GHSA-6wvf-f2vw-3425
GitHub Security Advisory
github.com/containers/image allows unexpected authenticated registry accesses
✓ GitHub Reviewed
HIGH
Has CVE
Advisory Details
A flaw was found in the github.com/containers/image library. This flaw allows attackers to trigger unexpected authenticated registry accesses on behalf of a victim user, causing resource exhaustion, local path traversal, and other attacks.
Affected Packages
Go
github.com/containers/image
Affected versions:
0
(fixed in 5.30.1)
Go
github.com/containers/image/v5
Affected versions:
5.30.0
(fixed in 5.30.1)
Go
github.com/containers/image/v5
Affected versions:
0
(fixed in 5.29.3)
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: June 18, 2025 6:25 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.