VYPR

oc-mirror

by Red Hat

CVEs (1)

  • CVE-2026-75939HigSep 21, 2026
    risk 0.48cvss 7.4epss

    A flaw was found in openshift/oc-mirror. The tool incorrectly verifies PGP (Pretty Good Privacy) release image signatures by checking for signature errors before the entire signed body is processed, leading to a bypass of the signature verification. A remote attacker, by…