microshift

Direct Vulnerabilities

Known vulnerabilities in the microshift package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Creation of Immutable Text Using String Concatenation

<0:4.16.69-202608202336.p0.g763478c.assembly.4.16.69.el9
  • H
Improper Validation of Unsafe Equivalence in Input

<0:4.16.69-202608202336.p0.g763478c.assembly.4.16.69.el9
  • H
Unchecked Input for Loop Condition

<0:4.16.69-202608202336.p0.g763478c.assembly.4.16.69.el9
  • H
Unchecked Input for Loop Condition

<0:4.16.69-202608202336.p0.g763478c.assembly.4.16.69.el9
  • H
Creation of Immutable Text Using String Concatenation

<0:4.18.54-202608211117.p0.g8eb6c29.assembly.4.18.54.el9
  • H
Unchecked Input for Loop Condition

<0:4.18.54-202608211117.p0.g8eb6c29.assembly.4.18.54.el9
  • H
Unchecked Input for Loop Condition

<0:4.19.43-202608141837.p0.gcd3decf.assembly.4.19.43.el9
  • H
Excessive Platform Resource Consumption within a Loop

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Cross-site Scripting (XSS)

*
  • H
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • H
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Allocation of Resources Without Limits or Throttling

<0:4.19.42-202608062155.p0.g46c9d67.assembly.4.19.42.el9
  • H
Arbitrary Code Injection

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Integer Overflow or Wraparound

*
  • H
Improper Verification of Cryptographic Signature

*
  • H
Cross-site Scripting (XSS)

*
  • H
Cross-site Scripting (XSS)

*
  • M
Excessive Platform Resource Consumption within a Loop

*
  • M
Cross-site Scripting (XSS)

*
  • M
Improperly Implemented Security Check for Standard

*
  • H
Plaintext Storage of a Password

*
  • H
Improper Preservation of Permissions

*
  • M
Cross-site Scripting (XSS)

*
  • M
External Control of Assumed-Immutable Web Parameter

*
  • H
Improper Certificate Validation

*
  • M
Improper Output Neutralization for Logs

*
  • H
Missing Release of Resource after Effective Lifetime

*
  • M
Improper Validation of Specified Type of Input

*
  • H
Improper Validation of Specified Quantity in Input

*
  • H
Improper Preservation of Permissions

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Integer Overflow or Wraparound

*
  • H
Incorrect Implementation of Authentication Algorithm

*
  • M
Improper Validation of Unsafe Equivalence in Input

*
  • H
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization

<0:4.16.63-202605251227.p0.g1133ac0.assembly.4.16.63.el9
  • H
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization

<0:4.19.32-202605212036.p0.g27d51c3.assembly.4.19.32.el9
  • H
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization

<0:4.18.42-202605181217.p0.gf4eeb37.assembly.4.18.42.el9
  • M
Integer Overflow or Wraparound

*
  • M
HTTP Request Smuggling

*
  • H
Improper Validation of Unsafe Equivalence in Input

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Resource Exhaustion

<0:4.16.58-202603160404.p0.gb9661ec.assembly.4.16.58.el9
  • M
NULL Pointer Dereference

*
  • H
Improper Certificate Validation

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Resource Exhaustion

*
  • M
Resource Exhaustion

<0:4.17.49-202602161401.p0.g708a69a.assembly.4.17.49.el9
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Certificate Validation

*
  • M
Out-of-bounds Read

*
  • L
CVE-2025-58186

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Missing Reference to Active Allocated Resource

*
  • H
Incorrect Execution-Assigned Permissions

*
  • M
Reachable Assertion

*
  • H
Improper Handling of Unexpected Data Type

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Missing Authentication for Critical Function

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Output Neutralization for Logs

*
  • M
Expected Behavior Violation

*
  • M
Expected Behavior Violation

*
  • M
Information Exposure

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
CVE-2025-4673

*
  • M
Cross-site Scripting (XSS)

*
  • L
Incorrect Authorization

*
  • L
Incorrect Authorization

*
  • H
Asymmetric Resource Consumption (Amplification)

*
  • M
Improper Input Validation

*
  • H
Improper Validation of Syntactic Correctness of Input

*
  • M
Information Exposure

*
  • H
Information Exposure

<0:4.14.42-202411280904.p0.gcf4d04f.assembly.4.14.42.el9
  • H
Information Exposure

