teleport-18

Direct Vulnerabilities

Known vulnerabilities in the teleport-18 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2026-45022

<18.8.0-r1
  • L
GHSA-389r-gv7p-r3rp

<18.8.0-r1
  • L
Improper Encoding or Escaping of Output

<18.7.6-r1
  • M
Out-of-bounds Write

<18.7.6-r1
  • H
Allocation of Resources Without Limits or Throttling

<18.7.6-r1
  • L
GHSA-3v2c-x6q9-f697

<18.7.6-r1
  • L
CVE-2026-42501

<18.7.6-r1
  • L
GHSA-p9h5-jm8x-mjm5

<18.7.6-r1
  • L
GHSA-qf3q-3h68-mmh2

<18.7.6-r1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<18.7.6-r1
  • M
Link Following

<18.7.6-r1
  • L
GHSA-2283-wf8c-rw8r

<18.7.6-r1
  • L
GHSA-5m4p-2gjx-p2g8

<18.7.6-r1
  • H
Double Free

<18.7.6-r1
  • L
GHSA-497x-jcxf-m478

<18.7.6-r1
  • L
Cross-site Scripting (XSS)

<18.7.6-r1
  • H
NULL Pointer Dereference

<18.7.6-r1
  • L
GHSA-qc64-m6c2-v4x7

<18.7.6-r1
  • L
GHSA-xq5j-9r39-c3vf

<18.7.6-r1
  • L
GHSA-8g2r-hhvj-mv99

<18.7.6-r1
  • L
CVE-2026-42499

<18.7.6-r1
  • C
SQL Injection

<18.7.6-r0
  • H
Insufficiently Protected Credentials

<18.7.2-r11
  • L
GHSA-jqcq-xjh3-6g23

<18.7.6-r0
  • L
GHSA-pjcq-xvwq-hhpj

<18.7.6-r0
  • L
Allocation of Resources Without Limits or Throttling

<18.7.6-r0
  • H
Integer Overflow or Wraparound

<18.7.6-r0
  • L
GHSA-j88v-2chj-qfwx

<18.7.6-r0
  • L
CVE-2026-32286

<18.7.6-r0
  • L
GHSA-mh2q-q3fh-2475

<18.7.6-r0
  • M
Insufficient Verification of Data Authenticity

<18.7.6-r0
  • L
GHSA-pxq6-2prw-chj9

<18.7.6-r0
  • L
GHSA-whqx-f9j3-ch6m

<18.7.6-r0
  • H
Off-by-one Error

<18.7.6-r0
  • L
Asymmetric Resource Consumption (Amplification)

<18.7.6-r0
  • L
GHSA-xmrv-pmrh-hhx2

<18.7.6-r0
  • L
Server-Side Request Forgery (SSRF)

<18.7.6-r0
  • L
GHSA-4qg8-fj49-pxjh

<18.7.6-r0
  • L
GHSA-hr2v-4r36-88hr

<18.7.6-r0
  • M
Directory Traversal

<18.7.6-r0
  • M
Directory Traversal

<18.7.6-r0
  • L
GHSA-4c4x-jm2x-pf9j

<18.7.6-r0
  • L
GHSA-273p-m2cw-6833

<18.7.6-r0
  • L
NULL Pointer Dereference

<18.7.6-r0
  • H
Authentication Bypass

<18.7.6-r0
  • L
GHSA-jqc5-w2xx-5vq4

<18.7.6-r0
  • L
GHSA-x744-4wpc-v9h2

<18.7.6-r0
  • L
GHSA-3xc5-wrhm-f963

<18.7.2-r11
  • L
GHSA-pc3f-x583-g7j2

<18.7.2-r10
  • L
Allocation of Resources Without Limits or Throttling

<18.7.2-r10
  • L
GHSA-w8rr-5gcm-pp58

<18.7.2-r8
  • L
Uncontrolled Memory Allocation

<18.7.2-r8
  • L
GHSA-hfvc-g4fc-pqhx

<18.7.2-r7
  • H
Untrusted Search Path

<18.7.2-r7
  • L
GHSA-846p-jg2w-w324

<18.7.2-r8
  • L
GHSA-fphv-w9fq-2525

<18.7.2-r8
  • H
Improper Verification of Cryptographic Signature

<18.7.2-r8
  • H
Reachable Assertion

<18.7.2-r8
  • L
GHSA-78h2-9frx-2jm8

<18.7.2-r6
  • L
GHSA-jhf3-xxhw-2wpp

<18.7.2-r6
  • L
Uncaught Exception

<18.7.2-r6
  • L
Integer Underflow

<18.7.2-r6
  • L
GHSA-gm2x-2g9h-ccm8

<18.7.2-r6
  • L
Improper Validation of Array Index

<18.7.2-r6
  • L
Improper Validation of Array Index

<18.7.2-r4
  • L
GHSA-x6gf-mpr2-68h6

<18.7.2-r5
  • H
Improper Validation of Array Index

<18.7.2-r5
  • L
Improper Verification of Cryptographic Signature

<18.7.2-r3
  • L
GHSA-hwqm-qvj9-4jr2

<18.7.2-r5
  • L
GHSA-pcgw-qcv5-h8ch

<18.7.2-r5
  • L
GHSA-479m-364c-43vc

<18.7.2-r3
  • L
GHSA-6g7g-w4f8-9c9x

<18.7.2-r4
  • L
GHSA-p77j-4mvh-x3m3

<18.7.2-r2
  • L
Improper Authorization

<18.7.2-r2
  • L
GHSA-p436-gjf2-799p

<18.7.1-r7
  • H
CVE-2025-15558

<18.7.1-r7
  • L
GHSA-9h8m-3fm2-qjrq

<18.7.1-r6
  • L
Untrusted Search Path

<18.7.1-r6
  • L
GHSA-37cx-329c-33x3

<18.6.7-r1
  • M
Improper Validation of Integrity Check Value

<18.6.7-r1
  • L
GHSA-m6hq-p25p-ffr2

<18.3.1-r1
  • H
Incorrect Execution-Assigned Permissions

<18.3.1-r1
  • L
GHSA-pwhc-rpq9-4c8w

<18.3.1-r1
  • M
Memory Leak

<18.3.1-r1
  • L
GHSA-g754-hx8w-x2g6

<18.5.0-r1
  • L
Allocation of Resources Without Limits or Throttling

<18.5.0-r1
  • L
Reachable Assertion

<18.2.10-r0