DirectorySecurity AdvisoriesPricing
/
Sign in

Security Advisories

View the status of known vulnerabilities in a Chainguard Container along with daily updates on security patches. Learn more.

CGA ID
CVE ID
Severity
Affected package
Status
Published
Last updated
CGA-fq2q-j57m-4p6q

CVE-2026-0636

Unknown
ruby4.0-bouncy-castle-java
Under investigation

CGA-mwqv-fv3h-qx62

Unknown
dapr-daprd-1.15
Fixed

CGA-8prv-j457-vc5h

Unknown
argo-cd-3.2-compat
Under investigation

CGA-h99p-392p-g9m5

Unknown
argo-cd-fips-3.2-compat
Fixed

CGA-vg6h-5jv9-wcpx

Unknown
grafana-fips-12.0
Fix not planned

CGA-hv4j-mw68-245r

Unknown
chainctl-fips
Fixed

CVE-2026-0636

Unknown
ruby3.4-bouncy-castle-java
Under investigation

CGA-6497-w45q-cvqh

Unknown
kyverno-cli-1.14
Fix not planned

CGA-2qmw-889x-89h3

Unknown
gitlab-runner-18.6
Fix not planned

CGA-85qj-8q62-4pvv

Unknown
skaffold
Fixed

CVE-2026-0636

Unknown
jenkins-2-openjdk-25
Under investigation

CVE-2026-3505

Unknown
jenkins-2-openjdk-25
Under investigation

CVE-2026-0636

Unknown
pinot
Under investigation

CVE-2026-0636

Unknown
pinot
Under investigation

CGA-fr6m-h8vq-75v9

Unknown
syft-fips
Fixed

CGA-j8f8-pxxq-26xr

Unknown
kaniko-fips
Fixed

572,222 advisories


The trusted source for open source

Talk to an expert
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsChainguard OS PackagesChainguard ActionsChainguard Agent SkillsIntegrationsPricing
© 2026 Chainguard, Inc. All Rights Reserved.
Chainguard® and the Chainguard logo are registered trademarks of Chainguard, Inc. in the United States and/or other countries.
The other respective trademarks mentioned on this page are owned by the respective companies and use of them does not imply any affiliation or endorsement.