MEDIUM5.8Go
GHSA-698x-9w2p-7vvp· CVE-2026-10517, GO-2026-5939Claircore: Unauthenticated attackers can submit manifests with URIs pointing to internal services or cloud metadata endpoints
Modified: 9/10/2026
package
pkg:go/github.com/quay/claircore
Claircore: Unauthenticated attackers can submit manifests with URIs pointing to internal services or cloud metadata endpoints
Modified: 9/10/2026
Path traversal in claircore
Modified: 11/8/2023
Path traversal in github.com/quay/claircore
Modified: 5/20/2024
Claircore: Unauthenticated attackers can submit manifests with URIs pointing to internal services or cloud metadata endpoints in github.com/quay/claircore
Modified: 7/21/2026