Skip to content

Go package github.com/notaryproject/notation configured with permissive trust policies potentially susceptible to rollback attack from compromised registry

Moderate severity GitHub Reviewed Published Jan 19, 2024 in notaryproject/specifications • Updated Jan 22, 2024

No open alerts for this advisory

Give feedback on Dependabot alerts