You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The source-controller shows several CVEs related to the github.com/docker/docker go-lang module: CVE-2023-28840, CVE-2023-28841, CVE-2023-28842. The source-controller ships v20.10.21+incompatible and upgrading it to 20.10.24 or 23.0.3 would address those vulnerabilities.
bin/source-controller (gobinary)
Total: 3 (UNKNOWN: 0, LOW: 0, MEDIUM: 2, HIGH: 1, CRITICAL: 0)
┌──────────────────────────┬────────────────┬──────────┬────────────────────────┬──────────────────┬──────────────────────────────────────────────────────┐
│ Library │ Vulnerability │ Severity │ Installed Version │ Fixed Version │ Title │
├──────────────────────────┼────────────────┼──────────┼────────────────────────┼──────────────────┼──────────────────────────────────────────────────────┤
│ github.com/docker/docker │ CVE-2023-28840 │ HIGH │ v20.10.21+incompatible │ 20.10.24, 23.0.3 │ Encrypted overlay network may be unauthenticated │
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-28840 │
│ ├────────────────┼──────────┤ │ ├──────────────────────────────────────────────────────┤
│ │ CVE-2023-28841 │ MEDIUM │ │ │ Encrypted overlay network traffic may be unencrypted │
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-28841 │
│ ├────────────────┤ │ │ ├──────────────────────────────────────────────────────┤
│ │ CVE-2023-28842 │ │ │ │ Encrypted overlay network with a single endpoint is │
│ │ │ │ │ │ unauthenticated │
│ │ │ │ │ │ https://avd.aquasec.com/nvd/cve-2023-28842 │
└──────────────────────────┴────────────────┴──────────┴────────────────────────┴──────────────────┴──────────────────────────────────────────────────────┘
The text was updated successfully, but these errors were encountered:
The source-controller shows several CVEs related to the
github.com/docker/docker
go-lang module: CVE-2023-28840, CVE-2023-28841, CVE-2023-28842. The source-controller shipsv20.10.21+incompatible
and upgrading it to20.10.24
or23.0.3
would address those vulnerabilities.The text was updated successfully, but these errors were encountered: