<reportApi _class='io.jenkins.plugins.analysis.core.restapi.ReportApi'><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-d091cc85</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-13034-curl: ApkMatcherCpeMatch

CVE-2025-13034 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-13034**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-13034](https://nvd.nist.gov/vuln/detail/CVE-2025-13034)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-13034-curl: : CVE-2025-13034-curl: ApkMatcherCpeMatch

CVE-2025-13034 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-13034**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-13034](https://nvd.nist.gov/vuln/detail/CVE-2025-13034)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-13034-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-3cb92521</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-14017-curl: ApkMatcherCpeMatch

CVE-2025-14017 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14017**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14017](https://nvd.nist.gov/vuln/detail/CVE-2025-14017)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-14017-curl: : CVE-2025-14017-curl: ApkMatcherCpeMatch

CVE-2025-14017 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14017**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14017](https://nvd.nist.gov/vuln/detail/CVE-2025-14017)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-14017-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-2e0cc1f0</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-14524-curl: ApkMatcherCpeMatch

CVE-2025-14524 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14524**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14524](https://nvd.nist.gov/vuln/detail/CVE-2025-14524)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-14524-curl: : CVE-2025-14524-curl: ApkMatcherCpeMatch

CVE-2025-14524 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14524**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14524](https://nvd.nist.gov/vuln/detail/CVE-2025-14524)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-14524-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-c75afff7</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-14819-curl: ApkMatcherCpeMatch

CVE-2025-14819 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14819**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14819](https://nvd.nist.gov/vuln/detail/CVE-2025-14819)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-14819-curl: : CVE-2025-14819-curl: ApkMatcherCpeMatch

CVE-2025-14819 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14819**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14819](https://nvd.nist.gov/vuln/detail/CVE-2025-14819)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-14819-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-d3e12996</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-15079-curl: ApkMatcherCpeMatch

CVE-2025-15079 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-15079**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-15079](https://nvd.nist.gov/vuln/detail/CVE-2025-15079)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-15079-curl: : CVE-2025-15079-curl: ApkMatcherCpeMatch

CVE-2025-15079 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-15079**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-15079](https://nvd.nist.gov/vuln/detail/CVE-2025-15079)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-15079-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-85ba89d9</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-15224-curl: ApkMatcherCpeMatch

CVE-2025-15224 low vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-15224**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| low  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-15224](https://nvd.nist.gov/vuln/detail/CVE-2025-15224)  |


A low vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>LOW</severity><toString>installed(1,0): CVE-2025-15224-curl: : CVE-2025-15224-curl: ApkMatcherCpeMatch

CVE-2025-15224 low vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-15224**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| low  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-15224](https://nvd.nist.gov/vuln/detail/CVE-2025-15224)  |


A low vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-15224-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-643fee7a</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-60876-busybox-binsh: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for busybox-binsh package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | busybox-binsh  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: busybox-binsh, version 1.37.0-r30 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-60876-busybox-binsh: : CVE-2025-60876-busybox-binsh: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for busybox-binsh package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | busybox-binsh  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: busybox-binsh, version 1.37.0-r30 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-60876-busybox-binsh</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-c8e3b39b</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-60876-busybox: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for busybox package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | busybox  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: busybox, version 1.37.0-r30 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-60876-busybox: : CVE-2025-60876-busybox: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for busybox package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | busybox  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: busybox, version 1.37.0-r30 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-60876-busybox</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-cc599489</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-60876-ssl_client: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for ssl_client package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | ssl_client  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: ssl_client, version 1.37.0-r30 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-60876-ssl_client: : CVE-2025-60876-ssl_client: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for ssl_client package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | ssl_client  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: ssl_client, version 1.37.0-r30 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2025-60876-ssl_client</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-78a1a79c</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-1965-curl: ApkMatcherCpeMatch

CVE-2026-1965 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-1965**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-1965](https://nvd.nist.gov/vuln/detail/CVE-2026-1965)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2026-1965-curl: : CVE-2026-1965-curl: ApkMatcherCpeMatch

CVE-2026-1965 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-1965**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-1965](https://nvd.nist.gov/vuln/detail/CVE-2026-1965)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2026-1965-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-4050e3c6</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-27135-nghttp2-libs: ApkMatcherCpeMatch

CVE-2026-27135 high vulnerability for nghttp2-libs package

For additional help see: **Vulnerability CVE-2026-27135**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| high  | nghttp2-libs  | 1.68.0-r0  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-27135](https://nvd.nist.gov/vuln/detail/CVE-2026-27135)  |


A high vulnerability in apk package: nghttp2-libs, version 1.68.0-r0 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>HIGH</severity><toString>installed(1,0): CVE-2026-27135-nghttp2-libs: : CVE-2026-27135-nghttp2-libs: ApkMatcherCpeMatch

CVE-2026-27135 high vulnerability for nghttp2-libs package

For additional help see: **Vulnerability CVE-2026-27135**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| high  | nghttp2-libs  | 1.68.0-r0  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-27135](https://nvd.nist.gov/vuln/detail/CVE-2026-27135)  |


A high vulnerability in apk package: nghttp2-libs, version 1.68.0-r0 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2026-27135-nghttp2-libs</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-fd08a0a4</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-3783-curl: ApkMatcherCpeMatch

CVE-2026-3783 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3783**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3783](https://nvd.nist.gov/vuln/detail/CVE-2026-3783)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2026-3783-curl: : CVE-2026-3783-curl: ApkMatcherCpeMatch

CVE-2026-3783 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3783**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3783](https://nvd.nist.gov/vuln/detail/CVE-2026-3783)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2026-3783-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-aa4af653</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-3784-curl: ApkMatcherCpeMatch

CVE-2026-3784 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3784**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3784](https://nvd.nist.gov/vuln/detail/CVE-2026-3784)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2026-3784-curl: : CVE-2026-3784-curl: ApkMatcherCpeMatch

CVE-2026-3784 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3784**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3784](https://nvd.nist.gov/vuln/detail/CVE-2026-3784)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2026-3784-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-c35a5c6c</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-3805-curl: ApkMatcherCpeMatch

CVE-2026-3805 high vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3805**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| high  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3805](https://nvd.nist.gov/vuln/detail/CVE-2026-3805)  |


A high vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>HIGH</severity><toString>installed(1,0): CVE-2026-3805-curl: : CVE-2026-3805-curl: ApkMatcherCpeMatch

CVE-2026-3805 high vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3805**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| high  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3805](https://nvd.nist.gov/vuln/detail/CVE-2026-3805)  |


A high vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4_batch at: /lib/apk/db/installed</toString><type>CVE-2026-3805-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-1.2-api-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//var/govway/batch/generatoreStatistiche/lib/log4j-1.2-api-2.25.3.jar</fileName><fingerprint>FALLBACK-9b8f2042</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-1.2-api-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-1.2-api-2.25.3.jar(1,0): GHSA-h383-gmxw-35v2-log4j-1.2-api: : GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-1.2-api-2.25.3.jar</toString><type>GHSA-h383-gmxw-35v2-log4j-1.2-api</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-ef08f755</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-3pxv-7cmr-fjr4-log4j-core: : GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</toString><type>GHSA-3pxv-7cmr-fjr4-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-e127ea56</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-445c-vh5m-36rj-log4j-core: : GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</toString><type>GHSA-445c-vh5m-36rj-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-c52ae8e5</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-6hg6-v5c8-fphq-log4j-core: : GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-core-2.25.3.jar</toString><type>GHSA-6hg6-v5c8-fphq-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-layout-template-json-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//var/govway/batch/generatoreStatistiche/lib/log4j-layout-template-json-2.25.3.jar</fileName><fingerprint>FALLBACK-f3d2e779</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-layout-template-json-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-layout-template-json-2.25.3.jar(1,0): GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: : GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /var/govway/batch/generatoreStatistiche/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4_batch at: /var/govway/batch/generatoreStatistiche/lib/log4j-layout-template-json-2.25.3.jar</toString><type>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-d091cc85</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-13034-curl: ApkMatcherCpeMatch

CVE-2025-13034 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-13034**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-13034](https://nvd.nist.gov/vuln/detail/CVE-2025-13034)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-13034-curl: : CVE-2025-13034-curl: ApkMatcherCpeMatch

CVE-2025-13034 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-13034**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-13034](https://nvd.nist.gov/vuln/detail/CVE-2025-13034)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-13034-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-3cb92521</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-14017-curl: ApkMatcherCpeMatch

CVE-2025-14017 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14017**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14017](https://nvd.nist.gov/vuln/detail/CVE-2025-14017)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-14017-curl: : CVE-2025-14017-curl: ApkMatcherCpeMatch

CVE-2025-14017 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14017**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14017](https://nvd.nist.gov/vuln/detail/CVE-2025-14017)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-14017-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-2e0cc1f0</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-14524-curl: ApkMatcherCpeMatch

CVE-2025-14524 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14524**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14524](https://nvd.nist.gov/vuln/detail/CVE-2025-14524)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-14524-curl: : CVE-2025-14524-curl: ApkMatcherCpeMatch

CVE-2025-14524 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14524**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14524](https://nvd.nist.gov/vuln/detail/CVE-2025-14524)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-14524-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-c75afff7</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-14819-curl: ApkMatcherCpeMatch

CVE-2025-14819 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14819**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14819](https://nvd.nist.gov/vuln/detail/CVE-2025-14819)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-14819-curl: : CVE-2025-14819-curl: ApkMatcherCpeMatch

CVE-2025-14819 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-14819**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-14819](https://nvd.nist.gov/vuln/detail/CVE-2025-14819)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-14819-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-d3e12996</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-15079-curl: ApkMatcherCpeMatch

CVE-2025-15079 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-15079**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-15079](https://nvd.nist.gov/vuln/detail/CVE-2025-15079)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-15079-curl: : CVE-2025-15079-curl: ApkMatcherCpeMatch

CVE-2025-15079 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-15079**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-15079](https://nvd.nist.gov/vuln/detail/CVE-2025-15079)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-15079-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-85ba89d9</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-15224-curl: ApkMatcherCpeMatch

CVE-2025-15224 low vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-15224**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| low  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-15224](https://nvd.nist.gov/vuln/detail/CVE-2025-15224)  |


A low vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>LOW</severity><toString>installed(1,0): CVE-2025-15224-curl: : CVE-2025-15224-curl: ApkMatcherCpeMatch

CVE-2025-15224 low vulnerability for curl package

For additional help see: **Vulnerability CVE-2025-15224**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| low  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-15224](https://nvd.nist.gov/vuln/detail/CVE-2025-15224)  |


A low vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-15224-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-643fee7a</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-60876-busybox-binsh: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for busybox-binsh package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | busybox-binsh  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: busybox-binsh, version 1.37.0-r30 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-60876-busybox-binsh: : CVE-2025-60876-busybox-binsh: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for busybox-binsh package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | busybox-binsh  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: busybox-binsh, version 1.37.0-r30 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-60876-busybox-binsh</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-c8e3b39b</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-60876-busybox: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for busybox package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | busybox  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: busybox, version 1.37.0-r30 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-60876-busybox: : CVE-2025-60876-busybox: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for busybox package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | busybox  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: busybox, version 1.37.0-r30 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-60876-busybox</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-cc599489</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2025-60876-ssl_client: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for ssl_client package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | ssl_client  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: ssl_client, version 1.37.0-r30 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2025-60876-ssl_client: : CVE-2025-60876-ssl_client: ApkMatcherCpeMatch

CVE-2025-60876 medium vulnerability for ssl_client package

For additional help see: **Vulnerability CVE-2025-60876**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | ssl_client  | 1.37.0-r30  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2025-60876](https://nvd.nist.gov/vuln/detail/CVE-2025-60876)  |


A medium vulnerability in apk package: ssl_client, version 1.37.0-r30 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2025-60876-ssl_client</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-78a1a79c</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-1965-curl: ApkMatcherCpeMatch

CVE-2026-1965 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-1965**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-1965](https://nvd.nist.gov/vuln/detail/CVE-2026-1965)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2026-1965-curl: : CVE-2026-1965-curl: ApkMatcherCpeMatch

CVE-2026-1965 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-1965**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-1965](https://nvd.nist.gov/vuln/detail/CVE-2026-1965)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2026-1965-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-4050e3c6</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-27135-nghttp2-libs: ApkMatcherCpeMatch

CVE-2026-27135 high vulnerability for nghttp2-libs package

For additional help see: **Vulnerability CVE-2026-27135**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| high  | nghttp2-libs  | 1.68.0-r0  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-27135](https://nvd.nist.gov/vuln/detail/CVE-2026-27135)  |


A high vulnerability in apk package: nghttp2-libs, version 1.68.0-r0 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>HIGH</severity><toString>installed(1,0): CVE-2026-27135-nghttp2-libs: : CVE-2026-27135-nghttp2-libs: ApkMatcherCpeMatch

CVE-2026-27135 high vulnerability for nghttp2-libs package

For additional help see: **Vulnerability CVE-2026-27135**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| high  | nghttp2-libs  | 1.68.0-r0  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-27135](https://nvd.nist.gov/vuln/detail/CVE-2026-27135)  |


A high vulnerability in apk package: nghttp2-libs, version 1.68.0-r0 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2026-27135-nghttp2-libs</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-fd08a0a4</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-3783-curl: ApkMatcherCpeMatch

CVE-2026-3783 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3783**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3783](https://nvd.nist.gov/vuln/detail/CVE-2026-3783)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2026-3783-curl: : CVE-2026-3783-curl: ApkMatcherCpeMatch

CVE-2026-3783 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3783**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3783](https://nvd.nist.gov/vuln/detail/CVE-2026-3783)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2026-3783-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-aa4af653</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-3784-curl: ApkMatcherCpeMatch

CVE-2026-3784 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3784**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3784](https://nvd.nist.gov/vuln/detail/CVE-2026-3784)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>installed(1,0): CVE-2026-3784-curl: : CVE-2026-3784-curl: ApkMatcherCpeMatch

CVE-2026-3784 medium vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3784**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3784](https://nvd.nist.gov/vuln/detail/CVE-2026-3784)  |


A medium vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2026-3784-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>installed</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//lib/apk/db/installed</fileName><fingerprint>FALLBACK-c35a5c6c</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>CVE-2026-3805-curl: ApkMatcherCpeMatch

CVE-2026-3805 high vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3805**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| high  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3805](https://nvd.nist.gov/vuln/detail/CVE-2026-3805)  |


A high vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>HIGH</severity><toString>installed(1,0): CVE-2026-3805-curl: : CVE-2026-3805-curl: ApkMatcherCpeMatch

CVE-2026-3805 high vulnerability for curl package

For additional help see: **Vulnerability CVE-2026-3805**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| high  | curl  | 8.17.0-r1  |   | apk  | /lib/apk/db/installed  | nvd:cpe  | [CVE-2026-3805](https://nvd.nist.gov/vuln/detail/CVE-2026-3805)  |


A high vulnerability in apk package: curl, version 8.17.0-r1 was found in image linkitaly/govway:master4 at: /lib/apk/db/installed</toString><type>CVE-2026-3805-curl</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>hazelcast-5.3.8.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govway.war:WEB-INF/lib/hazelcast-5.3.8.jar</fileName><fingerprint>FALLBACK-764e83c4</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-72hv-8253-57qq-jackson-core: JavaMatcherExactDirectMatch

GHSA-72hv-8253-57qq medium vulnerability for jackson-core package

For additional help see: **Vulnerability GHSA-72hv-8253-57qq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | jackson-core  | 2.15.2  | 2.18.6  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/hazelcast-5.3.8.jar  | github:language:java  | [GHSA-72hv-8253-57qq](https://github.com/advisories/GHSA-72hv-8253-57qq)  |


A medium vulnerability in java-archive package: jackson-core, version 2.15.2 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/hazelcast-5.3.8.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>hazelcast-5.3.8.jar(1,0): GHSA-72hv-8253-57qq-jackson-core: : GHSA-72hv-8253-57qq-jackson-core: JavaMatcherExactDirectMatch

GHSA-72hv-8253-57qq medium vulnerability for jackson-core package

For additional help see: **Vulnerability GHSA-72hv-8253-57qq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | jackson-core  | 2.15.2  | 2.18.6  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/hazelcast-5.3.8.jar  | github:language:java  | [GHSA-72hv-8253-57qq](https://github.com/advisories/GHSA-72hv-8253-57qq)  |


A medium vulnerability in java-archive package: jackson-core, version 2.15.2 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/hazelcast-5.3.8.jar</toString><type>GHSA-72hv-8253-57qq-jackson-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-1.2-api-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</fileName><fingerprint>FALLBACK-9b8f2042</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-1.2-api-2.25.3.jar(1,0): GHSA-h383-gmxw-35v2-log4j-1.2-api: : GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</toString><type>GHSA-h383-gmxw-35v2-log4j-1.2-api</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-ef08f755</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-3pxv-7cmr-fjr4-log4j-core: : GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-3pxv-7cmr-fjr4-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-e127ea56</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-445c-vh5m-36rj-log4j-core: : GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-445c-vh5m-36rj-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-c52ae8e5</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-6hg6-v5c8-fphq-log4j-core: : GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-6hg6-v5c8-fphq-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-layout-template-json-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</fileName><fingerprint>FALLBACK-f3d2e779</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-layout-template-json-2.25.3.jar(1,0): GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: : GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</toString><type>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-1.2-api-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</fileName><fingerprint>FALLBACK-9b8f2042</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-1.2-api-2.25.3.jar(1,0): GHSA-h383-gmxw-35v2-log4j-1.2-api: : GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</toString><type>GHSA-h383-gmxw-35v2-log4j-1.2-api</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-ef08f755</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-3pxv-7cmr-fjr4-log4j-core: : GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-3pxv-7cmr-fjr4-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-e127ea56</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-445c-vh5m-36rj-log4j-core: : GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-445c-vh5m-36rj-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-c52ae8e5</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-6hg6-v5c8-fphq-log4j-core: : GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-6hg6-v5c8-fphq-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-layout-template-json-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</fileName><fingerprint>FALLBACK-f3d2e779</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-layout-template-json-2.25.3.jar(1,0): GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: : GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</toString><type>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-1.2-api-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</fileName><fingerprint>FALLBACK-9b8f2042</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-1.2-api-2.25.3.jar(1,0): GHSA-h383-gmxw-35v2-log4j-1.2-api: : GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</toString><type>GHSA-h383-gmxw-35v2-log4j-1.2-api</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-ef08f755</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-3pxv-7cmr-fjr4-log4j-core: : GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-3pxv-7cmr-fjr4-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-e127ea56</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-445c-vh5m-36rj-log4j-core: : GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-445c-vh5m-36rj-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-c52ae8e5</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-6hg6-v5c8-fphq-log4j-core: : GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-6hg6-v5c8-fphq-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-layout-template-json-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</fileName><fingerprint>FALLBACK-f3d2e779</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-layout-template-json-2.25.3.jar(1,0): GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: : GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</toString><type>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-1.2-api-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</fileName><fingerprint>FALLBACK-9b8f2042</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-1.2-api-2.25.3.jar(1,0): GHSA-h383-gmxw-35v2-log4j-1.2-api: : GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</toString><type>GHSA-h383-gmxw-35v2-log4j-1.2-api</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-ef08f755</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-3pxv-7cmr-fjr4-log4j-core: : GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-3pxv-7cmr-fjr4-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-e127ea56</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-445c-vh5m-36rj-log4j-core: : GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-445c-vh5m-36rj-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-c52ae8e5</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-6hg6-v5c8-fphq-log4j-core: : GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-6hg6-v5c8-fphq-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-layout-template-json-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</fileName><fingerprint>FALLBACK-f3d2e779</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-layout-template-json-2.25.3.jar(1,0): GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: : GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</toString><type>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-1.2-api-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</fileName><fingerprint>FALLBACK-9b8f2042</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-1.2-api-2.25.3.jar(1,0): GHSA-h383-gmxw-35v2-log4j-1.2-api: : GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</toString><type>GHSA-h383-gmxw-35v2-log4j-1.2-api</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-ef08f755</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-3pxv-7cmr-fjr4-log4j-core: : GHSA-3pxv-7cmr-fjr4-log4j-core: JavaMatcherExactDirectMatch

