🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-abb-edge
Branch: vulnerability-scans
Build: #95
Date: 2026-02-19 09:59:03

0

Critical

5

High

2

Medium

0

Low

0

Secrets

0

Misconfig

🔴 Vulnerabilities (7)
SeverityCVE IDPackageInstalledFixed InDescription
HIGH CVE-2026-26007 cryptography 46.0.3 46.0.5 cryptography: cryptography Subgroup Attack Due to Missing Subgroup Validation for SECT Curves
MEDIUM CVE-2025-68146 filelock 3.20.0 3.20.1 filelock: filelock: Time-of-Check-Time-of-Use (TOCTOU) race condition and symlink attack allows arbi
MEDIUM CVE-2026-22701 filelock 3.20.0 3.20.3 filelock: filelock Time-of-Check-Time-of-Use (TOCTOU) in SoftFileLock
HIGH CVE-2026-25990 pillow 12.0.0 12.1.1 pillow: Pillow: Out-of-bounds Write via Specially Crafted PSD Image
HIGH CVE-2025-66418 urllib3 2.5.0 2.6.0 urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion
HIGH CVE-2025-66471 urllib3 2.5.0 2.6.0 urllib3: urllib3 Streaming API improperly handles highly compressed data
HIGH CVE-2026-21441 urllib3 2.5.0 2.6.3 urllib3: urllib3 vulnerable to decompression-bomb safeguard bypass when following HTTP redirects (st
🔑 Secrets (0)
TypeFileLineMatch
✅ No secrets found
⚙️ Misconfigurations (0)
SeverityIDCheckFileMessage
✅ No misconfigurations found
📄 Raw JSON Report (click to expand)