usr/bin/oc¶ Trivy Image Scan Image: usr/bin/oc Scan date: 2026-04-24 usr/bin/oc (gobinary)¶ Package Vulnerability ID Severity Installed Version Fixed Version Links github.com/Azure/go-ntlmssp CVE-2026-32952 MEDIUM v0.0.0-20221128193559-754e69321358 0.1.1 https://github.com/Azure/go-ntlmssp https://github.com/Azure/go-ntlmssp/releases/tag/v0.1.1 https://github.com/Azure/go-ntlmssp/security/advisories/GHSA-pjcq-xvwq-hhpj github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream GHSA-xmrv-pmrh-hhx2 MEDIUM v1.7.6 1.7.8 https://github.com/aws/aws-sdk-go-v2 https://github.com/aws/aws-sdk-go-v2/releases/tag/release-2026-03-23 https://github.com/aws/aws-sdk-go-v2/security/advisories/GHSA-xmrv-pmrh-hhx2 github.com/aws/aws-sdk-go-v2/service/s3 GHSA-xmrv-pmrh-hhx2 MEDIUM v1.96.4 1.97.3 https://github.com/aws/aws-sdk-go-v2 https://github.com/aws/aws-sdk-go-v2/releases/tag/release-2026-03-23 https://github.com/aws/aws-sdk-go-v2/security/advisories/GHSA-xmrv-pmrh-hhx2 github.com/distribution/distribution/v3 CVE-2026-33540 HIGH v3.0.0-20230519140516-983358f8e250 3.1.0 https://access.redhat.com/security/cve/CVE-2026-33540 https://github.com/distribution/distribution https://github.com/distribution/distribution/commit/cc5d5fa4ba02157501e6afa2cc6a903ad0338e7b https://github.com/distribution/distribution/security/advisories/GHSA-3p65-76g6-3w7r https://nvd.nist.gov/vuln/detail/CVE-2026-33540 https://www.cve.org/CVERecord?id=CVE-2026-33540 github.com/distribution/distribution/v3 CVE-2026-35172 HIGH v3.0.0-20230519140516-983358f8e250 3.1.0 https://access.redhat.com/security/cve/CVE-2026-35172 https://github.com/distribution/distribution https://github.com/distribution/distribution/commit/078b0783f239b4115d1a979e66f08832084e9d1d https://github.com/distribution/distribution/security/advisories/GHSA-f2g3-hh2r-cwgc https://nvd.nist.gov/vuln/detail/CVE-2026-35172 https://www.cve.org/CVERecord?id=CVE-2026-35172 github.com/docker/docker CVE-2026-34040 HIGH v28.5.2+incompatible 29.3.1 https://access.redhat.com/security/cve/CVE-2026-34040 https://docs.docker.com/engine/extend/plugins_authorization https://github.com/moby/moby https://github.com/moby/moby/commit/e89edb19ad7de0407a5d31e3111cb01aa10b5a38 https://github.com/moby/moby/releases/tag/docker-v29.3.1 https://github.com/moby/moby/security/advisories/GHSA-v23v-6jw2-98fq https://github.com/moby/moby/security/advisories/GHSA-x744-4wpc-v9h2 https://nvd.nist.gov/vuln/detail/CVE-2026-34040 https://www.cve.org/CVERecord?id=CVE-2026-34040 github.com/docker/docker CVE-2026-33997 MEDIUM v28.5.2+incompatible 29.3.1 https://access.redhat.com/security/cve/CVE-2026-33997 https://docs.docker.com/engine/extend/legacy_plugins https://github.com/moby/moby https://github.com/moby/moby/commit/f4d6f25bf0c3fa12d4968320a45685947756a22a https://github.com/moby/moby/releases/tag/docker-v29.3.1 https://github.com/moby/moby/security/advisories/GHSA-pxq6-2prw-chj9 https://nvd.nist.gov/vuln/detail/CVE-2026-33997 https://www.cve.org/CVERecord?id=CVE-2026-33997 github.com/go-git/go-git/v5 CVE-2026-25934 MEDIUM v5.13.1 5.16.5 