Количество 10
Количество 10
CVE-2026-41888
Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.1, tag deletion via the DELETE /v2/<name>/manifests/<tag> endpoint bypasses the storage.delete.enabled: false configuration, allowing any API client to remove tags from repositories even when the operator has explicitly disabled deletion. This vulnerability is fixed in 3.1.1.
CVE-2026-41888
Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.1, tag deletion via the DELETE /v2/<name>/manifests/<tag> endpoint bypasses the storage.delete.enabled: false configuration, allowing any API client to remove tags from repositories even when the operator has explicitly disabled deletion. This vulnerability is fixed in 3.1.1.
CVE-2026-41888
Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.1, tag deletion via the DELETE /v2/<name>/manifests/<tag> endpoint bypasses the storage.delete.enabled: false configuration, allowing any API client to remove tags from repositories even when the operator has explicitly disabled deletion. This vulnerability is fixed in 3.1.1.
CVE-2026-41888
Distribution is a toolkit to pack, ship, store, and deliver container ...
GHSA-6pjf-3r9x-m592
Distribution's tag deletion bypasses `storage.delete.enabled` configuration
BDU:2026-07972
Уязвимость инструментария для хранения и доставки содержимого контейнеров Distribution, связанная с недостатками механизма авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
openSUSE-SU-2026:20860-1
Security update for helm
SUSE-SU-2026:2049-1
Security update for helm
ROS-20260526-73-0016
Уязвимость registry
openSUSE-SU-2026:21084-1
Security update for distribution
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-41888 Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.1, tag deletion via the DELETE /v2/<name>/manifests/<tag> endpoint bypasses the storage.delete.enabled: false configuration, allowing any API client to remove tags from repositories even when the operator has explicitly disabled deletion. This vulnerability is fixed in 3.1.1. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-41888 Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.1, tag deletion via the DELETE /v2/<name>/manifests/<tag> endpoint bypasses the storage.delete.enabled: false configuration, allowing any API client to remove tags from repositories even when the operator has explicitly disabled deletion. This vulnerability is fixed in 3.1.1. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-41888 Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.1, tag deletion via the DELETE /v2/<name>/manifests/<tag> endpoint bypasses the storage.delete.enabled: false configuration, allowing any API client to remove tags from repositories even when the operator has explicitly disabled deletion. This vulnerability is fixed in 3.1.1. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-41888 Distribution is a toolkit to pack, ship, store, and deliver container ... | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
GHSA-6pjf-3r9x-m592 Distribution's tag deletion bypasses `storage.delete.enabled` configuration | 0% Низкий | 3 месяца назад | ||
BDU:2026-07972 Уязвимость инструментария для хранения и доставки содержимого контейнеров Distribution, связанная с недостатками механизма авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
openSUSE-SU-2026:20860-1 Security update for helm | 2 месяца назад | |||
SUSE-SU-2026:2049-1 Security update for helm | 2 месяца назад | |||
ROS-20260526-73-0016 Уязвимость registry | CVSS3: 6.5 | 0% Низкий | 2 месяца назад | |
openSUSE-SU-2026:21084-1 Security update for distribution | около 2 месяцев назад |
Уязвимостей на страницу