/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-c763-5v67-7r4j

Published

Last updated

https://images.chainguard.dev/security/CGA-c763-5v67-7r4j
Package

nemo

Repository

Chainguard

Latest Update
Pending upstream fix
Aliases
  • CVE-2025-50817
  • GHSA-xqrq-4mgf-ff32

Severity

Unknown

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-50817

Updates

Status

Pending upstream fix

Impact

The vulnerability originates from the future module version 1.0.0, which has not yet been patched. As a result, it is currently not possible to remediate the issue through a direct upgrade. Upstream maintainers will need to either release a patched version or migrate to an alternative solution that eliminates the vulnerable code path. Once upstream implements a resolution, we can update the package accordingly to remediate the vulnerability.

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing