kots vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the kots package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2024-45337

<1.122.0-r0
  • L
GHSA-v778-237x-gjrc

<1.122.0-r0
  • H
Authentication Bypass

<1.117.2-r1
  • L
GHSA-c77r-fh37-x2px

<1.117.2-r1
  • L
CVE-2024-34155

<1.116.0-r0
  • L
GHSA-8xfx-rj4p-23jm

<1.116.0-r0
  • L
CVE-2024-34156

<1.116.0-r0
  • L
CVE-2024-34158

<1.116.0-r0
  • L
GHSA-j7vj-rw65-4v26

<1.116.0-r0
  • L
GHSA-crqm-pwhx-j97f

<1.116.0-r0
  • L
GHSA-v23v-6jw2-98fq

<1.112.2-r1
  • L
CVE-2024-41110

<1.112.2-r1
  • L
GHSA-xr7q-jx4m-x55m

<1.111.0-r1
  • L
CVE-2024-24791

<1.110.0-r1
  • L
GHSA-hw49-2p59-3mhj

<1.110.0-r1
  • L
GHSA-xfhp-jf8p-mh5w

<1.109.14-r1
  • L
CVE-2024-6257

<1.109.14-r1
  • C
CVE-2024-24790

<1.109.9-r1
  • M
CVE-2024-24789

<1.109.9-r1
  • L
GHSA-49gw-vxvf-fc2g

<1.109.9-r1
  • L
GHSA-236w-p7wf-5ph8

<1.109.9-r1
  • H
Origin Validation Error

<1.108.2-r0
  • L
GHSA-xw73-rw38-6vjc

<1.108.2-r0
  • L
CVE-2024-27289

<1.108.1-r0
  • L
GHSA-m7wr-2xf7-cm9p

<1.108.1-r0
  • L
GHSA-mrww-27vc-gghv

<1.108.1-r0
  • L
CVE-2024-27304

<1.108.1-r0
  • L
CVE-2024-24786

<1.108.1-r0
  • L
GHSA-8r3f-844c-mc37

<1.108.1-r0
  • L
GHSA-7jwh-3vrq-q3m8

<1.108.1-r0
  • L
CVE-2024-28180

<1.108.0-r2
  • L
GHSA-c5q2-7r4c-mv6g

<1.108.0-r2
  • L
CVE-2024-26147

<1.107.7-r0
  • L
GHSA-r53h-jv2g-vpx6

<1.107.7-r0
  • L
GHSA-v53g-5gjp-272r

<1.107.4-r0
  • L
Directory Traversal

<1.107.4-r0
  • H
Exposure of Resource to Wrong Sphere

<1.107.0-r1
  • L
GHSA-xr7r-f8xq-vfvv

<1.107.0-r1
  • H
CVE-2023-49568

<1.104.7-r2
  • L
GHSA-mw99-9chc-xw7r

<1.104.7-r2
  • L
GHSA-7ww5-4wqc-m92c

<1.104.7-r1
  • L
GHSA-45x7-px36-x8w8

<1.104.7-r1
  • M
Improper Validation of Integrity Check Value

<1.104.7-r1
  • L
GHSA-4374-p667-p6c8

<1.103.2-r2
  • L
GHSA-m425-mq94-257g

<1.103.3-r1
  • L
GHSA-2wrh-6pvc-2jm9

<1.103.2-r2
  • L
GHSA-qppj-fm5r-hxr3

<1.103.3-r1
  • L
GHSA-2c7c-3mj9-8fqh

<1.104.2-r1
  • H
Allocation of Resources Without Limits or Throttling

<1.103.2-r2
  • H
CVE-2023-44487

<1.103.3-r1
  • C
Improper Handling of Syntactically Invalid Structure

<1.98.2-r2
  • C
Improper Verification of Cryptographic Signature

<1.98.3-r1
  • M
Cross-site Scripting (XSS)

<1.103.2-r2
  • M
Missing Authorization

<1.98.3-r1