linkerd2-fips-2.19-controller

Direct Vulnerabilities

Known vulnerabilities in the linkerd2-fips-2.19-controller package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Server-Side Request Forgery (SSRF)

*
  • L
Information Exposure

*
  • L
Directory Traversal

*
  • L
Resource Exhaustion

*
  • L
Improper Validation of Array Index

*
  • L
Improper Handling of Case Sensitivity

*
  • L
CVE-2026-78662

*
  • L
CVE-2026-56855

*
  • L
Resource Exhaustion

*
  • L
CVE-2026-56854

*
  • L
Race Condition

*
  • L
CVE-2026-56865

*
  • L
CVE-2026-56864

*
  • L
CVE-2026-56859

*
  • L
CVE-2026-56860

*
  • L
CVE-2026-56858

*
  • L
CVE-2026-56862

*
  • L
CVE-2026-56853

*
  • L
CVE-2026-33818

*
  • L
GHSA-259r-337f-4rfw

*
  • L
CVE-2026-46600

*
  • L
CVE-2026-56852

*
  • L
GHSA-hrxh-6v49-42gf

*
  • L
Improper Input Validation

*
  • L
CVE-2026-50195

*
  • L
Symlink Following

*
  • L
CVE-2026-42505

*
  • L
CVE-2026-39822

*
  • L
GO-2026-5932

*
  • L
External Control of File Name or Path

*
  • L
GHSA-vh4v-2xq2-g5cg

*
  • L
Cleartext Transmission of Sensitive Information

*
  • L
Directory Traversal

*
  • L
Server-Side Request Forgery (SSRF)

*
  • M
Memory Leak

*
  • H
Incorrect Execution-Assigned Permissions

*
  • H
Integer Overflow or Wraparound

*
  • L
Uncontrolled Memory Allocation

*
  • L
Uncontrolled Memory Allocation

*
  • H
Untrusted Search Path

*
  • L
Untrusted Search Path

<2.19.0-r1
  • L
GHSA-pwjx-qhcg-rvj4

*
  • L
GHSA-cq8v-f236-94qc

*
  • L
GHSA-xgp8-3hg3-c2mh

*
  • L
GHSA-vw5v-4f2q-w9xf

*
  • L
GHSA-9f94-5g5w-gf6r

*
  • L
GHSA-394x-vwmw-crm3

*
  • H
Integer Overflow to Buffer Overflow

*
  • L
GHSA-82j2-j2ch-gfr8

*
  • L
GHSA-65p9-r9h6-22vj

*
  • L
GHSA-hfpc-8r3f-gw53

*
  • L
GHSA-965h-392x-2mh5

*
  • L
Improper Certificate Validation

<2.19.0-r1
  • L
Out-of-Bounds

<2.19.0-r1
  • L
Improper Enforcement of Message Integrity During Transmission in a Communication Channel

<2.19.0-r1
  • L
Integer Overflow or Wraparound

<2.19.0-r1
  • L
Incorrect Type Conversion or Cast

<2.19.0-r1
  • L
Improper Certificate Validation

<2.19.0-r1
  • L
CVE-2026-46595

<2.19.0-r1
  • L
Improper Verification of Cryptographic Signature

<2.19.0-r1
  • L
CVE-2026-39824

<2.19.0-r1
  • L
Missing Authorization

<2.19.0-r1
  • L
Resource Exhaustion

<2.19.0-r1
  • L
Improper Certificate Validation

<2.19.0-r1
  • L
Improper Authorization

<2.19.0-r1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<2.19.0-r1
  • L
Cross-site Scripting (XSS)

<2.19.0-r1
  • L
Allocation of Resources Without Limits or Throttling

<2.19.0-r1
  • L
CVE-2026-39821

<2.19.0-r1
  • L
CVE-2026-46598

<2.19.0-r1
  • M
Directory Traversal

<2.19.0-r1
  • L
Missing Authorization

<2.19.0-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<2.19.0-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<2.19.0-r1
  • L
Improper Restriction of Rendered UI Layers or Frames

<2.19.0-r1
  • L
Deserialization of Untrusted Data

<2.19.0-r1