Executive brief
apko affected by unbounded resource consumption in expandapk.Split on attacker-controlled .apk streams in chainguard.dev/apko
Affected products
- Go chainguard.dev/apko
Junglewise Threat Intelligence
CVE-2026-25122 · Severity: low · CVSS 3.1 · Published 2026-02-05
Technologies: chainguard.dev/apko (Go). Vendors: Go.
apko affected by unbounded resource consumption in expandapk.Split on attacker-controlled .apk streams in chainguard.dev/apko