VDB
GO-2026-4349
GO-2026-4349
PUBLISHED
Improper validattion of configured threshold for delegations in github.com/theupdateframework/go-tuf
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| chainguard | trivy-fips | 0, 0, 0 |
| wolfi | witness | 0, 0, 0 |
| wolfi | spire-server | 0, 0, 0 |
| wolfi | falcoctl | 0, 0, 0 |
| chainguard | cloudbeat-8.19 | 0, 0, 0 |
| wolfi | zot | 0, 0, 0 |
| wolfi | skaffold | 0, 0, 0 |
| chainguard | rekor-fips | 0, 0, 0 |
| chainguard | crossplane-1.20 | 0, 0, 0 |
| chainguard | teleport-operator-fips-18 | 0, 0, 0 |
| chainguard | crossplane-fips-1.20 | 0, 0, 0 |
| chainguard | tflint | 0, 0, 0 |
| wolfi | gh | 0, 0, 0 |
| wolfi | rekor | 0, 0, 0 |
| chainguard | teleport-16 | 0, 0, 0 |
| chainguard | kyverno-1.15 | 0, 0, 0 |
| chainguard | crossplane-fips-2.0 | 0, 0, 0 |
| chainguard | kyverno-policy-reporter-plugins-kyverno-fips | 0, 0, 0 |
| chainguard | witness | 0, 0, 0 |
| wolfi | ratify | 0, 0, 0 |
…and 100 more
Timeline
- Feb 2, 2026 CVE Published
- Feb 26, 2026 CVE Updated