/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-hvww-vpr8-9vp5

Published

Last updated

https://images.chainguard.dev/security/CGA-hvww-vpr8-9vp5
Package

kubeflow-pipelines

RepositoryWolfi
Latest Update
Not affected
Aliases
  • CVE-2023-2431
  • GHSA-xc8m-28vv-4pjc

Severity

5.5

Medium

CVSS V3

References

  • https://nvd.nist.gov/vuln/detail/CVE-2023-2431

Updates

Status

Not affected

Justification

Vulnerable code not in execute path

Impact

Vulnerable code is part of the Kubernetes kubelet which is not in the execution path of the kubeflow-pipelines and code was marked EFFECTIVELY_PRIVATE in Golang vulndb


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing