Vulnerabilities > Anchore > High

DATE CVE VULNERABILITY TITLE RISK
2023-02-07 CVE-2023-24827 Information Exposure Through Log Files vulnerability in Anchore Syft 0.69.0/0.69.1
syft is a a CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesystems.
network
low complexity
anchore CWE-532
7.5
2022-07-20 CVE-2022-1766 Insufficiently Protected Credentials vulnerability in Anchore and Anchorectl
Anchore Enterprise anchorectl version 0.1.4 improperly stored credentials when generating a Software Bill of Materials.
network
low complexity
anchore CWE-522
7.5