Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 27 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2023-46737 Possible endless data attack from attacker-controlled registry in cosign sigstorecosign Low 3.1 2023-11-07 17:30:26 Deep Dive
CVE-2023-33199 malformed proposed intoto v0.0.2 entries can cause a panic in Rekor sigstorerekor Medium 5.3 2023-05-26 22:52:16 Deep Dive
CVE-2023-30551 Rekor's compressed archives can result in OOM conditions sigstorerekor High 7.5 2023-05-08 15:52:42 Deep Dive
CVE-2022-36056 Vulnerabilities with blob verification in sigstore cosign sigstorecosign Medium 5.5 2022-09-14 19:50:09 Deep Dive
CVE-2022-35930 Ability to bypass attestation verification in sigstore PolicyController sigstorepolicy-controller High 7.1 2022-08-04 21:15:15 Deep Dive
CVE-2022-35929 False positive signature verification in cosign sigstorecosign High 7.1 2022-08-04 18:45:14 Deep Dive
CVE-2022-23649 Improper Certificate Validation in Cosign sigstorecosign Low 3.3 2022-02-18 21:30:10 Deep Dive