ghcr.io/kube-vip/kube-vip:v1.2.0
24 vulnerabilities fixed
Patched Image
ghcr.io/verity-org/kube-vip/kube-vip:v1.2.0
Supply Chain
Full compliance detailsSignedSLSA L3SBOMRekor
Verify this artifact
Cosign signature
cosign verify \ --certificate-identity-regexp "https://github.com/verity-org/verity/.github/workflows/" \ --certificate-oidc-issuer "https://token.actions.githubusercontent.com" \ ghcr.io/verity-org/kube-vip/kube-vip:v1.2.0
Build provenance
gh attestation verify \ oci://ghcr.io/verity-org/kube-vip/kube-vip:v1.2.0 \ --owner verity-org
Before patching
Found 25 vulnerabilities in the original image. 24 fixed by Copa. 1 remaining after patching.
14 HIGH8 MEDIUM3 UNKNOWN
Awaiting upstream fix
No fix is available yet for these vulnerabilities. They can be suppressed in your compliance tooling until an upstream fix is released.
- GO-2026-5932UNKNOWN
- Package
- golang.org/x/crypto
- Installed
- v0.52.0
- Fixed
| ID | Package | Installed | Fixed | Severity |
|---|---|---|---|---|
| GO-2026-5932 | golang.org/x/crypto | v0.52.0 | UNKNOWN |
Original image reference
ghcr.io/kube-vip/kube-vip:v1.2.0