All 2 CVE vulnerabilities found in syft, with AI-generated Chinese analysis, references, and POCs.
Vendor: anchore
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2026-33481 | Syft improper temporary file cleanup CWE-460 | 5.3 | Medium | 2026-03-26 |
| CVE-2023-24827 | Credential disclosure in syft when SYFT_ATTEST_PASSWORD environment variable set in syft CWE-200 | 6.5 | Medium | 2023-02-07 |
All 2 known CVE vulnerabilities affecting syft with full Chinese analysis, references, and POCs where available.