org.apache.zookeeper:zookeeper vulnerabilities

Licenses: Apache-2.0

Direct Vulnerabilities

Known vulnerabilities in the org.apache.zookeeper:zookeeper package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Improper Handling of Insufficient Permissions or Privileges

[3.9.0,3.9.4)
  • M
Authentication Bypass by Spoofing

[3.9.0,3.9.3)
  • M
Information Exposure

[3.6.0,3.8.3)[3.9.0,3.9.1)
  • H
Authorization Bypass Through User-Controlled Key

[,3.7.2)[3.8.0,3.8.3)[3.9.0,3.9.1)
  • M
Access Control Bypass

[,3.4.14)[3.5.0-alpha,3.5.5)
  • H
Authentication Bypass

[,3.4.10)[3.5.0-alpha,3.5.4-beta)
  • H
Denial of Service (DoS)

[3.4.6,3.4.10)[3.5.0-alpha,3.5.3-beta)
  • M
Insufficiently Protected Credentials

[3.3.0,3.4.7)[3.5.0-alpha,3.5.1-alpha)

Package versions

52 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
3.9.419 Aug, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.9.317 Oct, 2024
  • 0
    C
  • 0
    H
  • 1
    M
  • 0
    L
3.9.212 Feb, 2024
  • 0
    C
  • 0
    H
  • 2
    M
  • 0
    L
3.9.12 Oct, 2023
  • 0
    C
  • 0
    H
  • 2
    M
  • 0
    L
3.9.019 Jul, 2023
  • 0
    C
  • 1
    H
  • 3
    M
  • 0
    L
3.8.53 Sep, 2025
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.8.412 Feb, 2024
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.8.35 Oct, 2023
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
3.8.25 Jul, 2023
  • 0
    C
  • 1
    H
  • 1
    M
  • 0
    L
3.8.125 Jan, 2023
  • 0
    C
  • 1
    H
  • 1
    M
  • 0
    L