chainguard node-feature-discovery-fips-0.16
node-problem-detector-fips-0.8 affected chainguard node-problem-detector-fips-0.8
nova affected chainguard nova
nova affected wolfi nova
nova-fips affected chainguard nova-fips
nri-apache affected wolfi nri-apache
nri-apache affected chainguard nri-apache
nri-consul affected chainguard nri-consul
nri-consul affected wolfi nri-consul
nri-couchbase affected chainguard nri-couchbase
nri-couchbase affected wolfi nri-couchbase
nri-discovery-kubernetes-fips affected chainguard nri-discovery-kubernetes-fips
nri-f5 affected chainguard nri-f5
nri-f5 affected wolfi nri-f5
nri-haproxy affected wolfi nri-haproxy
nri-haproxy affected chainguard nri-haproxy
nri-jmx affected chainguard nri-jmx
nri-jmx affected wolfi nri-jmx
nri-kafka affected wolfi nri-kafka
nri-kafka affected chainguard nri-kafka
nri-mssql affected wolfi nri-mssql
nri-mssql affected chainguard nri-mssql
nri-nagios affected wolfi nri-nagios
nri-nagios affected chainguard nri-nagios
nri-rabbitmq affected wolfi nri-rabbitmq
nri-rabbitmq affected chainguard nri-rabbitmq
nvidia-container-toolkit affected chainguard nvidia-container-toolkit
nvidia-container-toolkit affected wolfi nvidia-container-toolkit
nvidia-nsight-compute-12.8 affected chainguard nvidia-nsight-compute-12.8
nvidia-nsight-compute-12.9 affected chainguard nvidia-nsight-compute-12.9
nvidia-nsight-compute-13.0 affected chainguard nvidia-nsight-compute-13.0
nvidia-nsight-compute-13.1 affected chainguard nvidia-nsight-compute-13.1
nvidia-nsight-compute-13.2 affected chainguard nvidia-nsight-compute-13.2
oauth2-proxy affected chainguard oauth2-proxy
oauth2-proxy affected wolfi oauth2-proxy
octo-sts affected wolfi octo-sts
octo-sts affected chainguard octo-sts
opa affected wolfi opa
opa affected chainguard opa
opa-envoy affected chainguard opa-envoy
opa-envoy affected wolfi opa-envoy
opa-fips affected chainguard opa-fips
opa-fips-envoy affected chainguard opa-fips-envoy
opencost affected chainguard opencost
opencost affected wolfi opencost
opensearch-k8s-operator affected chainguard opensearch-k8s-operator
opensearch-k8s-operator affected wolfi opensearch-k8s-operator
opentelemetry-collector affected chainguard opentelemetry-collector
opentelemetry-collector affected wolfi opentelemetry-collector
opentelemetry-collector-contrib affected chainguard opentelemetry-collector-contrib
opentelemetry-collector-contrib affected wolfi opentelemetry-collector-contrib
opentofu-1.10 affected chainguard opentofu-1.10
opentofu-1.10 affected wolfi opentofu-1.10
opentofu-fips-1.10 affected chainguard opentofu-fips-1.10
opentofu-fips-1.8 affected chainguard opentofu-fips-1.8
opentofu-fips-1.9 affected chainguard opentofu-fips-1.9
osv-scanner affected chainguard osv-scanner
osv-scanner affected wolfi osv-scanner
overmind affected chainguard overmind
overmind affected wolfi overmind
paranoia affected chainguard paranoia
paranoia affected wolfi paranoia
pg_timetable affected chainguard pg_timetable
pg_timetable affected wolfi pg_timetable
pg_timetable-fips affected chainguard pg_timetable-fips
php-fpm_exporter affected wolfi php-fpm_exporter
php-fpm_exporter affected chainguard php-fpm_exporter
plugin-barman-cloud-fips affected chainguard plugin-barman-cloud-fips
pluto affected chainguard pluto
pluto affected wolfi pluto
pluto-fips affected chainguard pluto-fips
polaris affected wolfi polaris
polaris affected chainguard polaris
polaris-fips affected chainguard polaris-fips
policy-controller affected chainguard policy-controller
policy-controller affected wolfi policy-controller
portieris affected chainguard portieris
portieris affected wolfi portieris
portieris-fips affected chainguard portieris-fips
postgres-operator affected wolfi postgres-operator
postgres-operator affected chainguard postgres-operator
prometheus-adapter affected chainguard prometheus-adapter
prometheus-adapter affected wolfi prometheus-adapter
prometheus-adapter-fips-0.10 affected chainguard prometheus-adapter-fips-0.10
prometheus-beat-exporter-fips affected chainguard prometheus-beat-exporter-fips
prometheus-mysqld-exporter-fips affected chainguard prometheus-mysqld-exporter-fips
prometheus-node-exporter-fips affected chainguard prometheus-node-exporter-fips
prometheus-operator affected wolfi prometheus-operator
prometheus-operator affected chainguard prometheus-operator
prometheus-pgbouncer-exporter-fips affected chainguard prometheus-pgbouncer-exporter-fips
prometheus-podman-exporter-fips affected chainguard prometheus-podman-exporter-fips
prometheus-postgres-exporter-fips affected chainguard prometheus-postgres-exporter-fips
prometheus-statsd-exporter-fips affected chainguard prometheus-statsd-exporter-fips
promxy affected wolfi promxy
promxy affected chainguard promxy
promxy-fips affected chainguard promxy-fips
protoc-gen-go affected chainguard protoc-gen-go
protoc-gen-go affected wolfi protoc-gen-go
pulumi-kubernetes-operator affected wolfi pulumi-kubernetes-operator
pulumi-kubernetes-operator affected chainguard pulumi-kubernetes-operator
quic-go-fips affected chainguard quic-go-fips
rabbitmq-cluster-operator-fips affected chainguard rabbitmq-cluster-operator-fips
rabbitmq-messaging-topology-operator affected chainguard rabbitmq-messaging-topology-operator
rabbitmq-messaging-topology-operator affected wolfi rabbitmq-messaging-topology-operator
rancher-2.12 affected chainguard rancher-2.12
rancher-helm-3 affected wolfi rancher-helm-3
rancher-helm-3 affected chainguard rancher-helm-3
rancher-loglevel affected wolfi rancher-loglevel
rancher-loglevel affected chainguard rancher-loglevel
rancher-security-scan-0.6 affected chainguard rancher-security-scan-0.6
rancher-security-scan-fips-0.5 affected chainguard rancher-security-scan-fips-0.5
rancher-system-agent affected wolfi rancher-system-agent
rancher-system-agent affected chainguard rancher-system-agent
rancher-telemetry affected chainguard rancher-telemetry
rancher-telemetry affected wolfi rancher-telemetry
rancher-webhook-fips-0.5 affected chainguard rancher-webhook-fips-0.5
ratify-fips affected chainguard ratify-fips
redis-operator-fips affected chainguard redis-operator-fips
regclient affected chainguard regclient
regclient affected wolfi regclient
rekor-fips affected chainguard rekor-fips
render-template affected wolfi render-template
render-template affected chainguard render-template
rke2-cloud-provider affected wolfi rke2-cloud-provider
rke2-cloud-provider affected chainguard rke2-cloud-provider
rke2-cloud-provider-fips affected chainguard rke2-cloud-provider-fips
rook-fips affected chainguard rook-fips
rootlesskit affected chainguard rootlesskit
rootlesskit affected wolfi rootlesskit
rootlesskit-fips affected chainguard rootlesskit-fips
runc affected chainguard runc
runc affected wolfi runc
runc-fips affected chainguard runc-fips
s5cmd affected wolfi s5cmd
s5cmd affected chainguard s5cmd
sbom-scorecard affected wolfi sbom-scorecard
sbom-scorecard affected chainguard sbom-scorecard
scanner-test-golang-vulnerability-fixed affected chainguard scanner-test-golang-vulnerability-fixed
sealed-secrets-fips affected chainguard sealed-secrets-fips
seaweedfs affected chainguard seaweedfs
seaweedfs affected wolfi seaweedfs
secrets-store-csi-driver affected chainguard secrets-store-csi-driver
secrets-store-csi-driver affected wolfi secrets-store-csi-driver
secrets-store-csi-driver-provider-aws-fips affected chainguard secrets-store-csi-driver-provider-aws-fips
secrets-store-csi-driver-provider-azure affected wolfi secrets-store-csi-driver-provider-azure
secrets-store-csi-driver-provider-azure affected chainguard secrets-store-csi-driver-provider-azure
sftpgo-plugin-eventsearch affected chainguard sftpgo-plugin-eventsearch
sftpgo-plugin-eventsearch affected wolfi sftpgo-plugin-eventsearch
sftpgo-plugin-eventstore affected chainguard sftpgo-plugin-eventstore
sftpgo-plugin-eventstore affected wolfi sftpgo-plugin-eventstore
sftpgo-plugin-kms affected chainguard sftpgo-plugin-kms
sftpgo-plugin-kms affected wolfi sftpgo-plugin-kms
sftpgo-plugin-pubsub affected chainguard sftpgo-plugin-pubsub
sftpgo-plugin-pubsub affected wolfi sftpgo-plugin-pubsub
shfmt affected wolfi shfmt
shfmt affected chainguard shfmt
sigstore-scaffolding-fips affected chainguard sigstore-scaffolding-fips
skaffold affected chainguard skaffold
skaffold affected wolfi skaffold
slsa-verifier affected chainguard slsa-verifier
slsa-verifier affected wolfi slsa-verifier
smarter-device-manager-fips affected chainguard smarter-device-manager-fips
snyk-cli affected chainguard snyk-cli
snyk-cli affected wolfi snyk-cli
sonobuoy affected chainguard sonobuoy
sonobuoy affected wolfi sonobuoy
sonobuoy-fips affected chainguard sonobuoy-fips
sops affected chainguard sops
sops affected wolfi sops
sops-fips affected chainguard sops-fips
spark-operator-fips-2.2 affected chainguard spark-operator-fips-2.2
spicedb-fips affected chainguard spicedb-fips
spicedb-operator affected chainguard spicedb-operator
spicedb-operator affected wolfi spicedb-operator
spicedb-operator-fips affected chainguard spicedb-operator-fips
spiffe-helper-fips affected chainguard spiffe-helper-fips
spire-controller-manager affected wolfi spire-controller-manager
spire-controller-manager affected chainguard spire-controller-manager
spire-server-fips affected chainguard spire-server-fips
splunk-otel-collector affected wolfi splunk-otel-collector
splunk-otel-collector affected chainguard splunk-otel-collector
spqr affected chainguard spqr
spqr affected wolfi spqr
sql_exporter-fips affected chainguard sql_exporter-fips
src affected chainguard src
src affected wolfi src
src-fingerprint-fips affected chainguard src-fingerprint-fips
stakater-reloader affected wolfi stakater-reloader
stakater-reloader affected chainguard stakater-reloader
stakater-reloader-0.0.119 affected chainguard stakater-reloader-0.0.119
stakater-reloader-0.0.128 affected chainguard stakater-reloader-0.0.128
stakater-reloader-fips affected chainguard stakater-reloader-fips
stdlib affected Go stdlib
steampipe affected chainguard steampipe
steampipe affected wolfi steampipe
supercronic affected chainguard supercronic
supercronic affected wolfi supercronic
syft-fips affected chainguard syft-fips
task affected wolfi task
task affected chainguard task
tempo affected wolfi tempo
tempo affected chainguard tempo
temporal affected wolfi temporal
temporal affected chainguard temporal
temporal-fips affected chainguard temporal-fips
temporal-server affected wolfi temporal-server
temporal-server affected chainguard temporal-server
terraform affected wolfi terraform
terraform affected chainguard terraform
terraform-docs affected wolfi terraform-docs
terraform-docs affected chainguard terraform-docs
terraform-ls affected chainguard terraform-ls
terraform-mcp-server affected chainguard terraform-mcp-server
terraform-mcp-server affected wolfi terraform-mcp-server
terraform-provider-azuread affected wolfi terraform-provider-azuread
terraform-provider-azuread affected chainguard terraform-provider-azuread
terraform-provider-google affected wolfi terraform-provider-google
terraform-provider-google affected chainguard terraform-provider-google
terraform-provider-google-fips affected chainguard terraform-provider-google-fips
terraform-provider-random-fips affected chainguard terraform-provider-random-fips
terraform-provider-sendgrid affected chainguard terraform-provider-sendgrid
terraform-provider-sendgrid affected wolfi terraform-provider-sendgrid
terraform-provider-sendgrid-fips affected chainguard terraform-provider-sendgrid-fips
terraform-provider-time affected wolfi terraform-provider-time
terraform-provider-time affected chainguard terraform-provider-time
terraform-provider-tls-fips affected chainguard terraform-provider-tls-fips
tetragon-fips affected chainguard tetragon-fips
thanos-operator affected wolfi thanos-operator
thanos-operator affected chainguard thanos-operator
tigera-operator-1.28 affected chainguard tigera-operator-1.28
tigera-operator-fips-1.29 affected chainguard tigera-operator-fips-1.29
tigera-operator-fips-1.34 affected chainguard tigera-operator-fips-1.34
tigera-operator-fips-1.36 affected chainguard tigera-operator-fips-1.36
tigera-operator-fips-1.37 affected chainguard tigera-operator-fips-1.37
tigera-operator-fips-1.40 affected chainguard tigera-operator-fips-1.40
timescaledb-tune affected chainguard timescaledb-tune
timescaledb-tune affected wolfi timescaledb-tune
trillian-fips affected chainguard trillian-fips
trivy-operator-fips affected chainguard trivy-operator-fips
trust-manager-fips affected chainguard trust-manager-fips
vault-1.16 affected chainguard vault-1.16
vault-1.17 affected chainguard vault-1.17
vault-1.18 affected chainguard vault-1.18
vault-1.19 affected chainguard vault-1.19
vault-1.21 affected chainguard vault-1.21
vault-k8s-fips affected chainguard vault-k8s-fips
velero-fips affected chainguard velero-fips
velero-plugin-for-aws-fips affected chainguard velero-plugin-for-aws-fips
velero-plugin-for-csi-fips affected chainguard velero-plugin-for-csi-fips
vendir-fips affected chainguard vendir-fips
vertical-pod-autoscaler-fips affected chainguard vertical-pod-autoscaler-fips
vgpu-util affected chainguard vgpu-util
wave-fips affected chainguard wave-fips
whereabouts-fips affected chainguard whereabouts-fips
x509-certificate-exporter-fips affected chainguard x509-certificate-exporter-fips
yq-fips affected chainguard yq-fips
ytt-fips affected chainguard ytt-fips
Upstream advisory

