registry.rancher.com/rancher/hardened-vsphere-csi-syncer:v3.7.3-build20260909
image scan · 2 findings
AFFECTED
2
present and loadable
ALREADY VEXED
0
somebody has answered
UNDETERMINED
0
needs a human
RULED OUT
0
not present or unreachable
AFFECTED(2) — vulnerable code is present and can be loaded
| Severity | Advisory | Package | Version | Location | EPSS | Method | |
|---|---|---|---|---|---|---|---|
| MEDIUM | CVE-2025-1767 | k8s.io/kubernetes | v1.35.0 | /syncer | 44.5% | ||
| |||||||
| LOW | CVE-2024-7598 | k8s.io/kubernetes | v1.35.0 | /syncer | 24.2% | ||
| |||||||
Scan coverage#
| Ecosystem | Components | Affected | Vexed | Undetermined | Ruled out | Status |
|---|---|---|---|---|---|---|
golang | 77 | 2 | 0 | 0 | 0 | ok |
os | 8 | 0 | 0 | 0 | 0 | ok |
VEX hubs#
| Hub | Author | Indexes | Matched | Status |
|---|---|---|---|---|
| https://github.com/rancher/vexhub | Rancher Security team | 1168 | 0 | ok |
Triage: scored 2, 0 known exploited. Feeds as of EPSS 2026-09-14; KEV 2026.09.14.