spark-kubernetes-operator

Direct Vulnerabilities

Known vulnerabilities in the spark-kubernetes-operator package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Resource Exhaustion

<0.9.0-r2
  • L
Resource Exhaustion

<0.9.0-r2
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<0.9.0-r5
  • L
GHSA-5jmj-h7xm-6q6v

<0.9.0-r5
  • L
GHSA-9fxm-vc8v-hj55

<0.9.0-r4
  • L
GHSA-rmj7-2vxq-3g9f

<0.9.0-r4
  • L
GHSA-hgj6-7826-r7m5

<0.9.0-r4
  • L
GHSA-j3rv-43j4-c7qm

<0.9.0-r4
  • L
GHSA-rcqc-6cw3-h962

<0.9.0-r4
  • L
Server-Side Request Forgery (SSRF)

<0.9.0-r4
  • L
Incomplete Blacklist

<0.9.0-r4
  • L
GHSA-5hh8-q8hv-fr38

<0.9.0-r4
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<0.9.0-r4
  • L
Incorrect Authorization

<0.9.0-r4
  • L
Incorrect Authorization

<0.9.0-r4
  • L
Incomplete Blacklist

<0.9.0-r4
  • L
GHSA-72hv-8253-57qq

<0.9.0-r3
  • L
GHSA-47qp-hqvx-6r3f

<0.9.0-r2
  • L
GHSA-2r2c-cx56-8933

<0.9.0-r2
  • M
Allocation of Resources Without Limits or Throttling

<0.9.0-r1
  • L
GHSA-c2gf-v879-257j

<0.9.0-r1
  • L
Improper Verification of Cryptographic Signature

<0.9.0-r1
  • L
GHSA-c653-97m9-rcg9

<0.9.0-r1
  • L
GHSA-5x3r-wrvg-rp6q

<0.9.0-r1
  • L
GHSA-5pvg-856g-cp85

<0.9.0-r1
  • C
Insufficient Verification of Data Authenticity

<0.9.0-r1
  • L
Improper Access Control

<0.9.0-r1
  • L
GHSA-676x-f7gg-47vc

<0.9.0-r1
  • L
GHSA-563q-j3cm-6jxm

<0.9.0-r1
  • L
HTTP Request Smuggling

<0.9.0-r1
  • L
GHSA-w573-9ffj-6ff9

<0.9.0-r1
  • L
Allocation of Resources Without Limits or Throttling

<0.9.0-r1
  • H
Resource Exhaustion

<0.9.0-r1
  • L
Information Exposure

<0.9.0-r1
  • C
Insufficient Verification of Data Authenticity

<0.9.0-r1
  • L
GHSA-hvcg-qmg6-jm4c

<0.9.0-r1
  • L
GHSA-xmv7-r254-6q78

<0.9.0-r1
  • L
GHSA-3qp7-7mw8-wx86

<0.9.0-r1
  • L
Resource Exhaustion

<0.9.0-r1
  • L
Use of Insufficiently Random Values

<0.9.0-r1
  • L
GHSA-x4gw-5cx5-pgmh

<0.9.0-r1
  • L
Allocation of Resources Without Limits or Throttling

<0.9.0-r0
  • L
CRLF Injection

<0.9.0-r0
  • M
CVE-2024-6763

<0.9.0-r0
  • C
HTTP Request Smuggling

<0.9.0-r0
  • L
Resource Exhaustion

<0.9.0-r0
  • L
Missing Release of Resource after Effective Lifetime

<0.9.0-r0
  • C
Improper Input Validation

<0.9.0-r0
  • C
HTTP Request Smuggling

<0.9.0-r0
  • L
Resource Exhaustion

<0.9.0-r0
  • L
GHSA-xxqh-mfjm-7mv9

<0.9.0-r0
  • L
GHSA-38f8-5428-x5cv

<0.9.0-r0
  • L
GHSA-qh8g-58pp-2wxh

<0.9.0-r0
  • L
GHSA-57rv-r2g8-2cj3

<0.9.0-r0
  • H
HTTP Request Smuggling

<0.9.0-r0
  • L
Integer Overflow or Wraparound

<0.9.0-r0
  • L
GHSA-rwm7-x88c-3g2p

<0.9.0-r0
  • L
GHSA-m4cv-j2px-7723

<0.9.0-r0
  • L
GHSA-f6hv-jmp6-3vwv

<0.9.0-r0
  • H
HTTP Response Splitting

<0.9.0-r0
  • L
GHSA-v8h7-rr48-vmmv

<0.9.0-r0
  • L
GHSA-mj4r-2hfc-f8p6

<0.9.0-r0
  • L
GHSA-2c5c-chwr-9hqw

<0.9.0-r0
  • L
GHSA-355h-qmc2-wpwf

<0.9.0-r0
  • L
GHSA-cm33-6792-r9fm

<0.9.0-r0
  • L
GHSA-45q3-82m4-75jr

<0.9.0-r0
  • C
HTTP Request Smuggling

<0.9.0-r0
  • M
Allocation of Resources Without Limits or Throttling

<0.8.0-r2
  • L
GHSA-3g76-f9xq-8vp6

<0.8.0-r2
  • M
Improper Validation of Certificate with Host Mismatch

<0.8.0-r1
  • H
Improper Encoding or Escaping of Output

<0.8.0-r1
  • H
Improper Encoding or Escaping of Output

<0.8.0-r1
  • H
Improper Output Neutralization for Logs

<0.8.0-r1
  • L
GHSA-w35j-pv5h-q9q9

<0.8.0-r1
  • L
GHSA-445c-vh5m-36rj

<0.8.0-r1
  • L
GHSA-3pxv-7cmr-fjr4

<0.8.0-r1
  • L
GHSA-6hg6-v5c8-fphq

<0.8.0-r1
  • H
Information Exposure Through Log Files

<0.7.0-r4
  • H
Improper Certificate Validation

<0.7.0-r4
  • L
GHSA-crhr-qqj8-rpxc

<0.7.0-r4
  • L
GHSA-7xrh-hqfc-g7qr

<0.7.0-r4
  • L
GHSA-wjpw-4j6x-6rwh

<0.9.0-r0
  • M
Improper Input Validation

<0.9.0-r0