In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for Minimos:latest gitlab-shell-scripts-compat-18.3.
Note: Versions mentioned in the description apply only to the upstream gitlab-shell-scripts-compat-18.3 package and not the gitlab-shell-scripts-compat-18.3 package as distributed by Minimos.
See How to fix? for Minimos:latest relevant fixed versions and status.
OpenTelemetry-Go is the Go implementation of OpenTelemetry. From 1.15.0 to 1.42.0, the fix for CVE-2026-24051 changed the Darwin ioreg command to use an absolute path but left the BSD kenv command using a bare name, allowing the same PATH hijacking attack on BSD and Solaris platforms. This vulnerability is fixed in 1.43.0.