openshift4/ztp-site-generate-rhel8

Direct Vulnerabilities

Known vulnerabilities in the openshift4/ztp-site-generate-rhel8 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Incorrect Authorization

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Integer Overflow or Wraparound

*
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

*
  • H
Use of Externally-Controlled Format String

*
  • M
Insufficiently Protected Credentials

*
  • M
Directory Traversal

*
  • L
Server-Side Request Forgery (SSRF)

*
  • H
Directory Traversal

*
  • H
Reliance on Untrusted Inputs in a Security Decision

*
  • H
OS Command Injection

*
  • M
Improperly Implemented Security Check for Standard

*
  • H
Plaintext Storage of a Password

*
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Integer Overflow or Wraparound

*
  • H
Release of Invalid Pointer or Reference

*
  • H
Improper Certificate Validation

*
  • M
Information Exposure

*
  • H
Unchecked Input for Loop Condition

*
  • H
Integer Overflow or Wraparound

*
  • H
Out-of-bounds Read

*
  • M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • H
Out-of-bounds Read

*
  • H
Improper Certificate Validation

*
  • M
Creation of Temporary File in Directory with Incorrect Permissions

*
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • L
CVE-2025-58186

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Resource Exhaustion

*
  • M
Missing Reference to Active Allocated Resource

*
  • M
Expected Behavior Violation

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Use of Uninitialized Resource

*
  • L
Incorrect Default Permissions

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • H
Arbitrary Code Injection

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • H
Link Following

*