VYPR

apk package

chainguard/azure-functions-host

pkg:apk/chainguard/azure-functions-host

Vulnerabilities (4)

  • CVE-2026-42191MedMay 12, 2026
    affected < 4.1048.200-r1fixed 4.1048.200-r1

    OpenTelemetry.Exporter.OpenTelemetryProtocol is the OTLP (OpenTelemetry Protocol) exporter implementation. From 1.8.0 to 1.15.2, the OTLP disk retry feature in OpenTelemetry.Exporter.OpenTelemetryProtocol silently fell back to Path.GetTempPath() when OTEL_DOTNET_EXPERIMENTAL_OTLP

  • CVE-2026-40894MedApr 23, 2026
    affected < 4.1051.100-r0fixed 4.1051.100-r0

    OpenTelemetry dotnet is a dotnet telemetry framework. In OpenTelemetry.Api 0.5.0-beta.2 to 1.15.2 and OpenTelemetry.Extensions.Propagators 1.3.1 to 1.15.2, The implementation details of the baggage, B3 and Jaeger processing code in the OpenTelemetry.Api and OpenTelemetry.Extensio

  • CVE-2026-40891MedApr 23, 2026
    affected < 4.1051.100-r0fixed 4.1051.100-r0

    OpenTelemetry dotnet is a dotnet telemetry framework. From 1.13.1 to before 1.15.2, When exporting telemetry over gRPC using the OpenTelemetry Protocol (OTLP), the exporter may parse a server-provided grpc-status-details-bin trailer during retry handling. Prior to the fix, a malf

  • CVE-2026-40182MedApr 23, 2026
    affected < 4.1051.100-r0fixed 4.1051.100-r0

    OpenTelemetry dotnet is a dotnet telemetry framework. From 1.13.1 to before 1.15.2, When exporting telemetry to a back-end/collector over gRPC or HTTP using OpenTelemetry Protocol format (OTLP), if the request results in a unsuccessful request (i.e. HTTP 4xx or 5xx), the response