Direct Vulnerabilities

Known vulnerabilities in the k8sgpt package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
GHSA-25mv-j2qr-v5jq

<0.4.36-r4
  • L
CVE-2026-56862

<0.4.36-r4
  • L
CVE-2026-33818

<0.4.36-r4
  • L
CVE-2026-56860

<0.4.36-r4
  • L
CVE-2026-39821

<0.4.36-r4
  • L
CVE-2026-56859

<0.4.36-r4
  • L
GHSA-c974-w86c-vpfw

<0.4.36-r4
  • L
GHSA-xphw-4f88-5f39

<0.4.36-r4
  • L
GHSA-xc2p-8ggw-6cr5

<0.4.36-r4
  • L
CVE-2026-56858

<0.4.36-r4
  • L
GHSA-76p8-fhrm-vpc7

<0.4.36-r4
  • L
GHSA-w2q5-6q6x-x959

<0.4.36-r4
  • L
GHSA-7qch-w8m5-g3h3

<0.4.36-r4
  • L
CVE-2026-56853

<0.4.36-r4
  • L
CVE-2026-56852

<0.4.36-r3
  • L
GHSA-jpjm-c3r5-q96r

<0.4.36-r3
  • L
GHSA-hrxh-6v49-42gf

<0.4.36-r2
  • L
GHSA-pxq6-2prw-chj9

<0.4.36-r1
  • L
GHSA-f9f8-9pmf-xv68

<0.4.36-r1
  • L
Information Exposure

<0.4.36-r1
  • L
GHSA-x86f-5xw2-fm2r

<0.4.36-r1
  • L
Resource Exhaustion

<0.4.36-r1
  • L
GHSA-wg65-39gg-5wfj

<0.4.36-r1
  • L
GHSA-8rm2-7qqf-34qm

<0.4.36-r1
  • L
GHSA-rg2x-37c3-w2rh

<0.4.36-r1
  • M
Cross-site Scripting (XSS)

<0.4.36-r1
  • L
GHSA-9h84-qmv7-982p

<0.4.36-r1
  • H
Off-by-one Error

<0.4.36-r1
  • L
Cleartext Transmission of Sensitive Information

<0.4.36-r1
  • H
Symlink Following

<0.4.36-r1
  • L
GHSA-vp62-88p7-qqf5

<0.4.36-r1
  • L
Allocation of Resources Without Limits or Throttling

<0.4.36-r1
  • L
GHSA-fw8g-cg8f-9j28

<0.4.36-r1
  • L
GHSA-xf85-363p-868w

<0.4.36-r1
  • H
Authentication Bypass

<0.4.36-r1
  • L
Uncontrolled Search Path Element

<0.4.36-r1
  • L
GHSA-x744-4wpc-v9h2

<0.4.36-r1
  • L
Use of Uninitialized Resource

<0.4.36-r1
  • L
Cross-site Scripting (XSS)

<0.4.36-r1
  • L
CVE-2026-42505

<0.4.35-r1
  • L
GHSA-ff52-ph69-cf7x

<0.4.35-r1
  • L
Improper Input Validation

<0.4.35-r0
  • L
Symlink Following

<0.4.35-r0
  • L
GHSA-33vj-92qq-66hc

<0.4.35-r0
  • L
CVE-2026-50195

<0.4.35-r0
  • L
GHSA-rgh6-rfwx-v388

<0.4.35-r0
  • L
GHSA-cvxm-645q-p574

<0.4.35-r0
  • L
GHSA-5wrp-cwcj-q835

<0.4.34-r2
  • L
Uncontrolled Memory Allocation

<0.4.34-r2
  • L
GHSA-w879-237q-wc7r

<0.4.33-r4
  • L
GHSA-rm3j-f69w-wqmq

<0.4.33-r4
  • L
GHSA-89gr-r52h-f8rx

<0.4.33-r4
  • L
GHSA-q4h4-gmj2-qvw2

<0.4.33-r4
  • L
CVE-2026-47262

<0.4.34-r1
  • L
GHSA-jpcc-p29g-p8mq

<0.4.34-r1
  • L
GHSA-xhf5-7wjv-pqxp

<0.4.34-r1
  • L
Improper Input Validation

<0.4.34-r1
  • L
Missing Authorization

<0.4.33-r4
  • L
Improper Verification of Cryptographic Signature

<0.4.33-r4
  • L
Incorrect Type Conversion or Cast

<0.4.33-r4
  • L
Integer Overflow or Wraparound

<0.4.33-r4
  • L
GHSA-fqw6-gf59-qr4w

<0.4.33-r3
  • L
Improper Privilege Management

<0.4.33-r3
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0.4.33-r1
  • M
Out-of-bounds Write

