DirectorySecurity AdvisoriesPricing
Sign in

Security Advisories

View the status of known vulnerabilities in a Chainguard Container along with daily updates on security patches. Learn more

CGA ID
CVE ID
Severity
Affected package
Status
CGA published
CGA updated
CGA-cfcj-g6jh-4m8h

CVE-2026-34986

High
github.com/go-jose/go-jose/v4
Patched

CVE-2026-18540

Low
kibana-8.19-bitnami
Under investigation

CVE-2026-19481

High
kibana-8.19-bitnami
Under investigation

CGA-jfcv-2p2c-9984

Unknown
argo-workflow-executor-geomys-fips-4.1
Not affected

CVE-2026-41849

High
org.springframework:spring-websocket
Patched

CVE-2026-41849

High
org.springframework:spring-webmvc
Patched

CVE-2026-41849

High
org.springframework:spring-jms
Patched

CVE-2026-41849

High
org.springframework:spring-context-support
Patched

CVE-2026-41849

High
org.springframework:spring-webflux
Patched

CVE-2026-41849

High
org.springframework:spring-web
Patched

CVE-2026-41849

High
org.springframework:spring-tx
Patched

CVE-2026-41849

High
org.springframework:spring-test
Patched

CVE-2026-41849

High
org.springframework:spring-orm
Patched

CVE-2026-41849

High
org.springframework:spring-aspects
Patched

CVE-2026-41849

High
org.springframework:spring-aop
Patched

CVE-2026-41849

High
org.springframework:spring-messaging
Patched

1,222,662 advisories


The trusted source for open source

Talk to an expert
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsChainguard OS PackagesChainguard ActionsChainguard Agent SkillsIntegrationsPricing
© 2026 Chainguard, Inc. All Rights Reserved.
Chainguard® and the Chainguard logo are registered trademarks of Chainguard, Inc. in the United States and/or other countries.
The other respective trademarks mentioned on this page are owned by the respective companies and use of them does not imply any affiliation or endorsement.