Brandon Mitchell

1 exploit Active since Jan 2025
CVE-2025-24882 WRITEUP MEDIUM WRITEUP
regclient < 0.7.1 - Digest Spoofing via Manifest Pin Bypass
regclient is a Docker and OCI Registry Client in Go. A malicious registry could return a different digest for a pinned manifest without detection. This vulnerability is fixed in 0.7.1.
CVSS 5.2