/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-85m6-jv9q-5cjp

Published

Last updated

https://images.chainguard.dev/security/CGA-85m6-jv9q-5cjp
Package

node-feature-discovery-0.15

Repository

Chainguard

Latest Update
Not affected
Aliases
  • CVE-2025-1767
  • GHSA-3wgm-2gw2-vh5m

Severity

Unknown

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-1767

Updates

Status

Not affected

Justification

Vulnerable code not present

Impact

This vulnerability applies to the git-repo volume provisioner, not the k8s client itself.

Status

Fix not planned

Impact

This vulnerability affects the deprecated gitRepo volume feature in Kubernetes. The upstream project has deprecated this feature and will not fix this vulnerability. The node-feature-discovery package is end-of-life and will not receive updates.

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing