UNCLASSIFIED - NO CUI

Skip to content

chore(findings): mongodb/mongodb-enterprise/mongodb-agent-ubi

Summary

mongodb/mongodb-enterprise/mongodb-agent-ubi has 388 new findings discovered during continuous monitoring.

More information can be found in the VAT located here: https://vat.dso.mil/vat/image?imageName=mongodb/mongodb-enterprise/mongodb-agent-ubi&tag=107.0.0.8502-1&branch=master

EPSS (Exploit Prediction Scoring System) provides an estimate of the likelihood that a vulnerability will be exploited in the wild.

KEV (Known Exploited Vulnerabilities) indicates whether a vulnerability is actively being exploited according to CISA.

id source severity package impact workaround epss_score kev
CVE-2023-2650 Anchore CVE Medium openssl-1:1.1.1k-14.el8_6 0.88208 false
CVE-2023-45288 Twistlock CVE Medium net/http-1.21.5 0.67599 false
CVE-2023-45288 Twistlock CVE Medium golang.org/x/net/http2-v0.17.0 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.20.12 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.20.12 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.20.12 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.20.12 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.20.12 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.20.12 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.21.5 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.20.12 0.67599 false
CVE-2023-45288 Anchore CVE High stdlib-go1.20.12 0.67599 false
CVE-2020-19188 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.06200 false
CVE-2020-19186 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.04961 false
CVE-2020-19185 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.04961 false
CVE-2020-19190 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.04954 false
CVE-2020-19187 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.04834 false
CVE-2022-23990 Twistlock CVE Medium expat-2.2.5-17.el8_10 0.03519 false
CVE-2022-23990 Anchore CVE Medium expat-2.2.5-17.el8_10 0.03519 false
CVE-2005-2541 Anchore CVE Medium tar-2:1.30-11.el8_10 0.03250 false
CVE-2024-56433 Anchore CVE Low shadow-utils-2:4.6-22.el8 0.02806 false
CVE-2020-19189 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.02005 false
CVE-2016-4074 Twistlock CVE Low jq-1.6-11.el8_10 0.01997 false
CVE-2016-4074 Anchore CVE Low jq-1.6-11.el8_10 0.01997 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.21.5 0.01583 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.20.12 0.01583 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.20.12 0.01583 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.20.12 0.01583 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.20.12 0.01583 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.20.12 0.01583 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.20.12 0.01583 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.20.12 0.01583 false
CVE-2024-24787 Anchore CVE Medium stdlib-go1.20.12 0.01583 false
CVE-2024-2511 Anchore CVE Low openssl-1:1.1.1k-14.el8_6 0.01519 false
CVE-2024-24784 Twistlock CVE Low net/mail-1.21.5 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.20.12 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.20.12 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.20.12 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.21.5 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.20.12 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.20.12 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.20.12 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.20.12 0.01498 false
CVE-2024-24784 Anchore CVE High stdlib-go1.20.12 0.01498 false
CVE-2023-0464 Anchore CVE Low openssl-1:1.1.1k-14.el8_6 0.01165 false
CVE-2018-1121 Twistlock CVE Low procps-ng-3.3.15-14.el8 0.01165 false
CVE-2018-1121 Anchore CVE Low procps-ng-3.3.15-14.el8 0.01165 false
CVE-2020-10543 Twistlock CVE Medium perl-5.26.3-423.el8_10 0.00734 false
CVE-2018-20839 Anchore CVE Medium systemd-pam-239-82.el8_10.5 0.00668 false
CVE-2018-20839 Anchore CVE Medium systemd-239-82.el8_10.5 0.00668 false
