openshift4/ose-olm-catalogd-rhel9

Direct Vulnerabilities

Known vulnerabilities in the openshift4/ose-olm-catalogd-rhel9 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Improper Handling of Missing Special Element

*
  • M
Cross-site Scripting (XSS)

*
  • M
Directory Traversal

*
  • H
Unchecked Input for Loop Condition

*
  • M
Directory Traversal

*
  • H
Inefficient Regular Expression Complexity

*
  • M
Server-Side Request Forgery (SSRF)

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Insufficiently Protected Credentials

*
  • M
Directory Traversal

*
  • L
Server-Side Request Forgery (SSRF)

*
  • M
Directory Traversal

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Excessive Platform Resource Consumption within a Loop

*
  • H
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Improperly Implemented Security Check for Standard

*
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Buffer Overflow

*
  • M
Open Redirect

*
  • M
XML External Entity (XXE) Injection

*
  • H
Incorrect Calculation of Buffer Size

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Validation of Specified Quantity in Input

*
  • M
Creation of Temporary File in Directory with Incorrect Permissions

*
  • H
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization

*
  • L
Inefficient Regular Expression Complexity

*
  • M
Improper Validation of Specified Index, Position, or Offset in Input

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Resource Exhaustion

*
  • H
Reachable Assertion

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Directory Traversal

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
NULL Pointer Dereference

*
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

*
  • M
Improper Certificate Validation

*
  • L
Inefficient Regular Expression Complexity

*
  • L
CVE-2025-58186

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Resource Exhaustion

*
  • M
Missing Reference to Active Allocated Resource

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Expected Behavior Violation

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Use of Uninitialized Resource

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • H
Arbitrary Code Injection

*
  • M
Open Redirect

*
  • M
Open Redirect

*