Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-33634

92
FAUCET Score

CVE-2026-33634 details a critical supply chain attack against Trivy, a security scanner, where compromised credentials were used to publish a malicious v0.69.4 release and inject credential-stealing malware into specific versions of its GitHub Actions (`aquasecurity/trivy-action` and `aquasecurity/setup-trivy`). This vulnerability is rated 8.8 HIGH (CVSSv3.1) due to its network attack vector and high impact on confidentiality, integrity, and availability, potentially leading to widespread secret exfiltration from affected pipelines. The incident, a continuation of an earlier attack likely enabled by non-atomic credential rotation, is actively being exploited and has been added to CISA's Known Exploited Vulnerabilities catalog. Despite no public exploit code, it garners significant community attention and media coverage. Organizations must treat all secrets accessible to affected pipelines as compromised and rotate them immediately.

Impacted Technologies

VendorProductVersion(s)CPE
< 0.2.6CPE matchmatch criteria
cpe:2.3:a:aquasec:setup-trivy:*:*:*:*:*:*:*:*
0.69.4CPE matchmatch criteria
cpe:2.3:a:aquasec:trivy:0.69.4:*:*:*:*:go:*:*
< 0.35.0CPE matchmatch criteria
cpe:2.3:a:aquasec:trivy_action:*:*:*:*:*:*:*:*
1.82.7CPE matchmatch criteria
cpe:2.3:a:litellm:litellm:1.82.7:*:*:*:*:*:*:*
1.82.8CPE matchmatch criteria
cpe:2.3:a:litellm:litellm:1.82.8:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 4.0

9.4CRITICAL

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
LOW
User Interaction
NONE
VS Confidentiality
HIGH
VS Integrity
HIGH
VS Availability
HIGH
SS Confidentiality
HIGH
SS Integrity
HIGH
SS Availability
HIGH
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
59.16%
Probability of exploitation in next 30 days
EPSS Percentile
99.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
Added to KEV · Mar 26, 2026
This CVE's current EPSS score of 0.5916 is in the 99th percentile among its peer group of 17,829 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (3)

actionspatch availablevia ghsa
Product: aquasecurity/trivy-actionFixed in: 0.35.0
actionspatch availablevia ghsa
Product: aquasecurity/setup-trivyFixed in: 0.2.6
github_advisoryworkaround availablevia nvd_reference
View patch

Vendor Advisories (1)

goGHSA-69fq-xp46-6x23critical

Trivy ecosystem supply chain was briefly compromised

Mar 24, 2026

References

github.com / BerriAI/litellm/issues/24518
Issue TrackingMitigationThird Party Advisory
rosesecurity.dev / 2026/03/20/typosquatting-trivy.html
ExploitThird Party Advisory
cisa.gov / known-exploited-vulnerabilities-catalog
US Government Resource
microsoft.com / en-us/security/blog/2026/03/24/detecting-investigating-defending-against-trivy-supply-chain-compromise
Technical Description
docs.litellm.ai / blog/security-update-march-2026
Third Party Advisory
futuresearch.ai / blog/litellm-pypi-supply-chain-attack
Third Party Advisory
github.com / aquasecurity/trivy/discussions/10425
Issue TrackingVendor Advisory
github.com / aquasecurity/trivy/security/advisories/GHSA-69fq-xp46-6x23
ExploitMitigationVendor Advisory
github.com / BerriAI/litellm/issues/24518
Issue TrackingMitigationThird Party Advisory
github.com / pypa/advisory-database/tree/main/vulns/litellm/PYSEC-2026-2.yaml
Third Party Advisory
github.com / team-telnyx/telnyx-python/security/advisories/GHSA-955r-262c-33jc
Third Party Advisory
inspector.pypi.io / project/litellm/1.82.7/packages/79/5f/b6998d42c6ccd32d36e12661f2734602e72a576d52a51f4245aef0b20b4d/litellm-1.82.7-py3-none-any.whl/litellm/proxy/proxy_server.py
Broken Link
inspector.pypi.io / project/litellm/1.82.8/packages/f6/2c/731b614e6cee0bca1e010a36fd381fba69ee836fe3cb6753ba23ef2b9601/litellm-1.82.8.tar.gz/litellm-1.82.8/litellm_init.pth
Broken Link
wiz.io / blog/teampcp-attack-kics-github-action
Not Applicable