Skip to content

chore(deps): claircore SSRF advisory (2 medium alerts) β€” indirect, no patched version yetΒ #6198

Description

@devantler

πŸ€– Generated by the Daily AI Engineer

Evidence

Dependabot alerts #165/#166 (medium): claircore <= 1.5.52 β€” "Unauthenticated attackers can submit manifests with URIs pointing to internal services or cloud metadata endpoints" (SSRF in claircore's manifest handling). ksail pins github.com/quay/claircore v1.5.35 indirect via the scan toolchain; first_patched_version is null, so no bump exists today and dependabot cannot propose one.

Reachability assessment

ksail never runs a claircore service β€” the vulnerable surface is claircore's own manifest-ingestion endpoints, not the library paths a scanner consumer exercises. Risk to ksail users is accordingly assessed low; this issue exists so the alert is owned, not ignored.

Acceptance criteria

  • When upstream publishes a patched claircore, bump it (dependabot will propose it; drive that PR to green/merge) and confirm alerts Add ksail formula to Homebrew coreΒ #165/Update publish.yamlΒ #166 auto-resolve.
  • If no patch ships within ~a quarter, re-assess: dismiss the alerts with the reachability rationale (recorded here) or pin an upstream fix.

Blocked on: upstream patched release (none as of 2026-07-17).

Metadata

Metadata

Assignees

No one assigned

    Labels

    Projects

    Status
    πŸ“₯ Backlog

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions