CVE-2026-93317
EUVD-2026-9252905.10.2026, 18:17
An unauthenticated attacker controlling a registry or OCI-layout blob source could provide blob contents that did not match the claimed digest. The resulting snapshot could be cached under that digest and reused by a later victim build, compromising build-input integrity.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.