authentik-2026.5

Direct Vulnerabilities

Known vulnerabilities in the authentik-2026.5 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
GHSA-68fv-2mgg-jv7q

<2026.5.7-r9
  • L
Memory Leak

<2026.5.7-r8
  • L
GHSA-hj66-6f7g-4r5v

<2026.5.7-r8
  • L
Inefficient Regular Expression Complexity

<2026.5.7-r8
  • L
GHSA-54p9-h82j-f925

<2026.5.7-r8
  • L
Resource Exhaustion

<2026.5.7-r8
  • L
GHSA-mhvh-fq92-pfmr

<2026.5.7-r8
  • L
GHSA-xpv3-w29h-x7cv

<2026.5.7-r8
  • L
Resource Exhaustion

<2026.5.7-r8
  • H
Improper Validation of Specified Quantity in Input

<2026.5.7-r9
  • L
CVE-2026-49265

<2026.5.7-r8
  • L
CVE-2026-49264

<2026.5.7-r8
  • L
GHSA-q2hr-2g5m-vwhr

<2026.5.7-r8
  • L
GHSA-qhr7-859c-m2p7

<2026.5.7-r8
  • L
CVE-2026-15830

<2026.5.7-r7
  • L
GHSA-wvqv-fj8w-qmhm

<2026.5.7-r7
  • L
GHSA-q238-5cxm-5c9h

<2026.5.7-r7
  • L
CVE-2026-15307

<2026.5.7-r7
  • L
GHSA-6j4f-fj2g-mc7p

<2026.5.7-r8
  • L
Resource Exhaustion

<2026.5.7-r8
  • L
GHSA-w2cx-738m-mc7w

<2026.5.7-r4
  • L
GHSA-9v7f-9g4p-ffgj

<2026.5.7-r4
  • L
GHSA-2gx3-rcp4-g85q

<2026.5.7-r4
  • L
Information Exposure

<2026.5.7-r4
  • L
GHSA-8wjv-2p76-3863

<2026.5.7-r4
  • L
Improper Verification of Cryptographic Signature

<2026.5.7-r4
  • L
Uncontrolled Recursion

<2026.5.7-r4
  • L
Improper Verification of Cryptographic Signature

<2026.5.7-r4
  • H
Improper Handling of Exceptional Conditions

<2026.5.7-r4
  • L
Improper Verification of Cryptographic Signature

<2026.5.7-r4
  • L
Improper Verification of Cryptographic Signature

<2026.5.7-r4
  • L
GHSA-r6x4-923q-g947

<2026.5.7-r4
  • L
Improper Verification of Cryptographic Signature

<2026.5.7-r4
  • L
GHSA-9j54-fg26-wv3r

<2026.5.7-r4
  • L
GHSA-hxm8-2xgr-2p9m

<2026.5.7-r4
  • M
Incorrect Behavior Order: Validate Before Canonicalize

<2026.5.7-r4
  • L
GHSA-ffc3-869f-jxw9

<2026.5.7-r4
  • L
GHSA-p4g4-x82p-q773

<2026.5.7-r4
  • L
Allocation of Resources Without Limits or Throttling

<2026.5.7-r4
  • L
GHSA-w6j9-cwv2-h6wq

<2026.5.7-r4
  • L
GHSA-8wmf-6v46-5gfg

<2026.5.7-r3
  • L
Information Exposure

<2026.5.7-r3
  • L
GHSA-5p39-cfhj-2xmp

<2026.5.7-r2
  • L
Allocation of Resources Without Limits or Throttling

<2026.5.7-r2
  • L
Improper Certificate Validation

<2026.5.7-r2
  • L
GHSA-82r6-8w77-94w6

<2026.5.7-r2
  • L
GHSA-2883-xcg3-v3hh

<2026.5.7-r1
  • L
Resource Exhaustion

<2026.5.7-r1
  • L
GHSA-p498-v437-472g

<2026.5.6-r18
  • L
GHSA-2m8g-3cmr-wg3w

<2026.5.6-r17
  • L
GHSA-g47c-3xmw-q6m2

<2026.5.6-r17
  • L
Information Exposure

<2026.5.6-r17
  • L
Resource Exhaustion

<2026.5.6-r17
  • L
Uncaught Exception

<2026.5.6-r16
  • L
GHSA-c83g-rgw3-j3cx

<2026.5.6-r16
  • L
GHSA-73wf-gq98-2v4g

<2026.5.6-r16
  • L
Allocation of Resources Without Limits or Throttling

<2026.5.6-r16
  • L
Uncontrolled Recursion

<2026.5.6-r15
  • L
GHSA-ggr8-5vv4-36mx

<2026.5.6-r15
  • L
GHSA-r374-rxx8-8654

<2026.5.6-r13
  • L
Use of a Broken or Risky Cryptographic Algorithm

<2026.5.6-r13
  • L
GHSA-3496-9g83-7v6x

<2026.5.6-r9
  • L
Resource Exhaustion

<2026.5.6-r9
  • L
Arbitrary Code Injection

<2026.5.6-r9
  • L
GHSA-prg7-hcfm-mfcr

<2026.5.6-r9
  • L
GHSA-pwgv-4x5q-6m9f

<2026.5.6-r9
  • L
Algorithmic Complexity

<2026.5.6-r9
  • L
GHSA-f2ff-p2ww-7p4p

<2026.5.6-r9
  • L
Inefficient Regular Expression Complexity

<2026.5.6-r9
  • L
Information Exposure

<2026.5.6-r8
  • L
GHSA-g6cj-pr64-35w5

<2026.5.6-r8
  • L
GHSA-6hr6-w5qg-qmwg

<2026.5.6-r8
  • L
HTTP Request Smuggling

<2026.5.6-r8
  • L
Directory Traversal

<2026.5.6-r4
  • L
CVE-2026-48588

<2026.5.6-r6
  • L
GHSA-3h9f-r86x-qvjx

<2026.5.6-r6
  • L
GHSA-crhf-3pfg-w68w

<2026.5.6-r6
  • L
GHSA-8qcx-xf44-272x

<2026.5.6-r6
  • L
CVE-2026-53877

<2026.5.6-r6
  • L
CVE-2026-53878

<2026.5.6-r6
  • L
GHSA-5p4m-2wfm-xmqj

<2026.5.6-r5
  • L
GHSA-jpjm-c3r5-q96r

<2026.5.6-r4
  • M
Directory Traversal

<2026.5.6-r3
  • L
GHSA-3jxr-9vmj-r5cp

<2026.5.6-r4
  • L
GHSA-fxqj-rqcc-2cmp

<2026.5.6-r3
  • L
GHSA-v56q-mh7h-f735

<2026.5.6-r4
  • L
GHSA-h35f-9h28-mq5c

<2026.5.6-r4
  • L
GHSA-52cp-r559-cp3m

<2026.5.6-r4
  • C
Directory Traversal

<2026.5.6-r4
  • L
Integer Overflow or Wraparound

<2026.5.6-r4
  • L
CVE-2026-56852

<2026.5.6-r4
  • L
Algorithmic Complexity

<2026.5.6-r4
  • L
CVE-2026-14257

<2026.5.6-r4
  • L
GHSA-rgw5-rvv9-x895

<2026.5.6-r3
  • L
GHSA-r28c-9q8g-f849

<2026.5.6-r4
  • L
Resource Exhaustion

<2026.5.6-r3
  • L
Algorithmic Complexity

<2026.5.6-r4
  • L
CVE-2026-59890

<2026.5.6-r4
  • L
GHSA-6g55-p6wh-862q

<2026.5.6-r4
  • L
CVE-2026-13149

<2026.5.6-r4
  • L
GHSA-mh99-v99m-4gvg

<2026.5.6-r4
  • L
GHSA-xvcm-6775-5m9r

<2026.5.6-r4
  • L
GHSA-j5g9-f88f-gfj3

<2026.5.6-r2
  • L
Improper Handling of Highly Compressed Data (Data Amplification)

<2026.5.6-r2
  • L
Resource Exhaustion

<2026.5.6-r1
  • L
GHSA-hm4w-wwcw-mr6r

<2026.5.6-r1
  • L
Resource Exhaustion

<2026.5.6-r1
  • L
GHSA-8ppf-4f7h-5ppj

<2026.5.6-r1
  • L
Directory Traversal

<2026.5.4-r1
  • L
GHSA-4x5r-pxfx-6jf8

<2026.5.4-r1
  • L
CVE-2026-7666

<2026.5.4-r1
  • L
GHSA-mm6v-q8q9-pgcf

<2026.5.4-r1
  • L
GHSA-qx2v-qp2m-jg93

<2026.5.4-r1
  • L
Cross-site Scripting (XSS)

<2026.5.4-r1
  • L
GHSA-jxxr-4gwj-5jf2

<2026.5.4-r0
  • H
Resource Exhaustion

<2026.5.4-r0
  • L
GHSA-h67p-54hq-rp68

<2026.5.3-r8
  • L
Algorithmic Complexity

<2026.5.3-r8
  • L
GHSA-f886-m6hf-6m8v

<2026.5.3-r7
  • H
Resource Exhaustion

<2026.5.3-r7
  • L
GHSA-7c78-jf6q-g5cm

<2026.5.3-r6
  • L
Improper Input Validation

<2026.5.3-r6
  • H
Directory Traversal

<2026.5.3-r5
  • L
GHSA-ph9p-34f9-6g65

<2026.5.3-r5
  • L
GHSA-5wrp-cwcj-q835

<2026.5.3-r3
  • L
Uncontrolled Memory Allocation

<2026.5.3-r3
  • L
GHSA-6v7p-g79w-8964

<2026.5.3-r2
  • L
GHSA-537c-gmf6-5ccf

<2026.5.3-r1