datahub-upgrade

Direct Vulnerabilities

Known vulnerabilities in the datahub-upgrade package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2026-41841

<1.7.0-r0
  • L
Information Exposure

<1.7.0-r0
  • M
CVE-2026-41852

<1.7.0-r0
  • L
CVE-2026-41842

<1.7.0-r0
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<1.7.0-r0
  • C
Improper Certificate Validation

<1.7.0-r0
  • L
GHSA-mfg7-5gfp-c4w3

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • L
CVE-2026-41853

<1.7.0-r0
  • L
Use of Insufficiently Random Values

<1.7.0-r0
  • L
CVE-2026-41726

<1.7.0-r0
  • M
CVE-2026-41844

<1.7.0-r0
  • L
CVE-2026-41843

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • M
Allocation of Resources Without Limits or Throttling

<1.7.0-r0
  • H
Allocation of Resources Without Limits or Throttling

<1.7.0-r0
  • L
Information Exposure

<1.7.0-r0
  • L
CRLF Injection

<1.7.0-r0
  • L
Improper Check for Certificate Revocation

<1.7.0-r0
  • L
Improper Access Control

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • H
Resource Exhaustion

<1.7.0-r0
  • L
Uncontrolled Recursion

<1.7.0-r0
  • M
CVE-2026-41846

<1.7.0-r0
  • L
CRLF Injection

<1.7.0-r0
  • M
HTTP Request Smuggling

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • M
CVE-2026-41845

<1.7.0-r0
  • C
XML External Entity (XXE) Injection

<1.7.0-r0
  • L
Not Failing Securely ('Failing Open')

<1.7.0-r0
  • L
HTTP Request Smuggling

<1.7.0-r0
  • L
CVE-2026-41850

<1.7.0-r0
  • L
GHSA-v74w-7mr3-4qg3

<1.7.0-r0
  • L
CVE-2026-59949

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • H
CVE-2026-41851

<1.7.0-r0
  • M
CRLF Injection

<1.7.0-r0
  • H
Resource Exhaustion

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • H
Resource Exhaustion

<1.7.0-r0
  • H
CVE-2026-41848

<1.7.0-r0
  • H
HTTP Request Smuggling

<1.7.0-r0
  • L
Time-of-check Time-of-use (TOCTOU)

<1.7.0-r0
  • L
Allocation of Resources Without Limits or Throttling

<1.7.0-r0
  • L
Allocation of Resources Without Limits or Throttling

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • H
Memory Leak

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • L
Improper Check or Handling of Exceptional Conditions

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • L
Incomplete Blacklist

*
  • L
Improper Verification of Cryptographic Signature

<1.7.0-r0
  • L
Allocation of Resources Without Limits or Throttling

<1.7.0-r0
  • L
Incomplete Blacklist

*
  • L
CVE-2026-41731

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • H
Memory Leak

<1.7.0-r0
  • L
Resource Exhaustion

<1.7.0-r0
  • L
Improper Verification of Source of a Communication Channel

<1.7.0-r0
  • L
Improper Access Control

<1.7.0-r0
  • C
Insufficient Verification of Data Authenticity

<1.7.0-r0
  • C
Insufficient Verification of Data Authenticity

<1.7.0-r0