Vulnerabilities > Anchore > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-01-31 CVE-2024-24579 Path Traversal vulnerability in Anchore Stereoscope
stereoscope is a go library for processing container images and simulating a squash filesystem.
network
low complexity
anchore CWE-22
critical
9.8
2020-05-27 CVE-2020-11075 Unspecified vulnerability in Anchore Engine 0.7.0
In Anchore Engine version 0.7.0, a specially crafted container image manifest, fetched from a registry, can be used to trigger a shell escape flaw in the anchore engine analyzer service during an image analysis process.
network
low complexity
anchore
critical
9.9