Vulnerabilities
Last updated 46 minutes ago
| Package | Summary | Severity | Published | Modified |
|---|---|---|---|---|
|
|
zot: Bearer authentication maps DELETE to push scope, allowing unauthorized deletion | High Risk 8.1 | 10 days ago | 4 hours ago |
|
|
zot: Bearer authentication maps DELETE to push scope, allowing unauthorized deletion in zotregistry.dev/zot | Unknown | 5 hours ago | 4 hours ago |
|
|
zot: Bearer authentication maps DELETE to push scope, allowing unauthorized deletion in zotregistry.dev/zot | Unknown | 5 hours ago | 4 hours ago |
|
|
Zot IdP group membership revocation ignored | High Risk 7.3 | 1 year ago | 18 days ago |
|
|
Cache driver GetBlob() allows read access to any blob without access control check | Medium Risk 4.3 | 2 years ago | 18 days ago |
|
|
zot’s create-only policy allows overwrite attempts of existing latest tag (update permission not required) | High Risk 7.7 | 6 months ago | 6 months ago |
|
|
zot’s create-only policy allows overwrite attempts of existing latest tag (update permission not required) | High Risk 7.7 | 6 months ago | 6 months ago |
|
|
zot’s create-only policy allows overwrite attempts of existing latest tag (update permission not required) in zotregistry.dev/zot | Unknown | 6 months ago | 6 months ago |
|
|
zot’s create-only policy allows overwrite attempts of existing latest tag (update permission not required) in zotregistry.dev/zot | Unknown | 6 months ago | 6 months ago |
|
|
zot logs secrets in zotregistry.dev/zot | Unknown | 1 year ago | 6 months ago |
|
|
Cache driver GetBlob() allows read access to any blob without access control check in zotregistry.dev/zot | Unknown | 2 years ago | 7 months ago |
|
|
Zot IdP group membership revocation ignored in zotregistry.dev/zot | Unknown | 1 year ago | 7 months ago |
|
|
zot logs secrets | Medium Risk 6.0 | 1 year ago | 1 year ago |
Page 1