kayenta-fips-2026.0

Direct Vulnerabilities

Known vulnerabilities in the kayenta-fips-2026.0 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Improper Encoding or Escaping of Output

<2026.0.5-r1
  • L
GHSA-hjcp-jmpx-g3qm

<2026.0.5-r1
  • L
GHSA-v3jc-474w-2wm6

<2026.0.5-r1
  • L
GHSA-qv9r-c865-cp47

<2026.0.5-r1
  • L
CVE-2026-54399

<2026.0.5-r1
  • L
GHSA-hf6x-8p5f-cgmf

<2026.0.5-r1
  • L
Missing Release of Resource after Effective Lifetime

<2026.0.5-r1
  • L
CVE-2026-54428

<2026.0.5-r1
  • L
Resource Exhaustion

<2026.0.4-r11
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<2026.0.4-r11
  • L
Not Failing Securely ('Failing Open')

<2026.0.4-r11
  • L
Resource Exhaustion

<2026.0.4-r11
  • H
Resource Exhaustion

<2026.0.4-r11
  • L
GHSA-j92g-9f8w-j867

<2026.0.4-r11
  • L
GHSA-4mp9-239f-g9hg

<2026.0.4-r11
  • H
Allocation of Resources Without Limits or Throttling

<2026.0.4-r11
  • L
GHSA-6jqx-86gh-f27w

<2026.0.4-r11
  • L
GHSA-jppx-w49h-x2qq

<2026.0.4-r11
  • L
GHSA-6cqp-g7gg-8hr5

<2026.0.4-r11
  • L
Improper Access Control

<2026.0.4-r11
  • L
GHSA-mvh2-crg5-v77c

<2026.0.4-r11
  • M
CRLF Injection

<2026.0.4-r11
  • M
HTTP Request Smuggling

<2026.0.4-r11
  • H
HTTP Request Smuggling

<2026.0.4-r11
  • L
GHSA-558v-64gr-wgg4

<2026.0.4-r11
  • L
GHSA-q4f6-jm68-57ww

<2026.0.4-r11
  • L
GHSA-c69g-56f8-xwqj

<2026.0.4-r11
  • L
GHSA-gcjf-9mgh-3p7g

<2026.0.4-r11
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<2026.0.4-r9
  • L
GHSA-5jmj-h7xm-6q6v

<2026.0.4-r9
  • L
GHSA-rmj7-2vxq-3g9f

<2026.0.4-r3
  • L
GHSA-j3rv-43j4-c7qm

<2026.0.4-r3
  • L
Incomplete Blacklist

<2026.0.4-r3
  • L
Resource Exhaustion

<2026.0.4-r3
  • L
GHSA-hgj6-7826-r7m5

<2026.0.4-r3
  • L
Server-Side Request Forgery (SSRF)

<2026.0.4-r3
  • L
Incomplete Blacklist

<2026.0.4-r3
  • L
GHSA-3wrr-7qpf-2prh

<2026.0.4-r3
  • L
GHSA-4773-3jfm-qmx3

<2026.0.2-r7
  • L
CVE-2024-38816

<2026.0.2-r7
  • M
CVE-2024-38820

<2026.0.2-r7
  • L
GHSA-cx7f-g6mp-7hqm

<2026.0.2-r7
  • L
GHSA-6hcq-hmm3-jj3c

<2026.0.2-r7
  • L
CVE-2026-22737

<2026.0.2-r7
  • L
CVE-2024-38819

<2026.0.2-r7
  • L
GHSA-4gc7-5j7h-4qph

<2026.0.2-r7
  • L
GHSA-g5vr-rgqm-vf78

<2026.0.2-r7
  • L
GHSA-72hv-8253-57qq

<2026.0.2-r7
  • L
CVE-2026-22735

<2026.0.2-r7
  • L
GHSA-c2gf-v879-257j

<2026.0.4-r1
  • C
Insufficient Verification of Data Authenticity

<2026.0.4-r1
  • L
Improper Access Control

<2026.0.4-r1
  • L
GHSA-w573-9ffj-6ff9

<2026.0.4-r1
  • L
Allocation of Resources Without Limits or Throttling

<2026.0.4-r1
  • C
Insufficient Verification of Data Authenticity

<2026.0.4-r1
  • L
HTTP Request Smuggling

<2026.0.4-r1
  • L
GHSA-3qp7-7mw8-wx86

<2026.0.4-r1
  • H
Resource Exhaustion

<2026.0.4-r1
  • L
Improper Verification of Cryptographic Signature

<2026.0.4-r1
  • L
GHSA-563q-j3cm-6jxm

<2026.0.4-r1
  • L
GHSA-676x-f7gg-47vc

<2026.0.4-r1
  • L
Information Exposure

<2026.0.4-r1
  • L
GHSA-x4gw-5cx5-pgmh

<2026.0.4-r1
  • L
GHSA-xmv7-r254-6q78

<2026.0.4-r1
  • L
GHSA-5pvg-856g-cp85

<2026.0.4-r1
  • M
Allocation of Resources Without Limits or Throttling

<2026.0.4-r1
  • L
Resource Exhaustion

<2026.0.4-r1
  • L
Use of Insufficiently Random Values

<2026.0.4-r1
  • L
GHSA-c653-97m9-rcg9

<2026.0.4-r1
  • L
GHSA-hvcg-qmg6-jm4c

<2026.0.4-r1
  • L
GHSA-5x3r-wrvg-rp6q

<2026.0.4-r1
  • L
Authentication Bypass

<2026.0.2-r9
  • L
Improper Handling of Case Sensitivity

<2026.0.2-r9
  • L
GHSA-fv25-8xcx-gqjc

<2026.0.2-r9
  • L
Information Exposure

<2026.0.2-r9
  • L
CRLF Injection

<2026.0.2-r9
  • L
Allocation of Resources Without Limits or Throttling

<2026.0.2-r9
  • L
GHSA-5mp6-jrq3-r938

<2026.0.2-r9
  • L
Resource Exhaustion

<2026.0.2-r9
  • L
GHSA-xxqh-mfjm-7mv9

<2026.0.2-r9
  • L
GHSA-9m89-8frq-c98c

<2026.0.2-r9
  • L
GHSA-h6fc-48rj-7qqh

<2026.0.2-r9
  • L
GHSA-v8h7-rr48-vmmv

<2026.0.2-r9
  • L
Information Exposure

<2026.0.2-r9
  • H
HTTP Request Smuggling

<2026.0.2-r9
  • L
GHSA-57rv-r2g8-2cj3

<2026.0.2-r9
  • L
GHSA-45q3-82m4-75jr

<2026.0.2-r9
  • H
HTTP Response Splitting

<2026.0.2-r9
  • L
Resource Exhaustion

<2026.0.2-r9
  • L
GHSA-98qh-xjc8-98pq

<2026.0.2-r9
  • L
GHSA-r29c-68gh-xp6x

<2026.0.2-r9
  • L
Allocation of Resources Without Limits or Throttling

<2026.0.2-r9
  • L
GHSA-38f8-5428-x5cv

<2026.0.2-r9
  • L
GHSA-gx5v-xp9w-j4cg

<2026.0.2-r9
  • L
GHSA-5m62-pw8w-7w9f

<2026.0.2-r9
  • L
Improper Authorization

<2026.0.2-r9
  • L
GHSA-mj4r-2hfc-f8p6

<2026.0.2-r9
  • L
GHSA-f6hv-jmp6-3vwv

<2026.0.2-r9
  • L
GHSA-cm33-6792-r9fm

<2026.0.2-r9
  • C
Improper Input Validation

<2026.0.2-r9
  • L
Integer Overflow or Wraparound

<2026.0.2-r9
  • L
Improper Input Validation

<2026.0.2-r9
  • C
HTTP Request Smuggling

<2026.0.2-r9
  • C
HTTP Request Smuggling

<2026.0.2-r9
  • L
GHSA-m4cv-j2px-7723

<2026.0.2-r9
  • L
Missing Release of Resource after Effective Lifetime

<2026.0.2-r8
  • L
GHSA-rwm7-x88c-3g2p

<2026.0.2-r8
  • L
CVE-2026-5598

<2026.0.2-r8
  • L
GHSA-p93r-85wp-75v3

<2026.0.2-r8
  • L
CVE-2026-0636

<2026.0.2-r8
  • L
GHSA-c3fc-8qff-9hwx

<2026.0.2-r8
  • L
CVE-2024-38809

<2026.0.2-r7
  • L
Improper Input Validation

<2026.0.2-r7
  • L
CVE-2026-34500

<2026.0.2-r7
  • L
CVE-2024-22257

<2026.0.2-r7
  • L
CVE-2024-22262

<2026.0.2-r7
  • L
GHSA-hgjh-9rj2-g67j

<2026.0.2-r7
  • L
GHSA-2wrp-6fg6-hmc5

<2026.0.2-r7
  • L
CVE-2024-22259

<2026.0.2-r7
  • L
GHSA-wg6q-6289-32hp

<2026.0.2-r7
  • L
GHSA-69cc-cv78-qc8g

<2026.0.2-r7
  • L
Open Redirect

<2026.0.2-r7
  • L
GHSA-95jq-rwvf-vjx4

<2026.0.2-r7
  • L
CVE-2026-29129

<2026.0.2-r7
  • L
Information Exposure Through Log Files

<2026.0.2-r7
  • L
GHSA-f3jh-qvm4-mg39

<2026.0.2-r7
  • L
GHSA-rv64-5gf8-9qq8

<2026.0.2-r7
  • L
GHSA-ccgv-vj62-xf9h

<2026.0.2-r7
  • L
Improper Encoding or Escaping of Output

<2026.0.2-r7
  • L
CVE-2026-5588

<2026.0.2-r7
  • L
GHSA-2rmj-mq67-h97g

<2026.0.2-r7
  • L
GHSA-x4m4-345f-5h5g

<2026.0.2-r7
  • L
CVE-2024-22243

<2026.0.2-r7
  • L
GHSA-24j9-x2wg-9qv6

<2026.0.2-r7
  • L
GHSA-9m3c-qcxr-9x87

<2026.0.2-r7
  • L
GHSA-8mc5-53m5-3qj2

<2026.0.2-r7
  • L
CVE-2026-29145

<2026.0.2-r7
  • L
CVE-2026-29146

<2026.0.2-r6
  • L
GHSA-h468-7pvh-8vr8

<2026.0.2-r6
  • H
CVE-2025-70952

<2026.0.2-r6
  • L
GHSA-w9fj-cfpg-grvv

<2026.0.2-r6
  • L
HTTP Request Smuggling

<2026.0.2-r6
  • L
GHSA-5458-7hh9-v7p4

<2026.0.2-r6
  • L
GHSA-pwqr-wmgm-9rr8

<2026.0.2-r6
  • H
Allocation of Resources Without Limits or Throttling

<2026.0.2-r6
  • L
GHSA-mgp5-rv84-w37q

<2026.0.2-r4
  • H
CVE-2026-24734

<2026.0.2-r4
  • L
GHSA-fpj8-gq4v-p354

<2026.0.2-r2
  • L
CVE-2026-24733

<2026.0.2-r2
  • C
Improper Certificate Validation

<2026.0.2-r2
  • L
GHSA-qq5r-98hh-rxc9

<2026.0.2-r2