<0.4.33-r0
  • L
GHSA-2283-wf8c-rw8r

<0.4.33-r0
  • L
GHSA-qc64-m6c2-v4x7

<0.4.33-r0
  • L
GHSA-5m4p-2gjx-p2g8

<0.4.33-r0
  • L
CVE-2026-7482

<0.4.33-r0
  • L
GHSA-497x-jcxf-m478

<0.4.33-r0
  • L
CVE-2026-42499

<0.4.33-r0
  • L
GHSA-f6mr-38g8-39rg

<0.4.33-r0
  • L
GHSA-x8qc-fggm-mpqg

<0.4.33-r0
  • L
GHSA-xq5j-9r39-c3vf

<0.4.33-r0
  • L
Cross-site Scripting (XSS)

<0.4.33-r0
  • L
GHSA-3v2c-x6q9-f697

<0.4.33-r0
  • L
GHSA-8g2r-hhvj-mv99

<0.4.33-r0
  • M
Link Following

<0.4.33-r0
  • L
Improper Encoding or Escaping of Output

<0.4.33-r0
  • L
GHSA-p9h5-jm8x-mjm5

<0.4.33-r0
  • L
CVE-2026-42501

<0.4.33-r0
  • L
CVE-2025-63389

<0.4.33-r0
  • H
NULL Pointer Dereference

<0.4.33-r0
  • L
GHSA-qf3q-3h68-mmh2

<0.4.33-r0
  • H
Allocation of Resources Without Limits or Throttling

<0.4.33-r0
  • H
Double Free

<0.4.33-r0
  • L
GHSA-xmrv-pmrh-hhx2

<0.4.32-r1
  • L
Allocation of Resources Without Limits or Throttling

<0.4.31-r4
  • L
GHSA-pc3f-x583-g7j2

<0.4.31-r4
  • L
GHSA-hfvc-g4fc-pqhx

<0.4.31-r3
  • H
Untrusted Search Path

<0.4.31-r3
  • L
GHSA-78h2-9frx-2jm8

<0.4.31-r2
  • L
Uncaught Exception

<0.4.31-r2
  • L
Improper Validation of Array Index

<0.4.30-r4
  • L
GHSA-6g7g-w4f8-9c9x

<0.4.30-r4
  • L
GHSA-p77j-4mvh-x3m3

<0.4.30-r3
  • L
Improper Authorization

<0.4.30-r3
  • L
GHSA-j4j7-vw47-rhfq

<0.4.30-r2
  • L
Directory Traversal

<0.4.30-r2
  • L
GHSA-j3gx-2473-5fp8

<0.4.30-r2
  • L
Cross-site Scripting (XSS)

<0.4.30-r2
  • L
Direct Request ('Forced Browsing')

