spark-4.0

Direct Vulnerabilities

Known vulnerabilities in the spark-4.0 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
GHSA-6cqp-g7gg-8hr5

<4.0.4-r1
  • L
GHSA-xx22-p4ch-683r

<4.0.4-r1
  • H
HTTP Request Smuggling

<4.0.4-r1
  • L
GHSA-jppx-w49h-x2qq

<4.0.4-r1
  • L
GHSA-q4f6-jm68-57ww

<4.0.4-r1
  • L
Resource Exhaustion

<4.0.4-r1
  • L
GHSA-4mp9-239f-g9hg

<4.0.4-r1
  • L
GHSA-93wv-jw9v-4972

<4.0.4-r1
  • L
GHSA-mvh2-crg5-v77c

<4.0.4-r1
  • L
Resource Exhaustion

<4.0.4-r1
  • L
GHSA-6jqx-86gh-f27w

<4.0.4-r1
  • L
GHSA-mfg7-5gfp-c4w3

<4.0.4-r1
  • L
GHSA-558v-64gr-wgg4

<4.0.4-r1
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<4.0.4-r1
  • L
Resource Exhaustion

<4.0.4-r1
  • M
HTTP Request Smuggling

<4.0.4-r1
  • L
GHSA-gcjf-9mgh-3p7g

<4.0.4-r1
  • H
Allocation of Resources Without Limits or Throttling

<4.0.4-r1
  • M
CRLF Injection

<4.0.4-r1
  • H
Resource Exhaustion

<4.0.4-r1
  • L
GHSA-c69g-56f8-xwqj

<4.0.4-r1
  • L
Improper Access Control

<4.0.4-r1
  • L
CVE-2026-59949

<4.0.4-r1
  • L
Stack-based Buffer Overflow

<4.0.3-r2
  • L
GHSA-wf8f-6423-gfxg

<4.0.3-r2
  • L
GHSA-72hv-8253-57qq

<4.0.3-r2
  • L
GHSA-xwmg-2g98-w7v9

<4.0.3-r2
  • L
GHSA-h46c-h94j-95f3

<4.0.3-r2
  • L
Information Exposure

<4.0.3-r2
  • L
GHSA-3wrr-7qpf-2prh

<4.0.3-r2
  • L
Uncontrolled Recursion

<4.0.3-r2
  • L
Resource Exhaustion

<4.0.3-r2
  • C
Insufficient Verification of Data Authenticity

<4.0.3-r1
  • C
Insufficient Verification of Data Authenticity

<4.0.3-r1
  • L
GHSA-c2gf-v879-257j

<4.0.3-r1
  • L
GHSA-5pvg-856g-cp85

<4.0.3-r1
  • L
GHSA-676x-f7gg-47vc

<4.0.3-r1
  • L
Resource Exhaustion

<4.0.3-r1
  • L
GHSA-3qp7-7mw8-wx86

<4.0.3-r1
  • L
Use of Insufficiently Random Values

<4.0.3-r1
  • L
GHSA-w573-9ffj-6ff9

<4.0.3-r1
  • L
GHSA-5x3r-wrvg-rp6q

<4.0.3-r1
  • L
Improper Access Control

<4.0.3-r1
  • H
Resource Exhaustion

<4.0.3-r1
  • L
Information Exposure

<4.0.3-r1
  • L
GHSA-xmv7-r254-6q78

<4.0.3-r1
  • L
Allocation of Resources Without Limits or Throttling

<4.0.3-r1
  • L
GHSA-x4gw-5cx5-pgmh

<4.0.3-r1
  • L
GHSA-vx9q-rhv9-3jvg

<4.0.3-r0
  • H
Out-of-bounds Read

<4.0.3-r0
  • L
Resource Exhaustion

<4.0.2-r12
  • L
Resource Exhaustion

<4.0.2-r12
  • C
HTTP Request Smuggling

<4.0.2-r12
  • L
GHSA-v8h7-rr48-vmmv

<4.0.2-r12
  • L
GHSA-cm33-6792-r9fm

<4.0.2-r12
  • L
GHSA-57rv-r2g8-2cj3

<4.0.2-r12
  • L
GHSA-f6hv-jmp6-3vwv

<4.0.2-r12
  • L
CRLF Injection

<4.0.2-r12
  • L
GHSA-mj4r-2hfc-f8p6

<4.0.2-r12
  • L
GHSA-45q3-82m4-75jr