CVE-2024-24791 Twistlock CVE Low net/http-1.21.5 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.20.12 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.20.12 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.20.12 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.20.12 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.20.12 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.20.12 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.20.12 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.21.5 0.00618 false
CVE-2024-24791 Anchore CVE High stdlib-go1.20.12 0.00618 false
CVE-2023-0466 Anchore CVE Medium openssl-1:1.1.1k-14.el8_6 0.00508 false
CVE-2023-31486 Twistlock CVE Medium perl-HTTP-Tiny-0.074-3.el8 0.00448 false
CVE-2022-24807 Twistlock CVE Medium net-snmp-5.8-30.el8 0.00421 false
CVE-2022-24807 Anchore CVE Medium net-snmp-libs-1:5.8-30.el8 0.00421 false
CVE-2022-24807 Anchore CVE Medium net-snmp-1:5.8-30.el8 0.00421 false
CVE-2022-24807 Anchore CVE Medium net-snmp-agent-libs-1:5.8-30.el8 0.00421 false
CVE-2023-45289 Twistlock CVE Low net/http-1.21.5 0.00409 false
CVE-2023-45289 Twistlock CVE Low net/http/cookiejar-1.21.5 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.20.12 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.20.12 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.20.12 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.20.12 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.20.12 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.20.12 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.21.5 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.20.12 0.00409 false
CVE-2023-45289 Anchore CVE Medium stdlib-go1.20.12 0.00409 false
CVE-2019-9923 Twistlock CVE Low tar-1.30-11.el8_10 0.00408 false
CVE-2019-9923 Anchore CVE Low tar-2:1.30-11.el8_10 0.00408 false
CVE-2022-24805 Twistlock CVE Medium net-snmp-5.8-30.el8 0.00406 false
CVE-2022-24805 Anchore CVE Medium net-snmp-agent-libs-1:5.8-30.el8 0.00406 false
CVE-2022-24805 Anchore CVE Medium net-snmp-libs-1:5.8-30.el8 0.00406 false
CVE-2022-24805 Anchore CVE Medium net-snmp-1:5.8-30.el8 0.00406 false
CVE-2018-19217 Anchore CVE Medium ncurses-6.1-10.20180224.el8 0.00404 false
CVE-2024-24783 Twistlock CVE Low crypto/x509-1.21.5 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.20.12 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.20.12 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.21.5 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.20.12 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.20.12 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.20.12 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.20.12 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.20.12 0.00401 false
CVE-2024-24783 Anchore CVE Medium stdlib-go1.20.12 0.00401 false
CVE-2023-45290 Twistlock CVE Low net/textproto-1.21.5 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.20.12 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.20.12 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.20.12 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.20.12 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.20.12 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.20.12 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.20.12 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.20.12 0.00362 false
CVE-2023-45290 Anchore CVE Medium stdlib-go1.21.5 0.00362 false
CVE-2023-24531 Anchore CVE Critical stdlib-go1.20.12 0.00354 false
CVE-2023-24531 Anchore CVE Critical stdlib-go1.20.12 0.00354 false
CVE-2023-24531 Anchore CVE Critical stdlib-go1.20.12 0.00354 false
CVE-2023-24531 Anchore CVE Critical stdlib-go1.20.12 0.00354 false
CVE-2023-24531 Anchore CVE Critical stdlib-go1.20.12 0.00354 false
CVE-2023-24531 Anchore CVE Critical stdlib-go1.20.12 0.00354 false
CVE-2023-24531 Anchore CVE Critical stdlib-go1.20.12 0.00354 false
CVE-2023-24531 Anchore CVE Critical stdlib-go1.20.12 0.00354 false
CVE-2021-39537 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.00351 false
CVE-2023-0465 Anchore CVE Low openssl-1:1.1.1k-14.el8_6 0.00337 false
CVE-2018-19211 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.00278 false
CVE-2019-19246 Twistlock CVE Medium oniguruma-6.8.2-3.el8 0.00267 false
CVE-2019-19246 Anchore CVE Medium oniguruma-6.8.2-3.el8 0.00267 false
CVE-2024-24785 Twistlock CVE Low html/template-1.21.5 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.20.12 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.20.12 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.21.5 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.20.12 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.20.12 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.20.12 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.20.12 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.20.12 0.00246 false
CVE-2024-24785 Anchore CVE Medium stdlib-go1.20.12 0.00246 false
CVE-2024-24786 Twistlock CVE Medium google.golang.org/protobuf/encoding/protojson-v1.31.0 0.00231 false
CVE-2024-24786 Twistlock CVE Medium google.golang.org/protobuf/internal/encoding/json-v1.31.0 0.00231 false
CVE-2024-0727 Anchore CVE Low openssl-1:1.1.1k-14.el8_6 0.00214 false
CVE-2020-12723 Twistlock CVE Medium perl-5.26.3-423.el8_10 0.00201 false
CVE-2024-45338 Anchore CVE Medium golang.org/x/net-v0.17.0 0.00189 false
CVE-2024-34156 Twistlock CVE Low encoding/gob-1.21.5 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.20.12 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.20.12 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.20.12 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.20.12 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.21.5 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.20.12 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.20.12 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.20.12 0.00178 false
CVE-2024-34156 Anchore CVE High stdlib-go1.20.12 0.00178 false
CVE-2024-41996 Anchore CVE Low openssl-1:1.1.1k-14.el8_6 0.00166 false
CVE-2022-24810 Twistlock CVE Medium net-snmp-5.8-30.el8 0.00164 false
CVE-2022-24810 Anchore CVE Medium net-snmp-1:5.8-30.el8 0.00164 false
CVE-2022-24810 Anchore CVE Medium net-snmp-libs-1:5.8-30.el8 0.00164 false
CVE-2022-24810 Anchore CVE Medium net-snmp-agent-libs-1:5.8-30.el8 0.00164 false
CVE-2022-24808 Twistlock CVE Medium net-snmp-5.8-30.el8 0.00164 false
CVE-2022-24808 Anchore CVE Medium net-snmp-agent-libs-1:5.8-30.el8 0.00164 false
CVE-2022-24808 Anchore CVE Medium net-snmp-libs-1:5.8-30.el8 0.00164 false
CVE-2022-24808 Anchore CVE Medium net-snmp-1:5.8-30.el8 0.00164 false
CVE-2020-10878 Twistlock CVE Medium perl-5.26.3-423.el8_10 0.00148 false
CVE-2023-47038 Twistlock CVE Medium perl-5.26.3-423.el8_10 0.00142 false
CVE-2024-4741 Anchore CVE Low openssl-1:1.1.1k-14.el8_6 0.00116 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.20.12 0.00115 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.20.12 0.00115 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.20.12 0.00115 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.21.5 0.00115 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.20.12 0.00115 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.20.12 0.00115 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.20.12 0.00115 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.20.12 0.00115 false
CVE-2024-34155 Anchore CVE Medium stdlib-go1.20.12 0.00115 false
CVE-2024-34155 Twistlock CVE Low go/parser-1.21.5 0.00115 false
CVE-2022-24809 Twistlock CVE Medium net-snmp-5.8-30.el8 0.00114 false
CVE-2022-24809 Anchore CVE Medium net-snmp-libs-1:5.8-30.el8 0.00114 false
CVE-2022-24809 Anchore CVE Medium net-snmp-1:5.8-30.el8 0.00114 false
CVE-2022-24809 Anchore CVE Medium net-snmp-agent-libs-1:5.8-30.el8 0.00114 false
CVE-2022-24806 Twistlock CVE Medium net-snmp-5.8-30.el8 0.00113 false
CVE-2022-24806 Anchore CVE Medium net-snmp-1:5.8-30.el8 0.00113 false
CVE-2022-24806 Anchore CVE Medium net-snmp-libs-1:5.8-30.el8 0.00113 false
CVE-2022-24806 Anchore CVE Medium net-snmp-agent-libs-1:5.8-30.el8 0.00113 false
CVE-2021-20193 Twistlock CVE Low tar-1.30-11.el8_10 0.00100 false
CVE-2021-20193 Anchore CVE Medium tar-2:1.30-11.el8_10 0.00100 false
CVE-2024-24790 Twistlock CVE Critical net/netip-1.21.5 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.20.12 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.20.12 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.20.12 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.20.12 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.21.5 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.20.12 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.20.12 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.20.12 0.00090 false
CVE-2024-24790 Anchore CVE Critical stdlib-go1.20.12 0.00090 false
CVE-2024-34158 Twistlock CVE Low go/build/constraint-1.21.5 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.21.5 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.20.12 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.20.12 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.20.12 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.20.12 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.20.12 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.20.12 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.20.12 0.00082 false
CVE-2024-34158 Anchore CVE High stdlib-go1.20.12 0.00082 false
CVE-2024-13176 Anchore CVE Low openssl-1:1.1.1k-14.el8_6 0.00080 false
CVE-2025-47907 Anchore CVE High stdlib-go1.20.12 0.00054 false
CVE-2025-47907 Anchore CVE High stdlib-go1.20.12 0.00054 false
CVE-2025-47907 Anchore CVE High stdlib-go1.20.12 0.00054 false
CVE-2025-47907 Anchore CVE High stdlib-go1.20.12 0.00054 false
CVE-2025-47907 Anchore CVE High stdlib-go1.20.12 0.00054 false
CVE-2025-47907 Anchore CVE High stdlib-go1.20.12 0.00054 false
CVE-2025-47907 Anchore CVE High stdlib-go1.20.12 0.00054 false
CVE-2025-47907 Anchore CVE High stdlib-go1.21.5 0.00054 false
CVE-2025-47907 Anchore CVE High stdlib-go1.20.12 0.00054 false
CVE-2025-45582 Twistlock CVE Medium tar-1.30-11.el8_10 0.00053 false
CVE-2025-45582 Anchore CVE Medium tar-2:1.30-11.el8_10 0.00053 false
CVE-2023-50495 Anchore CVE Low ncurses-6.1-10.20180224.el8 0.00050 false
CVE-2024-45336 Twistlock CVE Low net/http-1.21.5 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.20.12 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.20.12 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.20.12 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.20.12 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.20.12 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.20.12 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.21.5 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.20.12 0.00041 false
CVE-2024-45336 Anchore CVE Medium stdlib-go1.20.12 0.00041 false
CVE-2023-39804 Twistlock CVE Low tar-1.30-11.el8_10 0.00039 false
CVE-2023-39804 Anchore CVE Low tar-2:1.30-11.el8_10 0.00039 false
CVE-2021-3997 Anchore CVE Medium systemd-239-82.el8_10.5 0.00038 false
CVE-2021-3997 Anchore CVE Medium systemd-pam-239-82.el8_10.5 0.00038 false
CVE-2025-4598 Anchore CVE Medium systemd-239-82.el8_10.5 0.00037 false
CVE-2025-4598 Anchore CVE Medium systemd-pam-239-82.el8_10.5 0.00037 false
CVE-2023-24056 Twistlock CVE Low pkgconf-1.4.2-1.el8 0.00037 false
CVE-2023-24056 Anchore CVE Low pkgconf-pkg-config-1.4.2-1.el8 0.00037 false
CVE-2023-24056 Anchore CVE Low pkgconf-m4-1.4.2-1.el8 0.00037 false
CVE-2023-24056 Anchore CVE Low pkgconf-1.4.2-1.el8 0.00037 false
CVE-2023-24056 Anchore CVE Low libpkgconf-1.4.2-1.el8 0.00037 false
CVE-2024-45341 Twistlock CVE Low crypto/x509-1.21.5 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.20.12 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.21.5 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.20.12 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.20.12 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.20.12 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.20.12 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.20.12 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.20.12 0.00032 false
CVE-2024-45341 Anchore CVE Medium stdlib-go1.20.12 0.00032 false
CVE-2024-51744 Twistlock CVE Low github.com/golang-jwt/jwt/v4-v4.5.0 0.00027 false
CVE-2025-8941 Anchore CVE High pam-1.3.1-38.el8_10 0.00024 false
CVE-2025-4673 Twistlock CVE Low net/http-1.21.5 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.20.12 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.20.12 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.21.5 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.20.12 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.20.12 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.20.12 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.20.12 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.20.12 0.00019 false
