packaged by Chainguard
Contact our team to test out this image for free. Please also indicate any other images you would like to evaluate.
Expand | CVE ID | Severity | Package | Version | Last detected |
|---|---|---|---|---|---|
CVE-2026-39831 | Critical | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-42508 | Critical | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-31789 | Critical | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-39834 | Critical | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-39833 | Critical | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-33186 | Critical | google.golang.org/grpc | v1.77.0 | ||
CVE-2025-68121 | Critical | stdlib | go1.25.5 | ||
CVE-2026-39832 | Critical | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-5450 | Critical | glibc | 2.42-r5 | ||
CVE-2026-34182 | Critical | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-39830 | Critical | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-27143 | Critical | stdlib | go1.25.5 | ||
CVE-2026-39821 | Critical | golang.org/x/net | v0.48.0 | ||
CVE-2026-46595 | Critical | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-32286 | High | github.com/jackc/pgproto3/v2 | v2.3.3 | ||
CVE-2026-42499 | High | stdlib | go1.25.5 | ||
CVE-2025-69419 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-31790 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-28389 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-9076 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2025-61731 | High | stdlib | go1.25.5 | ||
CVE-2026-24051 | High | go.opentelemetry.io/otel/sdk | v1.38.0 | ||
CVE-2025-61732 | High | stdlib | go1.25.5 | ||
CVE-2026-28387 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-28388 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-42504 | High | stdlib | go1.25.5 | ||
CVE-2025-69421 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-28390 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2025-15467 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-29181 | High | go.opentelemetry.io/otel | v1.38.0 | ||
CVE-2026-4437 | High | glibc | 2.42-r5 | ||
CVE-2026-34986 | High | github.com/go-jose/go-jose/v4 | v4.1.3 | ||
CVE-2026-42765 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2025-61726 | High | stdlib | go1.25.5 | ||
CVE-2026-34183 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-33811 | High | stdlib | go1.25.5 | ||
CVE-2026-39836 | High | stdlib | go1.25.5 | ||
CVE-2026-34180 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-28386 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2025-69420 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-33814 | High | stdlib | go1.25.5 | ||
CVE-2026-32280 | High | stdlib | go1.25.5 | ||
CVE-2026-34181 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-25679 | High | stdlib | go1.25.5 | ||
CVE-2026-39829 | High | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-32281 | High | stdlib | go1.25.5 | ||
CVE-2026-42764 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-42501 | High | stdlib | go1.25.5 | ||
GHSA-pcgw-qcv5-h8ch | High | github.com/russellhaering/gosaml2 | v0.10.0 | ||
CVE-2026-39820 | High | stdlib | go1.25.5 | ||
CVE-2026-7383 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-45445 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-39883 | High | go.opentelemetry.io/otel/sdk | v1.38.0 | ||
CVE-2026-4046 | High | glibc | 2.42-r5 | ||
CVE-2026-0915 | High | glibc | 2.42-r5 | ||
CVE-2026-34986 | High | github.com/go-jose/go-jose/v3 | v3.0.4 | ||
CVE-2026-27144 | High | stdlib | go1.25.5 | ||
CVE-2026-32283 | High | stdlib | go1.25.5 | ||
CVE-2026-46597 | High | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-33487 | High | github.com/russellhaering/goxmldsig | v1.5.0 | ||
CVE-2025-15281 | High | glibc | 2.42-r5 | ||
GHSA-hwqm-qvj9-4jr2 | High | github.com/russellhaering/gosaml2 | v0.10.0 | ||
CVE-2026-45447 | High | libcrypto3 | 3.6.0-r6 | ||
CVE-2025-68119 | High | stdlib | go1.25.5 | ||
CVE-2026-27140 | High | stdlib | go1.25.5 | ||
CVE-2026-33814 | High | golang.org/x/net | v0.48.0 | ||
CVE-2026-5928 | High | glibc | 2.42-r5 | ||
CVE-2026-0861 | High | glibc | 2.42-r5 | ||
CVE-2026-5435 | High | glibc | 2.42-r5 | ||
CVE-2026-35469 | High | github.com/moby/spdystream | v0.5.0 | ||
CVE-2026-39823 | Medium | stdlib | go1.25.5 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream | v1.7.3 | ||
CVE-2025-15468 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-22796 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2025-69418 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-39827 | Medium | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-39828 | Medium | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-39819 | Medium | stdlib | go1.25.5 | ||
CVE-2026-32288 | Medium | stdlib | go1.25.5 | ||
CVE-2026-32282 | Medium | stdlib | go1.25.5 | ||
CVE-2026-42767 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-24137 | Medium | github.com/sigstore/sigstore | v1.10.3 | ||
CVE-2025-61730 | Medium | stdlib | go1.25.5 | ||
CVE-2026-27136 | Medium | golang.org/x/net | v0.48.0 | ||
CVE-2026-39882 | Medium | go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp | v1.37.0 | ||
CVE-2026-27145 | Medium | stdlib | go1.25.5 | ||
CVE-2026-40898 | Medium | github.com/quic-go/quic-go | v0.57.0 | ||
CVE-2026-42766 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2025-68160 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-25680 | Medium | golang.org/x/net | v0.48.0 | ||
CVE-2026-25681 | Medium | golang.org/x/net | v0.48.0 | ||
CVE-2026-24686 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-2673 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-27142 | Medium | stdlib | go1.25.5 | ||
CVE-2026-23992 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-35188 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-42502 | Medium | golang.org/x/net | v0.48.0 | ||
CVE-2026-39826 | Medium | stdlib | go1.25.5 | ||
CVE-2026-39817 | Medium | stdlib | go1.25.5 | ||
CVE-2026-42507 | Medium | stdlib | go1.25.5 | ||
CVE-2026-32289 | Medium | stdlib | go1.25.5 | ||
CVE-2025-66199 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-6238 | Medium | glibc | 2.42-r5 | ||
CVE-2026-4438 | Medium | glibc | 2.42-r5 | ||
CVE-2025-11187 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2025-15469 | Medium | libcrypto3 | 3.6.0-r6 | ||
GHSA-xmrv-pmrh-hhx2 | Medium | github.com/aws/aws-sdk-go-v2/service/s3 | v1.88.3 | ||
CVE-2026-39825 | Medium | stdlib | go1.25.5 | ||
CVE-2026-2303 | Medium | go.mongodb.org/mongo-driver | v1.17.6 | ||
CVE-2026-39984 | Medium | github.com/sigstore/timestamp-authority/v2 | v2.0.3 | ||
CVE-2025-61728 | Medium | stdlib | go1.25.5 | ||
CVE-2026-42769 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-22795 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-46598 | Medium | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-39835 | Medium | golang.org/x/crypto | v0.46.0 | ||
CVE-2026-45446 | Medium | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-23991 | Medium | github.com/theupdateframework/go-tuf/v2 | v2.0.2 | ||
CVE-2026-42506 | Medium | golang.org/x/net | v0.48.0 | ||
CVE-2026-27139 | Low | stdlib | go1.25.5 | ||
CVE-2026-42768 | Low | libcrypto3 | 3.6.0-r6 | ||
CVE-2026-39824 | Low | golang.org/x/sys | v0.39.0 | ||
CVE-2026-42770 | Low | libcrypto3 | 3.6.0-r6 | ||
GO-2026-4760 | Unknown | github.com/russellhaering/gosaml2 | v0.10.0 | ||
GO-2026-4764 | Unknown | github.com/russellhaering/gosaml2 | v0.10.0 |