GHSA-3pxv-7cmr-fjr4 medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-3pxv-7cmr-fjr4**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIConfig.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-3pxv-7cmr-fjr4](https://github.com/advisories/GHSA-3pxv-7cmr-fjr4)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-3pxv-7cmr-fjr4-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-e127ea56</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-445c-vh5m-36rj-log4j-core: : GHSA-445c-vh5m-36rj-log4j-core: JavaMatcherExactDirectMatch

GHSA-445c-vh5m-36rj medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-445c-vh5m-36rj**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-445c-vh5m-36rj](https://github.com/advisories/GHSA-445c-vh5m-36rj)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-445c-vh5m-36rj-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-core-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</fileName><fingerprint>FALLBACK-c52ae8e5</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-core-2.25.3.jar(1,0): GHSA-6hg6-v5c8-fphq-log4j-core: : GHSA-6hg6-v5c8-fphq-log4j-core: JavaMatcherExactDirectMatch

GHSA-6hg6-v5c8-fphq medium vulnerability for log4j-core package

For additional help see: **Vulnerability GHSA-6hg6-v5c8-fphq**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-core  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar  | github:language:java  | [GHSA-6hg6-v5c8-fphq](https://github.com/advisories/GHSA-6hg6-v5c8-fphq)  |


A medium vulnerability in java-archive package: log4j-core, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-core-2.25.3.jar</toString><type>GHSA-6hg6-v5c8-fphq-log4j-core</type></issue><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-layout-template-json-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</fileName><fingerprint>FALLBACK-f3d2e779</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-layout-template-json-2.25.3.jar(1,0): GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: : GHSA-w35j-pv5h-q9q9-log4j-layout-template-json: JavaMatcherExactDirectMatch

GHSA-w35j-pv5h-q9q9 medium vulnerability for log4j-layout-template-json package

For additional help see: **Vulnerability GHSA-w35j-pv5h-q9q9**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-layout-template-json  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govwayAPIMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar  | github:language:java  | [GHSA-w35j-pv5h-q9q9](https://github.com/advisories/GHSA-w35j-pv5h-q9q9)  |


A medium vulnerability in java-archive package: log4j-layout-template-json, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayMonitor.war:WEB-INF/lib/log4j-layout-template-json-2.25.3.jar</toString><type>GHSA-w35j-pv5h-q9q9-log4j-layout-template-json</type></issue><size>59</size><toString>59 warnings (high: 4, normal: 53, low: 2)</toString></reportApi>