kubescape-downloader-fips

Direct Vulnerabilities

Known vulnerabilities in the kubescape-downloader-fips package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Server-Side Request Forgery (SSRF)

<4.0.11-r1
  • L
Directory Traversal

<4.0.11-r1
  • L
Resource Exhaustion

<4.0.14-r1
  • M
Server-Side Request Forgery (SSRF)

<4.0.14-r0
  • L
Improper Validation of Array Index

<4.0.14-r0
  • L
Improper Handling of Case Sensitivity

<4.0.13-r0
  • L
Incorrect Authorization

<4.0.13-r2
  • L
CVE-2026-56855

<4.0.13-r2
  • L
CVE-2026-78662

<4.0.13-r2
  • L
CVE-2026-17106

<4.0.13-r1
  • M
Numeric Errors

<4.0.13-r0
  • L
Resource Exhaustion

<4.0.13-r0
  • L
Improper Input Validation

<4.0.13-r0
  • L
Race Condition

<4.0.13-r0
  • L
Allocation of Resources Without Limits or Throttling

<4.0.13-r0
  • L
CVE-2026-56854

<4.0.13-r0
  • L
CVE-2026-46603

<4.0.12-r2
  • L
CVE-2026-56853

<4.0.12-r1
  • L
CVE-2026-56862

<4.0.12-r1
  • L
CVE-2026-56865

<4.0.12-r1
  • L
CVE-2026-56859

<4.0.12-r1
  • L
CVE-2026-33818

<4.0.12-r1
  • L
CVE-2026-56860

<4.0.12-r1
  • L
CVE-2026-56858

<4.0.12-r1
  • L
CVE-2026-39821

<4.0.12-r1
  • L
CVE-2026-56864

<4.0.12-r1
  • L
Link Following

<4.0.12-r0
  • L
Directory Traversal

<4.0.12-r0
  • L
GHSA-259r-337f-4rfw

<4.0.11-r4
  • L
GHSA-3fxj-6jh8-hvhx

<4.0.11-r4
  • L
Use of a Key Past its Expiration Date

<4.0.11-r3
  • L
GHSA-hrxh-6v49-42gf

<4.0.11-r2
  • L
GHSA-gcjh-h69q-9w9g

<4.0.11-r2
  • H
Improper Verification of Cryptographic Signature

<4.0.11-r1
  • L
Directory Traversal

<4.0.11-r1
  • L
CVE-2026-56852

<4.0.11-r1
  • L
Uncontrolled Memory Allocation

<4.0.11-r1
  • L
CVE-2026-46600

<4.0.11-r1
  • L
Incorrect Authorization

<4.0.11-r1
  • M
Improper Check for Unusual or Exceptional Conditions

<4.0.10-r5
  • L
CVE-2026-42505

<4.0.10-r4
  • L
GHSA-rjr7-jggh-pgcp

<4.0.11-r4
  • L
CVE-2026-39822

<4.0.10-r4
  • L
GHSA-9g5q-2w5x-hmxf

<4.0.11-r4
  • L
GHSA-vh4v-2xq2-g5cg

<4.0.10-r3
  • H
Allocation of Resources Without Limits or Throttling

<4.0.10-r3
  • L
External Control of File Name or Path

<4.0.10-r3
  • L
Cleartext Transmission of Sensitive Information

<4.0.10-r3
  • L
Server-Side Request Forgery (SSRF)

<4.0.10-r3
  • L
Server-Side Request Forgery (SSRF)

<4.0.10-r3
  • L
CVE-2026-2303

<4.0.10-r1
  • L
CVE-2026-46602

<4.0.10-r1
  • L
CVE-2026-46604

<4.0.10-r1
  • L
CVE-2026-33813

<4.0.10-r1
  • L
Allocation of Resources Without Limits or Throttling

<4.0.10-r1
  • L
CVE-2026-46601

<4.0.10-r1
  • H
Authentication Bypass

*
  • L
CVE-2026-47262

<4.0.9-r1
  • H
Symlink Following

*
  • L
Symlink Following

<4.0.9-r1
  • L
CVE-2026-42500

<4.0.9-r1
  • L
Improper Input Validation

<4.0.9-r1
  • L
Uncontrolled Search Path Element

*
  • L
CVE-2026-50195

<4.0.9-r1
  • L
Improper Input Validation

<4.0.9-r1
  • L
CVE-2026-46599

<4.0.9-r1