/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-65m8-6847-6jg9

Published

Last updated

https://images.chainguard.dev/security/CGA-65m8-6847-6jg9
Package

kyverno

RepositoryWolfi
Latest Update
Affected
Aliases
  • CVE-2023-45142
  • GHSA-rcjv-mgp8-qvmr

Severity

7.5

High

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2023-45142

Updates

Status

Affected

Impact

Confirmed that the affected code is present in the binary, but Kyverno needs to migrate its code off of the Go packages keeping it at the affected version of go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp. It looks like the release-1.11 branch has made these adjustments and dependency updates, and once the final 1.11 release is out, this Wolfi package will get updated.


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing