Search:
| Image | Mirrored | Release | Binary/Package | Dependency | Vulnerability ID (CVE) | Severity | Status | Justification (for status not affected) | Type (language or OS) |
|---|---|---|---|---|---|---|---|---|---|
| quay.io/stackstate/clickhouse-backup:2.6.39-d0d7ba46-65 | false | Observability v2.6 dev | bin/clickhouse-backup | stdlib@v1.25.1 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/clickhouse-backup:2.6.39-d0d7ba46-65 | false | Observability v2.6 dev | bin/clickhouse-backup | stdlib@v1.25.1 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/clickhouse-backup:2.6.39-d0d7ba46-65 | false | Observability v2.6 dev | bin/clickhouse-backup | stdlib@v1.25.1 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/clickhouse-backup:2.6.39-d0d7ba46-65 | false | Observability v2.6 dev | bin/clickhouse-backup | stdlib@v1.25.1 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/clickhouse-backup:2.6.39-d0d7ba46-65 | false | Observability v2.6 dev | bin/clickhouse-backup | stdlib@v1.25.1 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/hbase-master:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| quay.io/stackstate/hbase-master:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| quay.io/stackstate/hbase-master:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-http2@4.1.123.Final | CVE-2025-55163 | HIGH | affected | jar | |
| quay.io/stackstate/hbase-master:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-smtp@4.1.123.Final | CVE-2025-59419 | HIGH | affected | jar | |
| quay.io/stackstate/hbase-regionserver:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| quay.io/stackstate/hbase-regionserver:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| quay.io/stackstate/hbase-regionserver:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-http2@4.1.123.Final | CVE-2025-55163 | HIGH | affected | jar | |
| quay.io/stackstate/hbase-regionserver:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-smtp@4.1.123.Final | CVE-2025-59419 | HIGH | affected | jar | |
| quay.io/stackstate/kafka:3.9.1-17ef1d95 | false | Observability v2.6 dev | Java | commons-beanutils:commons-beanutils@1.9.4 | CVE-2025-48734 | HIGH | affected | jar | |
| quay.io/stackstate/stackgraph-console:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| quay.io/stackstate/stackgraph-console:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| quay.io/stackstate/stackgraph-console:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-http2@4.1.121.Final | CVE-2025-55163 | HIGH | affected | jar | |
| quay.io/stackstate/stackgraph-console:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-smtp@4.1.121.Final | CVE-2025-59419 | HIGH | affected | jar | |
| quay.io/stackstate/stackgraph-hbase:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| quay.io/stackstate/stackgraph-hbase:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| quay.io/stackstate/stackgraph-hbase:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-http2@4.1.123.Final | CVE-2025-55163 | HIGH | affected | jar | |
| quay.io/stackstate/stackgraph-hbase:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-smtp@4.1.123.Final | CVE-2025-59419 | HIGH | affected | jar | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | java-21-openjdk | java-21-openjdk@21.0.8.0-150600.3.15.1 | SUSE-SU-2025:3859-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | java-21-openjdk-headless | java-21-openjdk-headless@21.0.8.0-150600.3.15.1 | SUSE-SU-2025:3859-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | libfreebl3 | libfreebl3@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | libsoftokn3 | libsoftokn3@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | mozilla-nss | mozilla-nss@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | mozilla-nss-certs | mozilla-nss-certs@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-correlate:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | java-21-openjdk | java-21-openjdk@21.0.8.0-150600.3.15.1 | SUSE-SU-2025:3859-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | java-21-openjdk-headless | java-21-openjdk-headless@21.0.8.0-150600.3.15.1 | SUSE-SU-2025:3859-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | libfreebl3 | libfreebl3@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | libsoftokn3 | libsoftokn3@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | mozilla-nss | mozilla-nss@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | mozilla-nss-certs | mozilla-nss-certs@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-kafka-to-es:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | java-21-openjdk | java-21-openjdk@21.0.8.0-150600.3.15.1 | SUSE-SU-2025:3859-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | java-21-openjdk-headless | java-21-openjdk-headless@21.0.8.0-150600.3.15.1 | SUSE-SU-2025:3859-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | libfreebl3 | libfreebl3@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | libsoftokn3 | libsoftokn3@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | mozilla-nss | mozilla-nss@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | mozilla-nss-certs | mozilla-nss-certs@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-receiver:7.0.0-snapshot.20251125071236-master-7f46fe7 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | java-21-openjdk | java-21-openjdk@21.0.8.0-150600.3.15.1 | SUSE-SU-2025:3859-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | java-21-openjdk-headless | java-21-openjdk-headless@21.0.8.0-150600.3.15.1 | SUSE-SU-2025:3859-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | libfreebl3 | libfreebl3@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | libsoftokn3 | libsoftokn3@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | mozilla-nss | mozilla-nss@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | mozilla-nss-certs | mozilla-nss-certs@3.112-150400.3.57.1 | SUSE-SU-2025:3804-1 | HIGH | affected | sles | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | Java | com.squareup.okhttp3:okhttp@3.12.12 | CVE-2021-0341 | HIGH | affected | jar | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | Java | io.netty:netty-codec-http2@4.1.121.Final | CVE-2025-55163 | HIGH | affected | jar | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | Java | io.netty:netty-codec-smtp@4.1.121.Final | CVE-2025-59419 | HIGH | affected | jar | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/stackstate-server:7.0.0-snapshot.20251125071236-master-7f46fe7-2.5 | false | Observability v2.6 dev | usr/bin/sts-toolbox | stdlib@v1.24.6 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| quay.io/stackstate/tephra-server:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| quay.io/stackstate/tephra-server:2.5-7.13.3 | false | Observability v2.6 dev | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| quay.io/stackstate/tephra-server:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-http2@4.1.123.Final | CVE-2025-55163 | HIGH | affected | jar | |
| quay.io/stackstate/tephra-server:2.5-7.13.3 | false | Observability v2.6 dev | Java | io.netty:netty-codec-smtp@4.1.123.Final | CVE-2025-59419 | HIGH | affected | jar | |
| quay.io/stackstate/zookeeper:3.9.3-aeb92d19-184 | false | Observability v2.6 dev | Java | io.netty:netty-handler@4.1.113.Final | CVE-2025-24970 | HIGH | affected | jar | |
| quay.io/stackstate/zookeeper:3.9.3-aeb92d19-184 | false | Observability v2.6 dev | Java | org.eclipse.jetty:jetty-server@9.4.56.v20240826 | CVE-2024-13009 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | stdlib@v1.22.7 | CVE-2025-47907 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | stdlib@v1.22.7 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | stdlib@v1.22.7 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | stdlib@v1.22.7 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | stdlib@v1.22.7 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | stdlib@v1.22.7 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | golang.org/x/crypto@v0.31.0 | CVE-2025-22869 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | golang.org/x/oauth2@v0.0.0-20200107190931-bf48bf16ab8d | CVE-2025-22868 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | gopkg.in/yaml.v3@v3.0.0-20220521103104-8f96da9f5d5e | CVE-2022-28948 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | stdlib@v1.22.10 | CVE-2025-47907 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | stdlib@v1.22.10 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | stdlib@v1.22.10 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | stdlib@v1.22.10 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | stdlib@v1.22.10 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.4 | false | Observability v2.6 dev | kafkaup-operator | stdlib@v1.22.10 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:35ec5206 | false | Observability v2.6 dev | usr/bin/kubernetes-rbac-agent | stdlib@v1.24.7 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:35ec5206 | false | Observability v2.6 dev | usr/bin/kubernetes-rbac-agent | stdlib@v1.24.7 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:35ec5206 | false | Observability v2.6 dev | usr/bin/kubernetes-rbac-agent | stdlib@v1.24.7 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:35ec5206 | false | Observability v2.6 dev | usr/bin/kubernetes-rbac-agent | stdlib@v1.24.7 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:35ec5206 | false | Observability v2.6 dev | usr/bin/kubernetes-rbac-agent | stdlib@v1.24.7 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | stdlib@v1.23.3 | CVE-2025-47907 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | stdlib@v1.23.3 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | stdlib@v1.23.3 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | stdlib@v1.23.3 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | stdlib@v1.23.3 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | stdlib@v1.23.3 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | stdlib@v1.23.4 | CVE-2025-47907 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | stdlib@v1.23.4 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | stdlib@v1.23.4 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | stdlib@v1.23.4 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | stdlib@v1.23.4 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | stdlib@v1.23.4 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | stdlib@v1.23.4 | CVE-2025-47907 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | stdlib@v1.23.4 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | stdlib@v1.23.4 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | stdlib@v1.23.4 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | stdlib@v1.23.4 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | stdlib@v1.23.4 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2024-24790 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2023-39325 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2023-45283 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2023-45288 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2024-34156 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2025-47907 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2023-29409 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2023-39326 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2023-45289 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2023-45290 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2024-24783 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2024-24784 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2024-24785 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.20.5 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | stdlib@v1.23.4 | CVE-2025-47907 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | stdlib@v1.23.4 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | stdlib@v1.23.4 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | stdlib@v1.23.4 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | stdlib@v1.23.4 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | stdlib@v1.23.4 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | stdlib@v1.23.4 | CVE-2025-47907 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | stdlib@v1.23.4 | CVE-2025-58183 | LOW*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | stdlib@v1.23.4 | CVE-2025-58186 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | stdlib@v1.23.4 | CVE-2025-58187 | MEDIUM*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | stdlib@v1.23.4 | CVE-2025-47912 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | stdlib@v1.23.4 | CVE-2025-58188 | HIGH*Severity modified based on SUSE's CVE database and CVSS rating |
affected | gobinary | |
| registry.rancher.com/suse-observability/wait:1.0.11-04b49abf | false | Observability v2.6 dev | sudo | sudo@1.9.16_p2-r0 | CVE-2025-32462 | HIGH | affected | alpine | |
| registry.rancher.com/suse-observability/wait:1.0.11-04b49abf | false | Observability v2.6 dev | sudo | sudo@1.9.16_p2-r0 | CVE-2025-32463 | HIGH | affected | alpine | |
| quay.io/stackstate/clickhouse-backup:2.6.39-d0d7ba46-65 | false | Observability v2.6 dev | bin/clickhouse-backup | github.com/nwaples/rardecode/v2@v2.1.1 | CVE-2025-11579 | none | not affected | vulnerable code not in execute path | gobinary |
| quay.io/stackstate/clickhouse-backup:2.6.39-d0d7ba46-65 | false | Observability v2.6 dev | bin/clickhouse-backup | golang.org/x/crypto@v0.42.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| quay.io/stackstate/clickhouse-backup:2.6.39-d0d7ba46-65 | false | Observability v2.6 dev | bin/clickhouse-backup | golang.org/x/crypto@v0.42.0 | CVE-2025-58181 | none | not affected | vulnerable code not in execute path | gobinary |
| quay.io/stackstate/container-tools:1.8.1-bci | false | Observability v2.6 dev | usr/local/bin/helm | golang.org/x/crypto@v0.43.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| quay.io/stackstate/container-tools:1.8.1-bci | false | Observability v2.6 dev | usr/local/bin/helm | golang.org/x/crypto@v0.43.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| quay.io/stackstate/minio:RELEASE.2025-11-19T12-41-50Z-15bb6f44-162 | false | Observability v2.6 dev | usr/bin/minio | golang.org/x/crypto@v0.41.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| quay.io/stackstate/minio:RELEASE.2025-11-19T12-41-50Z-15bb6f44-162 | false | Observability v2.6 dev | usr/bin/minio | golang.org/x/crypto@v0.41.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| quay.io/stackstate/minio:RELEASE.2025-11-19T12-41-50Z-15bb6f44-162 | false | Observability v2.6 dev | usr/bin/minio | gopkg.in/square/go-jose.v2@v2.6.0 | CVE-2024-28180 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | golang.org/x/crypto@v0.21.0 | CVE-2024-45337 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | golang.org/x/crypto@v0.21.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | golang.org/x/crypto@v0.21.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | golang.org/x/crypto@v0.21.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | golang.org/x/net@v0.23.0 | CVE-2025-22872 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.8.0-d2aa61ab | false | Observability v2.6 dev | bin/elasticsearch_exporter | golang.org/x/oauth2@v0.16.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | golang.org/x/crypto@v0.28.0 | CVE-2024-45337 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | golang.org/x/crypto@v0.28.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | golang.org/x/crypto@v0.28.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | golang.org/x/crypto@v0.28.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | golang.org/x/net@v0.29.0 | CVE-2025-22872 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.4.0-11589218739 | false | Observability v2.6 dev | usr/bin/nginx-prometheus-exporter | golang.org/x/oauth2@v0.23.0 | CVE-2025-22868 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | golang.org/x/net@v0.34.0 | CVE-2025-22870 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | golang.org/x/net@v0.34.0 | CVE-2025-22872 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/victoria-metrics:v1.109.0-accea47f | false | Observability v2.6 dev | victoria-metrics-prod | golang.org/x/oauth2@v0.25.0 | CVE-2025-22868 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | golang.org/x/net@v0.34.0 | CVE-2025-22870 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | golang.org/x/net@v0.34.0 | CVE-2025-22872 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmagent:v1.109.0-e6dc53fb | false | Observability v2.6 dev | vmagent-prod | golang.org/x/oauth2@v0.25.0 | CVE-2025-22868 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | usr/local/bin/supercronic-linux-amd64 | google.golang.org/protobuf@v1.30.0 | CVE-2024-24786 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | github.com/golang-jwt/jwt/v5@v5.2.1 | CVE-2025-30204 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | golang.org/x/crypto@v0.32.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | golang.org/x/crypto@v0.32.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | golang.org/x/crypto@v0.32.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | golang.org/x/net@v0.34.0 | CVE-2025-22870 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | golang.org/x/net@v0.34.0 | CVE-2025-22872 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.109.0-4c7c50f9 | false | Observability v2.6 dev | vmbackup-prod | golang.org/x/oauth2@v0.25.0 | CVE-2025-22868 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | github.com/golang-jwt/jwt/v5@v5.2.1 | CVE-2025-30204 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | golang.org/x/crypto@v0.32.0 | CVE-2025-22869 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | golang.org/x/crypto@v0.32.0 | CVE-2025-47914 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | golang.org/x/crypto@v0.32.0 | CVE-2025-58181 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | golang.org/x/net@v0.34.0 | CVE-2025-22870 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | golang.org/x/net@v0.34.0 | CVE-2025-22872 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.109.0-4af7dbf5 | false | Observability v2.6 dev | vmrestore-prod | golang.org/x/oauth2@v0.25.0 | CVE-2025-22868 | none | not affected | vulnerable code not in execute path | gobinary |