pkg:Go/github.com/chainguard-dev/kaniko
2 total CVEsHIGH2
✅ Check your installed version
All known vulnerabilities
HIGH8.2CVE-2026-28406kaniko has tar archive path traversal in its build context extraction, allowing file writes outside destination directories in github.com/chainguard-dev/kaniko >= 1.25.4, < 1.25.10
HIGH8.2CVE-2026-28406kaniko has tar archive path traversal in its build context extraction, allowing file writes outside destination directories in github.com/chainguard-dev/kaniko >= 1.25.4, < 1.25.10