/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-7xcf-rqw8-qr59

Published

Last updated

https://images.chainguard.dev/security/CGA-7xcf-rqw8-qr59
Package

keycloak

RepositoryWolfi
Latest Update
Not affected
Aliases
  • CVE-2023-2976
  • GHSA-7g45-4rm6-3mm3

Severity

7.1

High

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2023-2976

Updates

Status

Not affected

Justification

Vulnerable code not present

Impact

Scanner is correctly detecting guava v32.0.0 is installed, but is incorrectly reporting that it is vulnerable to this CVE. v32.0.0 contains the fix. See https://github.com/google/guava/releases/tag/v32.0.0 and https://github.com/keycloak/keycloak/pull/21544


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing