Vulnerability GO-2023-1979
Unknown
UNKNOWN RISK
Vulnerabilities without an assigned CVSS score. Severity is not determinable from available data.
2 years ago
August 20, 2024 at 08:32 PM UTC
Denial of service from large image in github.com/crossplane/crossplane
v0.1.0 - v1.11.4
v0.1.0 - v1.11.4
Summary
Denial of service from large image in github.com/crossplane/crossplane
Details
Denial of service from large image in github.com/crossplane/crossplane
Related Vulnerabilities
Other vulnerabilities affecting the same packages
Unknown
3 months ago
Crossplane: Signature verification TOCTOU allows installing unverified package content via mutable tag in github.com/crossplane/crossplane
v0.1.0 - v1.21.0-rc.0 GO-2026-5709
v0.1.0 - v1.21.0-rc.0 GO-2026-5709
Critical
3 months ago
Crossplane: Signature verification TOCTOU allows installing unverified package content via mutable tag
v0.1.0 - v1.21.0-rc.0 GHSA-wfqx-gjrf-g28r
v0.1.0 - v1.21.0-rc.0 GHSA-wfqx-gjrf-g28r
Unknown
1 year ago
github.com/crossplane/crossplane: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses
v1.15.5 GO-2024-3219
v1.15.5 GO-2024-3219
Critical
1 year ago
github.com/crossplane/crossplane: Unexpected behavior from Is methods for IPv4-mapped IPv6 addresses
v1.15.5 and v1.16.2 and v1.17.1 GHSA-7h65-4p22-39j6
v1.15.5 and v1.16.2 and v1.17.1 GHSA-7h65-4p22-39j6
Unknown
2 years ago
Possible image tampering from missing image validation for Packages in github.com/crossplane/crossplane
v0.1.0 - v1.11.4 GO-2023-1980
v0.1.0 - v1.11.4 GO-2023-1980
Impacted packages
Timeline
Published
2 years ago
August 20, 2024 at 08:32 PM UTC
Last Modified
7 months ago
February 04, 2026 at 04:19 AM UTC