CVE-2026-25122 PUBLISHED CVSS 5.5 MEDIUM

apko affected by unbounded resource consumption in expandapk.Split on attacker-controlled .apk streams

EPSS 0.02% · 3.3th percentile

Risk Scores

CVSS v3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
0.02%
3.3th percentile

Affected Products

VendorProductVersions
chainguardapko0.14.8, 0.14.8
chainguard-devapko>= 0.14.8, < 1.1.0, *
chainguard.devapko0.14.8, 0.14.8

Timeline

References

Open in Interactive Console →