<0:4.15.41-202412091343.p0.gcf9680e.assembly.4.15.41.el9
  • H
Information Exposure

<0:4.16.24-202411220522.p0.gcc4fedc.assembly.4.16.24.el9
  • H
Information Exposure

<0:4.17.7-202411280904.p0.g129334d.assembly.4.17.7.el9
  • L
Improper Verification of Cryptographic Signature

*
  • M
Information Exposure

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Handling of Exceptional Conditions

*
  • M
Use of Uninitialized Variable

*
  • H
Allocation of Resources Without Limits or Throttling

<0:4.14.0-202310261440.p0.g1586504.assembly.4.14.0.el9
  • H
Buffer Access with Incorrect Length Value

<0:4.14.0-202310261440.p0.g1586504.assembly.4.14.0.el9
  • H
Cross-site Scripting (XSS)

<0:4.14.0-202310261440.p0.g1586504.assembly.4.14.0.el9
  • H
Cross-site Scripting (XSS)

<0:4.14.0-202310261440.p0.g1586504.assembly.4.14.0.el9
  • H
Information Exposure

<0:4.16.0-202406260523.p0.gc5a37df.assembly.4.16.0.el9
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:4.16.0-202406260523.p0.gc5a37df.assembly.4.16.0.el9
  • M
Improper Input Validation

*
  • H
Resource Exhaustion

<0:4.15.12-202405021504.p0.ge0938ef.assembly.4.15.12.el9
  • H
Resource Exhaustion

<0:4.14.24-202405021453.p0.g6e3abf7.assembly.4.14.24.el9
  • H
Information Exposure

<0:4.16.0-202406260523.p0.gc5a37df.assembly.4.16.0.el9
  • M
Resource Exhaustion

<0:4.13.0-202305161335.p0.g17cae44.assembly.4.13.0.el9
  • H
Memory Leak

<0:4.14.19-202403280926.p0.gc1f8861.assembly.4.14.19.el9
  • H
Memory Leak

<0:4.15.6-202403280951.p0.g94b1c2a.assembly.4.15.6.el9
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:4.16.0-202406260523.p0.gc5a37df.assembly.4.16.0.el9
  • H
Information Exposure

<0:4.15.0-202402260721.p0.g799289b.assembly.4.15.0.el9
  • H
Resource Exhaustion

<0:4.15.0-202402260721.p0.g799289b.assembly.4.15.0.el9
  • H
Resource Exhaustion

<0:4.15.0-202402260721.p0.g799289b.assembly.4.15.0.el9
  • M
Resource Exhaustion

<0:4.14.10-202401181720.p0.gd25a4c5.assembly.4.14.10.el9
  • M
Allocation of Resources Without Limits or Throttling

*
  • H
Resource Exhaustion

<0:4.14.2-202311091609.p0.gd80d6de.assembly.4.14.2.el9
  • H
Resource Exhaustion

<0:4.14.2-202311091609.p0.gd80d6de.assembly.4.14.2.el9
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
HTTP Response Splitting

*
  • H
CVE-2023-2727

<0:4.14.0-202310261440.p0.g1586504.assembly.4.14.0.el9
  • H
CVE-2023-2728

<0:4.14.0-202310261440.p0.g1586504.assembly.4.14.0.el9
  • M
Improper Handling of Unicode Encoding

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Improper Handling of Unicode Encoding

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Improper Handling of Unicode Encoding

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Improper Handling of Unicode Encoding

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • H
Authentication Bypass

<0:4.14.0-202310261440.p0.g1586504.assembly.4.14.0.el9
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Resource Exhaustion

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Resource Exhaustion

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Arbitrary Code Injection

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Arbitrary Code Injection

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Resource Exhaustion

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Resource Exhaustion

<0:4.13.3-202306081201.p0.g16708cc.assembly.4.13.3.el9
  • M
Incorrect Default Permissions

*
  • M
Authentication Bypass by Primary Weakness

*
  • M
Authentication Bypass

*
  • M
Directory Traversal

*
  • M
Resource Exhaustion

<0:4.13.0-202305161335.p0.g17cae44.assembly.4.13.0.el9
  • M
Allocation of Resources Without Limits or Throttling

<0:4.13.0-202305161335.p0.g17cae44.assembly.4.13.0.el9
  • M
Allocation of Resources Without Limits or Throttling

<0:4.13.0-202305161335.p0.g17cae44.assembly.4.13.0.el9