Shinken@2.4.3 vulnerabilities

Shinken is a monitoring framework compatible with Nagios configuration and plugins

Direct Vulnerabilities

Known vulnerabilities in the Shinken package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Improper Access Control

Shinken is a Shinken is a monitoring framework compatible with Nagios configuration and plugins

Affected versions of this package are vulnerable to Improper Access Control via the SafeUnpickler class found in shinken/safepickle.py which implements a weak authentication scheme when unserializing objects passed from monitoring nodes to the Shinken monitoring server.

How to fix Improper Access Control?

A fix was pushed into the master branch but not yet published.

[0,)