/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-2f77-8jxw-6p3m

Published

Last updated

https://images.chainguard.dev/security/CGA-2f77-8jxw-6p3m
Package

influxd-2.7

Repository

Chainguard

Latest Update
Not affected
Aliases
  • CVE-2024-28180
  • GHSA-c5q2-7r4c-mv6g

Severity

4.3

Medium

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2024-28180

Updates

Status

Not affected

Justification

Vulnerable code not present

Impact

Govulncheck found no affected symbols in the scanned Go binaries.

Status

Under investigation

Status

Pending upstream fix

Impact

There is no fix for dependency gopkg.in/square/go-jose.v2 as it is unmaintained, and to fix this vulnerability would require non-trivial upstream code changes to replace the affected dependency.


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing