HIGH 7.5 GitHub
CVE-2026-55092
Trivy has a path traversal via a crafted vulnerability database or other downloaded artifacts
## Summary
When Trivy downloads an OCI artifact, it uses the `org.opencontainers.image.title` annotation from the artifact manifest as the destination filename without validation. An attacker who can make Trivy fetch an attacker-controlled artifact can supply a crafted annotation that resolves to a path outside the intended destination, causing Trivy to write the layer content to an arbitrary location on the host filesystem.
## Affected configurations
Exploitation requires the attacker to dir
Affected Products
- go/github.com/aquasecurity/trivy < 0.71.1
References
- https://github.com/advisories/GHSA-mcj4-mphf-j9ff
- https://github.com/aquasecurity/trivy/security/advisories/GHSA-mcj4-mphf-j9ff
- https://nvd.nist.gov/vuln/detail/CVE-2026-55092
- https://github.com/aquasecurity/trivy/commit/39e0b132260c60d59fa746c3f6dd10374b0ff6e4
This high severity vulnerability with a CVSS score of 7.5 was published on 2026-08-25 via GitHub. Affected: go/github.com/aquasecurity/trivy < 0.71.1.
vulnfeed aggregates 11950 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.