buildpacks-passenger-0.14.14

Direct Vulnerabilities

Known vulnerabilities in the buildpacks-passenger-0.14.14 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Information Exposure

*
  • L
Resource Exhaustion

*
  • L
Improper Validation of Array Index

*
  • L
Improper Handling of Case Sensitivity

*
  • L
CVE-2026-78662

*
  • L
CVE-2026-56855

*
  • L
Resource Exhaustion

*
  • L
CVE-2026-56854

*
  • L
Race Condition

*
  • L
CVE-2026-56859

*
  • L
CVE-2026-56853

*
  • L
CVE-2026-56865

*
  • L
CVE-2026-56858

*
  • L
CVE-2026-56860

*
  • L
CVE-2026-56864

*
  • L
CVE-2026-33818

*
  • L
CVE-2026-56862

*
  • L
Directory Traversal

*
  • L
Link Following

*
  • L
GHSA-259r-337f-4rfw

*
  • L
GHSA-hrxh-6v49-42gf

*
  • L
CVE-2026-56852

*
  • L
CVE-2026-46600

*
  • L
CVE-2026-50195

*
  • L
Symlink Following

*
  • L
Improper Input Validation

*
  • L
GO-2026-5932

*
  • L
CVE-2026-39822

*
  • L
CVE-2026-42505

*
  • H
Untrusted Search Path

*
  • L
Uncontrolled Memory Allocation

*
  • L
Untrusted Search Path

*
  • L
Improper Input Validation

*
  • L
CVE-2026-47262

*
  • L
GHSA-w5pp-99ch-qj29

*
  • L
Resource Exhaustion

*
  • L
Integer Overflow or Wraparound

*
  • L
Directory Traversal

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • L
CVE-2026-39821

*
  • L
Improper Restriction of Rendered UI Layers or Frames

*
  • L
Improper Verification of Cryptographic Signature

*
  • L
Improper Certificate Validation

*
  • L
CVE-2026-42507

*
  • L
CVE-2026-46595

*
  • L
CVE-2026-39824

*
  • L
Improper Restriction of Rendered UI Layers or Frames

*
  • L
Missing Authorization

*
  • L
CVE-2024-45338

*
  • H
Authentication Bypass

*
  • L
Directory Traversal

*
  • L
Out-of-Bounds

*
  • L
CVE-2026-27145

*
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • H
Off-by-one Error

*
  • L
Improper Enforcement of Message Integrity During Transmission in a Communication Channel

*
  • L
Uncontrolled Search Path Element

*
  • M
CVE-2025-11579

*
  • L
CVE-2026-42504

*
  • L
Cross-site Scripting (XSS)

*
  • L
CVE-2026-46598

*
  • L
Reachable Assertion

*
  • L
Deserialization of Untrusted Data

*
  • L
Incorrect Type Conversion or Cast

*
  • C
Improper Encoding or Escaping of Output

*
  • H
Symlink Following

*
  • L
Improper Certificate Validation

*
  • H
Directory Traversal

*
  • L
Missing Authorization

*
  • L
Cross-site Scripting (XSS)

*
  • L
Improper Certificate Validation

*
  • M
CVE-2025-47911

*
  • L
Improper Restriction of Rendered UI Layers or Frames

*
  • L
CVE-2025-58181

*
  • L
Arbitrary Argument Injection

*
  • H
Insufficiently Protected Credentials

*
  • L
Improper Validation of Specified Type of Input

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • C
CVE-2026-1229

*
  • L
GHSA-xr7q-jx4m-x55m

*
  • M
Missing Initialization of Resource

*
  • L
CVE-2025-22870

*
  • L
Improper Authorization

*
  • L
CVE-2025-22872

*
  • M
Memory Leak

*
  • L
CVE-2025-47914

*
  • L
CVE-2025-22869

*
  • M
Improper Validation of Integrity Check Value

*
  • L
CVE-2024-41110

*
  • L
Integer Underflow

*
  • L
Resource Exhaustion

*
  • L
Improper Validation of Array Index

*
  • H
Incorrect Execution-Assigned Permissions

*
  • H
Integer Overflow or Wraparound

*
  • L
Uncontrolled Recursion

*
  • C
Directory Traversal

*
  • H
Incorrect Behavior Order: Validate Before Canonicalize

*
  • L
Improper Cleanup on Thrown Exception

*