DirectorySecurity AdvisoriesPricing
/
Sign in
Security Advisories

CGA-h5fq-w69w-8j7r

Published

Last updated

https://images.chainguard.dev/security/CGA-h5fq-w69w-8j7r
Package

kubeflow-pipelines-visualization-server

RepositoryWolfi
Latest Update
Pending upstream fix
Aliases
  • CVE-2024-52338
  • GHSA-m5xw-hwxw-fq3j

Severity

9.8

Critical

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2024-52338

Updates

Status

Pending upstream fix

Impact

This CVE affects pyarrow versions < 17.0.0. Unfortunately, kubeflow-pipeleines-visualisation-server depends on an older version and there have been various interface changes since then. The upstream project will need to make code changes in order to be able to bump the dependency


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing