[govulncheck-unavailable]govulncheck is not on PATH, so binary-mode reachability was not tested; install govulncheck to let this finding be ruled not_in_execute_path when its code is unreachable
[prefer-vendor]SUSE Security Team rates this MEDIUM, used instead of UNKNOWN (preferred vendor score)
[vendor-vex]Rancher Security team published not_affected for pkg:golang/github.com/jet/kube-webhook-certgen (vulnerable_code_not_present); statement names pkg:golang/golang.org/x/net@v0.52.0; component is pkg:golang/golang.org%2Fx%2Fnet@v0.55.0
Rancher Security team says not_affected(vulnerable_code_not_present)
Govulncheck determined that the vulnerable code isn't called
product pkg:golang/github.com/jet/kube-webhook-certgen · published 2026-07-22T04:13:19Z · from https://github.com/rancher/vexhub
matched loosely: statement names pkg:golang/golang.org/x/net@v0.52.0; component is pkg:golang/golang.org%2Fx%2Fnet@v0.55.0
[govulncheck-unavailable]govulncheck is not on PATH, so binary-mode reachability was not tested; install govulncheck to let this finding be ruled not_in_execute_path when its code is unreachable
[prefer-vendor]SUSE Security Team rates this MEDIUM, used instead of UNKNOWN (preferred vendor score)
[vendor-vex]Rancher Security team published not_affected for pkg:golang/github.com/jet/kube-webhook-certgen (vulnerable_code_not_in_execute_path); statement names pkg:golang/golang.org/x/text@v0.37.0; component is pkg:golang/golang.org%2Fx%2Ftext@v0.37.0
Rancher Security team says not_affected(vulnerable_code_not_in_execute_path)
Govulncheck determined that the vulnerable code isn't called
product pkg:golang/github.com/jet/kube-webhook-certgen · published 2026-07-29T03:14:47Z · from https://github.com/rancher/vexhub
matched loosely: statement names pkg:golang/golang.org/x/text@v0.37.0; component is pkg:golang/golang.org%2Fx%2Ftext@v0.37.0