<0.4.30-r2
  • L
GHSA-rv83-g57w-fr8j

<0.4.30-r2
  • L
CVE-2025-51471

<0.4.28-r0
  • L
GHSA-5mh9-3jwc-rp59

<0.4.26-r3
  • L
Improper Validation of Array Index

<0.4.28-r0
  • L
GHSA-8pjc-487g-w6p2

<0.4.25-r1
  • L
CVE-2025-47910

<0.4.25-r1
  • H
Authentication Bypass

<0.3.42-r1
  • L
CVE-2024-34156

<0.3.40-r1
  • L
GHSA-8xfx-rj4p-23jm

<0.3.40-r1
  • L
CVE-2025-22866

<0.3.48-r5
  • L
GHSA-crqm-pwhx-j97f

<0.3.40-r1
  • L
Improper Certificate Validation

<0.4.26-r3
  • L
CVE-2025-22868

<0.4.0-r1
  • L
GHSA-f6x5-jh6r-wrfv

<0.4.26-r2
  • L
GHSA-6f52-wpx2-hvf2

<0.4.17-r2
  • L
CVE-2025-22874

<0.4.17-r2
  • L
GHSA-v725-9546-7q7m

<0.3.48-r3
  • L
GHSA-45x7-px36-x8w8

<0.4.1-r1
  • L
GHSA-qxp5-gwg8-xv66

<0.4.0-r3
  • L
CVE-2025-58181

<0.4.26-r2
  • L
GHSA-j7vj-rw65-4v26

<0.3.40-r1
  • C
CVE-2025-68121

<0.4.27-r3
  • L
GHSA-8jvr-vh7g-f8gx

<0.4.27-r3
  • H
Arbitrary Code Injection

<0.4.26-r0
  • L
GHSA-w32m-9786-jp63

<0.3.48-r2
  • L
GHSA-62jj-gr2r-5c34

<0.4.17-r2
  • H
Integer Overflow or Wraparound

<0.4.1-r1
  • L
GHSA-3whm-j4xm-rv8x

<0.3.48-r5
  • L
GHSA-557j-xg8c-q2mm

<0.4.26-r0
  • L
CVE-2025-4673

<0.4.17-r2
  • L
CVE-2024-45336

<0.3.48-r4
  • L
GHSA-h355-32pf-p2xm

<0.4.27-r3
  • L
Arbitrary Argument Injection

<0.3.48-r3
  • L
GHSA-j5w8-q4qc-rx2x

<0.4.26-r2
  • L
CVE-2025-47914

<0.4.26-r2
  • L
CVE-2024-34155

<0.3.40-r1
  • L
Allocation of Resources Without Limits or Throttling

<0.4.26-r4
  • L
CVE-2025-22870

<0.4.0-r3
  • L
CVE-2025-22869

<0.4.0-r2
  • L
CVE-2025-22872

<0.4.12-r0
  • L
CVE-2024-34158

<0.3.40-r1
  • L
CVE-2024-45338

<0.3.48-r2
  • L
Resource Exhaustion

<0.3.48-r3
  • L
GHSA-v778-237x-gjrc

<0.3.48-r1
  • L
GHSA-6v2p-p543-phr9

<0.4.0-r1
  • L
GHSA-vvgc-356p-c3xw

<0.4.12-r0
  • L
Allocation of Resources Without Limits or Throttling

<0.4.1-r1
  • L
GHSA-cfpf-hrx2-8rv6

<0.4.26-r4
  • L
CVE-2025-61732

<0.4.27-r3
  • L
GHSA-c4p6-qg4m-9jmr

<0.4.27-r1
  • L
GHSA-hcg3-q754-cr77

<0.4.0-r2
  • L
GHSA-9h8m-3fm2-qjrq

<0.4.30-r1
  • L
GHSA-7ww5-4wqc-m92c

<0.4.1-r1
  • H
Incorrect Execution-Assigned Permissions

<0.4.26-r1
  • L
Directory Traversal

<0.4.27-r1
  • L
GHSA-pwhc-rpq9-4c8w

<0.4.26-r1
  • L
GHSA-93mq-9ffx-83m2

<0.4.1-r1
  • L
GHSA-mh63-6h87-95cp

<0.4.1-r2
  • L
Asymmetric Resource Consumption (Amplification)

<0.4.1-r2
  • L
CVE-2024-45341

<0.3.48-r4
  • L
GHSA-7wrw-r4p8-38rx

<0.3.48-r4
  • L
GHSA-wrh5-cmwx-q2qr

<0.4.28-r0
  • M
Memory Leak

<0.4.26-r1
  • L
GHSA-m6hq-p25p-ffr2

<0.4.26-r1
  • L
Race Condition

<0.4.23-r0
  • M
Improper Validation of Integrity Check Value

<0.4.1-r1
  • L
GHSA-265r-hfxg-fhmg

<0.4.1-r1
  • L
Improper Certificate Validation

<0.4.26-r3
  • L
GHSA-j5pm-7495-qmr3

<0.4.23-r0
  • L
GHSA-7c64-f9jr-v9h2

<0.4.26-r3
  • L
GHSA-c77r-fh37-x2px

<0.3.42-r1
  • L
GHSA-3f6r-qh9c-x6mm

<0.3.48-r4
  • L
GHSA-x9hg-5q6g-q3jr

<0.4.28-r0
  • L
CVE-2024-45337

<0.3.48-r1
  • L
GHSA-r9px-m959-cxf4

<0.3.48-r3
  • L
Untrusted Search Path

<0.4.30-r1
  • L
CVE-2024-41110

<0.3.39-r1
  • L
CVE-2024-24791

<0.3.37-r1
  • M
Race Condition

<0.3.32-r3
  • C
CVE-2024-24790

<0.3.32-r2
  • M
CVE-2024-24789

<0.3.32-r2
  • L
CVE-2024-35192

<0.3.32-r1
  • L
CVE-2024-24787

<0.3.30-r1
  • L
CVE-2024-24788

<0.3.30-r1
  • L
CVE-2023-45288

<0.3.29-r1
  • H
Origin Validation Error

<0.3.28-r2
  • L
CVE-2024-24786

<0.3.28-r1
  • L
CVE-2024-24783

<0.3.27-r3
  • L
CVE-2023-45290

<0.3.27-r3
  • L
CVE-2024-24785

<0.3.27-r3
  • L
CVE-2023-45289

<0.3.27-r3
  • L
CVE-2024-24784

<0.3.27-r3
  • H
Use of Uninitialized Resource

<0.3.27-r2
  • M
Directory Traversal

<0.3.27-r1
  • M
Cross-site Scripting (XSS)

<0.3.18-r1
  • H
Allocation of Resources Without Limits or Throttling

<0.3.18-r1