/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-7xcf-rqw8-qr59

Published

Last updated

https://images.chainguard.dev/security/CGA-7xcf-rqw8-qr59
Package

keycloak

RepositoryWolfi
Latest Update
Not affected
Aliases
  • CVE-2023-2976
  • GHSA-7g45-4rm6-3mm3

Severity

7.1

High

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2023-2976

Updates

Status

Not affected

Justification

Vulnerable code not present

Impact

Scanner is correctly detecting guava v32.0.0 is installed, but is incorrectly reporting that it is vulnerable to this CVE. v32.0.0 contains the fix. See https://github.com/google/guava/releases/tag/v32.0.0 and https://github.com/keycloak/keycloak/pull/21544


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing