| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-31801 | zot create-only policy allows overwrite attempts of existing latest tag (update permission not required) | project-zot | zot | High | 7.7 | 2026-03-10 20:54:15 | Deep Dive |
| CVE-2025-48374 | zot logs secrets | project-zot | zot | - | - | 2025-05-22 20:43:14 | Deep Dive |
| CVE-2025-23208 | IdP group membership revocation ignored in zot | project-zot | zot | High | 7.3 | 2025-01-17 22:24:09 | Deep Dive |
| CVE-2024-39897 | Cache driver GetBlob() allows read access to any blob without access control check | project-zot | zot | Medium | 4.3 | 2024-07-09 18:48:24 | Deep Dive |