reposilite

Direct Vulnerabilities

Known vulnerabilities in the reposilite package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
GHSA-7hhh-6rmp-j9qf

<3.6.3-r3
  • L
CVE-2026-89425

<3.6.3-r3
  • L
GHSA-p6pp-m3f8-5c89

<3.6.3-r3
  • L
CVE-2026-89407

<3.6.3-r3
  • L
GHSA-wv8q-qhhj-9h54

<3.6.3-r2
  • L
GHSA-cxp5-3px4-pw24

<3.6.3-r2
  • L
CVE-2026-91777

<3.6.3-r2
  • L
CVE-2026-91776

<3.6.3-r2
  • L
GHSA-gx83-3vf8-gh7j

<3.6.3-r1
  • L
GHSA-q4xh-88c3-wmh7

<3.6.3-r1
  • L
CVE-2026-83557

<3.6.3-r1
  • L
GHSA-wjgm-6hv5-3cvf

<3.6.3-r1
  • L
CVE-2026-19032

<3.6.3-r1
  • L
CVE-2026-68497

<3.6.3-r1
  • L
GHSA-6qm2-mcq7-53qp

<3.5.28-r1
  • L
CVE-2026-18401

<3.5.28-r1
  • L
Cleartext Transmission of Sensitive Information

<3.6.2-r5
  • L
GHSA-xvr9-35cr-46v9

<3.6.2-r5
  • L
Insufficiently Protected Credentials

<3.6.2-r5
  • L
GHSA-g9jj-cgmh-9f38

<3.6.2-r5
  • L
Inappropriate Encoding for Output Context

<3.6.2-r5
  • L
GHSA-qxvw-fvwx-5cp7

<3.6.2-r5
  • H
Information Exposure Through Caching

<3.6.2-r3
  • L
GHSA-8c42-7qj2-3j46

<3.6.2-r3
  • L
GHSA-hjcp-jmpx-g3qm

<3.6.2-r4
  • L
Missing Release of Resource after Effective Lifetime

<3.6.2-r4
  • L
Information Exposure

<3.6.2-r2
  • L
GHSA-f4v5-65jj-pcr2

<3.6.2-r2
  • L
Use of Non-Canonical URL Paths for Authorization Decisions

<3.6.2-r2
  • C
Improper Handling of Alternate Encoding

<3.6.2-r2
  • L
GHSA-w7x5-g22v-xqhr

<3.6.2-r2
  • L
Improper Input Validation

<3.6.2-r2
  • L
GHSA-2fvj-hgj9-j2gr

<3.6.2-r2
  • L
GHSA-7p3p-8qv8-m2vh

<3.6.2-r2
  • L
CVE-2026-54428

<3.6.2-r1
  • L
GHSA-v3jc-474w-2wm6

<3.6.2-r1
  • L
GHSA-hf6x-8p5f-cgmf

<3.6.2-r0
  • L
CVE-2026-54399

<3.6.2-r0
  • L
GHSA-355h-qmc2-wpwf

<3.6.1-r0
  • L
GHSA-wjpw-4j6x-6rwh

<3.6.1-r0
  • C
HTTP Request Smuggling

<3.6.1-r0
  • M
Improper Input Validation

<3.6.1-r0
  • L
GHSA-mvh2-crg5-v77c

<3.5.28-r7
  • L
Resource Exhaustion

<3.5.28-r7
  • L
GHSA-gcjf-9mgh-3p7g

<3.5.28-r7
  • H
Allocation of Resources Without Limits or Throttling

<3.5.28-r7
  • M
HTTP Request Smuggling

<3.5.28-r7
  • L
Resource Exhaustion

<3.5.28-r7
  • L
GHSA-4mp9-239f-g9hg

<3.5.28-r7
  • L
GHSA-jppx-w49h-x2qq

<3.5.28-r7
  • M
CRLF Injection

<3.5.28-r7
  • L
GHSA-q4f6-jm68-57ww

<3.5.28-r7
  • H
HTTP Request Smuggling

<3.5.28-r7
  • L
GHSA-558v-64gr-wgg4

<3.5.28-r7
  • L
GHSA-c69g-56f8-xwqj

<3.5.28-r7
  • L
GHSA-6cqp-g7gg-8hr5

<3.5.28-r7
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<3.5.28-r7
  • H
Resource Exhaustion

