ansible-runner@1.3.2 vulnerabilities
"Consistent Ansible Python API and CLI with container and process isolation runtime capabilities"
-
latest version
2.4.0
-
latest non vulnerable version
-
first published
6 years ago
-
latest version published
11 days ago
-
licenses detected
- [0,)
Direct Vulnerabilities
Known vulnerabilities in the ansible-runner package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
ansible-runner is a tool that helps when interfacing with Ansible directly or as part of another system whether that be through a container image interface, as a standalone tool, or as a Python module that can be imported. Affected versions of this package are vulnerable to Improper Input Validation while calling How to fix Improper Input Validation? Upgrade |
[,2.1.0)
|
ansible-runner is a tool that helps when interfacing with Ansible directly or as part of another system whether that be through a container image interface, as a standalone tool, or as a Python module that can be imported. Affected versions of this package are vulnerable to Insecure Default. The default temporary files configuration in are written to world R/W locations. This flaw allows an attacker to pre-create the directory, resulting in reading private information or forcing How to fix Insecure Default? Upgrade |
[,2.0.1)
|
ansible-runner is a tool that helps when interfacing with Ansible directly or as part of another system whether that be through a container image interface, as a standalone tool, or as a Python module that can be imported. Affected versions of this package are vulnerable to Race Condition with temporary files in How to fix Race Condition? Upgrade |
[0,2.0.1)
|