openshift-service-mesh/istio-must-gather-rhel9

Direct Vulnerabilities

Known vulnerabilities in the openshift-service-mesh/istio-must-gather-rhel9 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Time-of-check Time-of-use (TOCTOU)

*
  • H
Reliance on Untrusted Inputs in a Security Decision

*
  • H
Reliance on Untrusted Inputs in a Security Decision

*
  • H
Reliance on Untrusted Inputs in a Security Decision

*
  • H
Reliance on Untrusted Inputs in a Security Decision

*
  • H
Reliance on Untrusted Inputs in a Security Decision

*
  • H
Unchecked Input for Loop Condition

*
  • H
Unchecked Input for Loop Condition

*
  • H
Unchecked Input for Loop Condition

*
  • H
Unchecked Input for Loop Condition

*
  • H
Unchecked Input for Loop Condition

*
  • M
Improperly Implemented Security Check for Standard

*
  • M
Improperly Implemented Security Check for Standard

*
  • M
Improperly Implemented Security Check for Standard

*
  • M
Improperly Implemented Security Check for Standard

*
  • M
Improperly Implemented Security Check for Standard

*
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • L
Time-of-check Time-of-use (TOCTOU)

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • L
Missing Release of Resource after Effective Lifetime

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • L
Information Exposure

*
  • L
Authentication Bypass by Primary Weakness

*
  • L
Improper Certificate Validation

*
  • L
Information Exposure

*
  • M
Improper Certificate Validation

*
  • M
Improper Certificate Validation

*
  • L
Improperly Implemented Security Check for Standard

*
  • L
Improper Certificate Validation

*
  • M
Improper Certificate Validation

*
  • L
Information Exposure

*
  • L
Authentication Bypass by Primary Weakness

*
  • L
Improperly Implemented Security Check for Standard

*
  • L
Improperly Implemented Security Check for Standard

*
  • L
Improper Certificate Validation

*
  • L
Authentication Bypass by Primary Weakness

*
  • L
Improperly Implemented Security Check for Standard

*
  • L
Improper Certificate Validation

*
  • L
Information Exposure

*
  • L
Authentication Bypass by Primary Weakness

*
  • M
Improper Certificate Validation

*
  • L
Improperly Implemented Security Check for Standard

*
  • L
Improper Certificate Validation

*
  • L
Information Exposure

*
  • M
Improper Certificate Validation

*
  • L
Authentication Bypass by Primary Weakness

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Validation of Specified Quantity in Input

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Validation of Specified Quantity in Input

*
  • L
Improper Validation of Specified Quantity in Input

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Validation of Specified Quantity in Input

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
Improper Validation of Specified Quantity in Input

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Directory Traversal

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Directory Traversal

*
  • M
Directory Traversal

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Directory Traversal

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Directory Traversal

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Creation of Temporary File in Directory with Incorrect Permissions

*
  • M
NULL Pointer Dereference

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
NULL Pointer Dereference

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Creation of Temporary File in Directory with Incorrect Permissions

*
  • M
Creation of Temporary File in Directory with Incorrect Permissions

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Creation of Temporary File in Directory with Incorrect Permissions

*
  • M
NULL Pointer Dereference

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
Creation of Temporary File in Directory with Incorrect Permissions

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Server-Side Request Forgery (SSRF)

*
  • M
CVE-2026-0858

*
  • M
CVE-2026-0858

*
  • M
CVE-2026-0858

*
  • M
CVE-2026-0858

*
  • M
CVE-2026-0858

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Link Following

*
  • M
Incomplete Blacklist

*
  • M
Invokable Control Element in Multi-Thread Context with non-Final Static Storable or Member Element

*
  • M
Incomplete Blacklist

*
  • M
Link Following

*
  • M
Incomplete Blacklist

*
  • M
Link Following

*
  • M
Invokable Control Element in Multi-Thread Context with non-Final Static Storable or Member Element

*
  • M
Invokable Control Element in Multi-Thread Context with non-Final Static Storable or Member Element

*
  • M
Link Following

*
  • M
Incomplete Blacklist

*
  • M
Invokable Control Element in Multi-Thread Context with non-Final Static Storable or Member Element

*
  • M
Link Following

*
  • M
Incomplete Blacklist

*
  • M
Invokable Control Element in Multi-Thread Context with non-Final Static Storable or Member Element

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • L
HTTP Request Smuggling

*
  • L
Logging of Excessive Data

*
  • M
HTTP Request Smuggling

*
  • L
Logging of Excessive Data

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Directory Traversal

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Directory Traversal

*
  • M
HTTP Request Smuggling

*
  • L
Logging of Excessive Data

*
  • L
Logging of Excessive Data

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
HTTP Request Smuggling

*
  • M
Directory Traversal

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Directory Traversal

*
  • M
HTTP Request Smuggling

*
  • L
Logging of Excessive Data

*
  • L
HTTP Request Smuggling

*
  • M
Directory Traversal

*
  • L
HTTP Request Smuggling

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • L
HTTP Request Smuggling

*
  • L
HTTP Request Smuggling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
HTTP Request Smuggling

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Inefficient Regular Expression Complexity

*
  • L
Inefficient Regular Expression Complexity

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • L
Inefficient Regular Expression Complexity

*
  • L
Inefficient Regular Expression Complexity

*
  • M
Improper Authentication

*
  • M
Improper Authentication

*
  • M
Protection Mechanism Failure

*
  • M
Protection Mechanism Failure

*
  • M
Improper Authentication

*
  • M
Improper Authentication

*
  • M
Improper Authentication

*
  • M
Protection Mechanism Failure

*
  • M
Protection Mechanism Failure

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Protection Mechanism Failure

*
  • L
Inefficient Regular Expression Complexity

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Cross-site Scripting (XSS)

*
  • M
Missing Reference to Active Allocated Resource

*
  • M
Missing Reference to Active Allocated Resource

*
  • M
Missing Reference to Active Allocated Resource

*
  • M
Missing Reference to Active Allocated Resource

*
  • M
Missing Reference to Active Allocated Resource

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Integer Overflow or Wraparound

*
  • M
Uncaught Exception

*
  • M
Uncaught Exception

*
  • M
Uncaught Exception

*
  • M
Uncaught Exception

*
  • M
Uncaught Exception

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • M
Open Redirect

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
NULL Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Reachable Assertion

*
  • M
Reachable Assertion

*
  • M
Reachable Assertion

*
  • M
Reachable Assertion

*
  • M
Reachable Assertion

*
  • M
HTTP Request Smuggling

*
  • M
HTTP Request Smuggling

*
  • M
HTTP Request Smuggling

*
  • M
HTTP Request Smuggling

*
  • M
HTTP Request Smuggling

*