Known vulnerabilities in skopeo

Software: skopeo
Software CPE: cpe:2.3:o:fedoraproject:skopeo:*:*:*:*:*:fedora:*:*
Total vulnerabilities: 19
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting skopeo skopeo is affected by 19 known vulnerabilities: 1 high, 9 medium, 9 low Critical High Medium Low

Vulnerabilities (19)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU140620 - Resource exhaustion
CVE-2026-27145
CWE-400 Medium
No
No
1.22.2-2.fc43, 1.22.2-2.fc44 31.07.2026 SB2026073127
SB2026073129
SB2026073130
and 45 more
#VU125945 - Improper input validation
CVE-2026-34986
CWE-20 Medium
No
No
1.22.1-2.fc42, 1.22.1-2.fc43, 1.22.1-2.fc44, 1.22.2-1.fc42, 1.22.2-1.fc44 14.04.2026 SB2026041463
SB2026041464
SB2026041465
and 74 more
#VU118183 - Improper Encoding or Escaping of Output
CVE-2025-58189
CWE-116 Low
No
No
1.20.0-4.fc42, 1.20.0-5.fc43 07.11.2025 SB2025110705
SB2025110711
SB2025110712
and 123 more
#VU118179 - Resource exhaustion
CVE-2025-61725
CWE-400 Medium
No
No
1.20.0-4.fc42, 1.20.0-5.fc43 07.11.2025 SB2025110705
SB2025110714
SB2025110715
and 76 more
#VU114079 - Improper input validation
CVE-2025-47906
CWE-20 Low
No
No
1.20.0-3.fc41, 1.20.0-3.fc42 14.08.2025 SB2025081423
SB2025081424
SB2025081425
and 130 more
#VU72686 - Resource exhaustion
CVE-2022-41723
CWE-400 Medium
No
No
1.11.2-1.fc37, 1.11.2-1.fc38 01.03.2023 SB2023030130
SB2023030131
SB2023030946
and 190 more
#VU66447 - Overly Permissive Cross-domain Whitelist
CVE-2022-1996
CWE-942 Low
No
No
1.8.0-9.fc36, 1.8.0-9.fc37 12.08.2022 SB2022081216
SB2022081228
SB2022081229
and 65 more
#VU66122 - Use of Insufficiently Random Values
CVE-2022-30629
CWE-330 Medium
No
No
1.8.0-9.fc36, 1.8.0-9.fc37 05.08.2022 SB2022080501
SB2022080503
SB2022081106
and 81 more
#VU64269 - Integer overflow
CVE-2022-28327
CWE-190 Low
No
No
1.8.0-9.fc36, 1.8.0-9.fc37 14.06.2022 SB2022041004
SB2022061422
SB2022061506
and 90 more
#VU64266 - Buffer overflow
CVE-2022-24675
CWE-120 Low
No
No
1.8.0-9.fc36, 1.8.0-9.fc37 14.06.2022 SB2022041004
SB2022061422
SB2022061511
and 88 more
#VU63173 - Permissions, Privileges, and Access Controls
CVE-2022-29526
CWE-264 Low
No
No
1.8.0-9.fc36, 1.8.0-9.fc37 14.05.2022 SB2022051403
SB2022051404
SB2022062928
and 65 more
#VU62797 - Improper Locking
CVE-2021-20291
CWE-667 Medium
No
No
1.2.3-1.fc33, 1.2.3-1.fc34 04.05.2022 SB2021040182
SB2022050417
SB2022092037
and 13 more
#VU62039 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-27191
CWE-327 Medium
No
No
1.8.0-9.fc36, 1.8.0-9.fc37 10.04.2022 SB2022041004
SB2022041406
SB2022081226
and 91 more
#VU61599 - Improper input validation
CVE-2022-21698
CWE-20 Medium
No
No
1.7.0-1.fc34, 1.7.0-1.fc35, 1.7.0-1.fc36 24.03.2022 SB2022021530
SB2022032413
SB2022040807
and 110 more
#VU58229 - Type confusion
CVE-2021-41190
CWE-843 Low
No
No
1.5.2-1.fc34, 1.5.2-1.fc35 18.11.2021 SB2021111806
SB2021111807
SB2021111809
and 39 more
#VU55590 - Improper Protection of Alternate Path
CVE-2021-20206
CWE-424 Medium
No
No
1.2.2-1.fc33 05.08.2021 SB2021032636
SB2021080502
SB2022021637
and 19 more
#VU54940 - Exposure of sensitive information to an unauthorized actor
CVE-2021-3602
CWE-200 Low
No
No
1.3.1-1.fc33 19.07.2021 SB2021071902
SB2021072007
SB2022092037
and 7 more
#VU47117 - Exposure of sensitive information to an unauthorized actor
CVE-2020-14370
CWE-200 Low
No
No
1.2.0-3.fc33 23.09.2020 SB2020092707
SB2020092708
SB2020092808
and 7 more
#VU25501 - Use After Free
CVE-2020-8945
CWE-416 High
No
No
0.1.41-1.fc30, 0.1.41-1.fc31 21.02.2020 SB2020022110
SB2020031116
SB2020031126
and 23 more