Package
pyrra
Component
github.com/prometheus/prometheus
Latest update
7.5
CVSS V3
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Impact
Pyrra is exposed to CVE-2026-42151 through its dependency on prometheus v0.310.0. The vulnerability is fixed in v0.311.3. However, v0.311.0 introduced a breaking change to PromQL parser's functions used by Pyrra. Remediation requires upstream migration to the new parser API.
Status