github.com/goharbor/harbor

govv2.15.0+incompatible

An open source trusted cloud native registry project that stores, signs, and scans content.

License Apache-2.0permissive344 versions458 maintainers0 deps28,355 weekly dl
goharbor/harbor
66
/ 100
Health
update required

github.com/goharbor/[email protected]+incompatible has vulnerabilities — update to latest

Update to >= 0.0.0-20220630175814-b4ef1db to fix known vulnerabilities

  • 1 high severity vulnerabilities
Health breakdown0 – 100
20/25
maintenance
10/20
popularity
16/25
security
15/15
maturity
5/15
community
Vulnerabilities
4
1 high2 medium1 low
Advisories (4)
SeverityIDSummaryFixed in
mediumBIT-harbor-2025-32019Harbor repository description page has Cross-site Scripting vulnerability2.4.0-rc1.0.20250421072404-a13a16383a41
mediumCVE-2025-30086Possible ORM Leak Vulnerability in the Harbor2.4.0-rc1.0.20250331071157-dce7d9f5cffb
highBIT-harbor-2022-31668Harbor fails to validate the user permissions when updating p2p preheat policies0.0.0-20220630175814-b4ef1db
unknownCVE-2026-4404Harbor allows the use of the default password for web UI login in github.com/goharbor/harbor

Health History

Dependency Tree

License Audit

API access

Get this data programmatically — free, no authentication.

curl https://depscope.dev/api/check/go/github.com/goharbor/harbor

Last updated · 2026-03-11T05:50:37Z

github.com/goharbor/harbor — Health Score 66/100 | DepScope