<4.0.2-r12
  • L
GHSA-38f8-5428-x5cv

<4.0.2-r12
  • L
GHSA-xxqh-mfjm-7mv9

<4.0.2-r12
  • L
GHSA-m4cv-j2px-7723

<4.0.2-r12
  • L
Integer Overflow or Wraparound

<4.0.2-r12
  • C
HTTP Request Smuggling

<4.0.2-r12
  • C
Improper Input Validation

<4.0.2-r12
  • H
HTTP Request Smuggling

<4.0.2-r12
  • H
HTTP Response Splitting

<4.0.2-r12
  • L
GHSA-rwm7-x88c-3g2p

<4.0.2-r11
  • L
Missing Release of Resource after Effective Lifetime

<4.0.2-r11
  • L
GHSA-7pwc-h2j2-rjgj

<4.0.2-r11
  • L
Improper Validation of Certificate with Host Mismatch

<4.0.2-r11
  • M
Allocation of Resources Without Limits or Throttling

<4.0.2-r11
  • L
GHSA-3g76-f9xq-8vp6

<4.0.2-r11
  • L
CVE-2026-5598

<4.0.2-r11
  • L
CVE-2026-0636

<4.0.2-r11
  • H
Improper Encoding or Escaping of Output

<4.0.2-r11
  • H
Improper Encoding or Escaping of Output

<4.0.2-r11
  • L
GHSA-c3fc-8qff-9hwx

<4.0.2-r11
  • M
Improper Validation of Certificate with Host Mismatch

<4.0.2-r11
  • L
GHSA-w35j-pv5h-q9q9

<4.0.2-r11
  • L
GHSA-h383-gmxw-35v2

<4.0.2-r11
  • H
Improper Output Neutralization for Logs

<4.0.2-r11
  • L
GHSA-p93r-85wp-75v3

<4.0.2-r11
  • L
GHSA-445c-vh5m-36rj

<4.0.2-r11
  • L
GHSA-3pxv-7cmr-fjr4

<4.0.2-r11
  • H
Improper Encoding or Escaping of Output

<4.0.2-r11
  • L
GHSA-6hg6-v5c8-fphq

<4.0.2-r11
  • L
HTTP Request Smuggling

<4.0.2-r9
  • H
Allocation of Resources Without Limits or Throttling

<4.0.2-r10
  • L
GHSA-pwqr-wmgm-9rr8

<4.0.2-r9
  • L
GHSA-w9fj-cfpg-grvv

<4.0.2-r10
  • L
GHSA-cmp6-m4wj-q63q

<4.0.2-r8
  • L
Information Exposure

<4.0.2-r8
  • L
GHSA-crhr-qqj8-rpxc

<4.0.2-r7
  • H
Information Exposure Through Log Files

<4.0.2-r7
  • H
Improper Certificate Validation

<4.0.2-r7
  • L
GHSA-7xrh-hqfc-g7qr

<4.0.2-r7
  • L
CVE-2025-12183

<4.0.2-r4
  • L
GHSA-vqf4-7m7x-wgfc

<4.0.2-r4
  • H
Allocation of Resources Without Limits or Throttling

<4.0.0-r3
  • L
GHSA-prj3-ccx8-p6x4

<4.0.0-r3
  • L
GHSA-rp46-r563-jrc7

<4.0.2-r0
  • L
Arbitrary Code Injection

<4.0.2-r0
  • H
Race Condition

<4.0.1-r2
  • L
GHSA-7p63-w6x9-6gr7

<4.0.1-r2
  • L
CRLF Injection

<4.0.1-r3
  • L
GHSA-vc5p-v9hr-52mj

<4.0.1-r4
  • M
Improper Certificate Validation

<4.0.1-r4
  • L
Improper Handling of Insufficient Permissions or Privileges

<4.0.1-r1
  • L
GHSA-84h7-rjj3-6jx4

<4.0.1-r3
  • L
GHSA-2hmj-97jw-28jh

<4.0.1-r1
  • M
HTTP Request Smuggling

<4.0.1-r7
  • L
GHSA-3p8m-j85q-pgmj

<4.0.0-r4
  • L
GHSA-cphf-4846-3xx9

<4.0.1-r7
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<4.0.0-r4