Feature/tiered storage#956
Security Report
7 new vulnerabilities were introduced in this branch.
❌ New vulnerabilities:
| Vulnerability | Severity | Exploit Maturity | EPSS | Vulnerable Library | Direct Library | Suggested Fix | Issue | |
|---|---|---|---|---|---|---|---|---|
CVE-2026-39821Path to dependency file: /go.mod Path to vulnerable library: /home/wss-scanner/go/pkg/mod/cache/download/golang.org/x/net/@v/v0.52.0.mod Dependency Hierarchy: -> github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 (Root Library) -> ❌ golang.org/x/net-v0.52.0 (Vulnerable Library) |
9.6 | Not Defined | 0.344% | Transitive golang.org/x/net-v0.52.0 |
github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 | Transitive v0.55.0 |
#914 | |
CVE-2026-33814Path to dependency file: /go.mod Path to vulnerable library: /home/wss-scanner/go/pkg/mod/cache/download/golang.org/x/net/@v/v0.52.0.mod Dependency Hierarchy: -> github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 (Root Library) -> ❌ golang.org/x/net-v0.52.0 (Vulnerable Library) |
7.5 | Not Defined | 0.565% | Transitive golang.org/x/net-v0.52.0 |
github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 | Transitive v0.53.0 |
#914 | |
CVE-2026-25680Path to dependency file: /go.mod Path to vulnerable library: /home/wss-scanner/go/pkg/mod/cache/download/golang.org/x/net/@v/v0.52.0.mod Dependency Hierarchy: -> github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 (Root Library) -> ❌ golang.org/x/net-v0.52.0 (Vulnerable Library) |
6.5 | Not Defined | 0.248% | Transitive golang.org/x/net-v0.52.0 |
github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 | Transitive v0.55.0 |
#914 | |
CVE-2026-42506Path to dependency file: /go.mod Path to vulnerable library: /home/wss-scanner/go/pkg/mod/cache/download/golang.org/x/net/@v/v0.52.0.mod Dependency Hierarchy: -> github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 (Root Library) -> ❌ golang.org/x/net-v0.52.0 (Vulnerable Library) |
6.1 | Not Defined | 0.188% | Transitive golang.org/x/net-v0.52.0 |
github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 | Transitive v0.55.0 |
#914 | |
CVE-2026-42502Path to dependency file: /go.mod Path to vulnerable library: /home/wss-scanner/go/pkg/mod/cache/download/golang.org/x/net/@v/v0.52.0.mod Dependency Hierarchy: -> github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 (Root Library) -> ❌ golang.org/x/net-v0.52.0 (Vulnerable Library) |
6.1 | Not Defined | 0.178% | Transitive golang.org/x/net-v0.52.0 |
github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 | Transitive v0.55.0 |
#914 | |
CVE-2026-27136Path to dependency file: /go.mod Path to vulnerable library: /home/wss-scanner/go/pkg/mod/cache/download/golang.org/x/net/@v/v0.52.0.mod Dependency Hierarchy: -> github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 (Root Library) -> ❌ golang.org/x/net-v0.52.0 (Vulnerable Library) |
6.1 | Not Defined | 0.178% | Transitive golang.org/x/net-v0.52.0 |
github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 | Transitive v0.55.0 |
#914 | |
CVE-2026-25681Path to dependency file: /go.mod Path to vulnerable library: /home/wss-scanner/go/pkg/mod/cache/download/golang.org/x/net/@v/v0.52.0.mod Dependency Hierarchy: -> github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 (Root Library) -> ❌ golang.org/x/net-v0.52.0 (Vulnerable Library) |
6.1 | Not Defined | 0.178% | Transitive golang.org/x/net-v0.52.0 |
github.com/Azure/azure-sdk-for-go/sdk/azcore-v1.20.0 | Transitive v0.55.0 |
#914 |
Base branch total remaining vulnerabilities: 0
Base branch commit: 1c1b5cf27828fef3e8a436fcb172af2563d095a1
Total libraries scanned: 72
Scan token: fd5fc5618c104a88a8a7bc70afbb2425