📦 Malcontent

by Chainguard

🔍 What is Malcontent?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-24845

MEDIUM CVSS 6.5 Jan 29, 2026

malcontent versions 0.10.0 through 1.20.2 expose Docker registry credentials when scanning malicious OCI images. Attackers can redirect authentication requests to steal credentials via crafted WWW-Aut...

CVE-2026-24846

MEDIUM CVSS 5.5 Jan 29, 2026

This vulnerability in malcontent allows attackers to create symbolic links outside the intended extraction directory when scanning specially crafted tar or deb archives. The bug occurs due to argument...