apache-hop-fips

Direct Vulnerabilities

Known vulnerabilities in the apache-hop-fips package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Improper Input Validation

<2.18.1-r8
  • L
GHSA-w7x5-g22v-xqhr

<2.18.1-r8
  • L
GHSA-f4v5-65jj-pcr2

<2.18.1-r8
  • C
Improper Handling of Alternate Encoding

<2.18.1-r8
  • L
GHSA-2fvj-hgj9-j2gr

<2.18.1-r8
  • L
Information Exposure

<2.18.1-r8
  • L
Use of Non-Canonical URL Paths for Authorization Decisions

<2.18.1-r8
  • L
GHSA-7p3p-8qv8-m2vh

<2.18.1-r8
  • L
GHSA-4mp9-239f-g9hg

<2.18.1-r6
  • M
CRLF Injection

<2.18.1-r6
  • L
GHSA-jppx-w49h-x2qq

<2.18.1-r6
  • L
GHSA-wh89-7897-x99h

<2.18.1-r6
  • L
Resource Exhaustion

<2.18.1-r6
  • L
CRLF Injection

<2.18.1-r6
  • L
GHSA-558v-64gr-wgg4

<2.18.1-r6
  • L
GHSA-mfg7-5gfp-c4w3

<2.18.1-r6
  • L
GHSA-6cqp-g7gg-8hr5

<2.18.1-r6
  • L
GHSA-q6cq-mhr2-jmr5

<2.18.1-r6
  • M
HTTP Request Smuggling

<2.18.1-r6
  • L
GHSA-hpcc-26xq-25fv

<2.18.1-r6
  • L
GHSA-c69g-56f8-xwqj

<2.18.1-r6
  • L
GHSA-4qhr-g3c6-fcfx

<2.18.1-r6
  • L
GHSA-v74w-7mr3-4qg3

<2.18.1-r6
  • L
Resource Exhaustion

<2.18.1-r6
  • L
Improper Access Control

<2.18.1-r6
  • H
Allocation of Resources Without Limits or Throttling

<2.18.1-r6
  • H
HTTP Request Smuggling

<2.18.1-r6
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<2.18.1-r6
  • H
Resource Exhaustion

<2.18.1-r6
  • L
Resource Exhaustion

<2.18.1-r6
  • C
XML External Entity (XXE) Injection

<2.18.1-r6
  • L
GHSA-gcjf-9mgh-3p7g

<2.18.1-r6
  • L
GHSA-q4f6-jm68-57ww

<2.18.1-r6
  • L
GHSA-mvh2-crg5-v77c

<2.18.1-r6
  • L
GHSA-6jqx-86gh-f27w

<2.18.1-r6
  • H
Resource Exhaustion

<2.18.1-r6
  • L
GHSA-g7hg-vrcf-mvmr

<2.18.1-r5
  • L
Time-of-check Time-of-use (TOCTOU)

<2.18.1-r5
  • C
Improper Certificate Validation

<2.18.1-r5
  • L
GHSA-wc96-39fc-566f

<2.18.1-r5
  • L
GHSA-272m-gcwp-mpwg

<2.18.1-r5
  • L
Improper Check for Certificate Revocation

<2.18.1-r5
  • L
Resource Exhaustion

<2.18.1-r1
  • L
Resource Exhaustion

<2.18.1-r1
  • L
GHSA-vhch-2wf3-m8rp

<2.18.1-r4
  • L
Resource Exhaustion

<2.18.1-r4
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<2.18.1-r2
  • L
Incomplete Blacklist

<2.18.1-r2
  • L
GHSA-5jmj-h7xm-6q6v

<2.18.1-r3
  • L
GHSA-9fxm-vc8v-hj55

<2.18.1-r2
  • L
Incorrect Authorization

<2.18.1-r2
  • L
Incomplete Blacklist

<2.18.1-r2
  • L
GHSA-hgj6-7826-r7m5

<2.18.1-r2
  • L
Incorrect Authorization

<2.18.1-r2
  • L
GHSA-5hh8-q8hv-fr38

<2.18.1-r2
  • L
GHSA-j3rv-43j4-c7qm

<2.18.1-r2
  • L
Server-Side Request Forgery (SSRF)

<2.18.1-r2
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<2.18.1-r3
  • L
GHSA-rmj7-2vxq-3g9f

