See the full list of npm packages compromised in the "Shai-Hulud supply chain attack – Sep 2025" [View compromised packages].
Find out if you have vulnerabilities that put you at risk
Test your applicationsVULNERABILITY | AFFECTS | TYPE | PUBLISHED |
---|---|---|---|
| podman-gvproxy<0.0.0 | rhel:9 | 2 Feb 2024 |
| podman-tests<0.0.0 | centos:9 | 2 Feb 2024 |
| podman-tests<0.0.0 | rhel:9 | 2 Feb 2024 |
| podman<0.0.0 | centos:9 | 2 Feb 2024 |
| podman<0.0.0 | rhel:9 | 2 Feb 2024 |
| openshift-clients<0.0.0 | rhel:9 | 2 Feb 2024 |
| openshift-clients<0.0.0 | rhel:7 | 2 Feb 2024 |
| singularity<4.1.1-r0 | alpine:3.19 | 2 Feb 2024 |
| docker<25.0.2-r0 | wolfi:latest | 1 Feb 2024 |
| conftest<0.49.0-r1 | wolfi:latest | 1 Feb 2024 |
| docker<25.0.2-r0 | chainguard:latest | 1 Feb 2024 |
| conftest<0.49.0-r1 | chainguard:latest | 1 Feb 2024 |
| buildkitd<0.12.5-r0 | wolfi:latest | 1 Feb 2024 |
| buildkitd<0.12.5-r0 | chainguard:latest | 1 Feb 2024 |
| github.com/moby/buildkit/executor<0.12.5 | Go | 31 Jan 2024 |