VendorsLinux Foundationsigstore_timestamp_authorityall versions
Vulnerabilities

Linux Foundation The Linux Foundation Sigstore Timestamp Authority

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2026-49835
Sigstore Timestamp Authority: OOM due to unbounded metric label cardinality
Published 2026-07-17 · Analyzed
7.5EPSS 0.007
CVE-2025-66564
Sigstore Timestamp Authority allocates excessive memory during request parsing
Published 2025-12-04 · Analyzed
7.5EPSS 0.004
CVE-2026-39984
Sigstore Timestamp Authority has Improper Certificate Validation in verifier
Published 2026-04-14 · Analyzed
5.5EPSS 0.001