fleet/security/vex/fleetctl
Lucas Manuel Rodriguez c2d01c511e
Ignore fleetdm/fleet and fleetdm/fleetctl vulnerabilities (#44247)
Fixes:
https://github.com/fleetdm/fleet/actions/runs/24980770051/job/73142219314.

Run: https://github.com/fleetdm/fleet/actions/runs/25018399091.

<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->
## Summary by CodeRabbit

* **Documentation**
* Added OpenVEX vulnerability declarations for multiple CVEs, marking
them as not affected for Fleet and fleetctl. Each entry includes
metadata, human-readable status notes, and justifications addressing
exploitability relative to Go runtime, Alpine/musl packages, crypto/SSL
libraries, OpenTelemetry, xmldsig, and media libraries.
<!-- end of auto-generated comment: release notes by coderabbit.ai -->
2026-04-27 18:07:52 -03:00
..
CVE-2012-0881.vex.json
CVE-2013-4002.vex.json
CVE-2019-10202.vex.json
CVE-2023-6879.vex.json
CVE-2023-32698.vex.json
CVE-2023-45853.vex.json
CVE-2024-7254.vex.json
CVE-2025-15467.vex.json Skip openssl vulns in Fleet (#39098) 2026-02-02 11:56:39 -03:00
CVE-2025-27509.vex.json
CVE-2025-31115.vex.json
CVE-2025-41249.vex.json
CVE-2025-46569.vex.json
CVE-2025-48734.vex.json
CVE-2025-49794.vex.json
CVE-2025-49795.vex.json
CVE-2025-49796.vex.json
CVE-2025-61729.vex.json
CVE-2025-64720.vex.json
CVE-2025-65018.vex.json
CVE-2025-66293.vex.json
CVE-2025-66516.vex.json
CVE-2025-69419.vex.json Skip openssl vulns in Fleet (#39098) 2026-02-02 11:56:39 -03:00
CVE-2026-0968.vex.json Ignore CVEs on fleetdm/fleetctl (#43240) 2026-04-08 17:46:41 -03:00
CVE-2026-23517.vex.json Add rule to exclude CVE-2026-23517 from fleetctl (#39097) 2026-02-02 13:15:41 -03:00
CVE-2026-24515.vex.json Skip openssl vulns in Fleet (#39098) 2026-02-02 11:56:39 -03:00
CVE-2026-25679.vex.json Fix security warnings on fleetdm/fleetctl (#42276) 2026-03-24 12:10:29 -03:00
CVE-2026-26061.vex.json Add ignore to CVE found in fleetdm/fleetctl (#42711) 2026-03-31 10:27:07 -03:00
CVE-2026-27465.vex.json Ignore vulnerabilities in fleetdm/fleetctl (#41647) 2026-03-13 14:22:40 -03:00
CVE-2026-27806.vex.json Flag fleetdm/fleetctl vulnerabilities (#43785) 2026-04-20 15:01:03 -03:00
CVE-2026-32280.vex.json Flag fleetdm/fleetctl vulnerabilities (#43785) 2026-04-20 15:01:03 -03:00
CVE-2026-33186.vex.json Fix security warnings on fleetdm/fleetctl (#42276) 2026-03-24 12:10:29 -03:00
CVE-2026-33487.vex.json Add ignore to CVE found in fleetdm/fleetctl (#42711) 2026-03-31 10:27:07 -03:00
CVE-2026-33810.vex.json Flag fleetdm/fleetctl vulnerabilities (#43785) 2026-04-20 15:01:03 -03:00
CVE-2026-34873.vex.json Ignore CVEs on fleetdm/fleetctl (#43240) 2026-04-08 17:46:41 -03:00
CVE-2026-34875.vex.json Ignore CVEs on fleetdm/fleetctl (#43240) 2026-04-08 17:46:41 -03:00
CVE-2026-40962.vex.json Ignore fleetdm/fleet and fleetdm/fleetctl vulnerabilities (#44247) 2026-04-27 18:07:52 -03:00
GHSA-72hv-8253-57qq.vex.json Ignore vulnerabilities in fleetdm/fleetctl (#41647) 2026-03-13 14:22:40 -03:00
GHSA-479m-364c-43vc.vex.json Fix security warnings on fleetdm/fleetctl (#42276) 2026-03-24 12:10:29 -03:00