Skip to content

tekton-chains/0.26.0-r2: cve remediation#78099

Open
octo-sts[bot] wants to merge 1 commit intomainfrom
cve-tekton-chains-0.26.0-r2-f64702aaef9be4d94cd7056662222d26
Open

tekton-chains/0.26.0-r2: cve remediation#78099
octo-sts[bot] wants to merge 1 commit intomainfrom
cve-tekton-chains-0.26.0-r2-f64702aaef9be4d94cd7056662222d26

Conversation

@octo-sts
Copy link
Contributor

@octo-sts octo-sts bot commented Jan 14, 2026

tekton-chains/0.26.0-r2: fix GHSA-59jp-pj84-45mr

Advisory data: https://github.com/wolfi-dev/advisories/blob/main/tekton-chains.advisories.yaml


"Breadcrumbs" for this automated service

Inspected git repositories: https://github.com/tektoncd/chains@v0.26.0

@octo-sts octo-sts bot added automated pr request-cve-remediation go/bump GHSA-59jp-pj84-45mr p:tekton-chains P1 This label indicates our scanning found High, Medium or Low CVEs for these packages. bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. staging-approver-bot/approve labels Jan 14, 2026
@octo-sts octo-sts bot enabled auto-merge (squash) January 14, 2026 12:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

approver-bot/approve automated pr bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. GHSA-59jp-pj84-45mr go/bump p:tekton-chains P1 This label indicates our scanning found High, Medium or Low CVEs for these packages. request-cve-remediation staging-approver-bot/approve

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants