gitlab-ee-17.5
Chainguard
5.5
CVSS V3
Status
Impact
This vulnerability is part of the disintegration/imaging go module, which has not had updates since 2019 and has no fix available for this CVE. Therefore, a fix will need to come from upstream (Gitlab), most likely via removing and replacing this package. See https://github.com/advisories/GHSA-q7pp-wcgr-pffx for more information.
Status