-
Notifications
You must be signed in to change notification settings - Fork 512
Open
Labels
lifecycle/rottenDenotes an issue or PR that has aged beyond stale and will be auto-closed.Denotes an issue or PR that has aged beyond stale and will be auto-closed.
Description
A few vulnerabilities are present in the mentioned version, information is below:
PACKAGE TYPE VERSION SUGGESTED FIX CRITICAL HIGH MEDIUM LOW NEGLIGIBLE EXPLOIT
github.com/coredns/coredns golang v1.12.2 v1.12.4 0 1 0 0 0 0
k8s.io/kubernetes golang v1.30.12 v1.31.12 0 0 3 0 0 0
Coredns is associated with: CVE-2025-58063 and Kubernetes with CVE-2025-5187. A fix in HEAD is available for the Kubernetes version but not the coredns version. Coredns has releases an upstream version: v1.12.4 that fixes the vulnerability.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
lifecycle/rottenDenotes an issue or PR that has aged beyond stale and will be auto-closed.Denotes an issue or PR that has aged beyond stale and will be auto-closed.