packaged by Chainguard
Contact our team to test out this image for free. Please also indicate any other images you would like to evaluate.
Expand | CVE ID | Severity | Package | Version | Last detected |
|---|---|---|---|---|---|
CVE-2025-66564 | High | github.com/sigstore/timestamp-authority | v1.2.5 | ||
CVE-2025-66564 | High | github.com/sigstore/timestamp-authority | v1.2.5 | ||
CVE-2026-39883 | High | go.opentelemetry.io/otel/sdk | v1.40.0 | ||
CVE-2026-39883 | High | go.opentelemetry.io/otel/sdk | v1.40.0 | ||
CVE-2026-32286 | High | github.com/jackc/pgproto3/v2 | v2.3.3 | ||
CVE-2026-39883 | High | go.opentelemetry.io/otel/sdk | v1.40.0 | ||
CVE-2026-32286 | High | github.com/jackc/pgproto3/v2 | v2.3.3 | ||
CVE-2026-32286 | High | github.com/jackc/pgproto3/v2 | v2.3.3 | ||
CVE-2026-32286 | High | github.com/jackc/pgproto3/v2 | v2.3.3 | ||
CVE-2025-66564 | High | github.com/sigstore/timestamp-authority | v1.2.5 | ||
CVE-2026-34040 | High | github.com/docker/docker | v28.3.3+incompatible | ||
CVE-2026-39883 | High | go.opentelemetry.io/otel/sdk | v1.40.0 | ||
CVE-2025-66564 | High | github.com/sigstore/timestamp-authority | v1.2.5 | ||
CVE-2026-39883 | High | go.opentelemetry.io/otel/sdk | v1.40.0 | ||
CVE-2026-24686 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-23991 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-23991 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-39882 | Medium | go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp | v1.37.0 | ||
CVE-2026-39882 | Medium | go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp | v1.37.0 | ||
CVE-2026-24137 | Medium | github.com/sigstore/sigstore | v1.9.5 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream | v1.7.3 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream | v1.7.3 | ||
CVE-2026-23991 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-24137 | Medium | github.com/sigstore/sigstore | v1.9.5 | ||
CVE-2026-23992 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-24117 | Medium | github.com/sigstore/rekor | v1.4.1 | ||
CVE-2026-24686 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-24686 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream | v1.7.3 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/service/s3 | v1.79.3 | ||
CVE-2026-24686 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/service/s3 | v1.79.3 | ||
CVE-2026-33997 | Medium | github.com/docker/docker | v28.3.3+incompatible | ||
CVE-2026-23992 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-23992 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-39882 | Medium | go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp | v1.37.0 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream | v1.7.3 | ||
CVE-2026-23991 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-39882 | Medium | go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp | v1.37.0 | ||
CVE-2026-24137 | Medium | github.com/sigstore/sigstore | v1.9.5 | ||
CVE-2026-23992 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-23831 | Medium | github.com/sigstore/rekor | v1.4.1 | ||
CVE-2026-24137 | Medium | github.com/sigstore/sigstore | v1.9.5 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/service/cloudwatchlogs | v1.58.9 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/service/s3 | v1.79.3 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/service/s3 | v1.79.3 |