VYPR

apk package

chainguard/datahub-ingestion-fips

pkg:apk/chainguard/datahub-ingestion-fips

Vulnerabilities (42)

  • CVE-2026-25645MedMar 25, 2026
    affected < 1.5.0.1-r0fixed 1.5.0.1-r0

    Requests is a HTTP library. Prior to version 2.33.0, the `requests.utils.extract_zipped_paths()` utility function uses a predictable filename when extracting files from zip archives into the system temporary directory. If the target file already exists, it is reused without valid

  • CVE-2026-4539LowMar 22, 2026
    affected < 1.5.0.1-r1fixed 1.5.0.1-r1

    A security flaw has been discovered in pygments up to 2.19.2. The impacted element is the function AdlLexer of the file pygments/lexers/archetype.py. The manipulation results in inefficient regular expression complexity. The attack is only possible with local access. The exploit

Page 3 of 3