t
tekton
Security Risk Profile
36
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 4 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from March 24, 2026 to present
4
Total CVEs
4
Critical+High
0
Exploited
4
Unpatched
Threat Assessment
Avg CVSS
7.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
36/100
low
Severity Distribution
Critical
0High
4Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
2
Most Affected Products
1. Tekton Tekton Pipelines (tekton-pipelines-resolvers)2
2. Tekton Tekton Pipelines2
3. Tekton OpenShift Pipelines Operator (tektoncd/operator)1
4. go/github.com/tektoncd/pipeline1
5. linuxfoundation Tekton Pipelines Go1
Recent Vulnerabilities
See more →REDHAT-BUG-2484720
CVSS 7.0high
Jun 4, 2026🔧 No Patch
REDHAT-BUG-2460292
CVSS 7.0high
Apr 21, 2026🔧 No Patch
CVE-2026-40161
CVSS 7.7high
Tekton Pipelines: Git resolver API mode leaks system-configured API token to user-controlled serverURL
Apr 21, 2026🔧 No Patch
REDHAT-BUG-2450554
CVSS 7.0high
Mar 24, 2026🔧 No Patch
Monitor tekton in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.