In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade github.com/edgelesssys/contrast/imagepuller/internal/auth to version 1.21.0 or higher.
Affected versions of this package are vulnerable to Insufficiently Protected Credentials in the registryFor process. An attacker can obtain authentication credentials and trusted CA configuration by registering a sibling-domain registry that matches the unanchored suffix.