Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2026-000680
sonatype-2026-000680
chainguard.dev/melange - Uncontrolled Resource Consumption
Published Mar 3, 2026
https://github.com/advisories/GHSA-7rp8-r62p-q6wc
CVSS Score
Medium
4.3
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
golang
chainguard.dev/melange
v0.1.0
golang
chainguard.dev/melange
v0.1.1-0.20221020223937-e2776c80affc
golang
chainguard.dev/melange
v0.10.0
golang
chainguard.dev/melange
v0.10.1-0.20240627185609-f0da6906cbe1
golang
chainguard.dev/melange
v0.10.1-0.20240701133057-0c5e7c29c366
golang
chainguard.dev/melange
v0.10.1
golang
chainguard.dev/melange
v0.10.2
golang
chainguard.dev/melange
v0.10.3
golang
chainguard.dev/melange
v0.10.4-0.20240708223758-bedb1f812be0
golang
chainguard.dev/melange
v0.10.4
golang
chainguard.dev/melange
v0.11.0
golang
chainguard.dev/melange
v0.11.1
golang
chainguard.dev/melange
v0.11.2
golang
chainguard.dev/melange
v0.11.3-0.20240802152459-37310eac9e1b
golang
chainguard.dev/melange
v0.11.3-0.20240807152740-c9ed0e540999
golang
chainguard.dev/melange
v0.11.3-0.20240811233057-c9a2064b95f8
golang
chainguard.dev/melange
v0.11.3-0.20240819231553-2dbb223df3be
golang
chainguard.dev/melange
v0.11.3
golang
chainguard.dev/melange
v0.11.4
golang
chainguard.dev/melange
v0.11.5
golang
chainguard.dev/melange
v0.11.6
golang
chainguard.dev/melange
v0.12.0
golang
chainguard.dev/melange
v0.12.1-0.20240919122119-49686de911d1
golang
chainguard.dev/melange
v0.12.1
golang
chainguard.dev/melange
v0.13.0
golang
chainguard.dev/melange
v0.13.1
golang
chainguard.dev/melange
v0.13.2
golang
chainguard.dev/melange
v0.13.3
golang
chainguard.dev/melange
v0.13.4
golang
chainguard.dev/melange
v0.13.5
golang
chainguard.dev/melange
v0.13.6
golang
chainguard.dev/melange
v0.13.7
golang
chainguard.dev/melange
v0.14.0
golang
chainguard.dev/melange
v0.14.10
golang
chainguard.dev/melange
v0.14.11
golang
chainguard.dev/melange
v0.14.1
golang
chainguard.dev/melange
v0.14.2
golang
chainguard.dev/melange
v0.14.3
golang
chainguard.dev/melange
v0.14.4
golang
chainguard.dev/melange
v0.14.5
golang
chainguard.dev/melange
v0.14.6
golang
chainguard.dev/melange
v0.14.7
golang
chainguard.dev/melange
v0.14.8
golang
chainguard.dev/melange
v0.14.9
golang
chainguard.dev/melange
v0.15.0
golang
chainguard.dev/melange
v0.15.10
golang
chainguard.dev/melange
v0.15.11
golang
chainguard.dev/melange
v0.15.12
golang
chainguard.dev/melange
v0.15.13
golang
chainguard.dev/melange
v0.15.14
1-50 of 232
sonatype-2026-000680 | Components Impacted | Sonatype Guide | Sonatype Guide