https://access.redhat.com/security/cve/CVE-2026-25934 https://github.com/go-git/go-git https://github.com/go-git/go-git/releases/tag/v5.16.5 https://github.com/go-git/go-git/security/advisories/GHSA-37cx-329c-33x3 https://nvd.nist.gov/vuln/detail/CVE-2026-25934 https://ubuntu.com/security/notices/USN-8088-1 https://www.cve.org/CVERecord?id=CVE-2026-25934 github.com/go-git/go-git/v5 CVE-2026-34165 MEDIUM v5.13.1 5.17.1 https://access.redhat.com/security/cve/CVE-2026-34165 https://github.com/go-git/go-git https://github.com/go-git/go-git/releases/tag/v5.17.1 https://github.com/go-git/go-git/security/advisories/GHSA-jhf3-xxhw-2wpp https://nvd.nist.gov/vuln/detail/CVE-2026-34165 https://www.cve.org/CVERecord?id=CVE-2026-34165 github.com/go-git/go-git/v5 GHSA-3xc5-wrhm-f963 MEDIUM v5.13.1 5.18.0 https://github.com/go-git/go-git https://github.com/go-git/go-git/security/advisories/GHSA-3xc5-wrhm-f963 github.com/go-git/go-git/v5 CVE-2026-33762 LOW v5.13.1 5.17.1 https://access.redhat.com/security/cve/CVE-2026-33762 https://github.com/go-git/go-git https://github.com/go-git/go-git/releases/tag/v5.17.1 https://github.com/go-git/go-git/security/advisories/GHSA-gm2x-2g9h-ccm8 https://nvd.nist.gov/vuln/detail/CVE-2026-33762 https://www.cve.org/CVERecord?id=CVE-2026-33762 github.com/go-jose/go-jose/v4 CVE-2026-34986 HIGH v4.1.3 4.1.4 https://access.redhat.com/security/cve/CVE-2026-34986 https://github.com/go-jose/go-jose https://github.com/go-jose/go-jose/security/advisories/GHSA-78h2-9frx-2jm8 https://nvd.nist.gov/vuln/detail/CVE-2026-34986 https://pkg.go.dev/github.com/go-jose/go-jose/v4#pkg-constants https://www.cve.org/CVERecord?id=CVE-2026-34986 github.com/moby/buildkit CVE-2026-33747 HIGH v0.12.5 0.28.1 https://access.redhat.com/security/cve/CVE-2026-33747 https://github.com/moby/buildkit https://github.com/moby/buildkit/releases/tag/v0.28.1 https://github.com/moby/buildkit/security/advisories/GHSA-4c29-8rgm-jvjj https://nvd.nist.gov/vuln/detail/CVE-2026-33747 https://www.cve.org/CVERecord?id=CVE-2026-33747 github.com/moby/buildkit CVE-2026-33748 HIGH v0.12.5 0.28.1 https://access.redhat.com/security/cve/CVE-2026-33748 https://docs.docker.com/build/concepts/context/#url-fragments https://github.com/moby/buildkit https://github.com/moby/buildkit/releases/tag/v0.28.1 https://github.com/moby/buildkit/security/advisories/GHSA-4vrq-3vrq-g6gg https://nvd.nist.gov/vuln/detail/CVE-2026-33748 https://www.cve.org/CVERecord?id=CVE-2026-33748 github.com/moby/spdystream CVE-2026-35469 HIGH v0.5.0 0.5.1 https://access.redhat.com/security/cve/CVE-2026-35469 https://github.com/moby/spdystream https://github.com/moby/spdystream/releases/tag/v0.5.1 https://github.com/moby/spdystream/security/advisories/GHSA-pc3f-x583-g7j2 https://nvd.nist.gov/vuln/detail/CVE-2026-35469 https://www.cve.org/CVERecord?id=CVE-2026-35469 github.com/sigstore/fulcio CVE-2025-66506 HIGH v1.6.6 1.8.3 https://access.redhat.com/security/cve/CVE-2025-66506 https://github.com/sigstore/fulcio https://github.com/sigstore/fulcio/commit/765a0e57608b9ef390e1eeeea8595b9054c63a5a