picketlink-bindings vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the picketlink-bindings package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')

<0:2.5.4-23.SP18_redhat_2.1.ep6.el7
  • H
Improper Input Validation

<0:2.5.4-17.SP15_redhat_1.1.ep6.el7
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:2.5.4-22.SP18_redhat_1.1.ep6.el7
  • H
Improper Input Validation

<0:2.5.4-22.SP18_redhat_1.1.ep6.el7
  • M
Access Restriction Bypass

<0:2.5.4-8.SP7_redhat_1.1.ep6.el7
  • M
Improper Cleanup on Thrown Exception

<0:2.5.3-15.SP16_redhat_1.1.ep6.el7
  • M
Improper Access Control

<0:2.5.3-15.SP16_redhat_1.1.ep6.el7
  • M
Incorrect Authorization

<0:2.5.3-15.SP16_redhat_1.1.ep6.el7
  • M
Incorrect Authorization

<0:2.5.3-15.SP16_redhat_1.1.ep6.el7
  • H
Insufficient Verification of Data Authenticity

<0:2.5.4-5.SP4_redhat_1.1.ep6.el7
  • H
Cross-site Scripting (XSS)

<0:2.5.4-5.SP4_redhat_1.1.ep6.el7
  • H
Authentication Bypass by Primary Weakness

<0:2.5.4-5.SP4_redhat_1.1.ep6.el7
  • H
Improperly Implemented Security Check for Standard

<0:2.5.4-5.SP4_redhat_1.1.ep6.el7
  • H
Use of a Broken or Risky Cryptographic Algorithm

<0:2.5.4-5.SP4_redhat_1.1.ep6.el7
  • H
Incorrect Permission Assignment for Critical Resource

<0:2.5.4-5.SP4_redhat_1.1.ep6.el7
  • C
CVE-2016-2141

<0:2.5.4-11.SP9_redhat_2.1.ep6.el7
  • H
Information Exposure

<0:2.5.4-5.SP4_redhat_1.1.ep6.el7
  • H
Information Exposure

<0:2.5.4-23.SP18_redhat_2.1.ep6.el7
  • M
Improper Input Validation

<0:2.5.4-14.SP12_redhat_1.1.ep6.el7
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:2.5.4-23.SP18_redhat_2.1.ep6.el7
  • H
Improper Input Validation

<0:2.5.4-22.SP18_redhat_1.1.ep6.el7
  • H
Incorrect Privilege Assignment

<0:2.5.4-17.SP15_redhat_1.1.ep6.el7
  • M
Improper Input Validation

<0:2.5.4-13.SP11_redhat_1.1.ep6.el7
  • C
Directory Traversal

<0:2.5.4-11.SP9_redhat_2.1.ep6.el7
  • M
Improper Input Validation

<0:2.5.3-11.SP12_redhat_1.1.ep6.el7
  • H
Out-of-Bounds

<0:2.5.4-23.SP18_redhat_2.1.ep6.el7
  • H
Deserialization of Untrusted Data

<0:2.5.4-17.SP15_redhat_1.1.ep6.el7
  • M
XML External Entity (XXE) Injection

<0:2.5.3-15.SP16_redhat_1.1.ep6.el7