/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-phfp-wfhh-vfpc

Published

Last updated

https://images.chainguard.dev/security/CGA-phfp-wfhh-vfpc
Package

ansible-operator

Repository

Chainguard

Latest Update
Pending upstream fix
Aliases
  • CVE-2024-35195
  • GHSA-9wx4-h78v-vm56

Severity

Unknown

References

  • https://nvd.nist.gov/vuln/detail/CVE-2024-35195

Updates

Status

Pending upstream fix

Impact

Waiting for upstream to bump requests to a version greater than 2.31.0. Upstream project is still using 2.31.0 because 2.32.0 dropped support for http+unix protocol scheme, leveraged via ansible_runner_http Python package (ref: https://github.com/ansible/ansible-runner-http/blob/631cb47044d792e9e16ae924d26711d1346e3712/ansible_runner_http/events.py#L10).

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing