Direct Vulnerabilities

Known vulnerabilities in the ceph package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Cross-site Scripting (XSS)

*
  • H
Use of Multiple Resources with Duplicate Identifier

*
  • H
Improper Input Validation

*
  • H
Improper Input Validation

*
  • H
Improper Input Validation

*
  • M
Missing Required Cryptographic Step

*
  • M
Missing Required Cryptographic Step

*
  • M
Missing Required Cryptographic Step

*
  • M
Improperly Controlled Modification of Dynamically-Determined Object Attributes

*
  • M
Improper Validation of Certificate with Host Mismatch

*
  • M
Improper Validation of Certificate with Host Mismatch

*
  • M
Improper Validation of Certificate with Host Mismatch

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
CVE-2025-68121

*
  • M
CVE-2025-68121

*
  • H
Excessive Platform Resource Consumption within a Loop

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Improper Certificate Validation

*
  • M
Improper Certificate Validation

*
  • M
Improper Certificate Validation

*
  • H
Cross-site Scripting (XSS)

*
  • H
Cross-site Scripting (XSS)

*
  • H
Cross-site Scripting (XSS)

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • M
Improper Verification of Source of a Communication Channel

*
  • M
Improper Verification of Source of a Communication Channel

*
  • M
Improper Verification of Source of a Communication Channel

*
  • M
Improper Verification of Source of a Communication Channel

*
  • M
Improper Verification of Source of a Communication Channel

*
  • H
Cross-site Scripting (XSS)

*
  • M
CVE-2025-68121

*
  • H
Excessive Platform Resource Consumption within a Loop

*
  • H
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Least Privilege Violation

<2:20.1.0-144.el10cp
  • M
Improper Certificate Validation

<2:20.1.0-144.el10cp
  • M
Cross-site Scripting (XSS)

<2:20.1.0-144.el10cp
  • H
Asymmetric Resource Consumption (Amplification)

<2:20.1.0-144.el10cp
  • H
Link Following

*
  • H
Exposure of Resource to Wrong Sphere

*
  • H
Link Following

*
  • H
Exposure of Resource to Wrong Sphere

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Least Privilege Violation

*
  • M
Least Privilege Violation

*
  • M
Least Privilege Violation

*
  • M
Least Privilege Violation

*
  • M
CVE-2025-4673

*
  • M
CVE-2025-4673

*
  • M
CVE-2025-4673

*
  • M
Information Exposure

*
  • M
Information Exposure

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • H
Resource Exhaustion

*
  • M
Resource Exhaustion

*
  • M
Resource Exhaustion

*
  • M
Directory Traversal

*
  • M
Directory Traversal

*
  • M
Directory Traversal

*
  • M
Improper Input Validation

*
  • M
Improper Input Validation

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Inefficient Regular Expression Complexity

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Resource Exhaustion

*
  • M
Resource Exhaustion

*
  • L
Cross-site Scripting (XSS)

*
  • L
Cross-site Scripting (XSS)

*
  • M
Placement of User into Incorrect Group

*
  • M
Placement of User into Incorrect Group

*
  • M
Inefficient Regular Expression Complexity

*
  • M
Inefficient Regular Expression Complexity

*
  • M
NULL Pointer Dereference

*
  • M
Resource Exhaustion

*
  • M
Out-of-Bounds

*
  • M
Improper Input Validation

*
  • M
Use After Free

*
  • M
HTTP Response Splitting

*
  • M
HTTP Response Splitting

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Authorization

*
  • M
Cross-site Scripting (XSS)

*
  • M
Improper Access Control

*
  • M
Improper Input Validation

*
  • H
Insufficiently Protected Credentials

*
  • H
Insufficiently Protected Credentials

*
  • H
Improper Authentication

*
  • H
Improper Authentication

*
  • M
Memory Leak

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Incorrect Authorization

*
  • M
Improper Authentication

*
  • M
Improper Authentication

*
  • M
Improper Input Validation

*
  • M
Cleartext Storage of Sensitive Information

*
  • M
Cleartext Storage of Sensitive Information

*
  • M
Authentication Bypass

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • M
Out-of-bounds Read

*
  • M
Authentication Bypass

*
  • M
Insufficiently Protected Credentials

*