github sigstore/cosign v1.5.2
v1.5.2 - CVE-2022-23649

latest releases: v2.4.1, v2.4.0, v2.3.0...
2 years ago

This release contains fixes for CVE-2022-23649, affecting signature validations with Rekor. Only validation is affected, it is not necessary to re-sign any artifacts.
See: GHSA-ccxc-vr6p-4858

Changelog

Thanks for all contributors!

Don't miss a new cosign release

NewReleases is sending notifications on new releases.