szDockerBase.tar (alt cpe:/o:alt:sisyphus:20260316) - Trivy Report - 2026-07-03 08:46:30.235591596 +0000 UTC m=+20.104496573
alt
No Vulnerabilities found
No Misconfigurations found
node-pkg
Package
Vulnerability ID
Severity
Installed Version
Fixed Version
Links
@sigstore/core
CVE-2026-48758
MEDIUM
2.0.0
3.2.1
https://github.com/sigstore/sigstore-js
https://github.com/sigstore/sigstore-js/security/advisories/GHSA-jfc7-64v2-mr8c
brace-expansion
CVE-2026-33750
MEDIUM
2.0.2
5.0.5, 3.0.2, 2.0.3, 1.1.13
https://access.redhat.com/security/cve/CVE-2026-33750
https://github.com/juliangruber/brace-expansion
https://github.com/juliangruber/brace-expansion/blob/daa71bcb4a30a2df9bcb7f7b8daaf2ab30e5794a/src/index.ts#L107-L113
https://github.com/juliangruber/brace-expansion/blob/daa71bcb4a30a2df9bcb7f7b8daaf2ab30e5794a/src/index.ts#L184
https://github.com/juliangruber/brace-expansion/commit/311ac0d54994158c0a384e286a7d6cbb17ee8ed5
https://github.com/juliangruber/brace-expansion/commit/7fd684f89fdde3549563d0a6522226a9189472a2
https://github.com/juliangruber/brace-expansion/commit/b9cacd9e55e7a1fa588fe4b7bb1159d52f1d902a
https://github.com/juliangruber/brace-expansion/issues/98
https://github.com/juliangruber/brace-expansion/pull/95
https://github.com/juliangruber/brace-expansion/pull/96
https://github.com/juliangruber/brace-expansion/pull/97
https://github.com/juliangruber/brace-expansion/security/advisories/GHSA-f886-m6hf-6m8v
https://nvd.nist.gov/vuln/detail/CVE-2026-33750
https://www.cve.org/CVERecord?id=CVE-2026-33750
ip-address
CVE-2026-42338
MEDIUM
10.1.0
10.1.1
https://access.redhat.com/errata/RHSA-2026:33155
https://access.redhat.com/errata/RHSA-2026:33160
https://access.redhat.com/errata/RHSA-2026:33163
https://access.redhat.com/errata/RHSA-2026:33173
https://access.redhat.com/errata/RHSA-2026:33183
https://access.redhat.com/errata/RHSA-2026:33574
https://access.redhat.com/errata/RHSA-2026:34374
https://access.redhat.com/security/cve/CVE-2026-42338
https://bugzilla.redhat.com/show_bug.cgi?id=2476810
https://github.com/beaugunderson/ip-address
https://github.com/beaugunderson/ip-address/security/advisories/GHSA-v2v4-37r5-5v8g
https://nvd.nist.gov/vuln/detail/CVE-2026-42338
https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-42338.json
https://www.cve.org/CVERecord?id=CVE-2026-42338
picomatch
CVE-2026-33671
HIGH
4.0.3
4.0.4, 3.0.2, 2.3.2
https://access.redhat.com/security/cve/CVE-2026-33671
https://github.com/micromatch/picomatch
https://github.com/micromatch/picomatch/commit/5eceecd27543b8e056b9307d69e105ea03618a7d
https://github.com/micromatch/picomatch/security/advisories/GHSA-c2c7-rcm5-vvqj
https://nvd.nist.gov/vuln/detail/CVE-2026-33671
https://www.cve.org/CVERecord?id=CVE-2026-33671
picomatch
CVE-2026-33672
MEDIUM
4.0.3
4.0.4, 3.0.2, 2.3.2
https://access.redhat.com/security/cve/CVE-2026-33672
https://github.com/micromatch/picomatch
https://github.com/micromatch/picomatch/commit/4516eb521f13a46b2fe1a1d2c9ef6b20ddc0e903
https://github.com/micromatch/picomatch/security/advisories/GHSA-3v7f-55p6-f55p
https://nvd.nist.gov/vuln/detail/CVE-2026-33672
https://www.cve.org/CVERecord?id=CVE-2026-33672
sigstore
CVE-2026-48815
HIGH
3.1.0
4.1.1
https://github.com/sigstore/sigstore-js
https://github.com/sigstore/sigstore-js/security/advisories/GHSA-52v5-jr5w-gjxr
tar
CVE-2026-53655
MEDIUM
7.5.11
7.5.16
https://github.com/isaacs/node-tar
https://github.com/isaacs/node-tar/security/advisories/GHSA-vmf3-w455-68vh
No Misconfigurations found
python-pkg
No Vulnerabilities found
No Misconfigurations found