gitlab-runner-19.0

Direct Vulnerabilities

Known vulnerabilities in the gitlab-runner-19.0 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Cross-site Scripting (XSS)

<19.0.3-r0
  • L
Missing Authorization

<19.0.3-r0
  • L
GHSA-86r3-q889-hvg2

<19.0.3-r0
  • L
GHSA-35pc-qwv6-4858

<19.0.3-r0
  • L
GHSA-g9g2-qc64-jgcj

<19.0.3-r0
  • L
GHSA-6fhj-cgmm-xfx6

<19.0.3-r0
  • L
GHSA-45h8-qrqh-xr5v

<19.0.3-r0
  • L
Incorrect Authorization

<19.0.3-r0
  • L
GHSA-94p8-87ff-w336

<19.0.3-r0
  • L
Exposure of Sensitive Information Through Metadata

<19.0.3-r0
  • L
GHSA-2rc9-8cx9-fxpr

<19.0.3-r0
  • L
GHSA-8jc8-cvqj-p926

<19.0.3-r0
  • L
Incorrect Authorization

<19.0.3-r0
  • L
Missing Authorization

<19.0.3-r0
  • M
Information Exposure

<19.0.3-r0
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<19.0.3-r0
  • L
GHSA-hrxh-6v49-42gf

<19.0.2-r2
  • L
GHSA-ff52-ph69-cf7x

<19.0.2-r1
  • L
CVE-2026-42505

<19.0.2-r1
  • L
Authorization Bypass Through User-Controlled Key

<19.0.2-r0
  • L
GHSA-r82j-g6q9-mvx8

<19.0.2-r0
  • L
GHSA-cx4g-hr74-m89m

<19.0.2-r0
  • L
GHSA-c4m8-pv9j-v7mm

<19.0.2-r0
  • H
Cross-site Scripting (XSS)

<19.0.2-r0
  • L
GHSA-5cr4-qwvx-32j2

<19.0.2-r0
  • L
GHSA-7mq5-3vcf-v96v

<19.0.2-r0
  • L
Allocation of Resources Without Limits or Throttling

<19.0.2-r0
  • L
Incorrect Authorization

<19.0.2-r0
  • L
Authorization Bypass Through User-Controlled Key

<19.0.2-r0
  • L
GHSA-q9j8-24p8-jq8j

<19.0.2-r0
  • M
Improper Neutralization

<19.0.2-r0
  • M
Server-Side Request Forgery (SSRF)

<19.0.2-r0
  • L
GHSA-hm74-p2xf-rqgc

<19.0.2-r0
  • L
GHSA-w879-237q-wc7r

<19.0.0-r1
  • L
GHSA-qpw4-5x99-6vjp

<19.0.0-r1
  • L
GHSA-rm3j-f69w-wqmq

<19.0.0-r1
  • L
GHSA-89gr-r52h-f8rx

<19.0.0-r1
  • L
GHSA-vgwf-h737-ff37

<19.0.0-r1
  • L
GHSA-q4h4-gmj2-qvw2

<19.0.0-r1
  • L
Uncontrolled Memory Allocation

<19.0.1-r3
  • L
GHSA-5wrp-cwcj-q835

<19.0.1-r3
  • L
CVE-2026-42504

<19.0.1-r1
  • L
GHSA-4279-q6mj-392r

<19.0.1-r1
  • L
GHSA-h3gm-q7m7-mp28

<19.0.1-r1
  • L
GHSA-w2q5-6q6x-x959

<19.0.1-r1
  • L
GHSA-h524-452v-82p9

<19.0.1-r1
  • L
CVE-2026-27145

<19.0.1-r1
  • L
CVE-2026-39821

<19.0.1-r1
  • L
CVE-2026-42507

<19.0.1-r1
  • L
Out-of-Bounds

<19.0.0-r1
  • L
Improper Verification of Cryptographic Signature

<19.0.0-r1
  • L
Missing Authorization

<19.0.0-r1
  • L
Improper Enforcement of Message Integrity During Transmission in a Communication Channel

<19.0.0-r1
  • L
Incorrect Authorization

<19.0.1-r0
  • L
GHSA-wgq9-qp63-g8j3

<19.0.1-r0
  • L
Integer Overflow or Wraparound

<19.0.0-r1
  • L
Incorrect Type Conversion or Cast

<19.0.0-r1
  • L
Allocation of Resources Without Limits or Throttling

<19.0.1-r0
  • L
GHSA-r38r-hvg8-xqhf

<19.0.1-r0
  • L
GHSA-5p55-qcqv-882w

<19.0.1-r0
  • L
Use of Incorrectly-Resolved Name or Reference

<19.0.1-r0