linkerd2-26.5-controller

Direct Vulnerabilities

Known vulnerabilities in the linkerd2-26.5-controller package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Server-Side Request Forgery (SSRF)

*
  • L
Information Exposure

*
  • L
Directory Traversal

*
  • L
Resource Exhaustion

*
  • L
Improper Handling of Case Sensitivity

*
  • L
Improper Validation of Array Index

*
  • L
CVE-2026-78662

*
  • L
CVE-2026-56855

*
  • L
Resource Exhaustion

*
  • L
CVE-2026-56854

*
  • L
Race Condition

*
  • L
CVE-2026-56865

*
  • L
CVE-2026-56864

*
  • L
CVE-2026-56862

*
  • L
CVE-2026-56859

*
  • L
CVE-2026-33818

*
  • L
CVE-2026-56858

*
  • L
CVE-2026-56860

*
  • L
CVE-2026-56853

*
  • L
GHSA-259r-337f-4rfw

*
  • L
CVE-2026-46600

*
  • L
CVE-2026-56852

*
  • L
GHSA-hrxh-6v49-42gf

*
  • L
CVE-2026-50195

*
  • L
Symlink Following

*
  • L
Improper Input Validation

*
  • L
CVE-2026-42505

*
  • L
GO-2026-5932

*
  • L
CVE-2026-39822

*
  • L
Cleartext Transmission of Sensitive Information

*
  • L
External Control of File Name or Path

*
  • L
Server-Side Request Forgery (SSRF)

*
  • L
Directory Traversal

*
  • L
GHSA-vh4v-2xq2-g5cg

*
  • L
Uncontrolled Memory Allocation

<26.5.5-r0
  • L
Uncontrolled Memory Allocation

*
  • H
Untrusted Search Path

<26.5.5-r0
  • H
Incorrect Execution-Assigned Permissions

*
  • M
Memory Leak

*
  • H
Integer Overflow or Wraparound

*
  • L
GHSA-cq8v-f236-94qc

*
  • L
Missing Authorization

<26.5.5-r1
  • L
Integer Overflow or Wraparound

<26.5.5-r1
  • L
Improper Certificate Validation

<26.5.5-r1
  • L
CVE-2026-46595

<26.5.5-r1
  • L
Improper Verification of Cryptographic Signature

<26.5.5-r1
  • L
CVE-2026-39824

<26.5.5-r0
  • L
Out-of-Bounds

<26.5.5-r1
  • L
Improper Enforcement of Message Integrity During Transmission in a Communication Channel

<26.5.5-r1
  • L
Improper Certificate Validation

<26.5.5-r1
  • L
Incorrect Type Conversion or Cast

<26.5.5-r1
  • L
Missing Authorization

<26.5.5-r1
  • L
Cross-site Scripting (XSS)

<26.5.5-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<26.5.5-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<26.5.5-r1
  • L
CVE-2026-39821

<26.5.5-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<26.5.5-r1
  • L
Deserialization of Untrusted Data

<26.5.5-r1
  • L
Resource Exhaustion

<26.5.5-r1
  • L
Improper Certificate Validation

<26.5.5-r1
  • L
CVE-2026-46598

<26.5.5-r1