Direct Vulnerabilities

Known vulnerabilities in the etcd package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Arbitrary Code Injection

*
  • H
Arbitrary Code Injection

*
  • H
Unchecked Input for Loop Condition

*
  • H
Unchecked Input for Loop Condition

*
  • M
Information Exposure

*
  • M
Improper Certificate Validation

*
  • M
Improper Certificate Validation

*
  • M
Information Exposure

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Integer Overflow or Wraparound

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
External Control of Assumed-Immutable Web Parameter

*
  • M
External Control of Assumed-Immutable Web Parameter

*
  • M
Authorization Bypass Through User-Controlled Key

*
  • M
Authorization Bypass Through User-Controlled Key

*
  • M
Improper Output Neutralization for Logs

*
  • M
Improper Output Neutralization for Logs

*
  • H
Improper Validation of Unsafe Equivalence in Input

*
  • H
Improper Validation of Unsafe Equivalence in Input

*
  • M
Improper Validation of Unsafe Equivalence in Input

*
  • M
Improper Validation of Unsafe Equivalence in Input

*
  • H
CVE-2026-33811

*
  • H
CVE-2026-33811

*
  • H
Multiple Locks of a Critical Resource

*
  • H
Multiple Locks of a Critical Resource

<0:3.4.26-9.5.el9ost
  • M
HTTP Request Smuggling

*
  • M
HTTP Request Smuggling

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Allocation of Resources Without Limits or Throttling

<0:3.4.26-9.5.el9ost
  • H
Improper Validation of Unsafe Equivalence in Input

*
  • H
Improper Validation of Unsafe Equivalence in Input

<0:3.4.26-9.5.el9ost
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • H
Time-of-check Time-of-use (TOCTOU)

<0:3.4.26-9.5.el9ost
  • M
Cross-site Scripting (XSS)

*
  • M
Excessive Platform Resource Consumption within a Loop

*
  • M
Cross-site Scripting (XSS)

*
  • M
Authorization Bypass Through User-Controlled Key

*
  • M
Missing Authentication for Critical Function

*
  • H
Missing Authentication for Critical Function

<0:3.4.26-9.5.el9ost
  • M
Authorization Bypass Through User-Controlled Key

*
  • H
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization

*
  • H
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization

<0:3.4.26-9.5.el9ost
  • H
Improper Certificate Validation

<0:3.4.26-9.5.el9ost
  • M
Allocation of Resources Without Limits or Throttling

*
  • H
Improper Certificate Validation

*
  • M
NULL Pointer Dereference

*
  • H
Improper Validation of Syntactic Correctness of Input

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
NULL Pointer Dereference

*
  • H
Improper Validation of Syntactic Correctness of Input

<0:3.4.26-9.5.el9ost
  • M
CVE-2025-68121

*
  • M
Directory Traversal

*
  • H
CVE-2025-68121

<0:3.4.26-9.5.el9ost
  • M
Directory Traversal

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • H
Allocation of Resources Without Limits or Throttling

<0:3.4.26-9.5.el9ost
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Out-of-bounds Read

*
  • L
CVE-2025-58186

*
  • M
Improper Certificate Validation

*
  • H
Excessive Platform Resource Consumption within a Loop

<0:3.4.26-9.5.el9ost
  • H
Excessive Platform Resource Consumption within a Loop

*
  • M
Improper Certificate Validation

*
  • L
CVE-2025-58186

*
  • M
Reachable Assertion

*
  • M
Reachable Assertion

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Creation of Immutable Text Using String Concatenation

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Output Neutralization for Logs

*
  • M
Improper Output Neutralization for Logs

*
  • M
Expected Behavior Violation

*
  • M
Expected Behavior Violation

*
  • M
Expected Behavior Violation

*
  • M
Expected Behavior Violation

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
CVE-2025-4673

*
  • M
CVE-2025-4673

*
  • M
HTTP Request Smuggling

*
  • M
HTTP Request Smuggling

*
  • M
Improper Input Validation

*
  • M
Improper Input Validation

*
  • M
Information Exposure

*
  • M
Information Exposure

*
  • L
Improper Verification of Cryptographic Signature

*
  • M
Information Exposure

*
  • L
Improper Verification of Cryptographic Signature

*
  • M
Information Exposure

*
  • M
Use of Uninitialized Variable

*
  • M
Use of Uninitialized Variable

*
  • H
Uncontrolled Recursion

<0:3.4.26-9.1.el9ost
  • M
Uncontrolled Recursion

*
  • M
Improperly Controlled Sequential Memory Allocation

*
  • H
Uncontrolled Recursion

<0:3.3.23-17.el8ost
  • M
Improper Input Validation

*
  • M
Improper Input Validation

*
  • M
Misinterpretation of Input

*
  • M
Misinterpretation of Input

*
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • H
Allocation of Resources Without Limits or Throttling

