You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The library golang.org/x/net version 0.4.0 was detected in Golang binary located at /usr/bin/cadvisor and is vulnerable to CVE-2022-41723, which exists in versions <0.7. .The vulnerability was found in the The Go Vulnerability Database with vendor severity: High (NVD severity: High).
"The library github.com/docker/distribution version 2.8.1+incompatible was detected in Golang binary located at /usr/bin/cadvisor and is vulnerable to CVE-2023-2253, which exists in versions < 2.8.2-beta.1. The vulnerability was found in the Github Security Advisory with vendor severity: High (NVD severity: Medium)
"The library github.com/opencontainers/runc version 1.1.4 was detected in Golang binary located at /usr/bin/cadvisor and is vulnerable to CVE-2023-27561, which exists in versions >= 1.0.0-rc95, < 1.1.5. The vulnerability was found in the [Github Security Advisory](https://github.com/advisories/GHSA-vpvm-3wq2-2wvm) with vendor severity: High([NVD](https://nvd.nist.gov/vuln/detail/CVE-2023-27561) severity:High`). This vulnerability has a known exploit available. Source: Github.
"The library github.com/docker/docker version 20.10.21+incompatible was detected in Golang binary located at /usr/bin/cadvisor and is vulnerable to CVE-2023-28840, which exists in versions >= 1.12.0, < 20.10.24. The vulnerability was found in the Github Security Advisory with vendor severity: High (NVD severity: High). This vulnerability has a known exploit available. Source: Github
"The library google.golang.org/grpc version 1.51.0 was detected in Golang binary located at /usr/bin/cadvisor and is vulnerable to GHSA-m425-mq94-257g, which exists in versions < 1.56.3. The vulnerability was found in the Github Security Advisory with vendor severity: High
"The library golang.org/x/net version 0.4.0 was detected in Golang binary located at /usr/bin/cadvisor and is vulnerable to CVE-2023-44487, which exists in versions < 0.17.0. The vulnerability was found in the Github Security Advisory with vendor severity: Medium (NVD severity: High). This vulnerability has a known exploit available. Sources: CISA Known Exploited Vulnerabilities Catalog, Github
The text was updated successfully, but these errors were encountered:
Please, upgrade following packages / libraries to fix high vulnerabilities found for image version v0.47.2
golang.org/x/net
version0.4.0
was detected inGolang binary
located at/usr/bin/cadvisor
and is vulnerable toCVE-2022-41723
, which exists in versions<0.7.
.The vulnerability was found in the The Go Vulnerability Database with vendor severity:High
(NVD severity:High
).github.heygears.com/docker/distribution
version2.8.1+incompatible
was detected inGolang binary
located at/usr/bin/cadvisor
and is vulnerable toCVE-2023-2253
, which exists in versions< 2.8.2-beta.1
. The vulnerability was found in the Github Security Advisory with vendor severity:High
(NVD severity:Medium
)github.com/opencontainers/runc
version1.1.4
was detected inGolang binary
located at/usr/bin/cadvisor
and is vulnerable to CVE-2023-27561, which exists in versions
>= 1.0.0-rc95, < 1.1.5. The vulnerability was found in the [Github Security Advisory](https://github.com/advisories/GHSA-vpvm-3wq2-2wvm) with vendor severity:
High([NVD](https://nvd.nist.gov/vuln/detail/CVE-2023-27561) severity:
High`). This vulnerability has a known exploit available. Source: Github.github.com/docker/docker
version20.10.21+incompatible
was detected inGolang binary
located at/usr/bin/cadvisor
and is vulnerable toCVE-2023-28840
, which exists in versions>= 1.12.0, < 20.10.24
. The vulnerability was found in the Github Security Advisory with vendor severity:High
(NVD severity:High
). This vulnerability has a known exploit available. Source: Githubgoogle.golang.org/grpc
version1.51.0
was detected inGolang binary
located at/usr/bin/cadvisor
and is vulnerable toGHSA-m425-mq94-257g
, which exists in versions< 1.56.3
. The vulnerability was found in the Github Security Advisory with vendor severity:High
golang.org/x/net
version0.4.0
was detected inGolang binary
located at/usr/bin/cadvisor
and is vulnerable toCVE-2023-44487
, which exists in versions< 0.17.0
. The vulnerability was found in the Github Security Advisory with vendor severity:Medium
(NVD severity:High
). This vulnerability has a known exploit available. Sources: CISA Known Exploited Vulnerabilities Catalog, GithubThe text was updated successfully, but these errors were encountered: