go

github.com/containers/podman/v4

View on go registry
27 Total advisories
27 Vulnerabilities
0 Malware

Dependency scanning

Check whether github.com/containers/podman/v4 is in your codebase

Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.

Vulnerabilities

HIGH 7.5
Go

CVE-2026-57231

Podman: Malformed Image can trick podman run into leaking host environment variables into the container

HIGH 8.1
Go

CVE-2025-9566

podman kube play symlink traversal vulnerability

HIGH 7.8
Go

CVE-2026-33414

PowerShell Command Injection in Podman HyperV Machine

MEDIUM 4.8
Go

CVE-2024-3056

Podman vulnerable to memory-based denial of service

HIGH 8.3
Go

CVE-2025-6032

Podman Improper Certificate Validation; machine missing TLS verification

MEDIUM 4.7
Go

CVE-2024-9407

Improper Input Validation in Buildah and Podman

HIGH 8.6
Go

CVE-2024-1753

Podman affected by CVE-2024-1753 container escape at build time

HIGH 7.5
Go

CVE-2022-27649

Podman's default inheritable capabilities for linux container not empty

MEDIUM 5.3
Go

CVE-2026-55686

Podman: WORKDIR symlink traversal vulnerability

UNKNOWN
Go

CVE-2026-55686

Podman: WORKDIR symlink traversal vulnerability in github.com/containers/podman

UNKNOWN
Go

CVE-2026-33414

PowerShell Command Injection in Podman HyperV Machine in github.com/containers/podman

UNKNOWN
Go

CVE-2018-10856

Podman Elevated Container Privileges in github.com/containers/podman

UNKNOWN
Go

CVE-2019-18466

Podman Symlink Vulnerability in github.com/containers/libpod

UNKNOWN
Go

CVE-2022-4122

Buildah (as part of Podman) vulnerable to Link Following in github.com/containers/podman

UNKNOWN
Go

CVE-2022-27649

Podman's default inheritable capabilities for linux container not empty in github.com/containers/podman

UNKNOWN
Go

CVE-2025-9566

podman kube play symlink traversal vulnerability in github.com/containers/podman

UNKNOWN
Go

CVE-2025-4953

Podman Creates Temporary File with Insecure Permissions in github.com/containers/podman

HIGH 7.1
Go

CVE-2022-2989

Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification

UNKNOWN
Go

CVE-2024-3056

Podman vulnerable to memory-based denial of service in github.com/containers/podman

UNKNOWN
Go

CVE-2024-9407

Improper Input Validation in Buildah and Podman in github.com/containers/buildah

UNKNOWN
Go

CVE-2025-6032

Podman Improper Certificate Validation; machine missing TLS verification in github.com/containers/podman

MEDIUM 5.3
Go

CVE-2022-4122

Buildah (as part of Podman) vulnerable to Link Following

MEDIUM 5.5
Go

CVE-2019-18466

Podman Symlink Vulnerability

MEDIUM 6.8
Go

CVE-2023-0778

Podman Time-of-check Time-of-use (TOCTOU) Race Condition

LOW 3.3
Go

CVE-2022-4123

Buildah (as part of Podman) vulnerable to Path Traversal

UNKNOWN
Go

CVE-2023-0778

Time-of-check time-of-use race condition in github.com/containers/podman/v4

UNKNOWN
Go

CVE-2022-4123

Path traversal in github.com/containers/podman/v4

Learn What is SAST?

Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →

Ready to move

Start Securing

Free, no credit card | First findings in minutes