<0:3.3.23-16.el8ost
  • H
Buffer Access with Incorrect Length Value

<0:3.3.23-16.el8ost
  • H
Cross-site Scripting (XSS)

<0:3.3.23-16.el8ost
  • H
Cross-site Scripting (XSS)

<0:3.3.23-16.el8ost
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • H
Resource Exhaustion

<0:3.4.26-8.el9ost
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • H
Resource Exhaustion

<0:3.4.26-8.el9ost
  • H
Memory Leak

*
  • H
Memory Leak

<0:3.3.23-16.el8ost
  • H
Memory Leak

<0:3.4.26-8.el9ost
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Improper Input Validation

*
  • M
Improper Certificate Validation

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Arbitrary Code Injection

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Arbitrary Code Injection

*
  • M
Improper Certificate Validation

*
  • M
Improper Input Validation

*
  • H
Resource Exhaustion

<0:3.3.23-16.el8ost
  • M
Information Exposure

*
  • H
Information Exposure

<0:3.4.26-8.el9ost
  • H
Resource Exhaustion

<0:3.4.26-8.el9ost
  • H
Resource Exhaustion

<0:3.3.23-15.el8ost
  • H
Resource Exhaustion

<0:3.3.23-15.el8ost
  • H
Resource Exhaustion

<0:3.4.26-3.el9ost
  • H
Resource Exhaustion

<0:3.3.23-15.el8ost
  • H
Resource Exhaustion

<0:3.3.23-15.el8ost
  • H
Resource Exhaustion

<0:3.4.26-3.el9ost
  • H
Buffer Access with Incorrect Length Value

<0:3.3.23-16.el8ost
  • H
Cross-site Scripting (XSS)

<0:3.3.23-16.el8ost
  • H
Allocation of Resources Without Limits or Throttling

<0:3.3.23-16.el8ost
  • H
Cross-site Scripting (XSS)

<0:3.3.23-16.el8ost
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • M
Out-of-bounds Write

*
  • H
Resource Exhaustion

<0:3.4.26-3.el9ost
  • H
Resource Exhaustion

<0:3.3.23-15.el8ost
  • H
HTTP Response Splitting

<0:3.3.23-15.el8ost
  • L
Information Exposure

*
  • H
Information Exposure

<0:3.4.26-1.el9ost
  • L
Information Exposure

*
  • H
Improper Handling of Unicode Encoding

<0:3.3.23-14.el8ost
  • H
Improper Handling of Unicode Encoding

<0:3.3.23-14.el8ost
  • H
Improper Handling of Unicode Encoding

<0:3.3.23-14.el8ost
  • H
Improper Authentication

<0:3.4.26-1.el9ost
  • H
Improper Authentication

<0:3.3.23-14.el8ost
  • H
Improper Authentication

<0:3.3.23-14.el8ost
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:3.3.23-14.el8ost
  • H
Resource Exhaustion

