Skip to content

Multiple CVEs reported by Trivy scan tool for V4.45.4 #2402

Open
@Kisan-hpe

Description

@Kisan-hpe

The listed CVEs for V4.45.4 includes HIGH.

Total: 3
Severity Breakdown: UNKNOWN: 0, LOW: 0, MEDIUM: 2, HIGH: 1, CRITICAL: 0

Library Vulnerability Severity Status Installed Version Fixed Version Title
stdlib CVE-2025-22874 HIGH fixed 1.24.3 1.23.10, 1.24.4 crypto/x509: Usage of ExtKeyUsageAny disables policy validation in crypto/x509
stdlib CVE-2025-0913 MEDIUM Inconsistent handling of `O_CREATE
stdlib CVE-2025-4673 MEDIUM Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin requests

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions