SecAlerts
s

sigstore

Security Risk Profile

34
/100
low

Security Risk Score

Comprehensive risk assessment based on 15 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from February 18, 2022 to present

15
Total CVEs
7
Critical+High
0
Exploited
0
Unpatched

Threat Assessment

Avg CVSS
6.4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
34/100
low

Severity Distribution

Critical
1
High
6
Medium
6
Low
2

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
4

Age Distribution

Common Weaknesses (CWE)

No CWE data available

Most Affected Products

1. sigstore Cosign11
2. go/github.com/sigstore/cosign7
3. go/github.com/sigstore/cosign/v24
4. go/github.com/sigstore/sigstore-go2
5. sigstore sigstore-go2

Recent Vulnerabilities

See more →

Monitor sigstore in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

sigstore Security Vulnerabilities & Risk Score | 15 CVEs | SecAlerts - SecAlerts