VYPR

apk package

chainguard/tekton-pipelines-webhook-0.68

pkg:apk/chainguard/tekton-pipelines-webhook-0.68

Vulnerabilities (43)

  • CVE-2025-58187Oct 29, 2025
    affected < 0.68.1-r6fixed 0.68.1-r6

    Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate. This affects programs which validate arbitrary certificate chains.

  • CVE-2025-47907Aug 7, 2025
    affected < 0.68.1-r5fixed 0.68.1-r5

    Cancelling a query (e.g. by cancelling the context passed to one of the query methods) during a call to the Scan method of the returned Rows can result in unexpected results if other queries are being made in parallel. This can result in a race condition that may overwrite the ex

  • CVE-2025-8556LowAug 6, 2025
    affected < 0.68.1-r3fixed 0.68.1-r3

    A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

Page 3 of 3