Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CGA-q253-rm8f-4rgm
  • Chainguard/kserve
  • Wolfi/kserve
  • Chainguard/kserve-agent
  • Wolfi/kserve-agent
  • Chainguard/kserve-agent-compat
  • ... 15 more
See record for full details 52 minutes ago
  • Fix available
CGA-xwg9-hjvh-vwqh
  • Chainguard/langfuse-2
  • Chainguard/langfuse-2-compat
  • Chainguard/langfuse-2-worker
See record for full details 3 hours ago
  • Fix available
CGA-349c-9r8j-9cfr
  • Chainguard/langfuse-fips-2
  • Chainguard/langfuse-fips-2-compat
  • Chainguard/langfuse-fips-2-worker
See record for full details 3 hours ago
  • Fix available
CGA-4472-mm77-597x
  • Chainguard/zabbix-agent2-fips-7.0
  • Chainguard/zabbix-agent2-fips-7.0-compat
See record for full details 3 hours ago
  • Fix available
GHSA-r399-636x-v7f6
  • npm/@langchain/core
  • npm/langchain
LangChain serialization injection vulnerability enables secret extraction 5 hours ago
  • Fix available
  • Severity - 8.6 (High)
CGA-qp8r-55xx-g24j
  • Chainguard/py3-marshmallow
  • Chainguard/py3-supported-marshmallow
  • Chainguard/py3.11-marshmallow
  • Chainguard/py3.12-marshmallow
  • Chainguard/py3.13-marshmallow
See record for full details 5 hours ago
  • Fix available
GHSA-hm5p-x4rq-38w4
  • RubyGems/httparty
httparty Has Potential SSRF Vulnerability That Leads to API Key Leakage 6 hours ago
  • No fix available
  • Severity - 7.8 (High)
MINI-7j94-rcmf-27r7
  • MinimOS/airflow-3
  • MinimOS/airflow-3-compat
  • MinimOS/airflow-3-advanced-compat
See record for full details 6 hours ago
  • No fix available
MINI-q428-9985-56fw
  • MinimOS/kibana-9.2
  • MinimOS/kibana-9.2-advanced-compat
  • MinimOS/kibana-9.2-config
  • MinimOS/kibana-9.2-oci-entrypoint
See record for full details 6 hours ago
  • Fix available
MAL-2025-192752
  • npm/@google_recaptcha/js
Malicious code in @google_recaptcha/js (npm) 6 hours ago
  • No fix available
MAL-2025-192761
  • npm/supply_chain_dummy_test_2
Malicious code in supply_chain_dummy_test_2 (npm) 6 hours ago
  • No fix available
MAL-2025-192762
  • npm/supply_chain_dummy_test_3
Malicious code in supply_chain_dummy_test_3 (npm) 6 hours ago
  • No fix available
MAL-2025-192763
  • npm/supply_chain_dummy_test_4
Malicious code in supply_chain_dummy_test_4 (npm) 6 hours ago
  • No fix available
MAL-2025-192760
  • npm/supply_chain_dummy_test_1
Malicious code in supply_chain_dummy_test_1 (npm) 6 hours ago
  • No fix available
GHSA-c67j-w6g6-q2cm
  • PyPI/langchain-core
LangChain serialization injection vulnerability enables secret extraction in dumps/loads APIs 6 hours ago
  • Fix available
  • Severity - 9.3 (Critical)
MINI-wrj8-9vmm-gc56
  • MinimOS/kubernetes-dashboard-metrics-scraper-fips
See record for full details 7 hours ago
  • No fix available