Package
docker-machine-driver-harvester
Component
github.com/kube-logging/logging-operator
Latest update
9.9
CVSS V3
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Justification
Impact
The advisory covers a Fluentd configuration-injection flaw in FluentRender in pkg/sdk/logging/model/render/fluent.go, which belongs to the separate Go module github.com/kube-logging/logging-operator/pkg/sdk rather than the root module the record matches against. The binary links only pkg/resources/kubetool from the root module and CRD and model type packages from the sdk module; symbol and string inspection find no reference to logging/model/render or FluentRender, while the sibling package logging/model/filter at the same module version yields 185 references, confirming the renderer is not compiled in.
Status