openshift4/oc-mirror-plugin-rhel9

Direct Vulnerabilities

Known vulnerabilities in the openshift4/oc-mirror-plugin-rhel9 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • H
Missing Release of Resource after Effective Lifetime

*
  • M
Improper Validation of Specified Type of Input

*
  • H
Improper Validation of Specified Quantity in Input

*
  • H
Improper Preservation of Permissions

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Integer Overflow or Wraparound

*
  • H
Improper Certificate Validation

*
  • M
Buffer Overflow

*
  • M
SQL Injection

*
  • M
Open Redirect

*
  • H
Unchecked Input for Loop Condition

*
  • H
Integer Overflow or Wraparound

*
  • H
Out-of-bounds Read

*
  • M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • H
Integer Overflow or Wraparound

*
  • H
Out-of-bounds Read

*
  • H
Improper Certificate Validation

*
  • M
Integer Overflow or Wraparound

*
  • H
Incorrect Calculation of Buffer Size

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Validation of Specified Quantity in Input

*
  • M
Authentication Bypass

*
  • M
Reliance on Untrusted Inputs in a Security Decision

*
  • M
Authorization Bypass Through User-Controlled Key

*
  • M
Insufficient Granularity of Access Control

*
  • M
Authentication Bypass

*
  • M
Information Exposure Through Log Files

*
  • L
Exposure of Data Element to Wrong Session

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Resource Exhaustion

*
  • M
Open Redirect

*
  • L
Access of Uninitialized Pointer

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Directory Traversal

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
NULL Pointer Dereference

*
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Certificate Validation

*
  • L
CVE-2025-58186

*
  • M
Out-of-bounds Read

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Missing Reference to Active Allocated Resource

*
  • H
Authentication Bypass

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Uncontrolled Memory Allocation

*
  • M
Expected Behavior Violation

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Use of Uninitialized Resource

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • H
Arbitrary Code Injection

*
  • L
Improper Input Validation

*