VYPR

mend-renovate-enterprise-edition Helm chart

by Mend

CVEs (4)

  • CVE-2026-88887HigSep 10, 2026
    risk 0.56cvss 8.6epss

    Renovate is a dependency update automation tool. When listing tags/digests for a container image, Renovate follows pagination links supplied by the remote registry in the HTTP Link header and attaches the registry credentials to the follow-up request without verifying that the…

  • CVE-2026-88882HigSep 10, 2026
    risk 0.49cvss 8.6epss

    Renovate is a dependency update automation tool. In versions before 44.11.2 (and Mend Renovate CE/EE images and charts before 15.4.0, and mend-renovate-enterprise-edition helm chart before 10.4.0), when listing new package versions from a NuGet registry Renovate follows…

  • CVE-2026-88881HigSep 10, 2026
    risk 0.49cvss 8.6epss

    Renovate, a dependency update tool, follows pagination links supplied by the GitHub server in the HTTP `Link` header when interacting with GitHub.com, GitHub Enterprise Cloud, or GitHub Enterprise Server, and sends the credentials configured for that host to the URL given as the…

  • CVE-2026-88883HigSep 10, 2026
    risk 0.43cvss 7.7epss

    Renovate is an automated dependency update tool. In versions before 44.14.4 (and Mend Renovate CE/EE images before 15.4.0 and the mend-renovate-enterprise-edition Helm chart before 10.4.0), log sanitisation for TLS private keys used for Mutual TLS was incomplete. While the value…