gitweb vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the gitweb package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Directory Traversal

<0:2.38.4-1.81.amzn1
  • H
Symlink Following

<0:2.38.4-1.81.amzn1
  • H
Improper Process Control

<0:2.38.4-1.81.amzn1
  • H
UNIX Hard Link

<0:2.38.4-1.81.amzn1
  • H
Directory Traversal

<0:2.38.4-1.81.amzn1
  • M
Resource Leak

<0:2.38.4-1.80.amzn1
  • M
Directory Traversal

<0:2.38.4-1.80.amzn1
  • H
Integer Overflow or Wraparound

<0:2.38.3-1.78.amzn1
  • H
Integer Overflow or Wraparound

<0:2.38.3-1.78.amzn1
  • M
Improper Input Validation

<0:2.13.6-1.55.amzn1
  • H
Out-of-bounds Write

<0:2.38.1-1.77.amzn1
  • H
Link Following

<0:2.38.1-1.77.amzn1
  • M
Improper Ownership Management

<0:2.37.1-1.76.amzn1
  • M
Uncontrolled Search Path Element

<0:2.36.1-1.75.amzn1
  • M
Link Following

<0:2.18.5-2.73.amzn1
  • H
Insufficiently Protected Credentials

<0:2.18.4-2.71.amzn1
  • H
Insufficiently Protected Credentials

<0:2.18.4-2.71.amzn1
  • H
Insufficiently Protected Credentials

<0:2.14.6-1.62.amzn1
  • H
CVE-2019-1387

<0:2.14.6-1.61.amzn1
  • H
Use of Incorrectly-Resolved Name or Reference

<0:2.14.6-1.61.amzn1
  • H
Improper Input Validation

<0:2.14.6-1.61.amzn1
  • H
Improper Input Validation

<0:2.14.6-1.61.amzn1
  • H
Improper Input Validation

<0:2.14.6-1.61.amzn1
  • H
CVE-2019-1353

<0:2.14.6-1.61.amzn1
  • H
CVE-2019-1348

<0:2.14.6-1.61.amzn1
  • H
Improper Input Validation

<0:2.14.6-1.61.amzn1
  • H
Untrusted Search Path

<0:2.14.5-1.60.amzn1
  • H
Arbitrary Argument Injection

<0:2.14.5-1.59.amzn1
  • H
Directory Traversal

<0:2.14.4-2.58.amzn1
  • H
Out-of-bounds Read

<0:2.14.4-2.58.amzn1
  • L
Resource Exhaustion

<0:2.13.6-2.56.amzn1
  • M
CVE-2017-NONE

<0:2.13.6-1.55.amzn1
  • H
Open Redirect

<0:2.13.5-1.53.amzn1
  • M
CVE-2017-8386

<0:2.7.5-1.49.amzn1
  • H
Out-of-Bounds

<0:2.7.4-1.47.amzn1
  • H
Out-of-Bounds

<0:2.7.4-1.47.amzn1
  • M
Improper Input Validation

<0:2.4.3-7.42.amzn1