CLEANSTART-2026-WT32301
Dashboard / Vulnerabilities / CLEANSTART-2026-WT32301
CLEANSTART-2026-WT32301
Summary: oras-go is a Go library for managing OCI artifacts
Details: Multiple security vulnerabilities affect the kyverno package. oras-go is a Go library for managing OCI artifacts. See references for individual vulnerability details.
References: https://github.com/cleanstart-dev/cleanstart-security-advisories/tree/main/advisories/2026/CLEANSTART-2026-WT32301.json, https://osv.dev/vulnerability/CVE-2026-24051, https://osv.dev/vulnerability/CVE-2026-24122, https://osv.dev/vulnerability/CVE-2026-25680, https://osv.dev/vulnerability/CVE-2026-39395, https://osv.dev/vulnerability/CVE-2026-39821, https://osv.dev/vulnerability/CVE-2026-39883, https://osv.dev/vulnerability/CVE-2026-42504, https://osv.dev/vulnerability/CVE-2026-42507, https://osv.dev/vulnerability/CVE-2026-44740, https://osv.dev/vulnerability/CVE-2026-44973, https://osv.dev/vulnerability/CVE-2026-45022, https://osv.dev/vulnerability/CVE-2026-45570, https://osv.dev/vulnerability/CVE-2026-45571, https://osv.dev/vulnerability/CVE-2026-48702, https://osv.dev/vulnerability/CVE-2026-48978, https://osv.dev/vulnerability/CVE-2026-49478, https://osv.dev/vulnerability/CVE-2026-49835, https://osv.dev/vulnerability/CVE-2026-50151, https://osv.dev/vulnerability/CVE-2026-50162, https://osv.dev/vulnerability/CVE-2026-50163, https://osv.dev/vulnerability/CVE-2026-56864, https://osv.dev/vulnerability/CVE-2026-56865, https://osv.dev/vulnerability/ghsa-389r-gv7p-r3rp, https://osv.dev/vulnerability/ghsa-crhj-59gh-8x96, https://osv.dev/vulnerability/ghsa-gcjh-h69q-9w9g, https://osv.dev/vulnerability/ghsa-m3xc-h892-ggx6, https://osv.dev/vulnerability/ghsa-m7cr-m3pv-hgrp, https://osv.dev/vulnerability/ghsa-qw64-3x98-g7q2, https://osv.dev/vulnerability/ghsa-vh4v-2xq2-g5cg, https://osv.dev/vulnerability/ghsa-w5pp-99ch-qj29, https://nvd.nist.gov/vuln/detail/CVE-2026-24051, https://nvd.nist.gov/vuln/detail/CVE-2026-24122, https://nvd.nist.gov/vuln/detail/CVE-2026-25680, https://nvd.nist.gov/vuln/detail/CVE-2026-39395, https://nvd.nist.gov/vuln/detail/CVE-2026-39821, https://nvd.nist.gov/vuln/detail/CVE-2026-39883, https://nvd.nist.gov/vuln/detail/CVE-2026-42504, https://nvd.nist.gov/vuln/detail/CVE-2026-42507, https://nvd.nist.gov/vuln/detail/CVE-2026-44740, https://nvd.nist.gov/vuln/detail/CVE-2026-44973, https://nvd.nist.gov/vuln/detail/CVE-2026-45022, https://nvd.nist.gov/vuln/detail/CVE-2026-45570, https://nvd.nist.gov/vuln/detail/CVE-2026-45571, https://nvd.nist.gov/vuln/detail/CVE-2026-48702, https://nvd.nist.gov/vuln/detail/CVE-2026-48978, https://nvd.nist.gov/vuln/detail/CVE-2026-49478, https://nvd.nist.gov/vuln/detail/CVE-2026-49835, https://nvd.nist.gov/vuln/detail/CVE-2026-50151, https://nvd.nist.gov/vuln/detail/CVE-2026-50162, https://nvd.nist.gov/vuln/detail/CVE-2026-50163, https://nvd.nist.gov/vuln/detail/CVE-2026-56864, https://nvd.nist.gov/vuln/detail/CVE-2026-56865
Affected packages
Package
Name: kyverno
Purl:
Affected ranges
Type: ECOSYSTEM
Events:
