VYPR

apk package

chainguard/gitea-fips

pkg:apk/chainguard/gitea-fips

Vulnerabilities (42)

  • CVE-2024-51744LowNov 4, 2024
    affected < 1.22.2-r3fixed 1.22.2-r3

    golang-jwt is a Go implementation of JSON Web Tokens. Unclear documentation of the error behavior in `ParseWithClaims` can lead to situation where users are potentially not checking errors in the way they should be. Especially, if a token is both expired and invalid, the errors r

  • CVE-2022-31022Jun 1, 2022
    affected < 1.23.7-r2fixed 1.23.7-r2

    Bleve is a text indexing library for go. Bleve includes HTTP utilities under bleve/http package, that are used by its sample application. These HTTP methods pave way for exploitation of a node’s filesystem where the bleve index resides, if the user has used bleve’s own HTTP (blev

Page 3 of 3