blob: ee6bbd2bdb273119048b5f8dc446ac7b172e2658 [file]
id: GO-2026-4730
modules:
- module: github.com/tektoncd/pipeline
versions:
- introduced: 0.60.0
unsupported_versions:
- last_affected: 1.10.0
vulnerable_at: 1.10.2
summary: Tekton Pipelines controller panic via long resolver name in TaskRun/PipelineRun in github.com/tektoncd/pipeline
cves:
- CVE-2026-33022
ghsas:
- GHSA-cv4x-93xx-wgfj
references:
- advisory: https://github.com/tektoncd/pipeline/security/advisories/GHSA-cv4x-93xx-wgfj
source:
id: GHSA-cv4x-93xx-wgfj
created: 2026-03-23T13:08:29.659728512-04:00
review_status: UNREVIEWED