github.com/fluxcd/image-reflector-controller
The GitOps Toolkit container registry scanner
Activity
- Latest release
- 2w ago
- Total releases
- 57
- Cadence
- ~28 days
- Last 12 months
- 12
Reach
- Stars
- 124
Details
- First release
- Oct 08, 2020
| Version | Released | |
|---|---|---|
v1.2.5
patch
|
v1.2.5
patch
Dependencies (25)
+ 17 more |
|
v1.2.4
patch
|
v1.2.4
patch
Dependencies (25)
+ 17 more |
|
v1.2.3
patch
|
v1.2.3
patch
Dependencies (25)
+ 17 more |
|
v1.2.2
patch
|
v1.2.2
patch
Dependencies (25)
+ 17 more |
|
v1.2.1
patch
|
v1.2.1
patch
Dependencies (25)
+ 17 more |
|
v1.2.0
minor
|
v1.2.0
minor
Dependencies (25)
+ 17 more |
|
v1.1.2
patch
|
v1.1.2
patch
Dependencies (25)
+ 17 more |
|
v1.1.1
patch
|
v1.1.1
patch
Dependencies (25)
+ 17 more |
|
v1.1.0
minor
|
v1.1.0
minor
Dependencies (25)
+ 17 more |
|
v1.0.4
patch
|
v1.0.4
patch
Dependencies (25)
+ 17 more |
|
v1.0.3
patch
|
v1.0.3
patch
Dependencies (25)
+ 17 more |
|
v1.0.2
patch
|
v1.0.2
patch
Dependencies (25)
+ 17 more |
|
v1.0.1
major
|
v1.0.1
major
Dependencies (25)
+ 17 more |
|
v1.0.0
major
|
v1.0.0
major
Dependencies (25)
+ 17 more |
|
v0.35.2
patch
|
v0.35.2
patch
Dependencies (25)
+ 17 more |
|
v0.35.1
patch
|
v0.35.1
patch
Dependencies (25)
+ 17 more |
|
v0.35.0
minor
|
v0.35.0
minor
Dependencies (25)
+ 17 more |
|
v0.34.0
minor
|
v0.34.0
minor
Dependencies (22)
+ 14 more |
|
v0.33.0
minor
|
v0.33.0
minor
Dependencies (22)
+ 14 more |
|
v0.32.0
minor
|
v0.32.0
minor
Dependencies (21)
+ 13 more |
|
v0.31.2
patch
|
v0.31.2
patch
Dependencies (21)
+ 13 more |
|
v0.31.0
minor
|
v0.31.0
minor
Dependencies (21)
+ 13 more |
|
v0.30.0
minor
|
v0.30.0
minor
Dependencies (21)
+ 13 more |
|
v0.29.1
patch
|
v0.29.1
patch
Dependencies (21)
+ 13 more |
|
v0.29.0
minor
|
v0.29.0
minor
Dependencies (21)
+ 13 more |
|
v0.28.0
minor
|
v0.28.0
minor
Dependencies (21)
+ 13 more |
|
v0.27.1
patch
|
v0.27.1
patch
Dependencies (20)
+ 12 more |
|
v0.27.0
minor
|
v0.27.0
minor
Dependencies (20)
+ 12 more |
|
v0.25.0
minor
|
v0.25.0
minor
Dependencies (20)
+ 12 more |
|
v0.23.1
minor
|
v0.23.1
minor
Dependencies (20)
+ 12 more |
|
v0.22.1
minor
|
v0.22.1
minor
Dependencies (19)
+ 11 more |
|
v0.21.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.21.0
minor
Dependencies (19)
+ 11 more |
|
v0.19.4
patch
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.19.4
patch
Dependencies (18)
+ 10 more |
|
v0.19.2
patch
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.19.2
patch
Dependencies (18)
+ 10 more |
|
v0.19.1
patch
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.19.1
patch
Dependencies (18)
+ 10 more |
|
v0.19.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.19.0
minor
Dependencies (18)
+ 10 more |
|
v0.18.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.18.0
minor
Dependencies (18)
+ 10 more |
|
v0.17.2
patch
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.17.2
patch
Dependencies (18)
+ 10 more |
|
v0.17.1
patch
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.17.1
patch
Dependencies (18)
+ 10 more |
|
v0.17.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.17.0
minor
Dependencies (18)
+ 10 more |
|
v0.16.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.16.0
minor
Dependencies (18)
+ 10 more |
|
v0.14.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.14.0
minor
Dependencies (16)
+ 8 more |
|
v0.13.2
patch
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.13.2
patch
Dependencies (16)
+ 8 more |
|
v0.13.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.13.0
minor
Dependencies (16)
+ 8 more |
|
v0.12.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.12.0
minor
Dependencies (15)
+ 7 more |
|
v0.11.1
patch
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.11.1
patch
Dependencies (15)
+ 7 more |
|
v0.11.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.11.0
minor
Dependencies (15)
+ 7 more |
|
v0.9.1
patch
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.9.1
patch
Dependencies (15)
+ 7 more |
|
v0.9.0
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.9.0
minor
Dependencies (15)
+ 7 more |
|
v0.7.1
minor
1 CVE
CVE-2022-39272
GHSA-f4p5-x4vc-mh4v
BIT-flux-2022-39272
BIT-kustomize-2022-39272
GO-2022-1071
Oct 19, 2022
Improper use of metav1.Duration allows for Denial of Service
5.0
/ 10
Medium
Network
Low
Low
None
Changed
None
None
Low
Flux controllers within the affected versions range are vulnerable to a denial of service attack. Users that have permissions to change Flux’s objects, either through a Flux source or directly within a cluster, can provide invalid data to fields The issue has two root causes: a) the Kubernetes type WorkaroundsAdmission controllers can be employed to restrict the values that can be used for fields CreditsThis issue was reported by Alexander Block (@codablock) through the Flux security mailing list (as recommended). For more informationIf you have any questions or comments about this advisory:
References
Fixed in
0.22.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
v0.7.1
minor
Dependencies (15)
+ 7 more |