kyverno-notation-aws

Direct Vulnerabilities

Known vulnerabilities in the kyverno-notation-aws package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
GHSA-gcjh-h69q-9w9g

<1.1-r3
  • L
GHSA-hrxh-6v49-42gf

<1.1-r3
  • L
Improper Certificate Validation

<1.1-r2
  • L
GHSA-3fxj-6jh8-hvhx

<1.1-r2
  • L
Reachable Assertion

<1.1-r2
  • L
Directory Traversal

<1.1-r2
  • L
GHSA-9g5q-2w5x-hmxf

<1.1-r2
  • L
Incorrect Authorization

<1.1-r2
  • L
CVE-2026-46600

<1.1-r2
  • H
Improper Verification of Cryptographic Signature

<1.1-r2
  • H
Allocation of Resources Without Limits or Throttling

<1.1-r2
  • L
Uncontrolled Memory Allocation

<1.1-r2
  • L
CVE-2026-56852

<1.1-r2
  • L
GHSA-rjr7-jggh-pgcp

<1.1-r2
  • L
GHSA-qr4g-8hrp-c4rw

<1.1-r2
  • L
Resource Exhaustion

<1.1-r1
  • L
CVE-2026-39824

<1.1-r1
  • L
GHSA-gg4x-fgg2-h9w9

<1.1-r1
  • L
CVE-2026-46598

<1.1-r1
  • L
Improper Verification of Cryptographic Signature

<1.1-r1
  • L
Cross-site Scripting (XSS)

<1.1-r1
  • L
Uncaught Exception

<1.1-r1
  • L
Server-Side Request Forgery (SSRF)

<1.1-r1
  • L
Asymmetric Resource Consumption (Amplification)

<1.1-r1
  • M
Allocation of Resources Without Limits or Throttling

<1.1-r1
  • L
CVE-2024-45338

<1.1-r1
  • L
Asymmetric Resource Consumption (Amplification)

<1.1-r1
  • C
CVE-2026-1229

<1.1-r1
  • L
Cleartext Transmission of Sensitive Information

<1.1-r1
  • H
Authentication Bypass

<1.1-r1
  • L
Improper Privilege Management

<1.1-r1
  • L
Improper Enforcement of Message Integrity During Transmission in a Communication Channel

<1.1-r1
  • L
GHSA-fmqp-4wfc-w3v7

<1.1-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<1.1-r1
  • L
CVE-2025-22869

<1.1-r1
  • L
CVE-2025-22870

<1.1-r1
  • H
Off-by-one Error

<1.1-r1
  • H
Symlink Following

<1.1-r1
  • M
Server-Side Request Forgery (SSRF)

<1.1-r1
  • L
Arbitrary Code Injection

<1.1-r1
  • L
CVE-2026-49478

<1.1-r1
  • L
Out-of-Bounds

<1.1-r1
  • L
Improper Validation of Specified Type of Input

<1.1-r1
  • L
CVE-2025-58181

<1.1-r1
  • L
CVE-2024-41110

<1.1-r1
  • C
Information Exposure

<1.1-r1
  • H
Integer Overflow or Wraparound

<1.1-r1
  • L
External Control of File Name or Path

<1.1-r1
  • L
CVE-2026-2303

<1.1-r1
  • M
CVE-2025-47911

<1.1-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<1.1-r1
  • L
Incorrect Type Conversion or Cast

<1.1-r1
  • L
Improper Certificate Validation

<1.1-r1
  • L
Incorrect Authorization

<1.1-r1
  • H
Untrusted Search Path

<1.1-r1
  • L
CVE-2024-45339

<1.1-r1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<1.1-r1
  • L
Uncontrolled Search Path Element

<1.1-r1
  • L
CVE-2025-22868

<1.1-r1
  • H
CVE-2025-15558

<1.1-r1
  • L
CVE-2026-48702

<1.1-r1
  • L
Reachable Assertion

<1.1-r1
  • L
Asymmetric Resource Consumption (Amplification)

<1.1-r1
  • L
Server-Side Request Forgery (SSRF)

<1.1-r1
  • L
Untrusted Search Path

<1.1-r1
  • L
Directory Traversal

<1.1-r1
  • L
Improper Certificate Validation

<1.1-r1
  • L
GHSA-vrw8-fxc6-2r93

<1.1-r1
  • L
CVE-2025-22872

<1.1-r1
  • L
Improper Handling of Exceptional Conditions

<1.1-r1
  • H
Improper Validation of Specified Type of Input

<1.1-r1
  • L
NULL Pointer Dereference

<1.1-r1
  • L
Allocation of Resources Without Limits or Throttling

<1.1-r1
  • L
Integer Overflow or Wraparound

<1.1-r1
  • L
GHSA-459x-q9hg-4gpq

<1.1-r1
  • M
Missing Initialization of Resource

<1.1-r1
  • H
Authentication Bypass

<1.1-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<1.1-r1
  • L
CVE-2026-39821

<1.1-r1
  • L
Improper Initialization

<1.1-r1
  • L
Improper Authorization

<1.1-r1
  • L
Improper Certificate Validation

<1.1-r1
  • L
Improper Input Validation

<1.1-r1
  • L
Insecure Storage of Sensitive Information

<1.1-r1
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<1.1-r1
  • L
Uncontrolled Memory Allocation

<1.1-r1
  • L
Deserialization of Untrusted Data

<1.1-r1
  • M
Insufficient Verification of Data Authenticity

<1.1-r1
  • L
GHSA-vh4v-2xq2-g5cg

<1.1-r1
  • L
CVE-2024-45337

<1.1-r1
  • L
Missing Authorization

<1.1-r1
  • L
Missing Authorization

<1.1-r1
  • L
GHSA-8wfp-579w-6r25

<1.1-r1
  • L
CVE-2026-46595

<1.1-r1
  • L
Cross-site Scripting (XSS)

<1.1-r1
  • L
GHSA-pmwq-pjrm-6p5r

<1.1-r1
  • L
CVE-2025-47914

<1.1-r1
  • L
CVE-2025-69725

<1.1-r1