kubeflow-pipelines-visualization-server vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the kubeflow-pipelines-visualization-server package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2025-59842

<2.14.3-r1
  • L
GHSA-vvfj-2jqx-52jm

<2.14.3-r1
  • L
GHSA-xg8h-j46f-w952

<2.5.0-r4
  • M
Heap-based Buffer Overflow

<2.5.0-r4
  • L
GHSA-9hjg-9r4m-mvj7

<2.5.0-r3
  • L
Uncontrolled Search Path Element

<2.5.0-r3
  • L
Insufficiently Protected Credentials

<2.5.0-r3
  • L
GHSA-33p9-3p43-82vq

<2.5.0-r3
  • L
Allocation of Resources Without Limits or Throttling

<2.5.0-r1
  • L
GHSA-7cx3-6m66-7c5m

<2.5.0-r1
  • L
GHSA-vqfr-h8mv-ghfj

<2.4.1-r3
  • L
HTTP Request Smuggling

<2.4.1-r3
  • L
GHSA-3f63-hfp8-52jq

<2.4.1-r2
  • H
Arbitrary Code Injection

<2.4.1-r2
  • L
GHSA-48g7-3x6r-xfhp

<2.4.1-r2
  • C
CVE-2025-1550

<2.4.1-r2
  • L
GHSA-79v4-65xg-pq4g

<2.4.0-r1
  • L
CVE-2024-12797

<2.4.0-r1
  • H
Allocation of Resources Without Limits or Throttling

<2.4.0-r0
  • H
Execution with Unnecessary Privileges

<2.4.0-r0
  • H
CVE-2022-29241

<2.4.0-r0
  • H
Resource Exhaustion

<2.4.0-r0
  • M
Open Redirect

<2.4.0-r0
  • M
Information Exposure

<2.4.0-r0
  • M
Cross-site Scripting (XSS)

<2.4.0-r0
  • L
GHSA-h5c8-rqwp-cp95

<2.4.0-r0
  • L
GHSA-xg9f-g7g7-2323

<2.4.0-r0
  • L
GHSA-h95x-26f3-88hr

<2.4.0-r0
  • L
Directory Traversal

<2.4.0-r0
  • L
GHSA-64x5-55rw-9974

<2.4.0-r0
  • L
Improper Input Validation

<2.4.0-r0
  • L
GHSA-q874-g24w-4q9g

<2.4.0-r0
  • H
Out-of-bounds Write

<2.4.0-r0
  • L
GHSA-h56g-gq9v-vc8r

<2.4.0-r0
  • L
GHSA-hrfv-mqp8-q5rw

<2.4.0-r0
  • L
GHSA-r726-vmfq-j9j3

<2.4.0-r0
  • M
Cross-site Scripting (XSS)

<2.4.0-r0
  • M
Improper Access Control

<2.4.0-r0
  • L
GHSA-q34m-jh98-gwm2

<2.4.0-r0
  • H
CVE-2024-35178

<2.4.0-r0
  • L
GHSA-f9vj-2wh5-fj8j

<2.4.0-r0
  • L
GHSA-9jmq-rx5f-8jwq

<2.4.0-r0
  • L
GHSA-pq7m-3gw7-gq5x

<2.4.0-r0
  • L
CVE-2024-28397

<2.4.0-r0
  • L
GHSA-px8h-6qxv-m22q

<2.4.0-r0
  • L
Protection Mechanism Failure

<2.4.0-r0
  • L
GHSA-hrw6-wg82-cm62

<2.4.0-r0
  • L
GHSA-q2x7-8rv6-6q7h

<2.4.0-r0
  • L
CVE-2024-55459

<2.3.0-r5
  • L
GHSA-cjgq-5qmw-rcj6

<2.3.0-r5
  • L
GHSA-8w49-h785-mj3c

<2.3.0-r4
  • L
Resource Exhaustion

<2.3.0-r4
  • L
GHSA-34jh-p97f-mpxf

<2.3.0-r1
  • M
Insecure Storage of Sensitive Information

<2.3.0-r1
  • L
GHSA-w235-7p84-xx57

<2.3.0-r1
  • L
GHSA-jw8x-6495-233v

<2.3.0-r1
  • L
GHSA-248v-346w-9cwc

<2.3.0-r1
  • H
Insufficient Verification of Data Authenticity

<2.3.0-r1
  • L
CVE-2024-37891

<2.3.0-r1
  • L
GHSA-753j-mpmx-qq6g

<2.3.0-r1
  • L
GHSA-9wx4-h78v-vm56

<2.3.0-r0
  • L
CVE-2024-35195

<2.3.0-r0
  • H
Out-of-bounds Read

<2.2.0-r0
  • L
GHSA-m87m-mmvp-v9qm

<2.2.0-r0
  • L
GHSA-cr6f-gf5w-vhrc

<2.2.0-r0
  • L
GHSA-h75v-3vvj-5mfj

<2.4.0-r0
  • L
Cross-site Scripting (XSS)

<2.4.0-r0
  • M
CVE-2024-28219

<2.2.0-r0
  • L
CVE-2024-34069

<2.4.0-r0
  • L
GHSA-44wm-f244-xhp3

<2.2.0-r0
  • L
GHSA-3rq5-2g8h-59hc

<2.2.0-r0
  • L
GHSA-2m57-hf25-phgg

<2.2.0-r0
  • L
CVE-2024-21506

<2.2.0-r0
  • L
GHSA-pwr2-4v36-6qpr

<2.2.0-r0
  • L
GHSA-jjg7-2v4v-x38h

<2.2.0-r0
  • L
CVE-2024-27454

<2.2.0-r0
  • L
CVE-2023-29483

<2.2.0-r0
  • H
Inefficient Regular Expression Complexity

<2.2.0-r0
  • L
Uncontrolled Recursion

<2.2.0-r0
  • L
GHSA-2g68-c3qc-8985

<2.4.0-r0