Anchor是一套开源的轻量级博客系统。 Anchore Enterprise anchorectl 0.1.4版本存在安全漏洞,该漏洞源于在生成软件物料清单时不正确地存储了凭证。anchorectl将在anchorectl生成的软件物料清单(SBOM)中添加用于访问Anchore Enterprise API的凭证。0.1.4版的用户应升级到0.1.5版来解决这个问题。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Anchore Inc. | Anchore Enterprise | unspecified ~ 4.0.1 | - |
|
| Anchore Inc. | AnchoreCTL | unspecified ~ 0.1.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet