2.4.0
6 years ago
9 months ago
Known vulnerabilities in the ansible-runner package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
ansible-runner is a tool that helps when interfacing with Ansible directly or as part of another system whether that be through a container image interface, as a standalone tool, or as a Python module that can be imported. Affected versions of this package are vulnerable to Improper Input Validation while calling How to fix Improper Input Validation? Upgrade | [,2.1.0) |
ansible-runner is a tool that helps when interfacing with Ansible directly or as part of another system whether that be through a container image interface, as a standalone tool, or as a Python module that can be imported. Affected versions of this package are vulnerable to Insecure Default. The default temporary files configuration in are written to world R/W locations. This flaw allows an attacker to pre-create the directory, resulting in reading private information or forcing How to fix Insecure Default? Upgrade | [,2.0.1) |
ansible-runner is a tool that helps when interfacing with Ansible directly or as part of another system whether that be through a container image interface, as a standalone tool, or as a Python module that can be imported. Affected versions of this package are vulnerable to Race Condition with temporary files in How to fix Race Condition? Upgrade | [0,2.0.1) |
ansible-runner is a tool that helps when interfacing with Ansible directly or as part of another system whether that be through a container image interface, as a standalone tool, or as a Python module that can be imported. Affected versions of this package are vulnerable to Insecure Defaults. The default permissions of writing job events where not safe. How to fix Insecure Defaults? Upgrade | [,1.3.1) |