signoz-otel-collector-fips-0.129

Direct Vulnerabilities

Known vulnerabilities in the signoz-otel-collector-fips-0.129 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • L
Directory Traversal

*
  • H
Incorrect Authorization

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • H
Off-by-one Error

*
  • L
CVE-2026-42507

*
  • M
Cross-site Scripting (XSS)

*
  • H
Symlink Following

*
  • L
Direct Request ('Forced Browsing')

*
  • L
Improper Certificate Validation

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • L
GO-2026-5932

*
  • H
NULL Pointer Dereference

*
  • H
Authentication Bypass

*
  • L
Improper Restriction of Rendered UI Layers or Frames

*
  • L
Untrusted Search Path

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • L
Information Exposure

*
  • L
CVE-2026-32280

*
  • L
CVE-2026-39821

*
  • L
CVE-2026-39825

*
  • M
Link Following

*
  • L
Resource Exhaustion

*
  • H
Untrusted Search Path

*
  • L
Improper Certificate Validation

*
  • L
Cross-site Scripting (XSS)

*
  • L
Uncontrolled Search Path Element

*
  • M
Link Following

*
  • L
CVE-2026-2303

*
  • L
CVE-2026-42505

*
  • L
CVE-2026-39824

*
  • L
CVE-2026-39822

*
  • M
Out-of-bounds Write

*
  • M
Cross-site Scripting (XSS)

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Restriction of Rendered UI Layers or Frames

*
  • L
CVE-2026-27145

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • L
CVE-2026-42499

*
  • L
CVE-2026-46598

*
  • L
Improper Restriction of Rendered UI Layers or Frames

*
  • L
GHSA-xmrv-pmrh-hhx2

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Uncaught Exception

*
  • L
CVE-2026-42504

*
  • L
Deserialization of Untrusted Data

*
  • L
Incorrect Type Conversion or Cast

*
  • L
Cross-site Scripting (XSS)

*
  • H
Double Free

*
  • L
Improper Encoding or Escaping of Output

*
  • H
Improper Certificate Validation

*
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • L
Improper Verification of Cryptographic Signature

*
  • L
CVE-2026-55701

*
  • L
Cross-site Scripting (XSS)

*
  • L
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • L
Improper Certificate Validation

*
  • L
Integer Overflow or Wraparound

*
  • L
Improper Enforcement of Message Integrity During Transmission in a Communication Channel

*
  • L
Improper Initialization

*
  • L
Uncontrolled Memory Allocation

*
  • L
Improper Validation of Array Index

*
  • L
Resource Exhaustion

*
  • L
CVE-2026-42501

*
  • L
Out-of-Bounds

*
  • L
Improper Authorization

*
  • L
Missing Authorization

*
  • L
CVE-2026-46595

*
  • L
Integer Overflow or Wraparound

*
  • L
Missing Authorization

*
  • C
CVE-2026-27143

*
  • M
Missing Initialization of Resource

<0.129.14-r0
  • M
Information Exposure

<0.129.14-r0
  • L
CVE-2025-58181

<0.129.14-r0
  • L
Allocation of Resources Without Limits or Throttling

<0.129.14-r0
  • M
CVE-2025-47911

<0.129.14-r0
  • L
Reachable Assertion

<0.129.14-r0
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0.129.14-r0
  • L
CVE-2025-63811

<0.129.14-r0
  • L
CVE-2025-47914

<0.129.14-r0