Package
kyverno-cli-1.18
Component
github.com/kyverno/kyverno
Latest update
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Justification
Impact
Not vulnerable. GHSA-459x-q9hg-4gpq affects github.com/kyverno/kyverno <= 1.13.4 only; upstream records no fixed version because later releases are not affected. This package ships kyverno 1.15.20-1.18.1, above the affected range. The detection originates from the Go vulnerability database record (GO-2025-3615) omitting the last_affected 1.13.4 bound carried by the GHSA/OSV data, causing the scanner to over-match.
Status