gitaly-config-18.9

Direct Vulnerabilities

Known vulnerabilities in the gitaly-config-18.9 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Allocation of Resources Without Limits or Throttling

<18.9.6-r1
  • L
CVE-2026-42501

<18.9.6-r1
  • L
CVE-2026-42499

<18.9.6-r1
  • H
Double Free

<18.9.6-r1
  • M
Link Following

<18.9.6-r1
  • M
Out-of-bounds Write

<18.9.6-r1
  • L
Cross-site Scripting (XSS)

<18.9.6-r1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<18.9.6-r1
  • L
CVE-2026-39825

<18.9.6-r1
  • H
NULL Pointer Dereference

<18.9.6-r1
  • L
Improper Encoding or Escaping of Output

<18.9.6-r1
  • C
CVE-2026-27143

<18.9.5-r0
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<18.9.5-r0
  • M
Link Following

<18.9.5-r0
  • H
Allocation of Resources Without Limits or Throttling

<18.9.5-r0
  • H
Improper Certificate Validation

<18.9.5-r0
  • H
Incorrect Authorization

<18.9.5-r0
  • H
Improper Certificate Validation

<18.9.5-r0
  • L
CVE-2026-32280

<18.9.5-r0
  • M
Allocation of Resources Without Limits or Throttling

<18.9.5-r0
  • M
Cross-site Scripting (XSS)

<18.9.5-r0
  • L
Partial Comparison

<18.9.5-r0
  • M
Improper Handling of Length Parameter Inconsistency

<18.9.5-r0
  • H
Resource Exhaustion

<18.9.5-r0
  • L
Incorrect Behavior Order: Validate Before Canonicalize

<18.9.5-r0
  • H
Permissive Regular Expression

<18.9.5-r0
  • H
Resource Exhaustion

<18.9.5-r0
  • L
Permissive Regular Expression

<18.9.5-r0
  • M
Interpretation Conflict

<18.9.5-r0
  • L
Resource Exhaustion

<18.9.5-r0
  • H
Improper Handling of Parameters

<18.9.3-r0
  • C
Use of Externally-Controlled Format String

<18.9.2-r1
  • L
Improper Authorization

<18.9.2-r1
  • L
Untrusted Search Path

<18.9.2-r1
  • L
Improper Certificate Validation

<18.9.1-r1
  • L
Cross-site Scripting (XSS)

<18.9.1-r1
  • L
Improper Certificate Validation

<18.9.1-r1
  • L
CVE-2024-21510

*
  • L
Directory Traversal

<18.9.1-r1
  • L
Server-Side Request Forgery (SSRF)

*
  • H
Inefficient Regular Expression Complexity

*
  • L
Direct Request ('Forced Browsing')

<18.9.1-r1