https://github.com/sigstore/fulcio/security/advisories/GHSA-f83f-xpx7-ffpw https://nvd.nist.gov/vuln/detail/CVE-2025-66506 https://www.cve.org/CVERecord?id=CVE-2025-66506 github.com/sigstore/fulcio CVE-2026-22772 MEDIUM v1.6.6 1.8.5 https://access.redhat.com/security/cve/CVE-2026-22772 https://github.com/sigstore/fulcio https://github.com/sigstore/fulcio/commit/eaae2f2be56df9dea5f9b439ec81bedae4c0978d https://github.com/sigstore/fulcio/security/advisories/GHSA-59jp-pj84-45mr https://nvd.nist.gov/vuln/detail/CVE-2026-22772 https://www.cve.org/CVERecord?id=CVE-2026-22772 github.com/sigstore/sigstore CVE-2026-24137 MEDIUM v1.9.5 1.10.4 https://access.redhat.com/security/cve/CVE-2026-24137 https://github.com/sigstore/sigstore https://github.com/sigstore/sigstore/commit/8ec410a2993ea78083aecf0e473a85453039496e https://github.com/sigstore/sigstore/releases/tag/v1.10.4 https://github.com/sigstore/sigstore/security/advisories/GHSA-fcv2-xgw5-pqxf https://nvd.nist.gov/vuln/detail/CVE-2026-24137 https://pkg.go.dev/vuln/GO-2026-4358 https://www.cve.org/CVERecord?id=CVE-2026-24137 stdlib CVE-2026-32280 HIGH v1.25.8 1.25.9, 1.26.2 https://access.redhat.com/security/cve/CVE-2026-32280 https://go.dev/cl/758320 https://go.dev/issue/78282 https://groups.google.com/g/golang-announce/c/0uYbvbPZRWU https://nvd.nist.gov/vuln/detail/CVE-2026-32280 https://pkg.go.dev/vuln/GO-2026-4947 https://www.cve.org/CVERecord?id=CVE-2026-32280 stdlib CVE-2026-32281 HIGH v1.25.8 1.25.9, 1.26.2 https://access.redhat.com/security/cve/CVE-2026-32281 https://go.dev/cl/758061 https://go.dev/issue/78281 https://groups.google.com/g/golang-announce/c/0uYbvbPZRWU https://nvd.nist.gov/vuln/detail/CVE-2026-32281 https://pkg.go.dev/vuln/GO-2026-4946 https://www.cve.org/CVERecord?id=CVE-2026-32281 stdlib CVE-2026-32283 HIGH v1.25.8 1.25.9, 1.26.2 https://go.dev/cl/763767 https://go.dev/issue/78334 https://groups.google.com/g/golang-announce/c/0uYbvbPZRWU https://nvd.nist.gov/vuln/detail/CVE-2026-32283 https://pkg.go.dev/vuln/GO-2026-4870 stdlib CVE-2026-32282 MEDIUM v1.25.8 1.25.9, 1.26.2 https://access.redhat.com/security/cve/CVE-2026-32282 https://go.dev/cl/763761 https://go.dev/issue/78293 https://groups.google.com/g/golang-announce/c/0uYbvbPZRWU https://nvd.nist.gov/vuln/detail/CVE-2026-32282 https://pkg.go.dev/vuln/GO-2026-4864 https://www.cve.org/CVERecord?id=CVE-2026-32282 stdlib CVE-2026-32288 MEDIUM v1.25.8 1.25.9, 1.26.2 https://access.redhat.com/security/cve/CVE-2026-32288 https://go.dev/cl/763766 https://go.dev/issue/78301 https://groups.google.com/g/golang-announce/c/0uYbvbPZRWU https://nvd.nist.gov/vuln/detail/CVE-2026-32288 https://pkg.go.dev/vuln/GO-2026-4869 https://www.cve.org/CVERecord?id=CVE-2026-32288 stdlib CVE-2026-32289 MEDIUM v1.25.8 1.25.9, 1.26.2 https://access.redhat.com/security/cve/CVE-2026-32289 https://go.dev/cl/763762 https://go.dev/issue/78331 https://groups.google.com/g/golang-announce/c/0uYbvbPZRWU https://nvd.nist.gov/vuln/detail/CVE-2026-32289 https://pkg.go.dev/vuln/GO-2026-4865 https://www.cve.org/CVERecord?id=CVE-2026-32289 No Misconfigurations found