<0:3.3.23-14.el8ost
  • H
Arbitrary Code Injection

<0:3.3.23-14.el8ost
  • H
Resource Exhaustion

<0:3.3.23-14.el8ost
  • M
Improper Authentication

<0:3.3.23-1.el8ost
  • L
Improper Authentication

*
  • L
Improper Authentication

*
  • L
Authentication Bypass by Primary Weakness

*
  • M
Authentication Bypass by Primary Weakness

<0:3.3.23-1.el8ost
  • L
Authentication Bypass by Primary Weakness

*
  • L
Resource Exhaustion

*
  • M
Resource Exhaustion

<0:3.3.23-1.el8ost
  • L
Resource Exhaustion

*
  • M
Improper Authorization

<0:3.3.23-1.el8ost
  • L
Improper Authorization

*
  • L
Improper Authorization

*
  • L
Resource Exhaustion

*
  • M
Resource Exhaustion

<0:3.3.23-1.el8ost
  • L
Resource Exhaustion

*
  • L
Resource Exhaustion

*
  • M
Resource Exhaustion

<0:3.3.23-1.el8ost
  • L
Resource Exhaustion

*
  • H
Resource Exhaustion

<0:3.3.23-14.el8ost
  • H
Resource Exhaustion

<0:3.3.23-14.el8ost
  • H
Resource Exhaustion

<0:3.3.23-14.el8ost
  • H
Resource Exhaustion

<0:3.3.23-14.el8ost
  • H
Resource Exhaustion

<0:3.3.23-12.el8ost
  • H
Resource Exhaustion

<0:3.3.23-12.el8ost
  • H
Resource Exhaustion

<0:3.4.14-3.el9ost
  • H
Allocation of Resources Without Limits or Throttling

<0:3.3.23-12.el8ost
  • H
Allocation of Resources Without Limits or Throttling

<0:3.3.23-12.el8ost
  • H
CVE-2022-41715

<0:3.3.23-12.el8ost
  • H
CVE-2022-41715

<0:3.3.23-12.el8ost
  • H
HTTP Request Smuggling

<0:3.3.23-12.el8ost
  • H
HTTP Request Smuggling

<0:3.3.23-12.el8ost
  • H
Resource Exhaustion

<0:3.3.23-12.el8ost
  • H
Resource Exhaustion

<0:3.3.23-12.el8ost
  • H
Resource Exhaustion

<0:3.3.23-12.el8ost
  • H
Resource Exhaustion

<0:3.3.23-12.el8ost
  • H
Information Exposure

<0:3.3.23-12.el8ost
  • H
Information Exposure

<0:3.3.23-12.el8ost
  • H
Improperly Controlled Sequential Memory Allocation

<0:3.3.23-12.el8ost
  • H
Improperly Controlled Sequential Memory Allocation

<0:3.3.23-12.el8ost
  • H
Improperly Controlled Sequential Memory Allocation

<0:3.3.23-12.el8ost
  • H
Improperly Controlled Sequential Memory Allocation

<0:3.3.23-12.el8ost
  • H
Improperly Controlled Sequential Memory Allocation

<0:3.3.23-10.el8ost
  • H
Improperly Controlled Sequential Memory Allocation

<0:3.3.23-10.el8ost
  • H
Improperly Controlled Sequential Memory Allocation

<0:3.3.23-12.el8ost
  • H
Improperly Controlled Sequential Memory Allocation

<0:3.3.23-12.el8ost
  • H
HTTP Request Smuggling

<0:3.3.23-12.el8ost
  • H
HTTP Request Smuggling

<0:3.3.23-12.el8ost
  • H
Insufficient Entropy

<0:3.3.23-12.el8ost
  • H
Insufficient Entropy

<0:3.3.23-12.el8ost
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Buffer Overflow

*
  • M
Buffer Overflow

*
  • H
Missing Release of Resource after Effective Lifetime

<0:3.3.23-10.el8ost
  • H
Missing Release of Resource after Effective Lifetime

<0:3.3.23-10.el8ost
  • M
Resource Exhaustion

*
  • M
Resource Exhaustion

*
  • M
Unchecked Return Value

*
  • M
Unchecked Return Value

*
  • M
Incorrect Privilege Assignment

*
  • M
Incorrect Privilege Assignment

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Information Exposure

*
  • M
Information Exposure

*
  • H
Resource Exhaustion

<0:3.3.23-7.el8ost
  • H
Resource Exhaustion

<0:3.3.23-7.el8ost
  • M
Race Condition

*
  • M
Race Condition

*
  • H
Improper Input Validation

<0:3.3.23-7.el8ost
  • H
Improper Input Validation

<0:3.3.23-7.el8ost
  • M
Resource Exhaustion

<0:3.3.23-3.1.el8ost.1
  • M
Resource Exhaustion

<0:3.3.23-3.1.el8ost.1
  • M
Improper Input Validation

<0:3.3.23-3.1.el8ost.1
  • M
Improper Input Validation

<0:3.3.23-3.1.el8ost.1
  • M
Improper Input Validation

<0:3.3.23-3.1.el8ost.1
  • M
Improper Input Validation

<0:3.3.23-3.1.el8ost.1
  • H
Improper Input Validation

<0:3.3.23-7.el8ost
  • H
Improper Input Validation

<0:3.3.23-7.el8ost
  • M
Allocation of Resources Without Limits or Throttling

<0:3.3.23-3.1.el8ost.1
  • M
Allocation of Resources Without Limits or Throttling

<0:3.3.23-3.1.el8ost.1