kafbat-ui

Direct Vulnerabilities

Known vulnerabilities in the kafbat-ui package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
GHSA-642r-3gj9-2pj5

<1.5.0-r12
  • L
CVE-2026-68494

<1.5.0-r12
  • L
GHSA-7hhh-6rmp-j9qf

<1.5.0-r17
  • L
GHSA-p6pp-m3f8-5c89

<1.5.0-r17
  • L
CVE-2026-89407

<1.5.0-r17
  • L
CVE-2026-89425

<1.5.0-r17
  • L
CVE-2026-91777

<1.5.0-r16
  • L
GHSA-wv8q-qhhj-9h54

<1.5.0-r16
  • L
GHSA-cxp5-3px4-pw24

<1.5.0-r16
  • L
CVE-2026-91776

<1.5.0-r16
  • L
GHSA-q4xh-88c3-wmh7

<1.5.0-r15
  • L
GHSA-gx83-3vf8-gh7j

<1.5.0-r15
  • L
GHSA-wjgm-6hv5-3cvf

<1.5.0-r15
  • L
CVE-2026-19032

<1.5.0-r15
  • L
CVE-2026-68497

<1.5.0-r15
  • L
CVE-2026-83557

<1.5.0-r15
  • L
GHSA-6qm2-mcq7-53qp

<1.4.2-r5
  • L
CVE-2026-18401

<1.4.2-r5
  • L
GHSA-8c42-7qj2-3j46

<1.5.0-r14
  • H
Information Exposure Through Caching

<1.5.0-r14
  • L
Improper Encoding or Escaping of Output

<1.5.0-r13
  • L
GHSA-qv9r-c865-cp47

<1.5.0-r13
  • L
GHSA-83f7-v6px-pp3h

<1.5.0-r12
  • M
CVE-2026-41844

<1.5.0-r12
  • L
GHSA-wxpp-56q6-5pcg

<1.5.0-r12
  • L
CVE-2026-41842

<1.5.0-r12
  • L
CVE-2026-41850

<1.5.0-r12
  • L
CVE-2026-41840

<1.5.0-r12
  • L
CVE-2026-41720

<1.5.0-r12
  • L
GHSA-cjpg-rgq5-fr37

<1.5.0-r12
  • H
CVE-2026-41848

<1.5.0-r12
  • L
GHSA-h3qp-gqrc-q736

<1.5.0-r12
  • L
CVE-2026-41853

<1.5.0-r12
  • L
GHSA-4hfh-6x8g-gwpp

<1.5.0-r12
  • L
GHSA-x23c-287f-qqv5

<1.5.0-r12
  • L
CVE-2026-41841

<1.5.0-r12
  • L
CVE-2026-41839

<1.5.0-r12
  • L
GHSA-659m-px2c-25wj

<1.5.0-r12
  • L
GHSA-9f52-rjqv-25qv

<1.5.0-r12
  • L
GHSA-r5w3-xv2f-j59q

<1.5.0-r12
  • L
GHSA-mq64-j8f9-9gcj

<1.5.0-r12
  • L
GHSA-jrv5-8w28-4265

<1.5.0-r12
  • H
CVE-2026-41851

<1.5.0-r12
  • L
GHSA-72pg-x5f8-j25j

<1.5.0-r12
  • L
CVE-2026-41843

<1.5.0-r12
  • L
GHSA-r7wm-3cxj-wff9

<1.5.0-r12
  • M
CVE-2026-41852

<1.5.0-r12
  • L
NULL Pointer Dereference

<1.5.0-r11
  • L
GHSA-xx22-p4ch-683r

<1.5.0-r11
  • L
Resource Exhaustion

<1.5.0-r10
  • L
GHSA-gcjf-9mgh-3p7g

<1.5.0-r10
  • L
GHSA-6cqp-g7gg-8hr5

<1.5.0-r10
  • L
Resource Exhaustion

<1.5.0-r10
  • L
GHSA-mvh2-crg5-v77c

<1.5.0-r10
  • M
HTTP Request Smuggling

<1.5.0-r10
  • H
Resource Exhaustion

<1.5.0-r10
  • L
GHSA-c69g-56f8-xwqj

<1.5.0-r10
  • L
Improper Access Control

<1.5.0-r10
  • L
GHSA-jppx-w49h-x2qq

<1.5.0-r10
  • H
HTTP Request Smuggling

<1.5.0-r10
  • L
GHSA-4mp9-239f-g9hg

<1.5.0-r10
  • L
GHSA-q4f6-jm68-57ww

<1.5.0-r10
  • M
CRLF Injection

<1.5.0-r10
  • H
Allocation of Resources Without Limits or Throttling

<1.5.0-r10
  • L
GHSA-6jqx-86gh-f27w

<1.5.0-r10
  • L
GHSA-558v-64gr-wgg4

<1.5.0-r10
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<1.5.0-r10
  • L
CVE-2026-10532

<1.5.0-r9
  • L
GHSA-jhq6-gfmj-v8fx

<1.5.0-r9
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<1.5.0-r8
  • L
GHSA-5jmj-h7xm-6q6v

<1.5.0-r8
  • L
CVE-2026-9828

<1.5.0-r7
  • L
GHSA-p47f-322f-whfh

<1.5.0-r7
  • L
GHSA-293q-567p-wmwq

<1.5.0-r5
  • H
CVE-2026-47838

<1.5.0-r5
  • L
GHSA-j3rv-43j4-c7qm

<1.5.0-r3
  • L
GHSA-hgj6-7826-r7m5

<1.5.0-r3
  • L
Incomplete Blacklist

<1.5.0-r3
  • L
GHSA-rcqc-6cw3-h962

<1.5.0-r3
  • L
Server-Side Request Forgery (SSRF)

<1.5.0-r3
  • L
Incorrect Authorization

<1.5.0-r3
  • L
Incomplete Blacklist

<1.5.0-r3
  • L
GHSA-9fxm-vc8v-hj55

<1.5.0-r3
  • L
Incorrect Authorization

<1.5.0-r3
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<1.5.0-r3
  • L
GHSA-rmj7-2vxq-3g9f

<1.5.0-r3
  • L
GHSA-5hh8-q8hv-fr38

<1.5.0-r3
  • L
GHSA-5pvg-856g-cp85

<1.5.0-r1
  • L
Resource Exhaustion

<1.5.0-r1
  • C
Insufficient Verification of Data Authenticity

<1.5.0-r1
  • L
GHSA-676x-f7gg-47vc

<1.5.0-r1
  • L
GHSA-c2gf-v879-257j

<1.5.0-r1
  • L
HTTP Request Smuggling

<1.5.0-r1
  • L
GHSA-c653-97m9-rcg9

<1.5.0-r1
  • L
Improper Access Control

<1.5.0-r1
  • H
Resource Exhaustion

<1.5.0-r1
  • L
Allocation of Resources Without Limits or Throttling

<1.5.0-r1
  • L
GHSA-563q-j3cm-6jxm

<1.5.0-r1
  • L
GHSA-5x3r-wrvg-rp6q

<1.5.0-r1
  • L
Information Exposure

<1.5.0-r1
  • L
GHSA-w573-9ffj-6ff9

<1.5.0-r1
  • M
Allocation of Resources Without Limits or Throttling

<1.5.0-r1
  • L
Improper Verification of Cryptographic Signature

<1.5.0-r1
  • L
GHSA-x4gw-5cx5-pgmh

<1.5.0-r1
  • L
GHSA-xmv7-r254-6q78

<1.5.0-r1
  • L
Use of Insufficiently Random Values

<1.5.0-r1
  • L
GHSA-hvcg-qmg6-jm4c

<1.5.0-r1
  • L
GHSA-3qp7-7mw8-wx86

<1.5.0-r1
  • C
Insufficient Verification of Data Authenticity

<1.5.0-r1
  • L
GHSA-vqf4-7m7x-wgfc

<1.5.0-r0
  • L
CVE-2025-12183

<1.5.0-r0
  • L
Information Exposure

<1.5.0-r0
  • L
GHSA-cmp6-m4wj-q63q

<1.5.0-r0
  • L
GHSA-m4cv-j2px-7723

<1.4.2-r10
  • C
Improper Input Validation

<1.4.2-r10
  • L
CRLF Injection

<1.4.2-r10
  • C
HTTP Request Smuggling

<1.4.2-r10
  • L
GHSA-xxqh-mfjm-7mv9

<1.4.2-r10
  • L
GHSA-v8h7-rr48-vmmv

<1.4.2-r10
  • L
GHSA-57rv-r2g8-2cj3

<1.4.2-r10
  • L
GHSA-mj4r-2hfc-f8p6

<1.4.2-r10
  • L
Resource Exhaustion

<1.4.2-r10
  • L
Integer Overflow or Wraparound

<1.4.2-r10
  • L
GHSA-45q3-82m4-75jr

<1.4.2-r10
  • L
Resource Exhaustion

<1.4.2-r10
  • H
HTTP Request Smuggling

<1.4.2-r10
  • L
GHSA-cm33-6792-r9fm

<1.4.2-r10
  • L
GHSA-38f8-5428-x5cv

<1.4.2-r10
  • L
GHSA-f6hv-jmp6-3vwv

<1.4.2-r10
  • C
HTTP Request Smuggling

<1.4.2-r10
  • H
HTTP Response Splitting

<1.4.2-r10
  • L
Missing Release of Resource after Effective Lifetime

<1.4.2-r9
  • L
GHSA-rwm7-x88c-3g2p

<1.4.2-r9
  • L
CVE-2026-22741

<1.4.2-r9
  • L
CVE-2026-22740

<1.4.2-r9
  • L
CVE-2026-22751

<1.4.2-r9
  • L
GHSA-wwpq-f5c3-7hvx

<1.4.2-r9
  • L
CVE-2026-22746

<1.4.2-r9
  • L
GHSA-6p4f-wcwh-5vvm

<1.4.2-r9
  • L
GHSA-wg35-8jpf-2xv3

<1.4.2-r9
  • L
GHSA-5843-p793-ghmm

<1.4.2-r9
  • M
CVE-2026-22748

<1.4.2-r9
  • L
GHSA-vxf7-qj7q-83fh

<1.4.2-r9
  • L
GHSA-cvc6-q2cp-2xhw

<1.4.2-r9
  • L
GHSA-x2wq-9x2f-fhj7

<1.4.2-r9
  • L
CVE-2026-40973

<1.4.2-r9
  • L
CVE-2026-22745

<1.4.2-r9
  • L
GHSA-pwqr-wmgm-9rr8

<1.4.2-r8
  • H
Allocation of Resources Without Limits or Throttling

<1.4.2-r8
  • L
HTTP Request Smuggling

<1.4.2-r8
  • L
GHSA-w9fj-cfpg-grvv

<1.4.2-r8
  • L
GHSA-4773-3jfm-qmx3

<1.4.2-r6
  • L
GHSA-6hcq-hmm3-jj3c

<1.4.2-r6
  • L
GHSA-mf92-479x-3373

<1.4.2-r6
  • L
CVE-2026-22732

<1.4.2-r6
  • L
CVE-2026-22737

<1.4.2-r6
  • L
CVE-2026-22735

<1.4.2-r6
  • L
GHSA-72hv-8253-57qq

<1.4.2-r5
  • L
GHSA-rp46-r563-jrc7

<1.4.2-r3
  • L
Arbitrary Code Injection

<1.4.2-r3
  • L
CVE-2026-1225

<1.4.2-r3
  • L
GHSA-qqpg-mvqg-649v

<1.4.2-r3
  • L
GHSA-84h7-rjj3-6jx4

<1.4.2-r1
  • L
CRLF Injection

<1.4.2-r1