/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-58vj-mrj4-22rx

Published

Last updated

https://images.chainguard.dev/security/CGA-58vj-mrj4-22rx
Package

kyverno-1.11

Repository

Chainguard

Latest Update
Fix not planned
Aliases
  • CVE-2025-47281
  • GHSA-r5p3-955p-5ggq

Severity

7.7

High

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-47281

Updates

Status

Fix not planned

Impact

kyverno 1.11 is EOL as of April, 25th 2025. It is recommended upgrading to latest version since 1.11 will not be receiving any future updates. However, Chainguard Kyverno version 1.11.5-r24 was patched with fix to extend the transition phase to a newer version. Extended Chainguard EOL support will end October, 25th 2025. Commit reference for fix that was applied: https://github.com/kyverno/kyverno/commit/cbd7d4ca24de1c55396fc3295e9fc3215832be7c

Status

Under investigation

Status

Fixed

Fixed version

1.11.5-r24

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing