[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2024-23650":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T02:55:30.529Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":24,"downstream":25,"duplicates":48,"related":49,"reserved_at":9,"published_at":87,"modified_at":88,"state":89,"summary":90,"references_raw":99,"kevs":151,"epss":152,"epss_history":155,"metrics":426,"affected":436},"CVE-2024-23650","BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. A malicious BuildKit client or frontend could craft a request that could lead to BuildKit daemon crashing with a panic. The issue has been fixed in v0.12.5. As a workaround, avoid using BuildKit frontends from untrusted sources.\n",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-754","Improper Check for Unusual or Exceptional Conditions","The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.","weakness","Incomplete","Class","Medium",[],[],[22,23],"GHSA-9p26-698r-w4hx","GO-2024-2492",[],[26,28,30,32,34,36,38,40,42,44,46],{"_key":27},"UBUNTU-CVE-2024-23650",{"_key":29},"SUSE-SU-2025:03540-1",{"_key":31},"SUSE-SU-2025:1102-1",{"_key":33},"SUSE-SU-2025:0226-1",{"_key":35},"SUSE-SU-2025:1062-1",{"_key":37},"OPENSUSE-SU-2024:14059-1",{"_key":39},"OPENSUSE-SU-2024:14598-1",{"_key":41},"SUSE-SU-2025:03545-1",{"_key":43},"SUSE-SU-2026:0972-1",{"_key":45},"SUSE-SU-2026:1118-1",{"_key":47},"RHSA-2024:2988",[],[50,51,52,53,54,55,56,57,58,59,61,63,65,67,69,71,73,75,77,79,81,83,85],{"_key":29},{"_key":31},{"_key":33},{"_key":35},{"_key":37},{"_key":39},{"_key":41},{"_key":43},{"_key":45},{"_key":60},"CGA-2FH7-3G44-V2V8",{"_key":62},"CGA-2QFC-77FJ-6J9M",{"_key":64},"CGA-3FR8-7CC7-MGGF",{"_key":66},"CGA-6JJ8-F9Q9-3MC7",{"_key":68},"CGA-CJGH-J3QX-V5CF",{"_key":70},"CGA-CW93-V5MM-858P",{"_key":72},"CGA-CX83-PHJ6-XQGC",{"_key":74},"CGA-GPR3-VJ8Q-26RW",{"_key":76},"CGA-HC95-X7C3-393J",{"_key":78},"CGA-PWQ3-833Q-Q6JR",{"_key":80},"CGA-PXV5-J3F8-XRPC",{"_key":82},"CGA-RM85-GQPF-HFPH",{"_key":84},"CGA-RW49-59GP-GFV9",{"_key":86},"CGA-V4QR-XPWQ-274M","2024-01-31T21:42:13.382Z","2024-11-12T20:15:05.078Z","Modified",{"cisa_kev":91,"cisa_ransomware":91,"cisa_vendor":9,"epss_severity":92,"epss_score":93,"severity":94,"severity_score":95,"severity_version":96,"severity_source":97,"severity_vector":98,"severity_status":89},false,"low",0.0011,"medium",5.3,"v3.1","cve.org","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L",[100,109,116,121,126,130,134,138,142,146],{"url":101,"sources":102,"tags":105},"https://github.com/moby/buildkit/security/advisories/GHSA-9p26-698r-w4hx",[97,103,104],"nvd","osv_go",[106,107,108],"X Refsource CONFIRM","Vendor Advisory","WEB",{"url":110,"sources":111,"tags":112},"https://github.com/moby/buildkit/pull/4601",[97,103,104],[113,114,107,108,115],"X Refsource MISC","Patch","FIX",{"url":117,"sources":118,"tags":119},"https://github.com/moby/buildkit/releases/tag/v0.12.5",[97,103,104],[113,114,120,108],"Release Notes",{"url":122,"sources":123,"tags":124},"https://nvd.nist.gov/vuln/detail/CVE-2024-23650",[104],[125],"Advisory",{"url":127,"sources":128,"tags":129},"https://github.com/moby/buildkit/commit/481d9c45f473c58537f39694a38d7995cc656987",[104],[108,115],{"url":131,"sources":132,"tags":133},"https://github.com/moby/buildkit/commit/7718bd5c3dc8fc5cd246a30cc41766e7a53c043c",[104],[108,115],{"url":135,"sources":136,"tags":137},"https://github.com/moby/buildkit/commit/83edaef59d545b93e2750f1f85675a3764593fee",[104],[108,115],{"url":139,"sources":140,"tags":141},"https://github.com/moby/buildkit/commit/96663dd35bf3787d7efb1ee7fd9ac7fe533582ae",[104],[108,115],{"url":143,"sources":144,"tags":145},"https://github.com/moby/buildkit/commit/e1924dc32da35bfb0bfdbb9d0fc7bca25e552330",[104],[108,115],{"url":147,"sources":148,"tags":149},"https://github.com/moby/buildkit",[104],[150],"PACKAGE",[],{"date":153,"score":93,"percentile":154},"2026-06-04",0.28867,[156,160,163,166,169,172,175,178,181,184,187,190,193,196,199,203,206,209,212,215,218,221,224,227,230,233,236,239,242,245,248,251,254,257,260,263,266,269,272,275,278,281,284,287,290,293,296,299,302,305,308,311,314,317,320,323,326,328,331,334,337,340,343,346,349,352,355,358,361,364,367,370,373,376,379,382,385,387,390,393,396,399,402,405,408,411,414,417,420,423],{"date":157,"score":158,"percentile":159},"2025-11-04",0.00081,0.24491,{"date":161,"score":158,"percentile":162},"2025-11-05",0.24475,{"date":164,"score":158,"percentile":165},"2025-11-06",0.24482,{"date":167,"score":158,"percentile":168},"2025-11-07",0.24488,{"date":170,"score":158,"percentile":171},"2025-11-08",0.24492,{"date":173,"score":158,"percentile":174},"2025-11-09",0.2445,{"date":176,"score":158,"percentile":177},"2025-11-10",0.24411,{"date":179,"score":158,"percentile":180},"2025-11-11",0.24417,{"date":182,"score":158,"percentile":183},"2025-11-12",0.24443,{"date":185,"score":158,"percentile":186},"2025-11-13",0.24447,{"date":188,"score":158,"percentile":189},"2025-11-14",0.24438,{"date":191,"score":158,"percentile":192},"2025-11-15",0.24422,{"date":194,"score":158,"percentile":195},"2025-11-16",0.24376,{"date":197,"score":158,"percentile":198},"2025-11-17",0.24332,{"date":200,"score":201,"percentile":202},"2025-11-18",0.0048,0.62472,{"date":204,"score":201,"percentile":205},"2025-11-19",0.62487,{"date":207,"score":201,"percentile":208},"2025-11-20",0.62465,{"date":210,"score":158,"percentile":211},"2025-11-21",0.2426,{"date":213,"score":158,"percentile":214},"2025-11-22",0.24257,{"date":216,"score":158,"percentile":217},"2025-11-23",0.24203,{"date":219,"score":158,"percentile":220},"2025-11-24",0.24174,{"date":222,"score":158,"percentile":223},"2025-11-25",0.24162,{"date":225,"score":158,"percentile":226},"2025-11-26",0.24148,{"date":228,"score":158,"percentile":229},"2025-11-27",0.24146,{"date":231,"score":158,"percentile":232},"2025-11-28",0.24122,{"date":234,"score":158,"percentile":235},"2025-11-29",0.24103,{"date":237,"score":158,"percentile":238},"2025-11-30",0.24079,{"date":240,"score":158,"percentile":241},"2025-12-01",0.24124,{"date":243,"score":158,"percentile":244},"2025-12-02",0.24145,{"date":246,"score":158,"percentile":247},"2025-12-03",0.24155,{"date":249,"score":158,"percentile":250},"2025-12-04",0.24081,{"date":252,"score":158,"percentile":253},"2025-12-05",0.24131,{"date":255,"score":158,"percentile":256},"2025-12-06",0.24129,{"date":258,"score":158,"percentile":259},"2025-12-07",0.2409,{"date":261,"score":158,"percentile":262},"2025-12-08",0.24095,{"date":264,"score":158,"percentile":265},"2025-12-09",0.24152,{"date":267,"score":158,"percentile":268},"2025-12-10",0.24221,{"date":270,"score":158,"percentile":271},"2025-12-11",0.24243,{"date":273,"score":158,"percentile":274},"2025-12-12",0.24261,{"date":276,"score":158,"percentile":277},"2025-12-13",0.24262,{"date":279,"score":158,"percentile":280},"2025-12-14",0.24232,{"date":282,"score":158,"percentile":283},"2025-12-15",0.24209,{"date":285,"score":158,"percentile":286},"2025-12-16",0.24234,{"date":288,"score":158,"percentile":289},"2025-12-17",0.24312,{"date":291,"score":158,"percentile":292},"2025-12-18",0.24375,{"date":294,"score":158,"percentile":295},"2025-12-19",0.24393,{"date":297,"score":158,"percentile":298},"2025-12-20",0.24361,{"date":300,"score":158,"percentile":301},"2025-12-21",0.24307,{"date":303,"score":158,"percentile":304},"2025-12-22",0.24265,{"date":306,"score":158,"percentile":307},"2025-12-23",0.2424,{"date":309,"score":158,"percentile":310},"2025-12-24",0.24254,{"date":312,"score":158,"percentile":313},"2025-12-25",0.24336,{"date":315,"score":158,"percentile":316},"2025-12-26",0.24321,{"date":318,"score":158,"percentile":319},"2025-12-27",0.24319,{"date":321,"score":158,"percentile":322},"2025-12-28",0.24186,{"date":324,"score":158,"percentile":325},"2025-12-29",0.24156,{"date":327,"score":158,"percentile":226},"2025-12-30",{"date":329,"score":158,"percentile":330},"2025-12-31",0.24222,{"date":332,"score":158,"percentile":333},"2026-01-01",0.24325,{"date":335,"score":158,"percentile":336},"2026-01-02",0.24318,{"date":338,"score":158,"percentile":339},"2026-01-03",0.24296,{"date":341,"score":158,"percentile":342},"2026-01-04",0.24199,{"date":344,"score":158,"percentile":345},"2026-01-05",0.2418,{"date":347,"score":158,"percentile":348},"2026-01-06",0.24187,{"date":350,"score":158,"percentile":351},"2026-01-07",0.24216,{"date":353,"score":158,"percentile":354},"2026-01-08",0.24263,{"date":356,"score":158,"percentile":357},"2026-01-09",0.24248,{"date":359,"score":158,"percentile":360},"2026-01-10",0.2422,{"date":362,"score":158,"percentile":363},"2026-01-11",0.24197,{"date":365,"score":158,"percentile":366},"2026-01-12",0.24159,{"date":368,"score":158,"percentile":369},"2026-01-13",0.24135,{"date":371,"score":158,"percentile":372},"2026-01-14",0.24198,{"date":374,"score":158,"percentile":375},"2026-01-15",0.24193,{"date":377,"score":158,"percentile":378},"2026-01-16",0.24225,{"date":380,"score":158,"percentile":381},"2026-01-17",0.24226,{"date":383,"score":158,"percentile":384},"2026-01-18",0.24192,{"date":386,"score":158,"percentile":229},"2026-01-19",{"date":388,"score":158,"percentile":389},"2026-01-20",0.24125,{"date":391,"score":158,"percentile":392},"2026-01-21",0.24072,{"date":394,"score":158,"percentile":395},"2026-01-22",0.24058,{"date":397,"score":158,"percentile":398},"2026-01-23",0.24143,{"date":400,"score":158,"percentile":401},"2026-01-24",0.24151,{"date":403,"score":158,"percentile":404},"2026-01-25",0.24071,{"date":406,"score":158,"percentile":407},"2026-01-26",0.23973,{"date":409,"score":158,"percentile":410},"2026-01-27",0.23966,{"date":412,"score":158,"percentile":413},"2026-01-28",0.23963,{"date":415,"score":158,"percentile":416},"2026-01-29",0.23917,{"date":418,"score":158,"percentile":419},"2026-01-30",0.23906,{"date":421,"score":158,"percentile":422},"2026-01-31",0.23902,{"date":424,"score":158,"percentile":425},"2026-02-01",0.2395,[427,432,434],{"source":97,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":428,"cvss_v4_0":9},{"baseScore":95,"baseSeverity":429,"vectorString":98,"impactScore":430,"exploitabilityScore":431},"MEDIUM",2.3,10,{"source":103,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":433,"cvss_v4_0":9},{"baseScore":95,"baseSeverity":429,"vectorString":98,"impactScore":430,"exploitabilityScore":431},{"source":104,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":435,"cvss_v4_0":9},{"baseScore":95,"baseSeverity":9,"vectorString":98,"impactScore":430,"exploitabilityScore":431},[437,450,456],{"ecosystem":438,"name":439,"vendor":440,"product":441,"cpe_part":9,"purl_type":442,"purl_namespace":440,"purl_name":441,"source":9,"versions":443},"Go","github.com/moby/buildkit","github.com/moby","buildkit","golang",[444],{"version":445,"is_range":446,"range_type":447,"version_start":9,"version_start_type":9,"version_end":448,"version_end_type":449,"fixed_in":9},"lt0_12_5",true,"semver","0.12.5","excluding",{"ecosystem":9,"name":441,"vendor":451,"product":441,"cpe_part":452,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":453},"moby","a",[454],{"version":455,"is_range":446,"range_type":97,"version_start":9,"version_start_type":9,"version_end":448,"version_end_type":449,"fixed_in":9},"\u003C 0.12.5",{"ecosystem":9,"name":441,"vendor":457,"product":441,"cpe_part":452,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":458},"mobyproject",[459],{"version":460,"is_range":446,"range_type":461,"version_start":9,"version_start_type":9,"version_end":448,"version_end_type":449,"fixed_in":9},"lt0.12.5","cpe"]