ACK Detected Controllers CVEs
| CVE ID | Type | Severity | Installed Version | Fixed Version | Affected Controllers | Title |
|---|---|---|---|---|---|---|
| CVE-2025-4673 | gobinary | MEDIUM | 1.24.3 | 1.23.10, 1.24.4 | ALL | Proxy-Authorization and Proxy-Authenticate headers persisted on cross- ... |
| CVE-2025-0913 | gobinary | UNKNOWN | 1.24.3 | 1.23.10, 1.24.4 | ALL | Inconsistent handling of O_CREATE |
| CVE-2025-22874 | gobinary | UNKNOWN | 1.24.3 | 1.23.10, 1.24.4 | ALL | Calling Verify with a VerifyOptions.KeyUsages that contains ExtKeyUsag ... |
| CVE-2025-22872 | gobinary | MEDIUM | v0.37.0 | 0.38.0 | [networkfirewall opensearchservice sagemaker ssm ses] | golang.org/x/net/html: Incorrect Neutralization of Input During Web Page Generation in x/net in golang.org/x/net |
Hello @ack-bot 👋 Thank you for opening an issue in ACK! A maintainer will triage this issue soon.
We encourage community contributions, so if you're interested in tackling this yourself or suggesting a solution, please check out our Contribution and Code of Conduct guidelines.
You can find more information about ACK on our website.
/close
@rushmash91: Closing this issue.
In response to this:
/close
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.