DirectorySecurity AdvisoriesPricing
Sign in

Security Advisories

View the status of known vulnerabilities in a Chainguard Container along with daily updates on security patches. Learn more.

CGA ID
CVE ID
Severity
Affected package
Status
Published
Last updated
CGA-ggmm-r8cc-gj85

CVE-2026-42328

Unknown
rke2-runtime-1.35
Under investigation

CVE-2026-34040

High
elastic-agent-fips-9.4
Under investigation

CVE-2026-33997

Medium
elastic-agent-fips-9.4
Under investigation

CVE-2026-42577

Unknown
hono-adapter-mqtt
Under investigation

CVE-2026-41602

Unknown
elastic-agent-fips-9.4
Under investigation

CVE-2026-42578

Unknown
hono-adapter-mqtt
Under investigation

CVE-2026-44248

Unknown
hono-adapter-mqtt
Under investigation

CVE-2026-39984

Unknown
cloudbeat-fips-9.4
Under investigation

CVE-2026-42554

Unknown
versitygw
Under investigation

CVE-2026-42577

Unknown
hono-service-device-registry-jdbc
Under investigation

CVE-2026-42578

Unknown
hono-service-device-registry-jdbc
Under investigation

CVE-2024-38821

Unknown
org.springframework.security:spring-security-web
Patched

CVE-2024-22257

Unknown
org.springframework.security:spring-security-web
Patched

CVE-2024-38821

Unknown
org.springframework.security:spring-security-rsocket
Patched

CVE-2024-22257

Unknown
org.springframework.security:spring-security-rsocket
Patched

CVE-2024-22257

Unknown
org.springframework.security:spring-security-oauth2-resource-server
Patched

596,829 advisories


The trusted source for open source

Talk to an expert
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsChainguard OS PackagesChainguard ActionsChainguard Agent SkillsIntegrationsPricing
© 2026 Chainguard, Inc. All Rights Reserved.
Chainguard® and the Chainguard logo are registered trademarks of Chainguard, Inc. in the United States and/or other countries.
The other respective trademarks mentioned on this page are owned by the respective companies and use of them does not imply any affiliation or endorsement.