GHSA-p4q8-mx85-6fc8

Open SourcePoC exploitHIGH2025-12-02

GHSA-p4q8-mx85-6fc8

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2025-13720

GooglePoC exploitHIGH2025-12-02

Bad cast in Loader in Google Chrome prior to 143.0.7499.41 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2025-13720

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13720

Open SourcePoC exploitHIGH2025-12-02

DEBIAN-CVE-2025-13720

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-6jxr-vc7p-9hqv

Open SourcePoC exploitCRITICAL2025-12-02

GHSA-6jxr-vc7p-9hqv

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2025-13638

GooglePoC exploitCRITICAL2025-12-02

Use after free in Media Stream in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2025-13638

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13638

Open SourcePoC exploitCRITICAL2025-12-02

DEBIAN-CVE-2025-13638

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

ASB-A-432753641

GooglePoC exploitHIGH2025-12-01

ASB-A-432753641

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

GHSA-9www-pqcc-jm28

Open SourcePoC exploitHIGH2025-12-02

GHSA-9www-pqcc-jm28

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2025-13639

GooglePoC exploitHIGH2025-12-02

Inappropriate implementation in WebRTC in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2025-13639

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13639

Open SourcePoC exploitHIGH2025-12-02

DEBIAN-CVE-2025-13639

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

DEBIAN-CVE-2025-66506

Open SourcePoC exploitHIGH2025-12-04

DEBIAN-CVE-2025-66506

Affected products

ProductStatusVendorPackageEcosystem
golang-github-sigstore-fulcio affected Debian:13 golang-github-sigstore-fulcio
golang-github-sigstore-fulcio affected Debian:14 golang-github-sigstore-fulcio
Upstream advisory

ASB-A-443063131

GooglePoC exploit2025-12-01

ASB-A-443063131

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-428702264

GooglePoC exploit2025-12-01

ASB-A-428702264

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-432751421

GooglePoC exploitHIGH2025-12-01

ASB-A-432751421

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

ASB-A-436201996

GooglePoC exploitHIGH2025-12-01

ASB-A-436201996

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2025-48536

Open SourcePoC exploitHIGH2025-12-01

In grantAllowlistedPackagePermissions of SettingsSliceProvider.java, there is a possible way for a third party app to modify secure settings due to a confused deputy. This could lead to local escalation of privilege with no additional execution privile...

CVEs:CVE-2025-48536

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-435076697

GoogleCoalition ESS < 30%2025-12-01

ASB-A-435076697

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-435065128

GoogleCoalition ESS < 30%2025-12-01

ASB-A-435065128

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

SUSE-SU-2025:4481-1

Open SourceCoalition ESS < 30%CRITICAL2025-12-18

Security update for golang-github-prometheus-alertmanager

Affected products

ProductStatusVendorPackageEcosystem
golang-github-prometheus-alertmanager affected SUSE:Manager Client Tools 15 golang-github-prometheus-alertmanager
golang-github-prometheus-alertmanager affected SUSE:Linux Enterprise Module for Package Hub 15 SP6 golang-github-prometheus-alertmanager
golang-github-prometheus-alertmanager affected SUSE:Linux Enterprise Module for Package Hub 15 SP7 golang-github-prometheus-alertmanager
golang-github-prometheus-alertmanager affected SUSE:Manager Proxy LTS 4.3 golang-github-prometheus-alertmanager
golang-github-prometheus-alertmanager affected openSUSE:Leap 15.6 golang-github-prometheus-alertmanager
Upstream advisory

PUB-A-352755506

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-352755506

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-456151446

GoogleCoalition ESS < 30%MEDIUM2025-12-01

PUB-A-456151446

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GO-2025-4257

Open SourceCoalition ESS < 30%HIGH2025-12-30

KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda

Affected products

ProductStatusVendorPackageEcosystem
k8sgpt affected chainguard k8sgpt
k8sgpt affected wolfi k8sgpt
kedacore/keda affected github.com github.com/kedacore/keda
kedacore/keda/v2 affected github.com github.com/kedacore/keda/v2
kserve affected chainguard kserve
kserve affected wolfi kserve
kserve-fips affected chainguard kserve-fips
kserve-localmodelnode-agent affected chainguard kserve-localmodelnode-agent
kserve-localmodelnode-agent-fips affected chainguard kserve-localmodelnode-agent-fips
Upstream advisory

GHSA-c4p6-qg4m-9jmr

Open SourceCoalition ESS < 30%CRITICAL2025-12-22

KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential

Affected products

ProductStatusVendorPackageEcosystem
k8sgpt affected chainguard k8sgpt
k8sgpt affected wolfi k8sgpt
kedacore/keda/v2 affected github.com github.com/kedacore/keda/v2
kserve affected chainguard kserve
kserve affected wolfi kserve
kserve-fips affected chainguard kserve-fips
kserve-localmodelnode-agent affected chainguard kserve-localmodelnode-agent
kserve-localmodelnode-agent-fips affected chainguard kserve-localmodelnode-agent-fips
Upstream advisory

GHSA-c4p6-qg4m-9jmr

GoogleCoalition ESS < 30%CRITICAL2025-12-22

KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential

Affected products

ProductStatusVendorPackageEcosystem
kedacore/keda/v2 affected github.com github.com/kedacore/keda/v2
Upstream advisory

ASB-A-442295794

GoogleCoalition ESS < 30%2025-12-01

ASB-A-442295794

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445775438

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445775438

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-442288325

GoogleCoalition ESS < 30%2025-12-01

ASB-A-442288325

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-432804305

GoogleCoalition ESS < 30%HIGH2025-12-01

ASB-A-432804305

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

ASB-A-445785195

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445785195

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445785196

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445785196

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-14874

GoogleCoalition ESS < 30%HIGH2025-12-01

Nodemailer’s addressparser is vulnerable to DoS caused by recursive calls

CVEs:CVE-2025-14874

Affected products

ProductStatusVendorPackageEcosystem
nodemailer affected npm nodemailer
Upstream advisory

CVE-2025-14874

GoogleCoalition ESS < 30%HIGH2025-12-01

Nodemailer’s addressparser is vulnerable to DoS caused by recursive calls

CVEs:CVE-2025-14874

Affected products

ProductStatusVendorPackageEcosystem
nodemailer affected npm nodemailer
Upstream advisory

CVE-2025-14874

Open SourceCoalition ESS < 30%HIGH2025-12-01

A flaw was found in Nodemailer. This vulnerability allows a denial of service (DoS) via a crafted email address header that triggers infinite recursion in the address parser.

CVEs:CVE-2025-14874

Affected products

ProductStatusVendorPackageEcosystem
advanced_cluster_management_for_kubernetes affected redhat
ceph_storage affected redhat
developer_hub affected redhat
nodemailer affected nodemailer
Upstream advisory

ASB-A-442288324

GoogleCoalition ESS < 30%2025-12-01

ASB-A-442288324

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445775437

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445775437

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GHSA-r3pv-9whv-57xc

Open SourceCoalition ESS < 30%HIGH2025-12-02

GHSA-r3pv-9whv-57xc

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2025-13630

GoogleCoalition ESS < 30%HIGH2025-12-02

Type Confusion in V8 in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2025-13630

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13630

Open SourceCoalition ESS < 30%HIGH2025-12-02

DEBIAN-CVE-2025-13630

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

ASB-A-384999601

GoogleCoalition ESS < 30%2025-12-01

ASB-A-384999601

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GHSA-gvmq-hr29-xrx3

Open SourceCoalition ESS < 30%CRITICAL2025-12-02

GHSA-gvmq-hr29-xrx3

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2025-13633

GoogleCoalition ESS < 30%CRITICAL2025-12-02

Use after free in Digital Credentials in Google Chrome prior to 143.0.7499.41 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVEs:CVE-2025-13633

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13633

Open SourceCoalition ESS < 30%CRITICAL2025-12-02

DEBIAN-CVE-2025-13633

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

ASB-A-445775436

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445775436

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-48626

Open SourceCoalition ESS < 30%CRITICAL2025-12-01

In multiple locations, there is a possible way to launch an application from the background due to a precondition check failure. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not n...

CVEs:CVE-2025-48626

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-445793671

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445793671

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-446071856

GoogleCoalition ESS < 30%2025-12-01

ASB-A-446071856

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GO-2025-4233

Open SourceCoalition ESS < 30%HIGH2025-12-15

HTTP/3 QPACK Header Expansion DoS in github.com/quic-go/quic-go

Affected products

ProductStatusVendorPackageEcosystem
buf affected wolfi buf
buf affected chainguard buf
caddy affected chainguard caddy
caddy affected wolfi caddy
caddy-fips affected chainguard caddy-fips
coredns-1.12 affected chainguard coredns-1.12
coredns-fips-1.12 affected chainguard coredns-fips-1.12
dkron affected chainguard dkron
dkron affected wolfi dkron
dkron-fips affected chainguard dkron-fips
eks-distro-1.29 affected chainguard eks-distro-1.29
eks-distro-1.30 affected chainguard eks-distro-1.30
eks-distro-1.31 affected chainguard eks-distro-1.31
eks-distro-1.32 affected chainguard eks-distro-1.32
eks-distro-1.33 affected chainguard eks-distro-1.33
eks-distro-1.34 affected chainguard eks-distro-1.34
eks-distro-fips-1.29 affected chainguard eks-distro-fips-1.29
eks-distro-fips-1.30 affected chainguard eks-distro-fips-1.30
eks-distro-fips-1.31 affected chainguard eks-distro-fips-1.31
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
eks-distro-fips-1.33 affected chainguard eks-distro-fips-1.33
eks-distro-fips-1.34 affected chainguard eks-distro-fips-1.34
frp affected chainguard frp
frp affected wolfi frp
ipfs-cluster affected wolfi ipfs-cluster
ipfs-cluster affected chainguard ipfs-cluster
ipfs-cluster-fips affected chainguard ipfs-cluster-fips
jitsucom-bulker affected chainguard jitsucom-bulker
jitsucom-bulker affected wolfi jitsucom-bulker
k3s affected wolfi k3s
k3s affected chainguard k3s
k3s-1.31 affected chainguard k3s-1.31
k3s-1.32 affected chainguard k3s-1.32
k3s-1.32 affected wolfi k3s-1.32
k3s-1.33 affected wolfi k3s-1.33
k3s-1.33 affected chainguard k3s-1.33
k8s_gateway affected chainguard k8s_gateway
k8s_gateway affected wolfi k8s_gateway
k8s_gateway-fips affected chainguard k8s_gateway-fips
kargo affected chainguard kargo
kargo affected wolfi kargo
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
kubernetes-dns-node-cache-fips affected chainguard kubernetes-dns-node-cache-fips
kubo affected wolfi kubo
kubo affected chainguard kubo
kubo-fips affected chainguard kubo-fips
q affected wolfi q
q affected chainguard q
quic-go/quic-go affected github.com github.com/quic-go/quic-go
rke2-runtime-1.31 affected chainguard rke2-runtime-1.31
rke2-runtime-1.32 affected chainguard rke2-runtime-1.32
rke2-runtime-1.33 affected chainguard rke2-runtime-1.33
rke2-runtime-1.34 affected chainguard rke2-runtime-1.34
seaweedfs affected chainguard seaweedfs
seaweedfs affected wolfi seaweedfs
seaweedfs-fips affected chainguard seaweedfs-fips
spegel affected chainguard spegel
spegel affected wolfi spegel
spegel-fips affected chainguard spegel-fips
syncthing affected chainguard syncthing
syncthing-fips affected chainguard syncthing-fips
teleport-17 affected chainguard teleport-17
teleport-18 affected chainguard teleport-18
teleport-operator-fips-17 affected chainguard teleport-operator-fips-17
traefik-3.4 affected wolfi traefik-3.4
traefik-3.4 affected chainguard traefik-3.4
traefik-3.5 affected chainguard traefik-3.5
traefik-fips-3.5 affected chainguard traefik-fips-3.5
volsync affected chainguard volsync
Upstream advisory

DEBIAN-CVE-2025-64702

Open SourceCoalition ESS < 30%HIGH2025-12-11

DEBIAN-CVE-2025-64702

Affected products

ProductStatusVendorPackageEcosystem
golang-github-lucas-clemente-quic-go affected Debian:11 golang-github-lucas-clemente-quic-go
golang-github-lucas-clemente-quic-go affected Debian:12 golang-github-lucas-clemente-quic-go
golang-github-lucas-clemente-quic-go affected Debian:13 golang-github-lucas-clemente-quic-go
golang-github-lucas-clemente-quic-go affected Debian:14 golang-github-lucas-clemente-quic-go
Upstream advisory

GHSA-g754-hx8w-x2g6

GoogleCoalition ESS < 30%CRITICAL2025-12-11

quic-go HTTP/3 QPACK Header Expansion DoS

Affected products

ProductStatusVendorPackageEcosystem
quic-go/quic-go affected github.com github.com/quic-go/quic-go
Upstream advisory

GHSA-g754-hx8w-x2g6

Open SourceCoalition ESS < 30%CRITICAL2025-12-11

quic-go HTTP/3 QPACK Header Expansion DoS

Affected products

ProductStatusVendorPackageEcosystem
buf affected wolfi buf
buf affected chainguard buf
caddy affected chainguard caddy
caddy affected wolfi caddy
caddy-fips affected chainguard caddy-fips
coredns-1.12 affected chainguard coredns-1.12
coredns-fips-1.12 affected chainguard coredns-fips-1.12
dkron affected wolfi dkron
dkron affected chainguard dkron
dkron-fips affected chainguard dkron-fips
eks-distro-1.29 affected chainguard eks-distro-1.29
eks-distro-1.30 affected chainguard eks-distro-1.30
eks-distro-1.31 affected chainguard eks-distro-1.31
eks-distro-1.32 affected chainguard eks-distro-1.32
eks-distro-1.33 affected chainguard eks-distro-1.33
eks-distro-1.34 affected chainguard eks-distro-1.34
eks-distro-fips-1.29 affected chainguard eks-distro-fips-1.29
eks-distro-fips-1.30 affected chainguard eks-distro-fips-1.30
eks-distro-fips-1.31 affected chainguard eks-distro-fips-1.31
eks-distro-fips-1.32 affected chainguard eks-distro-fips-1.32
eks-distro-fips-1.33 affected chainguard eks-distro-fips-1.33
eks-distro-fips-1.34 affected chainguard eks-distro-fips-1.34
frp affected chainguard frp
frp affected wolfi frp
ipfs-cluster affected wolfi ipfs-cluster
ipfs-cluster affected chainguard ipfs-cluster
ipfs-cluster-fips affected chainguard ipfs-cluster-fips
jitsucom-bulker affected chainguard jitsucom-bulker
jitsucom-bulker affected wolfi jitsucom-bulker
k3s affected wolfi k3s
k3s affected chainguard k3s
k3s-1.31 affected chainguard k3s-1.31
k3s-1.32 affected wolfi k3s-1.32
k3s-1.32 affected chainguard k3s-1.32
k3s-1.33 affected chainguard k3s-1.33
k3s-1.33 affected wolfi k3s-1.33
k8s_gateway affected chainguard k8s_gateway
k8s_gateway affected wolfi k8s_gateway
k8s_gateway-fips affected chainguard k8s_gateway-fips
kargo affected chainguard kargo
kargo affected wolfi kargo
kubernetes-dns-node-cache affected wolfi kubernetes-dns-node-cache
kubernetes-dns-node-cache affected chainguard kubernetes-dns-node-cache
kubernetes-dns-node-cache-fips affected chainguard kubernetes-dns-node-cache-fips
kubo affected chainguard kubo
kubo affected wolfi kubo
kubo-fips affected chainguard kubo-fips
q affected wolfi q
q affected chainguard q
quic-go/quic-go affected github.com github.com/quic-go/quic-go
rke2-runtime-1.31 affected chainguard rke2-runtime-1.31
rke2-runtime-1.32 affected chainguard rke2-runtime-1.32
rke2-runtime-1.33 affected chainguard rke2-runtime-1.33
rke2-runtime-1.34 affected chainguard rke2-runtime-1.34
seaweedfs affected wolfi seaweedfs
seaweedfs affected chainguard seaweedfs
seaweedfs-fips affected chainguard seaweedfs-fips
spegel affected wolfi spegel
spegel affected chainguard spegel
spegel-fips affected chainguard spegel-fips
syncthing affected chainguard syncthing
syncthing-fips affected chainguard syncthing-fips
teleport-17 affected chainguard teleport-17
teleport-17 affected wolfi teleport-17
teleport-18 affected wolfi teleport-18
teleport-18 affected chainguard teleport-18
teleport-operator-fips-17 affected chainguard teleport-operator-fips-17
traefik-3.4 affected chainguard traefik-3.4
traefik-3.4 affected wolfi traefik-3.4
traefik-3.5 affected chainguard traefik-3.5
traefik-3.5 affected wolfi traefik-3.5
traefik-fips-3.4 affected chainguard traefik-fips-3.4
traefik-fips-3.5 affected chainguard traefik-fips-3.5
volsync affected chainguard volsync
Upstream advisory

MINI-83r2-4xmp-xrfv

Open SourceCoalition ESS < 30%2025-12-02

MINI-83r2-4xmp-xrfv

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

GHSA-m7f9-qw7f-whp3

Open SourceCoalition ESS < 30%CRITICAL2025-12-02

GHSA-m7f9-qw7f-whp3

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2025-13631

GoogleCoalition ESS < 30%CRITICAL2025-12-02

Inappropriate implementation in Google Updater in Google Chrome on Mac prior to 143.0.7499.41 allowed a remote attacker to perform privilege escalation via a crafted file. (Chromium security severity: High)

CVEs:CVE-2025-13631

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13631

Open SourceCoalition ESS < 30%CRITICAL2025-12-02

DEBIAN-CVE-2025-13631

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2025-13428

GoogleCoalition ESS < 30%HIGH2025-12-07

A vulnerability exists in the SecOps SOAR server. The custom integrations feature allowed an authenticated user with an "IDE role" to achieve Remote Code Execution (RCE) in the server. The flaw stemmed from weak validation of uploaded Python package co...

CVEs:CVE-2025-13428

Affected products

ProductStatusVendorPackageEcosystem
security_operations_soar affected google
Upstream advisory

CVE-2025-36912

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In cellular modem, there is a possible denial of service due to a logic error in the code. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-36912

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36917

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In SwDcpItg of up_L2commonPdcpSecurity.cpp, there is a possible denial of service due to an incorrect bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitat...

CVEs:CVE-2025-36917

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-409043770

GoogleCoalition ESS < 30%MEDIUM2025-12-01

PUB-A-409043770

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-424786038

GoogleCoalition ESS < 30%MEDIUM2025-12-01

PUB-A-424786038

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-429381687

GoogleCoalition ESS < 30%2025-12-01

ASB-A-429381687

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-58479

Open SourceCoalition ESS < 30%HIGH2025-12-01

Out-of-bounds read in libimagecodec.quram.so prior to SMR Dec-2025 Release 1 allows remote attackers to access out-of-bounds memory.

CVEs:CVE-2025-58479

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2025-36937

Open SourceCoalition ESS < 30%CRITICAL2025-12-02

In AudioDecoder::HandleProduceRequest of audio_decoder.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed...

CVEs:CVE-2025-36937

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-417437723

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-417437723

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-58480

Open SourceCoalition ESS < 30%CRITICAL2025-12-01

Heap-based buffer overflow in libimagecodec.quram.so prior to SMR Dec-2025 Release 1 allows remote attackers to access out-of-bounds memory.

CVEs:CVE-2025-58480

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2025-58477

Open SourceCoalition ESS < 30%CRITICAL2025-12-01

Out-of-bounds write in parsing IFD tag in libimagecodec.quram.so prior to SMR Dec-2025 Release 1 allows remote attackers to access out-of-bounds memory.

CVEs:CVE-2025-58477

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2025-3012

Open SourceCoalition ESS < 30%HIGH2025-12-01

In dpc modem, there is a possible system crash due to null pointer dereference. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-3012

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-448234052

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448234052

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-61619

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-61619

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-61607

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-61607

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-61608

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-61608

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-61609

Open SourceCoalition ESS < 30%HIGH2025-12-01

In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-61609

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-61610

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-61610

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-61617

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-61617

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-61618

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-61618

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-11132

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-11132

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-11133

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-11133

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-11131

Open SourceCoalition ESS < 30%HIGH2025-12-01

In nr modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed

CVEs:CVE-2025-11131

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-448236351

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448236351

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448236352

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448236352

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448253912

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448253912

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448253913

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448253913

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448275674

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448275674

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448275675

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448275675

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448276914

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448276914

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448276915

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448276915

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448277334

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448277334

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-448277338

GoogleCoalition ESS < 30%2025-12-01

ASB-A-448277338

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445775439

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445775439

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445793666

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445793666

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445777810

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445777810

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445785199

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445785199

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445793668

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445793668

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

ASB-A-445793670

GoogleCoalition ESS < 30%2025-12-01

ASB-A-445793670

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GHSA-c8g4-h8j5-vjpp

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

GHSA-c8g4-h8j5-vjpp

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2025-13632

GoogleCoalition ESS < 30%MEDIUM2025-12-02

Inappropriate implementation in DevTools in Google Chrome prior to 143.0.7499.41 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. (Chromium security severi...

CVEs:CVE-2025-13632

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13632

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

DEBIAN-CVE-2025-13632

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GO-2025-4173

Open SourceCoalition ESS < 30%2025-12-15

Eclipse Paho Go MQTT may incorrectly encode strings if length exceeds 65535 bytes in github.com/eclipse/paho.mqtt.golang

Affected products

ProductStatusVendorPackageEcosystem
agentbeat affected chainguard agentbeat
agentbeat-fips affected chainguard agentbeat-fips
beats-7 affected chainguard beats-7
beats-8.17 affected chainguard beats-8.17
beats-8.18 affected chainguard beats-8.18
beats-9.1 affected chainguard beats-9.1
beats-9.2 affected chainguard beats-9.2
beats-fips-8.17 affected chainguard beats-fips-8.17
beats-fips-8.18 affected chainguard beats-fips-8.18
beats-fips-8.19 affected chainguard beats-fips-8.19
beats-fips-9.0 affected chainguard beats-fips-9.0
beats-fips-9.1 affected chainguard beats-fips-9.1
beats-fips-9.2 affected chainguard beats-fips-9.2
bento affected chainguard bento
bento affected wolfi bento
dapr-1.15 affected chainguard dapr-1.15
dapr-fips-1.15 affected chainguard dapr-fips-1.15
eclipse/paho.mqtt.golang affected github.com github.com/eclipse/paho.mqtt.golang
elastic-agent affected chainguard elastic-agent
elastic-agent-8.18 affected chainguard elastic-agent-8.18
elastic-agent-9.1 affected chainguard elastic-agent-9.1
elastic-agent-fips-8.18 affected chainguard elastic-agent-fips-8.18
elastic-agent-fips-8.19 affected chainguard elastic-agent-fips-8.19
elastic-agent-fips-9.0 affected chainguard elastic-agent-fips-9.0
elastic-agent-fips-9.1 affected chainguard elastic-agent-fips-9.1
falcosidekick affected wolfi falcosidekick
falcosidekick affected chainguard falcosidekick
falcosidekick-fips affected chainguard falcosidekick-fips
influxd-2.7 affected chainguard influxd-2.7
minio affected wolfi minio
minio affected chainguard minio
minio-fips affected chainguard minio-fips
telegraf-1.35 affected chainguard telegraf-1.35
zabbix-agent2-6.0 affected chainguard zabbix-agent2-6.0
zabbix-agent2-7.0 affected chainguard zabbix-agent2-7.0
zabbix-agent2-7.2 affected chainguard zabbix-agent2-7.2
zabbix-agent2-7.4 affected chainguard zabbix-agent2-7.4
zabbix-agent2-fips-6.0 affected chainguard zabbix-agent2-fips-6.0
zabbix-agent2-fips-7.0 affected chainguard zabbix-agent2-fips-7.0
zabbix-agent2-fips-7.2 affected chainguard zabbix-agent2-fips-7.2
zabbix-agent2-fips-7.4 affected chainguard zabbix-agent2-fips-7.4
Upstream advisory

GHSA-32fw-gq77-f2f2

Open SourceCoalition ESS < 30%HIGH2025-12-02

Eclipse Paho Go MQTT may incorrectly encode strings if length exceeds 65535 bytes

Affected products

ProductStatusVendorPackageEcosystem
agentbeat affected chainguard agentbeat
agentbeat-fips affected chainguard agentbeat-fips
beats-7 affected chainguard beats-7
beats-8.17 affected chainguard beats-8.17
beats-8.18 affected chainguard beats-8.18
beats-9.1 affected chainguard beats-9.1
beats-9.2 affected chainguard beats-9.2
beats-fips-8.17 affected chainguard beats-fips-8.17
beats-fips-8.18 affected chainguard beats-fips-8.18
beats-fips-8.19 affected chainguard beats-fips-8.19
beats-fips-9.0 affected chainguard beats-fips-9.0
beats-fips-9.1 affected chainguard beats-fips-9.1
beats-fips-9.2 affected chainguard beats-fips-9.2
bento affected chainguard bento
bento affected wolfi bento
dapr-1.15 affected chainguard dapr-1.15
dapr-1.15 affected wolfi dapr-1.15
dapr-fips-1.15 affected chainguard dapr-fips-1.15
eclipse/paho.mqtt.golang affected github.com github.com/eclipse/paho.mqtt.golang
elastic-agent affected chainguard elastic-agent
elastic-agent-8.18 affected chainguard elastic-agent-8.18
elastic-agent-9.1 affected chainguard elastic-agent-9.1
elastic-agent-fips-8.18 affected chainguard elastic-agent-fips-8.18
elastic-agent-fips-8.19 affected chainguard elastic-agent-fips-8.19
elastic-agent-fips-9.0 affected chainguard elastic-agent-fips-9.0
elastic-agent-fips-9.1 affected chainguard elastic-agent-fips-9.1
falcosidekick affected wolfi falcosidekick
falcosidekick affected chainguard falcosidekick
falcosidekick-fips affected chainguard falcosidekick-fips
influxd-2.7 affected chainguard influxd-2.7
influxd-2.7 affected wolfi influxd-2.7
minio affected wolfi minio
minio affected chainguard minio
minio-fips affected chainguard minio-fips
telegraf-1.33 affected wolfi telegraf-1.33
telegraf-1.33 affected chainguard telegraf-1.33
telegraf-1.34 affected wolfi telegraf-1.34
telegraf-1.34 affected chainguard telegraf-1.34
telegraf-1.35 affected wolfi telegraf-1.35
telegraf-1.35 affected chainguard telegraf-1.35
zabbix-agent2-6.0 affected chainguard zabbix-agent2-6.0
zabbix-agent2-7.0 affected chainguard zabbix-agent2-7.0
zabbix-agent2-7.2 affected chainguard zabbix-agent2-7.2
zabbix-agent2-7.4 affected chainguard zabbix-agent2-7.4
zabbix-agent2-fips-6.0 affected chainguard zabbix-agent2-fips-6.0
zabbix-agent2-fips-7.0 affected chainguard zabbix-agent2-fips-7.0
zabbix-agent2-fips-7.2 affected chainguard zabbix-agent2-fips-7.2
zabbix-agent2-fips-7.4 affected chainguard zabbix-agent2-fips-7.4
Upstream advisory

GHSA-32fw-gq77-f2f2

Open SourceCoalition ESS < 30%HIGH2025-12-02

Eclipse Paho Go MQTT may incorrectly encode strings if length exceeds 65535 bytes

Affected products

ProductStatusVendorPackageEcosystem
eclipse/paho.mqtt.golang affected github.com github.com/eclipse/paho.mqtt.golang
Upstream advisory

CVE-2025-10543

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

Eclipse Paho Go MQTT may incorrectly encode strings if length exceeds 65535 bytes

CVEs:CVE-2025-10543

Affected products

ProductStatusVendorPackageEcosystem
eclipse/paho.mqtt.golang affected github.com github.com/eclipse/paho.mqtt.golang
Upstream advisory

CVE-2025-10543

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

Eclipse Paho Go MQTT may incorrectly encode strings if length exceeds 65535 bytes

CVEs:CVE-2025-10543

Affected products

ProductStatusVendorPackageEcosystem
eclipse/paho.mqtt.golang affected github.com github.com/eclipse/paho.mqtt.golang
Upstream advisory

CVE-2025-10543

GoogleCoalition ESS < 30%HIGH2025-12-02

In Eclipse Paho Go MQTT v3.1 library (paho.mqtt.golang) versions <=1.5.0 UTF-8 encoded strings, passed into the library, may be incorrectly encoded if their length exceeds 65535 bytes. This may lead to unexpected content in packets sent to the server (...

CVEs:CVE-2025-10543

Affected products

ProductStatusVendorPackageEcosystem
paho_mqtt affected eclipse
Upstream advisory

GHSA-72mf-gf7v-562w

Open SourceCoalition ESS < 30%HIGH2025-12-02

GHSA-72mf-gf7v-562w

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2025-13721

GoogleCoalition ESS < 30%HIGH2025-12-02

Race in v8 in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2025-13721

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13721

Open SourceCoalition ESS < 30%HIGH2025-12-02

DEBIAN-CVE-2025-13721

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-2c6f-5h2f-xj25

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

GHSA-2c6f-5h2f-xj25

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2025-13637

GoogleCoalition ESS < 30%MEDIUM2025-12-02

Inappropriate implementation in Downloads in Google Chrome prior to 143.0.7499.41 allowed a remote attacker who convinced a user to engage in specific UI gestures to bypass download protections via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2025-13637

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13637

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

DEBIAN-CVE-2025-13637

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-6pgw-376w-jrxx

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

GHSA-6pgw-376w-jrxx

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2025-13636

GoogleCoalition ESS < 30%MEDIUM2025-12-02

Inappropriate implementation in Split View in Google Chrome prior to 143.0.7499.41 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted domain name. (Chromium security severity: Low)

CVEs:CVE-2025-13636

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13636

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

DEBIAN-CVE-2025-13636

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-68ww-h25v-g8mq

Open SourceCoalition ESS < 30%HIGH2025-12-02

GHSA-68ww-h25v-g8mq

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2025-13640

GoogleCoalition ESS < 30%HIGH2025-12-02

Inappropriate implementation in Passwords in Google Chrome prior to 143.0.7499.41 allowed a local attacker to bypass authentication via physical access to the device. (Chromium security severity: Low)

CVEs:CVE-2025-13640

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13640

Open SourceCoalition ESS < 30%HIGH2025-12-02

DEBIAN-CVE-2025-13640

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

GHSA-h5pr-3m5w-7gm8

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

GHSA-h5pr-3m5w-7gm8

Affected products

ProductStatusVendorPackageEcosystem
chromium affected chainguard chromium
chromium affected wolfi chromium
Upstream advisory

CVE-2025-13634

GoogleCoalition ESS < 30%MEDIUM2025-12-02

Inappropriate implementation in Downloads in Google Chrome on Windows prior to 143.0.7499.41 allowed a local attacker to bypass mark of the web via a crafted HTML page. (Chromium security severity: Medium)

CVEs:CVE-2025-13634

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13634

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

DEBIAN-CVE-2025-13634

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2025-48618

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

In processLaunchBrowser of CommandParamsFactory.java, there is a possible browser interaction from the lockscreen due to improper locking. This could lead to physical escalation of privilege with no additional execution privileges needed. User interact...

CVEs:CVE-2025-48618

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

GHSA-x93g-7wjc-5jqw

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

GHSA-x93g-7wjc-5jqw

Affected products

ProductStatusVendorPackageEcosystem
chromium affected wolfi chromium
chromium affected chainguard chromium
Upstream advisory

CVE-2025-13635

GoogleCoalition ESS < 30%MEDIUM2025-12-02

Inappropriate implementation in Downloads in Google Chrome prior to 143.0.7499.41 allowed a local attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVEs:CVE-2025-13635

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DEBIAN-CVE-2025-13635

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

DEBIAN-CVE-2025-13635

Affected products

ProductStatusVendorPackageEcosystem
chromium affected Debian:11 chromium
chromium affected Debian:12 chromium
chromium affected Debian:13 chromium
chromium affected Debian:14 chromium
Upstream advisory

CVE-2025-58476

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

Out-of-bounds read vulnerability in bootloader prior to SMR Dec-2025 Release 1 allows physical attackers to access out-of-bounds memory.

CVEs:CVE-2025-58476

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2025-36938

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In U-Boot of append_uint32_le(), there is a possible fault injection due to a logic error in the code. This could lead to physical escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-36938

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-308947502

GoogleCoalition ESS < 30%NONE2025-12-01

PUB-A-308947502

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

GO-2025-4222

Open SourceCoalition ESS < 30%CRITICAL2025-12-15

CNA Plugins Portmap nftables backend can intercept non-local traffic in github.com/containernetworking/plugins

Affected products

ProductStatusVendorPackageEcosystem
amazon-k8s-cni-fips affected chainguard amazon-k8s-cni-fips
azure-ipam affected chainguard azure-ipam
azure-ipam affected wolfi azure-ipam
buildah affected wolfi buildah
buildah affected chainguard buildah
buildkitd affected chainguard buildkitd
buildkitd affected wolfi buildkitd
buildkitd-fips affected chainguard buildkitd-fips
calico-3.30 affected chainguard calico-3.30
calico-3.31 affected chainguard calico-3.31
calico-3.31 affected wolfi calico-3.31
calico-fips-3.30 affected chainguard calico-fips-3.30
calico-fips-3.31 affected chainguard calico-fips-3.31
containerd-2 affected wolfi containerd-2
containerd-2 affected chainguard containerd-2
containerd-fips affected chainguard containerd-fips
containernetworking/plugins affected github.com github.com/containernetworking/plugins
datadog-agent-7.77 affected chainguard datadog-agent-7.77
datadog-agent-7.77 affected wolfi datadog-agent-7.77
datadog-agent-7.78 affected chainguard datadog-agent-7.78
datadog-agent-7.78 affected wolfi datadog-agent-7.78
datadog-agent-fips-7.77 affected chainguard datadog-agent-fips-7.77
datadog-agent-fips-7.78 affected chainguard datadog-agent-fips-7.78
docker affected wolfi docker
docker affected chainguard docker
docker-fips affected chainguard docker-fips
flannel affected wolfi flannel
flannel affected chainguard flannel
flannel-fips affected chainguard flannel-fips
istio-1.25 affected wolfi istio-1.25
istio-1.25 affected chainguard istio-1.25
istio-1.26 affected chainguard istio-1.26
istio-1.27 affected chainguard istio-1.27
istio-1.27 affected wolfi istio-1.27
istio-1.28 affected chainguard istio-1.28
istio-1.28 affected wolfi istio-1.28
istio-fips-1.25 affected chainguard istio-fips-1.25
istio-fips-1.26 affected chainguard istio-fips-1.26
istio-fips-1.27 affected chainguard istio-fips-1.27
istio-fips-1.28 affected chainguard istio-fips-1.28
k3s affected chainguard k3s
k3s affected wolfi k3s
k3s-1.32 affected wolfi k3s-1.32
k3s-1.32 affected chainguard k3s-1.32
k3s-1.33 affected chainguard k3s-1.33
k3s-1.33 affected wolfi k3s-1.33
kuma-2.10 affected chainguard kuma-2.10
kuma-2.11 affected chainguard kuma-2.11
kuma-2.12 affected chainguard kuma-2.12
kuma-2.12 affected wolfi kuma-2.12
multus-cni affected wolfi multus-cni
multus-cni affected chainguard multus-cni
multus-cni-fips affected chainguard multus-cni-fips
nerdctl affected chainguard nerdctl
nerdctl affected wolfi nerdctl
nerdctl-fips affected chainguard nerdctl-fips
podman affected chainguard podman
podman affected wolfi podman
rke2-runtime-1.31 affected chainguard rke2-runtime-1.31
rke2-runtime-1.32 affected chainguard rke2-runtime-1.32
rke2-runtime-1.33 affected chainguard rke2-runtime-1.33
rke2-runtime-1.34 affected chainguard rke2-runtime-1.34
rootlesskit affected wolfi rootlesskit
rootlesskit affected chainguard rootlesskit
rootlesskit-fips affected chainguard rootlesskit-fips
Upstream advisory

MINI-7vp7-5h98-cfjp

Open SourceCoalition ESS < 30%2025-12-10

MINI-7vp7-5h98-cfjp

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.25 affected MinimOS istio-cni-fips-1.25
istioctl-bash-completion-fips-1.25 affected MinimOS istioctl-bash-completion-fips-1.25
istioctl-fips-1.25 affected MinimOS istioctl-fips-1.25
istioctl-zsh-completion-fips-1.25 affected MinimOS istioctl-zsh-completion-fips-1.25
istio-fips-1.25 affected MinimOS istio-fips-1.25
istio-install-cni-fips-1.25 affected MinimOS istio-install-cni-fips-1.25
istio-pilot-agent-fips-1.25 affected MinimOS istio-pilot-agent-fips-1.25
istio-pilot-discovery-fips-1.25 affected MinimOS istio-pilot-discovery-fips-1.25
Upstream advisory

MINI-6vgm-8v79-3gc2

Open SourceCoalition ESS < 30%2025-12-10

MINI-6vgm-8v79-3gc2

Affected products

ProductStatusVendorPackageEcosystem
istio-1.25 affected MinimOS istio-1.25
istio-cni-1.25 affected MinimOS istio-cni-1.25
istio-cni-1.25-compat affected MinimOS istio-cni-1.25-compat
istioctl-1.25 affected MinimOS istioctl-1.25
istioctl-bash-completion-1.25 affected MinimOS istioctl-bash-completion-1.25
istioctl-zsh-completion-1.25 affected MinimOS istioctl-zsh-completion-1.25
istio-install-cni-1.25 affected MinimOS istio-install-cni-1.25
istio-install-cni-1.25-compat affected MinimOS istio-install-cni-1.25-compat
istio-pilot-agent-1.25 affected MinimOS istio-pilot-agent-1.25
istio-pilot-agent-1.25-compat affected MinimOS istio-pilot-agent-1.25-compat
istio-pilot-discovery-1.25 affected MinimOS istio-pilot-discovery-1.25
istio-pilot-discovery-1.25-compat affected MinimOS istio-pilot-discovery-1.25-compat
Upstream advisory

MINI-q586-4fq7-25fj

Open SourceCoalition ESS < 30%2025-12-10

MINI-q586-4fq7-25fj

Affected products

ProductStatusVendorPackageEcosystem
istio-1.28 affected MinimOS istio-1.28
istio-cni-1.28 affected MinimOS istio-cni-1.28
istio-cni-1.28-compat affected MinimOS istio-cni-1.28-compat
istioctl-1.28 affected MinimOS istioctl-1.28
istioctl-bash-completion-1.28 affected MinimOS istioctl-bash-completion-1.28
istioctl-zsh-completion-1.28 affected MinimOS istioctl-zsh-completion-1.28
istio-install-cni-1.28 affected MinimOS istio-install-cni-1.28
istio-install-cni-1.28-compat affected MinimOS istio-install-cni-1.28-compat
istio-pilot-agent-1.28 affected MinimOS istio-pilot-agent-1.28
istio-pilot-agent-1.28-compat affected MinimOS istio-pilot-agent-1.28-compat
istio-pilot-discovery-1.28 affected MinimOS istio-pilot-discovery-1.28
istio-pilot-discovery-1.28-compat affected MinimOS istio-pilot-discovery-1.28-compat
Upstream advisory

MINI-fjf3-69v7-3cxh

Open SourceCoalition ESS < 30%2025-12-10

MINI-fjf3-69v7-3cxh

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.28 affected MinimOS istio-cni-fips-1.28
istioctl-bash-completion-fips-1.28 affected MinimOS istioctl-bash-completion-fips-1.28
istioctl-fips-1.28 affected MinimOS istioctl-fips-1.28
istioctl-zsh-completion-fips-1.28 affected MinimOS istioctl-zsh-completion-fips-1.28
istio-fips-1.28 affected MinimOS istio-fips-1.28
istio-install-cni-fips-1.28 affected MinimOS istio-install-cni-fips-1.28
istio-pilot-agent-fips-1.28 affected MinimOS istio-pilot-agent-fips-1.28
istio-pilot-discovery-fips-1.28 affected MinimOS istio-pilot-discovery-fips-1.28
Upstream advisory

MINI-mvmc-r869-5rvr

Open SourceCoalition ESS < 30%2025-12-10

MINI-mvmc-r869-5rvr

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.27 affected MinimOS istio-cni-fips-1.27
istioctl-bash-completion-fips-1.27 affected MinimOS istioctl-bash-completion-fips-1.27
istioctl-fips-1.27 affected MinimOS istioctl-fips-1.27
istioctl-zsh-completion-fips-1.27 affected MinimOS istioctl-zsh-completion-fips-1.27
istio-fips-1.27 affected MinimOS istio-fips-1.27
istio-install-cni-fips-1.27 affected MinimOS istio-install-cni-fips-1.27
istio-pilot-agent-fips-1.27 affected MinimOS istio-pilot-agent-fips-1.27
istio-pilot-discovery-fips-1.27 affected MinimOS istio-pilot-discovery-fips-1.27
Upstream advisory

MINI-43px-j8h6-764c

Open SourceCoalition ESS < 30%2025-12-10

MINI-43px-j8h6-764c

Affected products

ProductStatusVendorPackageEcosystem
istio-1.27 affected MinimOS istio-1.27
istio-cni-1.27 affected MinimOS istio-cni-1.27
istio-cni-1.27-compat affected MinimOS istio-cni-1.27-compat
istioctl-1.27 affected MinimOS istioctl-1.27
istioctl-bash-completion-1.27 affected MinimOS istioctl-bash-completion-1.27
istioctl-zsh-completion-1.27 affected MinimOS istioctl-zsh-completion-1.27
istio-install-cni-1.27 affected MinimOS istio-install-cni-1.27
istio-install-cni-1.27-compat affected MinimOS istio-install-cni-1.27-compat
istio-pilot-agent-1.27 affected MinimOS istio-pilot-agent-1.27
istio-pilot-agent-1.27-compat affected MinimOS istio-pilot-agent-1.27-compat
istio-pilot-discovery-1.27 affected MinimOS istio-pilot-discovery-1.27
istio-pilot-discovery-1.27-compat affected MinimOS istio-pilot-discovery-1.27-compat
Upstream advisory

MINI-4fjx-mg5q-fc69

Open SourceCoalition ESS < 30%2025-12-10

MINI-4fjx-mg5q-fc69

Affected products

ProductStatusVendorPackageEcosystem
istio-1.26 affected MinimOS istio-1.26
istio-cni-1.26 affected MinimOS istio-cni-1.26
istio-cni-1.26-compat affected MinimOS istio-cni-1.26-compat
istioctl-1.26 affected MinimOS istioctl-1.26
istioctl-bash-completion-1.26 affected MinimOS istioctl-bash-completion-1.26
istioctl-zsh-completion-1.26 affected MinimOS istioctl-zsh-completion-1.26
istio-install-cni-1.26 affected MinimOS istio-install-cni-1.26
istio-install-cni-1.26-compat affected MinimOS istio-install-cni-1.26-compat
istio-pilot-agent-1.26 affected MinimOS istio-pilot-agent-1.26
istio-pilot-agent-1.26-compat affected MinimOS istio-pilot-agent-1.26-compat
istio-pilot-discovery-1.26 affected MinimOS istio-pilot-discovery-1.26
istio-pilot-discovery-1.26-compat affected MinimOS istio-pilot-discovery-1.26-compat
Upstream advisory

MINI-95w3-vrm5-gjfp

Open SourceCoalition ESS < 30%2025-12-10

MINI-95w3-vrm5-gjfp

Affected products

ProductStatusVendorPackageEcosystem
istio-cni-fips-1.26 affected MinimOS istio-cni-fips-1.26
istioctl-bash-completion-fips-1.26 affected MinimOS istioctl-bash-completion-fips-1.26
istioctl-fips-1.26 affected MinimOS istioctl-fips-1.26
istioctl-zsh-completion-fips-1.26 affected MinimOS istioctl-zsh-completion-fips-1.26
istio-fips-1.26 affected MinimOS istio-fips-1.26
istio-install-cni-fips-1.26 affected MinimOS istio-install-cni-fips-1.26
istio-pilot-agent-fips-1.26 affected MinimOS istio-pilot-agent-fips-1.26
istio-pilot-discovery-fips-1.26 affected MinimOS istio-pilot-discovery-fips-1.26
Upstream advisory

MINI-85x2-mc7g-c4w7

Open SourceCoalition ESS < 30%2025-12-10

MINI-85x2-mc7g-c4w7

Affected products

ProductStatusVendorPackageEcosystem
cni-plugins affected MinimOS cni-plugins
cni-plugins-aws-k8s-compat affected MinimOS cni-plugins-aws-k8s-compat
cni-plugins-bandwidth affected MinimOS cni-plugins-bandwidth
cni-plugins-bandwidth-compat affected MinimOS cni-plugins-bandwidth-compat
cni-plugins-bridge affected MinimOS cni-plugins-bridge
cni-plugins-bridge-compat affected MinimOS cni-plugins-bridge-compat
cni-plugins-dhcp affected MinimOS cni-plugins-dhcp
cni-plugins-dhcp-compat affected MinimOS cni-plugins-dhcp-compat
cni-plugins-dummy affected MinimOS cni-plugins-dummy
cni-plugins-dummy-compat affected MinimOS cni-plugins-dummy-compat
cni-plugins-firewall affected MinimOS cni-plugins-firewall
cni-plugins-firewall-compat affected MinimOS cni-plugins-firewall-compat
cni-plugins-host-device affected MinimOS cni-plugins-host-device
cni-plugins-host-device-compat affected MinimOS cni-plugins-host-device-compat
cni-plugins-host-local affected MinimOS cni-plugins-host-local
cni-plugins-host-local-compat affected MinimOS cni-plugins-host-local-compat
cni-plugins-ipam affected MinimOS cni-plugins-ipam
cni-plugins-ipvlan affected MinimOS cni-plugins-ipvlan
cni-plugins-ipvlan-compat affected MinimOS cni-plugins-ipvlan-compat
cni-plugins-loopback affected MinimOS cni-plugins-loopback
cni-plugins-loopback-compat affected MinimOS cni-plugins-loopback-compat
cni-plugins-macvlan affected MinimOS cni-plugins-macvlan
cni-plugins-macvlan-compat affected MinimOS cni-plugins-macvlan-compat
cni-plugins-main affected MinimOS cni-plugins-main
cni-plugins-meta affected MinimOS cni-plugins-meta
cni-plugins-portmap affected MinimOS cni-plugins-portmap
cni-plugins-portmap-compat affected MinimOS cni-plugins-portmap-compat
cni-plugins-ptp affected MinimOS cni-plugins-ptp
cni-plugins-ptp-compat affected MinimOS cni-plugins-ptp-compat
cni-plugins-sbr affected MinimOS cni-plugins-sbr
cni-plugins-sbr-compat affected MinimOS cni-plugins-sbr-compat
cni-plugins-static affected MinimOS cni-plugins-static
cni-plugins-static-compat affected MinimOS cni-plugins-static-compat
cni-plugins-tap affected MinimOS cni-plugins-tap
cni-plugins-tap-compat affected MinimOS cni-plugins-tap-compat
cni-plugins-tuning affected MinimOS cni-plugins-tuning
cni-plugins-tuning-compat affected MinimOS cni-plugins-tuning-compat
cni-plugins-vlan affected MinimOS cni-plugins-vlan
cni-plugins-vlan-compat affected MinimOS cni-plugins-vlan-compat
cni-plugins-vrf affected MinimOS cni-plugins-vrf
cni-plugins-vrf-compat affected MinimOS cni-plugins-vrf-compat
Upstream advisory

MINI-2fmx-rpvm-r998

Open SourceCoalition ESS < 30%2025-12-10

MINI-2fmx-rpvm-r998

Affected products

ProductStatusVendorPackageEcosystem
cni-plugins-aws-k8s-compat-fips affected MinimOS cni-plugins-aws-k8s-compat-fips
cni-plugins-bandwidth-fips affected MinimOS cni-plugins-bandwidth-fips
cni-plugins-bridge-fips affected MinimOS cni-plugins-bridge-fips
cni-plugins-dhcp-fips affected MinimOS cni-plugins-dhcp-fips
cni-plugins-dummy-fips affected MinimOS cni-plugins-dummy-fips
cni-plugins-fips affected MinimOS cni-plugins-fips
cni-plugins-firewall-fips affected MinimOS cni-plugins-firewall-fips
cni-plugins-host-device-fips affected MinimOS cni-plugins-host-device-fips
cni-plugins-host-local-fips affected MinimOS cni-plugins-host-local-fips
cni-plugins-ipam-fips affected MinimOS cni-plugins-ipam-fips
cni-plugins-ipvlan-fips affected MinimOS cni-plugins-ipvlan-fips
cni-plugins-loopback-fips affected MinimOS cni-plugins-loopback-fips
cni-plugins-macvlan-fips affected MinimOS cni-plugins-macvlan-fips
cni-plugins-main-fips affected MinimOS cni-plugins-main-fips
cni-plugins-meta-fips affected MinimOS cni-plugins-meta-fips
cni-plugins-portmap-fips affected MinimOS cni-plugins-portmap-fips
cni-plugins-ptp-fips affected MinimOS cni-plugins-ptp-fips
cni-plugins-sbr-fips affected MinimOS cni-plugins-sbr-fips
cni-plugins-static-fips affected MinimOS cni-plugins-static-fips
cni-plugins-tap-fips affected MinimOS cni-plugins-tap-fips
cni-plugins-tuning-fips affected MinimOS cni-plugins-tuning-fips
cni-plugins-vlan-fips affected MinimOS cni-plugins-vlan-fips
cni-plugins-vrf-fips affected MinimOS cni-plugins-vrf-fips
Upstream advisory

GHSA-jv3w-x3r3-g6rm

Open SourceCoalition ESS < 30%CRITICAL2025-12-09

CNA Plugins Portmap nftables backend can intercept non-local traffic

Affected products

ProductStatusVendorPackageEcosystem
amazon-k8s-cni-fips affected chainguard amazon-k8s-cni-fips
azure-ipam affected chainguard azure-ipam
azure-ipam affected wolfi azure-ipam
buildah affected wolfi buildah
buildah affected chainguard buildah
buildkitd affected chainguard buildkitd
buildkitd affected wolfi buildkitd
buildkitd-fips affected chainguard buildkitd-fips
calico-3.30 affected chainguard calico-3.30
calico-3.30 affected wolfi calico-3.30
calico-3.31 affected chainguard calico-3.31
calico-3.31 affected wolfi calico-3.31
calico-fips-3.30 affected chainguard calico-fips-3.30
calico-fips-3.31 affected chainguard calico-fips-3.31
containerd-2 affected wolfi containerd-2
containerd-2 affected chainguard containerd-2
containerd-fips affected chainguard containerd-fips
containernetworking/plugins affected github.com github.com/containernetworking/plugins
datadog-agent-7.77 affected wolfi datadog-agent-7.77
datadog-agent-7.77 affected chainguard datadog-agent-7.77
datadog-agent-7.78 affected wolfi datadog-agent-7.78
datadog-agent-7.78 affected chainguard datadog-agent-7.78
datadog-agent-fips-7.77 affected chainguard datadog-agent-fips-7.77
datadog-agent-fips-7.78 affected chainguard datadog-agent-fips-7.78
docker affected wolfi docker
docker affected chainguard docker
docker-fips affected chainguard docker-fips
flannel affected wolfi flannel
flannel affected chainguard flannel
flannel-fips affected chainguard flannel-fips
istio-1.25 affected chainguard istio-1.25
istio-1.25 affected wolfi istio-1.25
istio-1.26 affected chainguard istio-1.26
istio-1.26 affected wolfi istio-1.26
istio-1.27 affected chainguard istio-1.27
istio-1.27 affected wolfi istio-1.27
istio-1.28 affected wolfi istio-1.28
istio-1.28 affected chainguard istio-1.28
istio-fips-1.25 affected chainguard istio-fips-1.25
istio-fips-1.26 affected chainguard istio-fips-1.26
istio-fips-1.27 affected chainguard istio-fips-1.27
istio-fips-1.28 affected chainguard istio-fips-1.28
k3s affected wolfi k3s
k3s affected chainguard k3s
k3s-1.32 affected chainguard k3s-1.32
k3s-1.32 affected wolfi k3s-1.32
k3s-1.33 affected wolfi k3s-1.33
k3s-1.33 affected chainguard k3s-1.33
kuma-2.10 affected wolfi kuma-2.10
kuma-2.10 affected chainguard kuma-2.10
kuma-2.11 affected chainguard kuma-2.11
kuma-2.11 affected wolfi kuma-2.11
kuma-2.12 affected chainguard kuma-2.12
kuma-2.12 affected wolfi kuma-2.12
multus-cni affected wolfi multus-cni
multus-cni affected chainguard multus-cni
multus-cni-fips affected chainguard multus-cni-fips
nerdctl affected wolfi nerdctl
nerdctl affected chainguard nerdctl
nerdctl-fips affected chainguard nerdctl-fips
podman affected wolfi podman
podman affected chainguard podman
podman-fips affected chainguard podman-fips
rke2-runtime-1.31 affected chainguard rke2-runtime-1.31
rke2-runtime-1.32 affected chainguard rke2-runtime-1.32
rke2-runtime-1.33 affected chainguard rke2-runtime-1.33
rke2-runtime-1.34 affected chainguard rke2-runtime-1.34
rootlesskit affected chainguard rootlesskit
rootlesskit affected wolfi rootlesskit
rootlesskit-fips affected chainguard rootlesskit-fips
Upstream advisory

GHSA-jv3w-x3r3-g6rm

GoogleCoalition ESS < 30%CRITICAL2025-12-09

CNA Plugins Portmap nftables backend can intercept non-local traffic

Affected products

ProductStatusVendorPackageEcosystem
containernetworking/plugins affected github.com github.com/containernetworking/plugins
Upstream advisory

ASB-A-416692063

GoogleCoalition ESS < 30%2025-12-01

ASB-A-416692063

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-48621

Open SourceCoalition ESS < 30%HIGH2025-12-01

In DefaultTransitionHandler.java, there is a possible way to enable a tapjacking attack due to a insecure default. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitat...

CVEs:CVE-2025-48621

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48580

Open SourceCoalition ESS < 30%HIGH2025-12-01

In connectInternal of MediaBrowser.java, there is a possible way to access while in use permission while the app is in background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges...

CVEs:CVE-2025-48580

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36923

Open SourceCoalition ESS < 30%HIGH2025-12-02

In NrmmDecoder::DecodeSORTransparentContext of cn_NrmmDecoder.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges need...

CVEs:CVE-2025-36923

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-425907218

GoogleCoalition ESS < 30%2025-12-01

ASB-A-425907218

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-435056041

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-435056041

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-36924

Open SourceCoalition ESS < 30%HIGH2025-12-02

In ss_DecodeLcsAssistDataReqMsg(void) of ss_LcsManagement.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed....

CVEs:CVE-2025-36924

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-422442679

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-422442679

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-58475

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

Improper input validation in libsec-ril.so prior to SMR Dec-2025 Release 1 allows local privileged attackers to write out-of-bounds memory.

CVEs:CVE-2025-58475

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2025-48615

Open SourceCoalition ESS < 30%HIGH2025-12-01

In getComponentName of MediaButtonReceiverHolder.java, there is a possible desync in persistence due to resource exhaustion. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed...

CVEs:CVE-2025-48615

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Android affected Google
Upstream advisory

CVE-2025-48614

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

In rebootWipeUserData of RecoverySystem.java, there is a possible way to factory reset the device while in DSU mode due to a missing permission check. This could lead to physical denial of service with no additional execution privileges needed. User in...

CVEs:CVE-2025-48614

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48623

Open SourceCoalition ESS < 30%HIGH2025-12-01

In init_pkvm_hyp_vcpu of pkvm.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-48623

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48637

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple functions of mem_protect.c, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-48637

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48638

Open SourceCoalition ESS < 30%HIGH2025-12-01

In __pkvm_load_tracing of trace.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-48638

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-436580278

GoogleCoalition ESS < 30%HIGH2025-12-01

ASB-A-436580278

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

ASB-A-442540376

GoogleCoalition ESS < 30%HIGH2025-12-01

ASB-A-442540376

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

ASB-A-443763663

GoogleCoalition ESS < 30%HIGH2025-12-01

ASB-A-443763663

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2025-36918

Open SourceCoalition ESS < 30%HIGH2025-12-02

In aoc_service_read_message of aoc_ipc_core.c, there is a possible out of bounds read due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploit...

CVEs:CVE-2025-36918

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-21080

Open SourceCoalition ESS < 30%HIGH2025-12-01

Improper export of android application components in Dynamic Lockscreen prior to SMR Dec-2025 Release 1 allows local attackers to access files with Dynamic Lockscreen's privilege.

CVEs:CVE-2025-21080

Affected products

ProductStatusVendorPackageEcosystem
android affected samsung
Upstream advisory

CVE-2025-48639

Open SourceCoalition ESS < 30%HIGH2025-12-01

In DefaultTransitionHandler.java, there is a possible way to unknowingly grant permissions to an app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction i...

CVEs:CVE-2025-48639

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-418867806

GoogleCoalition ESS < 30%NONE2025-12-01

PUB-A-418867806

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-48565

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple locations, there is a possible way to bypass the cross profile intent filter due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed f...

CVEs:CVE-2025-48565

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Android affected Google
Upstream advisory

CVE-2025-48622

Open SourceCoalition ESS < 30%HIGH2025-12-01

In ProcessArea of dng_misc_opcodes.cpp, there is a possible out of bounds read due to a buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-48622

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-412662901

Open SourceCoalition ESS < 30%HIGH2025-12-01

ASB-A-412662901

Affected products

ProductStatusVendorPackageEcosystem
cts affected platform platform/cts
external/dng_sdk affected platform platform/external/dng_sdk
external/libjpeg-turbo affected platform platform/external/libjpeg-turbo
external/skia affected platform platform/external/skia
Upstream advisory

CVE-2025-36934

Open SourceCoalition ESS < 30%HIGH2025-12-02

In bigo_worker_thread of private/google-modules/video/gchips/bigo.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not ne...

CVEs:CVE-2025-36934

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-427204614

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-427204614

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-36927

Open SourceCoalition ESS < 30%HIGH2025-12-02

In GetTachyonCommand of tachyon_server_common.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ...

CVEs:CVE-2025-36927

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36928

Open SourceCoalition ESS < 30%HIGH2025-12-02

In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-36928

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36930

Open SourceCoalition ESS < 30%HIGH2025-12-02

In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-36930

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36932

Open SourceCoalition ESS < 30%HIGH2025-12-02

In tracepoint_msg_handler of cpm/google/lib/tracepoint/tracepoint_ipc.c, there is a possible memory overwrite due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User intera...

CVEs:CVE-2025-36932

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48566

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-48566

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48620

Open SourceCoalition ESS < 30%HIGH2025-12-01

In onSomePackagesChanged of VoiceInteractionManagerService.java, there is a possible way for a third party application's component name to persist even after uninstalling due to a logic error in the code. This could lead to local escalation of privileg...

CVEs:CVE-2025-48620

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48624

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple functions of arm-smmu-v3.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi...

CVEs:CVE-2025-48624

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-443053939

GoogleCoalition ESS < 30%HIGH2025-12-01

ASB-A-443053939

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

PUB-A-421014835

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-421014835

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-427224084

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-427224084

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-427253630

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-427253630

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-445162487

GoogleCoalition ESS < 30%NONE2025-12-01

PUB-A-445162487

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-32328

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple functions of Session.java, there is a possible way to view images belonging to a different user of the device due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed....

CVEs:CVE-2025-32328

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-32329

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple functions of Session.java, there is a possible way to view images belonging to a different user of the device due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed....

CVEs:CVE-2025-32329

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48584

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple functions of NotificationManagerService.java, there is a possible way to bypass the per-package channel limits causing resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User inte...

CVEs:CVE-2025-48584

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48610

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

In __pkvm_guest_relinquish_to_host of mem_protect.c, there is a possible configuration data leak due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not n...

CVEs:CVE-2025-48610

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-432439762

GoogleCoalition ESS < 30%MEDIUM2025-12-01

ASB-A-432439762

Affected products

ProductStatusVendorPackageEcosystem
:linux_kernel: affected Android :linux_kernel:
Upstream advisory

CVE-2025-36929

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In AreFencesRegistered of gxp_fence_manager.cc, there is a possible information leak due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for ex...

CVEs:CVE-2025-36929

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48591

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

In multiple locations, there is a possible way to read files from another user due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploit...

CVEs:CVE-2025-48591

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-421485921

GoogleCoalition ESS < 30%MEDIUM2025-12-01

PUB-A-421485921

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-32319

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

In ensureBound of RemotePrintService.java, there is a possible way for a background app to keep foreground permissions due to a permissions bypass. This could lead to local escalation of privilege with user execution privileges needed. User interaction...

CVEs:CVE-2025-32319

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48573

Open SourceCoalition ESS < 30%HIGH2025-12-01

In sendCommand of MediaSessionRecord.java, there is a possible way to launch the foreground service while the app is in the background due to FGS while-in-use abuse. This could lead to local escalation of privilege with no additional execution privileg...

CVEs:CVE-2025-48573

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48586

Open SourceCoalition ESS < 30%HIGH2025-12-01

In onActivityResult of EditFdnContactScreen.java, there is a possible way to leak contacts from the work profile due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction...

CVEs:CVE-2025-48586

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-291281543

GoogleCoalition ESS < 30%NONE2025-12-01

ASB-A-291281543

Affected products

ProductStatusVendorPackageEcosystem
frameworks/base affected platform platform/frameworks/base
vendor/google_shared/build/release affected platform platform/vendor/google_shared/build/release
Upstream advisory

CVE-2025-48555

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple functions of NotificationStation.java, there is a possible cross-profile information disclosure due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is n...

CVEs:CVE-2025-48555

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48576

Open SourceCoalition ESS < 30%HIGH2025-12-01

In updateNotificationChannelGroupFromPrivilegedListener of NotificationManagerService.java, there is a possible permanent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges n...

CVEs:CVE-2025-48576

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48627

Open SourceCoalition ESS < 30%HIGH2025-12-01

In startNextMatchingActivity of ActivityTaskManagerService.java, there is a possible way to launch an activity from the background due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privilege...

CVEs:CVE-2025-48627

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48632

Open SourceCoalition ESS < 30%HIGH2025-12-01

In setDisplayName of AssociationRequest.java, there is a possible way to cause CDM associations to persist after the user has disassociated them due to improper input validation. This could lead to local escalation of privilege with no additional execu...

CVEs:CVE-2025-48632

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20774

Open SourceCoalition ESS < 30%HIGH2025-12-02

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch I...

CVEs:CVE-2025-20774

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20775

Open SourceCoalition ESS < 30%HIGH2025-12-02

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS101...

CVEs:CVE-2025-20775

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20776

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In display, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID...

CVEs:CVE-2025-20776

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20777

Open SourceCoalition ESS < 30%HIGH2025-12-02

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch I...

CVEs:CVE-2025-20777

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20772

Open SourceCoalition ESS < 30%HIGH2025-12-02

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS101...

CVEs:CVE-2025-20772

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20773

Open SourceCoalition ESS < 30%HIGH2025-12-02

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS101...

CVEs:CVE-2025-20773

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48601

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

In multiple locations, there is a possible permanent denial of service due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-48601

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48607

Open SourceCoalition ESS < 30%MEDIUM2025-12-01

In multiple locations, there is a possible way to create a large amount of app ops due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitat...

CVEs:CVE-2025-48607

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48628

Open SourceCoalition ESS < 30%HIGH2025-12-01

In validateIconUserBoundary of PrintManagerService.java, there is a possible cross-user image leak due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed...

CVEs:CVE-2025-48628

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48629

Open SourceCoalition ESS < 30%HIGH2025-12-01

In findAvailRecognizer of VoiceInteractionManagerService.java, there is a possible way to become the default speech recognizer app due to an insecure default value. This could lead to local escalation of privilege with no additional execution privilege...

CVEs:CVE-2025-48629

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36922

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In bigo_map of bigo_iommu.c, there is a possible information disclosure due to a use after free. This could lead to local escalation of privilege in the OS Kernel level with System execution privileges needed. User interaction is not needed for exploi...

CVEs:CVE-2025-36922

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-22420

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple locations, there is a possible way to leak audio files across user profiles due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi...

CVEs:CVE-2025-22420

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-326045940

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-326045940

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-36919

Open SourceCoalition ESS < 30%HIGH2025-12-02

In aocc_read of aoc_channel_dev.c, there is a possible double free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-36919

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36925

Open SourceCoalition ESS < 30%HIGH2025-12-02

In WAVES_send_data_to_dsp of libaoc_waves.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for expl...

CVEs:CVE-2025-36925

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36931

Open SourceCoalition ESS < 30%HIGH2025-12-02

In GetHostAddress of gxp_buffer.h, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-36931

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36935

Open SourceCoalition ESS < 30%HIGH2025-12-02

In trusty_ffa_mem_reclaim of shared-mem-smcall.c, there is a possible memory corruption due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for explo...

CVEs:CVE-2025-36935

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-36936

Open SourceCoalition ESS < 30%HIGH2025-12-02

In GetTachyonCommand of tachyon_server_common.h, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp...

CVEs:CVE-2025-36936

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20769

Open SourceCoalition ESS < 30%HIGH2025-12-02

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch I...

CVEs:CVE-2025-20769

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20763

Open SourceCoalition ESS < 30%HIGH2025-12-02

In mmdvfs, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID...

CVEs:CVE-2025-20763

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-20766

Open SourceCoalition ESS < 30%HIGH2025-12-02

In display, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ...

CVEs:CVE-2025-20766

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-419088687

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-419088687

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-421246151

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-421246151

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-427215169

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-427215169

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-432548852

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-432548852

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-441512848

GoogleCoalition ESS < 30%HIGH2025-12-01

PUB-A-441512848

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-20789

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In GPU pdma, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS10117741; ...

CVEs:CVE-2025-20789

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

ASB-A-442288321

GoogleCoalition ESS < 30%2025-12-01

ASB-A-442288321

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-20788

Open SourceCoalition ESS < 30%HIGH2025-12-02

In GPU pdma, there is a possible memory corruption due to a missing permission check. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS10117735; Issue ...

CVEs:CVE-2025-20788

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2025-48564

Open SourceCoalition ESS < 30%HIGH2025-12-01

In multiple locations, there is a possible intent filter bypass due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-48564

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Android affected Google
Upstream advisory

CVE-2025-36921

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In ProtocolPsUnthrottleApn() of protocolpsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with baseband firmware compromise required. User interaction is not needed for ...

CVEs:CVE-2025-36921

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-399717531

GoogleCoalition ESS < 30%MEDIUM2025-12-01

PUB-A-399717531

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-36889

Open SourceCoalition ESS < 30%MEDIUM2025-12-02

In onCreateTasks of CameraActivity.java, there is a possible permission bypass due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-36889

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-369100626

GoogleCoalition ESS < 30%MEDIUM2025-12-01

PUB-A-369100626

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-36916

Open SourceCoalition ESS < 30%HIGH2025-12-02

In PrepareWorkloadBuffers of gxp_main_actor.cc, there is a possible double fetch due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVEs:CVE-2025-36916

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

PUB-A-421250936

GoogleCoalition ESS < 30%NONE2025-12-01

PUB-A-421250936

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

CVE-2025-48617

Open SourceEPSS <= 49%HIGH2025-12-01

In overrideConfig of CarrierConfigLoader.java, there is a possible way to bypass UID check due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ...

CVEs:CVE-2025-48617

Affected products

ProductStatusVendorPackageEcosystem
android affected google
android affected google
Upstream advisory

CLSA-2025-1766138358

Open SourceAll remaining2025-12-19

Update of golang

Affected products

ProductStatusVendorPackageEcosystem
golang affected TuxCare:AlmaLinux:9.6 golang
golang-bin affected TuxCare:AlmaLinux:9.6 golang-bin
golang-docs affected TuxCare:AlmaLinux:9.6 golang-docs
golang-misc affected TuxCare:AlmaLinux:9.6 golang-misc
golang-race affected TuxCare:AlmaLinux:9.6 golang-race
golang-src affected TuxCare:AlmaLinux:9.6 golang-src
golang-tests affected TuxCare:AlmaLinux:9.6 golang-tests
go-toolset affected TuxCare:AlmaLinux:9.6 go-toolset
Upstream advisory

SUSE-SU-2025:4381-1

Open SourceAll remaining2025-12-12

Security update for kubernetes-client

Affected products

ProductStatusVendorPackageEcosystem
kubernetes affected openSUSE:Leap 15.6 kubernetes
kubernetes affected SUSE:Linux Enterprise Module for Containers 15 SP6 kubernetes
kubernetes affected SUSE:Linux Enterprise Module for Containers 15 SP7 kubernetes
Upstream advisory

SUSE-SU-2025:4380-1

Open SourceAll remaining2025-12-12

Security update for kubernetes-client

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-old affected SUSE:Linux Enterprise Module for Containers 15 SP7 kubernetes-old
kubernetes-old affected SUSE:Linux Enterprise Module for Containers 15 SP6 kubernetes-old
kubernetes-old affected openSUSE:Leap 15.6 kubernetes-old
Upstream advisory

MINI-6ccx-5332-8j58

Open SourceAll remaining2025-12-02

MINI-6ccx-5332-8j58

Affected products

ProductStatusVendorPackageEcosystem
kubernetes-event-exporter affected MinimOS kubernetes-event-exporter
kubernetes-event-exporter-advanced-compat affected MinimOS kubernetes-event-exporter-advanced-compat
Upstream advisory

PUB-A-397679986

GoogleAll remainingHIGH2025-12-01

PUB-A-397679986

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-400838288

GoogleAll remainingNONE2025-12-01

PUB-A-400838288

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

PUB-A-430029957

GoogleAll remainingHIGH2025-12-01

PUB-A-430029957

Affected products

ProductStatusVendorPackageEcosystem
:unknown: affected Android :unknown:
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.