<3.5.28-r7
  • L
GHSA-6jqx-86gh-f27w

<3.5.28-r7
  • L
Improper Access Control

<3.5.28-r7
  • L
GHSA-5jmj-h7xm-6q6v

<3.5.28-r6
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<3.5.28-r6
  • L
GHSA-j3rv-43j4-c7qm

<3.5.28-r5
  • L
GHSA-5hh8-q8hv-fr38

<3.5.28-r5
  • L
GHSA-hgj6-7826-r7m5

<3.5.28-r5
  • L
Incorrect Authorization

<3.5.28-r5
  • L
Incomplete Blacklist

<3.5.28-r5
  • L
GHSA-rcqc-6cw3-h962

<3.5.28-r5
  • L
Incomplete Blacklist

<3.5.28-r5
  • L
GHSA-9fxm-vc8v-hj55

<3.5.28-r5
  • L
GHSA-rmj7-2vxq-3g9f

<3.5.28-r5
  • L
Incorrect Authorization

<3.5.28-r5
  • L
Server-Side Request Forgery (SSRF)

<3.5.28-r5
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<3.5.28-r5
  • L
Improper Verification of Cryptographic Signature

<3.5.28-r4
  • L
HTTP Request Smuggling

<3.5.28-r4
  • M
Allocation of Resources Without Limits or Throttling

<3.5.28-r4
  • L
GHSA-563q-j3cm-6jxm

<3.5.28-r4
  • L
GHSA-c2gf-v879-257j

<3.5.28-r4
  • L
GHSA-3qp7-7mw8-wx86

<3.5.28-r4
  • H
Resource Exhaustion

<3.5.28-r4
  • L
Resource Exhaustion

<3.5.28-r4
  • L
GHSA-5x3r-wrvg-rp6q

<3.5.28-r4
  • L
GHSA-hvcg-qmg6-jm4c

<3.5.28-r4
  • L
Allocation of Resources Without Limits or Throttling

<3.5.28-r4
  • L
Improper Access Control

<3.5.28-r4
  • L
GHSA-c653-97m9-rcg9

<3.5.28-r4
  • L
GHSA-x4gw-5cx5-pgmh

<3.5.28-r4
  • C
HTTP Request Smuggling

<3.5.28-r3
  • L
Resource Exhaustion

<3.5.28-r3
  • L
CRLF Injection

<3.5.28-r3
  • L
GHSA-xxqh-mfjm-7mv9

<3.5.28-r3
  • L
GHSA-v8h7-rr48-vmmv

<3.5.28-r3
  • L
GHSA-57rv-r2g8-2cj3

<3.5.28-r3
  • L
Resource Exhaustion

<3.5.28-r3
  • L
GHSA-mj4r-2hfc-f8p6

<3.5.28-r3
  • H
HTTP Request Smuggling

<3.5.28-r3
  • C
HTTP Request Smuggling

<3.5.28-r3
  • L
Integer Overflow or Wraparound

<3.5.28-r3
  • L
GHSA-m4cv-j2px-7723

<3.5.28-r3
  • L
GHSA-38f8-5428-x5cv

<3.5.28-r3
  • L
GHSA-f6hv-jmp6-3vwv

<3.5.28-r3
  • H
Allocation of Resources Without Limits or Throttling

<3.5.28-r2
  • L
GHSA-w9fj-cfpg-grvv

<3.5.28-r2
  • L
HTTP Request Smuggling

<3.5.28-r2
  • L
GHSA-pwqr-wmgm-9rr8

<3.5.28-r2
  • L
GHSA-72hv-8253-57qq

<3.5.28-r1
  • L
GHSA-qh8g-58pp-2wxh

<3.6.1-r0
  • M
CVE-2024-6763

<3.6.1-r0