Known vulnerabilities in skopeo
Vendor:
Fedoraproject
Software:
skopeo
Software CPE:
cpe:2.3:o:fedoraproject:skopeo:*:*:*:*:*:fedora:*:*
Website:
https://getfedora.org/
Total vulnerabilities:
19
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
1.22.2-2.fc44
1.22.2-2.fc43
1.23.0-1.fc45
1.23.0-2.fc45
1.22.2-1.fc42
1.22.2-1.fc44
1.22.1-2.fc42
1.22.1-2.fc43
1.22.1-2.fc44
1.20.0-4.fc42
1.20.0-5.fc43
1.20.0-3.fc41
1.20.0-3.fc42
1.2.0-2.fc33
1.2.0-3.fc33
0.1.41-1.fc30
0.1.41-1.fc31
1.9.0-4.fc36
1.8.0-9.fc36
1.8.0-9.fc37
1.7.0-1.fc34
1.7.0-1.fc36
1.7.0-1.fc35
1.6.0-1.fc36
1.5.2-1.fc34
1.5.2-1.fc35
1.3.1-1.fc33
1.2.3-1.fc33
1.2.3-1.fc34
1.2.2-1.fc33
1.11.2-1.fc37
1.11.2-1.fc38
Vulnerabilities (19)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU140620 - Resource exhaustion CVE-2026-27145 |
CWE-400 | Medium | 1.22.2-2.fc43, 1.22.2-2.fc44 | 31.07.2026 |
SB2026073127 SB2026073129 SB2026073130 and 45 more |
||
| #VU125945 - Improper input validation CVE-2026-34986 |
CWE-20 | Medium | 1.22.1-2.fc42, 1.22.1-2.fc43, 1.22.1-2.fc44, 1.22.2-1.fc42, 1.22.2-1.fc44 | 14.04.2026 |
SB2026041463 SB2026041464 SB2026041465 and 74 more |
||
| #VU118183 - Improper Encoding or Escaping of Output CVE-2025-58189 |
CWE-116 | Low | 1.20.0-4.fc42, 1.20.0-5.fc43 | 07.11.2025 |
SB2025110705 SB2025110711 SB2025110712 and 123 more |
||
| #VU118179 - Resource exhaustion CVE-2025-61725 |
CWE-400 | Medium | 1.20.0-4.fc42, 1.20.0-5.fc43 | 07.11.2025 |
SB2025110705 SB2025110714 SB2025110715 and 76 more |
||
| #VU114079 - Improper input validation CVE-2025-47906 |
CWE-20 | Low | 1.20.0-3.fc41, 1.20.0-3.fc42 | 14.08.2025 |
SB2025081423 SB2025081424 SB2025081425 and 130 more |
||
| #VU72686 - Resource exhaustion CVE-2022-41723 |
CWE-400 | Medium | 1.11.2-1.fc37, 1.11.2-1.fc38 | 01.03.2023 |
SB2023030130 SB2023030131 SB2023030946 and 190 more |
||
| #VU66447 - Overly Permissive Cross-domain Whitelist CVE-2022-1996 |
CWE-942 | Low | 1.8.0-9.fc36, 1.8.0-9.fc37 | 12.08.2022 |
SB2022081216 SB2022081228 SB2022081229 and 65 more |
||
| #VU66122 - Use of Insufficiently Random Values CVE-2022-30629 |
CWE-330 | Medium | 1.8.0-9.fc36, 1.8.0-9.fc37 | 05.08.2022 |
SB2022080501 SB2022080503 SB2022081106 and 81 more |
||
| #VU64269 - Integer overflow CVE-2022-28327 |
CWE-190 | Low | 1.8.0-9.fc36, 1.8.0-9.fc37 | 14.06.2022 |
SB2022041004 SB2022061422 SB2022061506 and 90 more |
||
| #VU64266 - Buffer overflow CVE-2022-24675 |
CWE-120 | Low | 1.8.0-9.fc36, 1.8.0-9.fc37 | 14.06.2022 |
SB2022041004 SB2022061422 SB2022061511 and 88 more |
||
| #VU63173 - Permissions, Privileges, and Access Controls CVE-2022-29526 |
CWE-264 | Low | 1.8.0-9.fc36, 1.8.0-9.fc37 | 14.05.2022 |
SB2022051403 SB2022051404 SB2022062928 and 65 more |
||
| #VU62797 - Improper Locking CVE-2021-20291 |
CWE-667 | Medium | 1.2.3-1.fc33, 1.2.3-1.fc34 | 04.05.2022 |
SB2021040182 SB2022050417 SB2022092037 and 13 more |
||
| #VU62039 - Use of a Broken or Risky Cryptographic Algorithm CVE-2022-27191 |
CWE-327 | Medium | 1.8.0-9.fc36, 1.8.0-9.fc37 | 10.04.2022 |
SB2022041004 SB2022041406 SB2022081226 and 91 more |
||
| #VU61599 - Improper input validation CVE-2022-21698 |
CWE-20 | Medium | 1.7.0-1.fc34, 1.7.0-1.fc35, 1.7.0-1.fc36 | 24.03.2022 |
SB2022021530 SB2022032413 SB2022040807 and 110 more |
||
| #VU58229 - Type confusion CVE-2021-41190 |
CWE-843 | Low | 1.5.2-1.fc34, 1.5.2-1.fc35 | 18.11.2021 |
SB2021111806 SB2021111807 SB2021111809 and 39 more |
||
| #VU55590 - Improper Protection of Alternate Path CVE-2021-20206 |
CWE-424 | Medium | 1.2.2-1.fc33 | 05.08.2021 |
SB2021032636 SB2021080502 SB2022021637 and 19 more |
||
| #VU54940 - Exposure of sensitive information to an unauthorized actor CVE-2021-3602 |
CWE-200 | Low | 1.3.1-1.fc33 | 19.07.2021 |
SB2021071902 SB2021072007 SB2022092037 and 7 more |
||
| #VU47117 - Exposure of sensitive information to an unauthorized actor CVE-2020-14370 |
CWE-200 | Low | 1.2.0-3.fc33 | 23.09.2020 |
SB2020092707 SB2020092708 SB2020092808 and 7 more |
||
| #VU25501 - Use After Free CVE-2020-8945 |
CWE-416 | High | 0.1.41-1.fc30, 0.1.41-1.fc31 | 21.02.2020 |
SB2020022110 SB2020031116 SB2020031126 and 23 more |