kayenta-fips-2025.4

Direct Vulnerabilities

Known vulnerabilities in the kayenta-fips-2025.4 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
GHSA-qv9r-c865-cp47

<2025.4.6-r6
  • L
GHSA-c69g-56f8-xwqj

<2025.4.6-r6
  • L
GHSA-q4f6-jm68-57ww

<2025.4.6-r6
  • L
GHSA-mfg7-5gfp-c4w3

<2025.4.6-r6
  • H
HTTP Request Smuggling

<2025.4.6-r6
  • L
GHSA-gcjf-9mgh-3p7g

<2025.4.6-r6
  • L
GHSA-mvh2-crg5-v77c

<2025.4.6-r6
  • L
GHSA-j92g-9f8w-j867

<2025.4.6-r6
  • L
GHSA-93wv-jw9v-4972

<2025.4.6-r6
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<2025.4.6-r6
  • H
Resource Exhaustion

<2025.4.6-r6
  • L
Missing Release of Resource after Effective Lifetime

<2025.4.6-r6
  • M
HTTP Request Smuggling

<2025.4.6-r6
  • L
Resource Exhaustion

<2025.4.6-r6
  • L
Resource Exhaustion

<2025.4.6-r6
  • L
GHSA-4mp9-239f-g9hg

<2025.4.6-r6
  • L
Not Failing Securely ('Failing Open')

<2025.4.6-r6
  • L
GHSA-558v-64gr-wgg4

<2025.4.6-r6
  • L
Improper Encoding or Escaping of Output

<2025.4.6-r6
  • L
Improper Access Control

<2025.4.6-r6
  • M
CRLF Injection

<2025.4.6-r6
  • L
GHSA-jppx-w49h-x2qq

<2025.4.6-r6
  • L
GHSA-6jqx-86gh-f27w

<2025.4.6-r6
  • L
Resource Exhaustion

<2025.4.6-r6
  • H
Allocation of Resources Without Limits or Throttling

<2025.4.6-r6
  • L
GHSA-6cqp-g7gg-8hr5

<2025.4.6-r6
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<2025.4.6-r5
  • L
GHSA-5jmj-h7xm-6q6v

<2025.4.6-r5
  • L
GHSA-3wrr-7qpf-2prh

<2025.4.6-r1
  • L
Server-Side Request Forgery (SSRF)

<2025.4.6-r1
  • L
GHSA-cx7f-g6mp-7hqm

<2025.4.3-r7
  • L
GHSA-4773-3jfm-qmx3

<2025.4.3-r7
  • L
Incomplete Blacklist

<2025.4.6-r1
  • L
CVE-2024-38816

<2025.4.3-r7
  • L
GHSA-g5vr-rgqm-vf78

<2025.4.3-r7
  • L
GHSA-rmj7-2vxq-3g9f

<2025.4.6-r1
  • L
Resource Exhaustion

<2025.4.6-r1
  • L
GHSA-6hcq-hmm3-jj3c

<2025.4.3-r7
  • M
CVE-2024-38820

<2025.4.3-r7
  • L
GHSA-4gc7-5j7h-4qph

<2025.4.3-r7
  • L
GHSA-hgj6-7826-r7m5

<2025.4.6-r1
  • L
GHSA-72hv-8253-57qq

<2025.4.3-r7
  • L
CVE-2026-22735

<2025.4.3-r7
  • L
Incomplete Blacklist

<2025.4.6-r1
  • L
CVE-2026-22737

<2025.4.3-r7
  • L
GHSA-j3rv-43j4-c7qm

<2025.4.6-r1
  • L
CVE-2024-38819

<2025.4.3-r7
  • L
GHSA-xmv7-r254-6q78

<2025.4.3-r10
  • L
GHSA-676x-f7gg-47vc

<2025.4.3-r10
  • H
Resource Exhaustion

<2025.4.3-r10
  • L
Resource Exhaustion

<2025.4.3-r10
  • L
GHSA-3qp7-7mw8-wx86

<2025.4.3-r10
  • C
Insufficient Verification of Data Authenticity

<2025.4.3-r10
  • C
Insufficient Verification of Data Authenticity

<2025.4.3-r10
  • L
GHSA-w573-9ffj-6ff9

<2025.4.3-r10
  • L
GHSA-5x3r-wrvg-rp6q

<2025.4.3-r10
  • L
Improper Access Control

<2025.4.3-r10
  • L
GHSA-5pvg-856g-cp85

<2025.4.3-r10
  • L
Use of Insufficiently Random Values

<2025.4.3-r10
  • L
Information Exposure

<2025.4.3-r10
  • L
GHSA-x4gw-5cx5-pgmh

<2025.4.3-r10
  • L
GHSA-c2gf-v879-257j

<2025.4.3-r10
  • L
Allocation of Resources Without Limits or Throttling

<2025.4.3-r10
  • C
Improper Input Validation

<2025.4.3-r9
  • L
GHSA-m4cv-j2px-7723

<2025.4.3-r9
  • L
Resource Exhaustion

<2025.4.3-r9
  • L
GHSA-h6fc-48rj-7qqh

<2025.4.3-r9
  • L
Allocation of Resources Without Limits or Throttling

<2025.4.3-r9
  • L
Improper Handling of Case Sensitivity

<2025.4.3-r9
  • L
Information Exposure

<2025.4.3-r9
  • L
Authentication Bypass

<2025.4.3-r9
  • L
GHSA-45q3-82m4-75jr

<2025.4.3-r9
  • L
GHSA-f6hv-jmp6-3vwv

<2025.4.3-r9
  • L
Allocation of Resources Without Limits or Throttling

<2025.4.3-r9
  • C
HTTP Request Smuggling

<2025.4.3-r9
  • H
HTTP Request Smuggling

<2025.4.3-r9
  • L
Improper Authorization

<2025.4.3-r9
  • L
GHSA-cm33-6792-r9fm

<2025.4.3-r9
  • L
Integer Overflow or Wraparound

<2025.4.3-r9
  • L
Resource Exhaustion

<2025.4.3-r9
  • C
HTTP Request Smuggling

<2025.4.3-r9
  • L
GHSA-98qh-xjc8-98pq

<2025.4.3-r9
  • L
GHSA-mj4r-2hfc-f8p6

<2025.4.3-r9
  • L
GHSA-fv25-8xcx-gqjc

<2025.4.3-r9
  • L
GHSA-5mp6-jrq3-r938

<2025.4.3-r9
  • L
Information Exposure

<2025.4.3-r9
  • L
Improper Input Validation

<2025.4.3-r9
  • L
GHSA-v8h7-rr48-vmmv

<2025.4.3-r9
  • L
CRLF Injection

<2025.4.3-r9
  • L
GHSA-9m89-8frq-c98c

<2025.4.3-r9
  • L
GHSA-gx5v-xp9w-j4cg

<2025.4.3-r9
  • L
GHSA-5m62-pw8w-7w9f

<2025.4.3-r9
  • L
GHSA-r29c-68gh-xp6x

<2025.4.3-r9
  • L
GHSA-57rv-r2g8-2cj3

<2025.4.3-r9
  • L
GHSA-38f8-5428-x5cv

<2025.4.3-r9
  • L
GHSA-xxqh-mfjm-7mv9

<2025.4.3-r9
  • H
HTTP Response Splitting

<2025.4.3-r9
  • L
GHSA-rwm7-x88c-3g2p

<2025.4.3-r8
  • L
Missing Release of Resource after Effective Lifetime

<2025.4.3-r8
  • L
GHSA-c3fc-8qff-9hwx

<2025.4.3-r8
  • L
CVE-2026-0636

<2025.4.3-r8
  • L
GHSA-p93r-85wp-75v3

<2025.4.3-r8
  • L
CVE-2026-5598

<2025.4.3-r8
  • L
CVE-2024-22259

<2025.4.3-r7
  • L
GHSA-2wrp-6fg6-hmc5

<2025.4.3-r7
  • L
GHSA-x4m4-345f-5h5g

<2025.4.3-r7
  • L
GHSA-2rmj-mq67-h97g

<2025.4.3-r7
  • L
CVE-2024-22262

<2025.4.3-r7
  • L
GHSA-hgjh-9rj2-g67j

<2025.4.3-r7
  • L
CVE-2024-38809

<2025.4.3-r7
  • L
Open Redirect

<2025.4.3-r7
  • L
Improper Input Validation

<2025.4.3-r7
  • L
GHSA-9m3c-qcxr-9x87

<2025.4.3-r7
  • L
GHSA-24j9-x2wg-9qv6

<2025.4.3-r7
  • L
GHSA-rv64-5gf8-9qq8

<2025.4.3-r7
  • L
Improper Encoding or Escaping of Output

<2025.4.3-r7
  • L
CVE-2024-22243

<2025.4.3-r7
  • L
GHSA-69cc-cv78-qc8g

<2025.4.3-r7
  • L
CVE-2024-22257

<2025.4.3-r7
  • L
GHSA-wg6q-6289-32hp

<2025.4.3-r7
  • L
CVE-2026-34500

<2025.4.3-r7
  • L
Information Exposure Through Log Files

<2025.4.3-r7
  • L
CVE-2026-29145

<2025.4.3-r7
  • L
GHSA-8mc5-53m5-3qj2

<2025.4.3-r7
  • L
GHSA-f3jh-qvm4-mg39

<2025.4.3-r7
  • L
CVE-2026-29129

<2025.4.3-r7
  • L
GHSA-ccgv-vj62-xf9h

<2025.4.3-r7
  • L
CVE-2026-5588

<2025.4.3-r7
  • L
GHSA-95jq-rwvf-vjx4

<2025.4.3-r7
  • L
GHSA-h468-7pvh-8vr8

<2025.4.3-r6
  • L
CVE-2026-29146

<2025.4.3-r6
  • L
GHSA-pwqr-wmgm-9rr8

<2025.4.3-r6
  • H
Allocation of Resources Without Limits or Throttling

<2025.4.3-r6
  • L
GHSA-5458-7hh9-v7p4

<2025.4.3-r6
  • L
HTTP Request Smuggling

<2025.4.3-r6
  • H
CVE-2025-70952

<2025.4.3-r6
  • L
GHSA-w9fj-cfpg-grvv

<2025.4.3-r6
  • H
CVE-2026-24734

<2025.4.3-r4
  • L
GHSA-mgp5-rv84-w37q

<2025.4.3-r4
  • L
GHSA-qq5r-98hh-rxc9

<2025.4.3-r2
  • L
GHSA-fpj8-gq4v-p354

<2025.4.3-r2
  • L
CVE-2026-24733

<2025.4.3-r2
  • C
Improper Certificate Validation

<2025.4.3-r2