CVE-2025-4673 Anchore CVE Medium stdlib-go1.20.12 0.00019 false
CVE-2020-35512 Twistlock CVE Low dbus-1.12.8-27.el8_10 0.00017 false
CVE-2020-35512 Anchore CVE Low dbus-1:1.12.8-27.el8_10 0.00017 false
CVE-2020-35512 Anchore CVE Low dbus-libs-1:1.12.8-27.el8_10 0.00017 false
CVE-2020-35512 Anchore CVE Low dbus-daemon-1:1.12.8-27.el8_10 0.00017 false
CVE-2020-35512 Anchore CVE Low dbus-tools-1:1.12.8-27.el8_10 0.00017 false
CVE-2020-35512 Anchore CVE Low dbus-common-1:1.12.8-27.el8_10 0.00017 false
CVE-2025-9403 Twistlock CVE Low jq-1.6-11.el8_10 0.00014 false
CVE-2025-9403 Anchore CVE Low jq-1.6-11.el8_10 0.00014 false
CVE-2025-9301 Twistlock CVE Low cmake-3.26.5-2.el8 0.00014 false
CVE-2025-9301 Anchore CVE Low cmake-filesystem-3.26.5-2.el8 0.00014 false
CVE-2024-25260 Anchore CVE Low elfutils-default-yama-scope-0.190-2.el8 0.00014 false
CVE-2024-25260 Anchore CVE Low elfutils-libs-0.190-2.el8 0.00014 false
CVE-2025-22871 Twistlock CVE Low net/http/internal-1.21.5 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.21.5 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.20.12 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.20.12 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.20.12 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.20.12 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.20.12 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.20.12 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.20.12 0.00013 false
CVE-2025-22871 Anchore CVE Critical stdlib-go1.20.12 0.00013 false
CVE-2025-22866 Twistlock CVE Low crypto/internal/nistec-1.21.5 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.20.12 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.20.12 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.20.12 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.20.12 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.20.12 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.20.12 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.21.5 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.20.12 0.00012 false
CVE-2025-22866 Anchore CVE Medium stdlib-go1.20.12 0.00012 false
CVE-2025-4674 Anchore CVE High stdlib-go1.20.12 0.00006 false
CVE-2025-4674 Anchore CVE High stdlib-go1.20.12 0.00006 false
CVE-2025-4674 Anchore CVE High stdlib-go1.21.5 0.00006 false
CVE-2025-4674 Anchore CVE High stdlib-go1.20.12 0.00006 false
CVE-2025-4674 Anchore CVE High stdlib-go1.20.12 0.00006 false
CVE-2025-4674 Anchore CVE High stdlib-go1.20.12 0.00006 false
CVE-2025-4674 Anchore CVE High stdlib-go1.20.12 0.00006 false
CVE-2025-4674 Anchore CVE High stdlib-go1.20.12 0.00006 false
CVE-2025-4674 Anchore CVE High stdlib-go1.20.12 0.00006 false
CVE-2024-24789 Twistlock CVE Medium archive/zip-1.21.5 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.20.12 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.20.12 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.21.5 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.20.12 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.20.12 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.20.12 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.20.12 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.20.12 0.00006 false
CVE-2024-24789 Anchore CVE Medium stdlib-go1.20.12 0.00006 false
CVE-2021-33294 Anchore CVE Medium elfutils-default-yama-scope-0.190-2.el8 0.00006 false
CVE-2021-33294 Anchore CVE Medium elfutils-libs-0.190-2.el8 0.00006 false
e999d81b535588a19a8004807019a2e2 Anchore Compliance Critical N/A N/A
e7573262736ef52353cde3bae2617782 Anchore Compliance Low N/A N/A
e3832fca2350274d743772f700d1ab2a Anchore Compliance Critical N/A N/A
c2e44319ae5b3b040044d8ae116d1c2f Anchore Compliance Low N/A N/A
bf534969579b184968e16f7e26f084ee Anchore Compliance Critical N/A N/A
b19e15e8ad099a83820b7a2d747095fb Anchore Compliance Critical N/A N/A
addbb93c22e9b0988b8b40392a4538cb Anchore Compliance Low N/A N/A
abb121e9621abdd452f65844954cf1c1 Anchore Compliance Low N/A N/A
GHSA-vvgc-356p-c3xw Anchore CVE Medium golang.org/x/net-v0.17.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-v778-237x-gjrc Anchore CVE Critical golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-qxp5-gwg8-xv66 Anchore CVE Medium golang.org/x/net-v0.17.0 N/A N/A
GHSA-mh63-6h87-95cp Anchore CVE High github.com/golang-jwt/jwt/v4-v4.5.0 N/A N/A
GHSA-hj4r-2c9c-29h3 Anchore CVE Medium github.com/elastic/beats-v7.6.2+incompatible N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-hcg3-q754-cr77 Anchore CVE High golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-8r3f-844c-mc37 Anchore CVE Medium google.golang.org/protobuf-v1.31.0 N/A N/A
GHSA-6v2p-p543-phr9 Anchore CVE High golang.org/x/oauth2-v0.13.0 N/A N/A
GHSA-4v7x-pqxf-cx7m Anchore CVE Medium golang.org/x/net-v0.17.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-45x7-px36-x8w8 Anchore CVE Medium golang.org/x/crypto-v0.14.0 N/A N/A
GHSA-29wx-vh33-7x7r Anchore CVE Low github.com/golang-jwt/jwt/v4-v4.5.0 N/A N/A
CCE-87096-4 OSCAP Compliance Medium N/A N/A
CCE-86233-4 OSCAP Compliance Medium N/A N/A
CCE-86099-9 OSCAP Compliance Medium N/A N/A
CCE-86067-6 OSCAP Compliance Medium N/A N/A
CCE-84037-1 OSCAP Compliance Medium N/A N/A
CCE-82888-9 OSCAP Compliance Medium N/A N/A
CCE-82252-8 OSCAP Compliance Medium N/A N/A
CCE-82251-0 OSCAP Compliance Medium N/A N/A
CCE-82066-2 OSCAP Compliance Medium N/A N/A
CCE-82046-4 OSCAP Compliance Medium N/A N/A
CCE-81038-2 OSCAP Compliance Medium N/A N/A
CCE-81034-1 OSCAP Compliance Medium N/A N/A
CCE-80955-8 OSCAP Compliance Low N/A N/A
CCE-80954-1 OSCAP Compliance Medium N/A N/A
CCE-80670-3 OSCAP Compliance Medium N/A N/A
CCE-80669-5 OSCAP Compliance Medium N/A N/A
CCE-80668-7 OSCAP Compliance Medium N/A N/A
CCE-80667-9 OSCAP Compliance Medium N/A N/A
CCE-80665-3 OSCAP Compliance Medium N/A N/A
CCE-80664-6 OSCAP Compliance Medium N/A N/A
CCE-80663-8 OSCAP Compliance Medium N/A N/A
CCE-80656-2 OSCAP Compliance Medium N/A N/A
CCE-80655-4 OSCAP Compliance Medium N/A N/A
CCE-80654-7 OSCAP Compliance Medium N/A N/A
CCE-80653-9 OSCAP Compliance Medium N/A N/A
CCE-80652-1 OSCAP Compliance Medium N/A N/A
CCE-80648-9 OSCAP Compliance Medium N/A N/A
CCE-80647-1 OSCAP Compliance Medium N/A N/A
749927442314a30176a9113f576bc957 Anchore Compliance Critical N/A N/A
6b00f65b4ea35e4e172d9d09598f54e1 Anchore Compliance Critical N/A N/A
698044205a9c4a6d48b7937e66a6bf4f Anchore Compliance Low N/A N/A
639f6f1177735759703e928c14714a59 Anchore Compliance Low N/A N/A
4f7e1bf339d17861105bece4bb0080bf Anchore Compliance Critical N/A N/A
463a9a24225c26f7a5bf3f38908e5cb3 Anchore Compliance Low N/A N/A
43eefb9293cc0c8d4c8bb4ba620863f5 Anchore Compliance Critical N/A N/A
3e5fad1c039f3ecfd1dcdc94d2f1f9a0 Anchore Compliance Low N/A N/A
34de21e516c0ca50a96e5386f163f8bf Anchore Compliance Low N/A N/A
3456a263793066e9b5063ada6e47917d Anchore Compliance Low N/A N/A
320a97c6816565eedf3545833df99dd0 Anchore Compliance Low N/A N/A
28a20d9210ade8500a6882a2da439153 Anchore Compliance Critical N/A N/A
1ecec1e40ccbe23f44510a519bf45ad5 Anchore Compliance Critical N/A N/A
06326817a751383683daa4f085406e9e Anchore Compliance Critical N/A N/A

More information can be found in the VAT located here: https://vat.dso.mil/vat/image?imageName=mongodb/mongodb-enterprise/mongodb-agent-ubi&tag=107.0.0.8502-1&branch=master

Tasks

Contributor:

  • Provide justifications for findings in the VAT (docs)
  • Apply the StatusVerification label to this issue and wait for feedback

Iron Bank:

  • Review findings and justifications

Note: If the above process is rejected for any reason, the Verification label will be removed and the issue will be sent back to Open. Any comments will be listed in this issue for you to address. Once they have been addressed, you must re-add the Verification label.

Questions?

Contact the Iron Bank team by commenting on this issue with your questions or concerns. If you do not receive a response, add /cc @ironbank-notifications/onboarding.

Additionally, Iron Bank hosts an AMA working session every Wednesday from 1630-1730EST to answer questions.

Edited by CHORE_TOKEN
To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information