<2.18.1-r2
  • L
GHSA-rcqc-6cw3-h962

<2.18.1-r2
  • L
GHSA-47qp-hqvx-6r3f

<2.18.1-r1
  • L
GHSA-2r2c-cx56-8933

<2.18.1-r1
  • L
Resource Exhaustion

<2.18.0-r4
  • L
Resource Exhaustion

<2.18.0-r4
  • L
GHSA-c2gf-v879-257j

<2.18.0-r4
  • L
Improper Verification of Source of a Communication Channel

<2.18.0-r4
  • L
GHSA-5xrh-qmmq-w6ch

<2.18.0-r4
  • L
GHSA-xmv7-r254-6q78

<2.18.0-r4
  • L
Use of Insufficiently Random Values

<2.18.0-r4
  • H
Memory Leak

<2.18.0-r4
  • L
Improper Check or Handling of Exceptional Conditions

<2.18.0-r4
  • L
Improper Access Control

<2.18.0-r4
  • L
GHSA-h2qv-fj59-j46j

<2.18.0-r4
  • L
Allocation of Resources Without Limits or Throttling

<2.18.0-r4
  • H
Resource Exhaustion

<2.18.0-r4
  • L
GHSA-676x-f7gg-47vc

<2.18.0-r4
  • L
GHSA-cc37-9q2j-3hfv

<2.18.0-r4
  • L
GHSA-3qp7-7mw8-wx86

<2.18.0-r4
  • C
Insufficient Verification of Data Authenticity

<2.18.0-r4
  • L
Allocation of Resources Without Limits or Throttling

<2.18.0-r4
  • L
GHSA-cmm3-54f8-px4j

<2.18.0-r4
  • L
GHSA-x4gw-5cx5-pgmh

<2.18.0-r4
  • L
GHSA-c2rx-5r8w-8xr2

<2.18.0-r4
  • L
GHSA-5pvg-856g-cp85

<2.18.0-r4
  • L
GHSA-5x3r-wrvg-rp6q

<2.18.0-r4
  • C
Insufficient Verification of Data Authenticity

<2.18.0-r4
  • L
GHSA-w573-9ffj-6ff9

<2.18.0-r4
  • L
Information Exposure

<2.18.0-r4
  • L
Resource Exhaustion

<2.18.0-r2
  • L
GHSA-3244-j874-rhc2

<2.18.0-r2
  • L
Resource Exhaustion

<2.18.0-r2
  • L
GHSA-6ghj-frrj-jjj3

<2.18.0-r2
  • C
HTTP Request Smuggling

<2.18.0-r0
  • L
GHSA-355h-qmc2-wpwf

<2.18.0-r0
  • L
Uncontrolled Recursion

<2.17.0-r16
  • L
GHSA-337m-mw94-2v6g

<2.17.0-r16
  • L
GHSA-jfg9-48mv-9qgx

<2.17.0-r15
  • L
Missing Release of Resource after Effective Lifetime

<2.17.0-r15
  • L
GHSA-rwm7-x88c-3g2p

<2.17.0-r15
  • H
HTTP Response Splitting

<2.17.0-r15
  • H
Resource Exhaustion

<2.17.0-r15
  • L
GHSA-rgrr-p7gp-5xj7

<2.17.0-r15
  • H
CRLF Injection

<2.17.0-r15
  • L
GHSA-45q3-82m4-75jr

<2.17.0-r15
  • L
Resource Exhaustion

<2.17.0-r14
  • L
GHSA-mj4r-2hfc-f8p6

<2.17.0-r14
  • C
Improper Input Validation

<2.17.0-r13
  • L
GHSA-cm33-6792-r9fm

<2.17.0-r13
  • L
Allocation of Resources Without Limits or Throttling

<2.17.0-r12
  • L
GHSA-98qh-xjc8-98pq

<2.17.0-r12
  • L
Allocation of Resources Without Limits or Throttling

<2.17.0-r11
  • L
GHSA-2c5c-chwr-9hqw

<2.17.0-r11
  • L
Deserialization of Untrusted Data

<2.17.0-r10
  • L
GHSA-8297-v2rf-2p32

<2.17.0-r10
  • L
GHSA-995c-6rp3-4m4x

<2.17.0-r10
  • L
GHSA-vf5j-865m-mq7c

<2.17.0-r10
  • L
Deserialization of Untrusted Data

<2.17.0-r10
  • L
Deserialization of Untrusted Data

<2.17.0-r10
  • L
Deserialization of Untrusted Data

<2.17.0-r10
  • L
GHSA-f2wh-grmh-r6jm

<2.17.0-r10
  • L
GHSA-659w-93r5-9j6m

<2.17.0-r9
  • L
GHSA-4v8g-86x5-3vrc

<2.17.0-r9
  • L
Uncontrolled Memory Allocation

<2.17.0-r9
  • L
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')

<2.17.0-r9
  • L
XML External Entity (XXE) Injection

<2.17.0-r9
  • L
GHSA-cx4m-2p55-rw7j

<2.17.0-r9
  • H
Improper Encoding or Escaping of Output

<2.17.0-r8
  • L
GHSA-3pxv-7cmr-fjr4

<2.17.0-r8
  • L
GHSA-j288-q9x7-2f5v

<2.17.0-r7
  • L
Uncontrolled Recursion

<2.17.0-r7
  • L
GHSA-72hv-8253-57qq

<2.17.0-r7
  • H
Allocation of Resources Without Limits or Throttling

<2.17.0-r6
  • L
GHSA-w9fj-cfpg-grvv

<2.17.0-r6
  • L
GHSA-cmp6-m4wj-q63q

<2.17.0-r5
  • L
Information Exposure

<2.17.0-r5
  • L
GHSA-vqf4-7m7x-wgfc

<2.17.0-r5
  • L
CVE-2025-12183

<2.17.0-r5
  • L
GHSA-xxh7-fcf3-rj7f

<2.17.0-r3
  • M
Improper Input Validation

<2.17.0-r3
  • L
Resource Exhaustion

<2.17.0-r3
  • L
GHSA-wjpw-4j6x-6rwh

<2.17.0-r3
  • L
Arbitrary Code Injection

<2.17.0-r0
  • L
GHSA-rp46-r563-jrc7

<2.17.0-r0
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<2.16.0-r0
  • L
GHSA-3p8m-j85q-pgmj

<2.16.0-r0
  • M
Improper Certificate Validation

<2.16.0-r2
  • L
GHSA-vc5p-v9hr-52mj

<2.16.0-r2
  • L
CRLF Injection

<2.16.0-r1
  • L
GHSA-84h7-rjj3-6jx4

<2.16.0-r1
  • H
Race Condition

<2.15.0-r16
  • L
GHSA-7p63-w6x9-6gr7

<2.15.0-r16
  • H
Improper Input Validation

<2.15.0-r16
  • L
CRLF Injection

<2.15.0-r15
  • L
CVE-2025-41249

<2.15.0-r14
  • H
HTTP Request Smuggling

<2.15.0-r11
  • L
CVE-2023-36479

<2.15.0-r2
  • H
CVE-2024-9823

<2.15.0-r2
  • H
Allocation of Resources Without Limits or Throttling

<2.15.0-r1