The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade Minimos:latest harbor-fips-2.14-prepare to version 2.14.3-r2 or higher.
Note: Versions mentioned in the description apply only to the upstream harbor-fips-2.14-prepare package and not the harbor-fips-2.14-prepare package as distributed by Minimos.
See How to fix? for Minimos:latest relevant fixed versions and status.
When verifying a certificate chain containing excluded DNS constraints, these constraints are not correctly applied to wildcard DNS SANs which use a different case than the constraint. This only affects validation of otherwise trusted certificate chains, issued by a root CA in the VerifyOptions.Roots CertPool, or in the system certificate pool.