/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-4x78-pf4v-9wpq

Published

Last updated

https://images.chainguard.dev/security/CGA-4x78-pf4v-9wpq
Package

vault-1.17

Repository

Chainguard

Latest Update
Fix not planned
Aliases
  • CVE-2024-36620
  • GHSA-q59j-vv4j-v33c

Severity

6.5

Medium

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2024-36620

Updates

Status

Fix not planned

Impact

There is no public release of the 1.17.x branch that remediates this CVE as 1.17.x is now only receiving enterprise support. however it was resolved in 1.18.0. Recommend updating to version stream 1.18 if possible.

Status

Under investigation


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing