podman-fips vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the podman-fips package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Server-Side Request Forgery (SSRF)

<5.7.1-r3
  • L
GHSA-59jp-pj84-45mr

<5.7.1-r3
  • H
Symlink Following

<5.6.2-r3
  • L
Allocation of Resources Without Limits or Throttling

<5.6.0-r1
  • L
GHSA-w32m-9786-jp63

<5.3.1-r2
  • L
GHSA-jc7w-c686-c4v9

<5.6.0-r1
  • L
GHSA-7c64-f9jr-v9h2

<5.7.0-r2
  • L
GHSA-g2j6-57v7-gm8c

<5.2.2-r1
  • L
Improper Certificate Validation

<5.7.0-r2
  • H
Use of Incorrectly-Resolved Name or Reference

<5.2.2-r1
  • L
GHSA-qw9x-cqr3-wc7r

<5.6.2-r3
  • L
GHSA-6v2p-p543-phr9

<5.4.1-r2
  • L
CVE-2024-45338

<5.3.1-r2
  • L
GHSA-j5w8-q4qc-rx2x

<5.7.0-r1
  • L
CVE-2025-58181

<5.7.0-r1
  • H
Link Following

<5.2.2-r1
  • H
Link Following

<5.4.1-r2
  • L
GHSA-3f6r-qh9c-x6mm

<5.3.2-r0
  • H
Incorrect Default Permissions

<5.2.2-r1
  • L
GHSA-xr7r-f8xq-vfvv

<5.2.2-r1
  • L
CVE-2025-22866

<5.3.2-r1
  • L
GHSA-3whm-j4xm-rv8x

<5.3.2-r1
  • L
GHSA-vpvm-3wq2-2wvm

<5.2.2-r1
  • L
GHSA-7wrw-r4p8-38rx

<5.3.2-r0
  • L
GHSA-f83f-xpx7-ffpw

<5.7.0-r4
  • H
Symlink Following

<5.6.2-r3
  • L
CVE-2025-22869

<5.4.1-r1
  • L
CVE-2024-45336

<5.3.2-r0
  • H
Resource Exhaustion

<5.6.2-r2
  • L
GHSA-5vpc-35f4-r8w6

<5.3.2-r0
  • L
GHSA-m8cg-xc2p-r3fc

<5.2.2-r1
  • L
GHSA-v778-237x-gjrc

<5.3.1-r1
  • L
GHSA-cgrx-mc8f-2prm

<5.6.2-r3
  • L
CVE-2024-45337

<5.3.1-r1
  • L
CVE-2024-45310

<5.2.2-r1
  • L
GHSA-mc76-5925-c5p6

<5.4.1-r2
  • L
CVE-2025-22868

<5.4.1-r2
  • L
GHSA-f3fp-gc8g-vw66

<5.2.2-r1
  • L
CVE-2025-47907

<5.5.2-r2
  • L
GHSA-hcg3-q754-cr77

<5.4.1-r1
  • L
GHSA-vvgc-356p-c3xw

<5.4.2-r1
  • L
GHSA-c6gw-w398-hv78

<5.4.0-r2
  • L
GHSA-j5pm-7495-qmr3

<5.5.2-r2
  • L
GHSA-jfvp-7x6p-h2pv

<5.2.2-r1
  • L
CVE-2025-47914

<5.7.0-r1
  • L
GHSA-jv3w-x3r3-g6rm

<5.7.1-r1
  • L
Asymmetric Resource Consumption (Amplification)

<5.7.0-r4
  • L
CVE-2024-45341

<5.3.2-r0
  • H
Symlink Following

<5.6.2-r3
  • H
Exposure of Resource to Wrong Sphere

<5.2.2-r1
  • L
GHSA-9493-h29p-rfm2

<5.6.2-r3
  • H
Improper Privilege Management

<5.3.2-r0
  • M
Improper Preservation of Permissions

<5.2.2-r1
  • L
Information Exposure

<5.7.1-r1
  • L
GHSA-rpcc-p8xm-rc6p

<5.6.2-r2
  • L
GHSA-f6x5-jh6r-wrfv

<5.7.0-r1
  • L
CVE-2025-22872

<5.4.2-r1
  • L
Allocation of Resources Without Limits or Throttling

<5.4.0-r2