github.com/kedacore/keda/v2
KEDA is a Kubernetes-based Event Driven Autoscaling component. It provides event driven scale for any container running in Kubernetes
Activity
- Latest release
- 1d ago
- Total releases
- 43
- Cadence
- ~41 days
- Last 12 months
- 9
Reach
- Stars
- 10.4k
Details
- First release
- Jan 27, 2021
| Version | Released | |
|---|---|---|
v2.20.2
patch
|
v2.20.2
patch
Dependencies (126)
+ 118 more |
|
v2.20.1
patch
|
v2.20.1
patch
Dependencies (126)
+ 118 more |
|
v2.20.0
minor
|
v2.20.0
minor
Dependencies (126)
+ 118 more |
|
v2.19.0
minor
1 CVE
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev |
v2.19.0
minor
Dependencies (128)
+ 120 more |
|
v2.18.3
patch
1 CVE
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev |
v2.18.3
patch
Dependencies (129)
+ 121 more |
|
v2.17.3
patch
1 CVE
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev |
v2.17.3
patch
Dependencies (124)
+ 116 more |
|
v2.18.2
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.18.2
patch
Dependencies (129)
+ 121 more |
|
v2.18.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.18.1
patch
Dependencies (129)
+ 121 more |
|
v2.18.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.18.0
minor
Dependencies (129)
+ 121 more |
|
v2.17.2
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.17.2
patch
Dependencies (124)
+ 116 more |
|
v2.17.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.17.1
patch
Dependencies (124)
+ 116 more |
|
v2.17.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.17.0
minor
Dependencies (124)
+ 116 more |
|
v2.16.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.16.1
patch
Dependencies (122)
+ 114 more |
|
v2.16.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.16.0
minor
Dependencies (122)
+ 114 more |
|
v2.15.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.15.1
patch
Dependencies (119)
+ 111 more |
|
v2.15.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.15.0
minor
Dependencies (119)
+ 111 more |
|
v2.14.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.14.1
patch
Dependencies (116)
+ 108 more |
|
v2.14.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.14.0
minor
Dependencies (115)
+ 107 more |
|
v2.13.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.13.1
patch
Dependencies (110)
+ 102 more |
|
v2.13.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.13.0
minor
Dependencies (110)
+ 102 more |
|
v2.12.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.12.1
patch
Dependencies (104)
+ 96 more |
|
v2.12.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.12.0
minor
Dependencies (104)
+ 96 more |
|
v2.11.2
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.11.2
patch
Dependencies (86)
+ 78 more |
|
v2.11.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.11.1
patch
Dependencies (86)
+ 78 more |
|
v2.11.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.11.0
minor
Dependencies (86)
+ 78 more |
|
v2.10.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.10.1
patch
Dependencies (84)
+ 76 more |
|
v2.10.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.10.0
minor
Dependencies (83)
+ 75 more |
|
v2.9.3
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.9.3
patch
Dependencies (80)
+ 72 more |
|
v2.8.2
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.8.2
patch
Dependencies (69)
+ 61 more |
|
v2.9.2
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.9.2
patch
Dependencies (80)
+ 72 more |
|
v2.9.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.9.1
patch
Dependencies (80)
+ 72 more |
|
v2.9.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.9.0
minor
Dependencies (80)
+ 72 more |
|
v2.8.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.8.1
patch
Dependencies (69)
+ 61 more |
|
v2.8.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.8.0
minor
Dependencies (70)
+ 62 more |
|
v2.7.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.7.1
patch
Dependencies (65)
+ 57 more |
|
v2.7.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.7.0
minor
Dependencies (65)
+ 57 more |
|
v2.6.1
patch
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.6.1
patch
Dependencies (62)
+ 54 more |
|
v2.6.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.6.0
minor
Dependencies (62)
+ 54 more |
|
v2.5.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.5.0
minor
Dependencies (54)
+ 46 more |
|
v2.4.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.4.0
minor
Dependencies (51)
+ 43 more |
|
v2.3.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.3.0
minor
Dependencies (51)
+ 43 more |
|
v2.2.0
minor
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.2.0
minor
Dependencies (50)
+ 42 more |
|
v2.1.0
initial
2 CVEs
CVE-2026-53572
GO-2026-5940
GHSA-6w3m-4hhp-775q
Jul 17, 2026
KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda KEDA has PostgreSQL connection string parameter injection via incomplete whitespace escaping in github.com/kedacore/keda Fixed in
2.20.0
Updated Jul 21, 2026 · Source: OSV.dev
CVE-2025-68476
GO-2025-4257
GHSA-c4p6-qg4m-9jmr
Dec 30, 2025
KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda KEDA has Arbitrary File Read via Insufficient Path Validation in HashiCorp Vault Service Account Credential in github.com/kedacore/keda Fixed in
2.17.3
2.18.3
References Updated Feb 04, 2026 · Source: OSV.dev |
v2.1.0
initial
Dependencies (48)
+ 40 more |