/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-93j9-rf6c-5gf9

Published

Last updated

https://images.chainguard.dev/security/CGA-93j9-rf6c-5gf9
Package

wso2is

Repository

Chainguard

Latest Update
Pending upstream fix
Aliases
  • CVE-2025-48924
  • GHSA-j288-q9x7-2f5v

Severity

Unknown

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-48924

Updates

Status

Pending upstream fix

Impact

CVE-2025-48924 affects Apache commons-lang3, which is a transitive dependency of wso2is and cannot currently be upgraded. The upstream maintainers will need to upgrade the bundled versions in order to remediate this CVE.

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing