icinga/icinga2

Licenses: GPL-2.0 | GPL-3.0

Direct Vulnerabilities

Known vulnerabilities in the https://github.com|icinga/icinga2 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • C
Improper Following of a Certificate's Chain of Trust

[,2.12.12)[2.13.0,2.13.12)[2.14.0,2.14.6)
  • L
Cross-site Scripting (XSS)

[,1.4.1)
  • H
Out-of-Bounds

[,1.6.2)[1.7.0,1.7.4)[1.8.0,1.8.4)
  • H
Symlink Attack

[2.0.0,2.11.4)
  • M
Information Exposure

[2.0.0,2.7.5)[2.8.0,2.8.3)
  • H
Arbitrary Code Injection

[,2.6.2)
  • H
Denial of Service (DoS)

[2.0.0,2.8.1)
  • H
Access Restriction Bypass

[2.0.0,2.8.2)
  • M
Cross-site Scripting (XSS)

[,2.6.2)
  • M
Denial of Service (DoS)

[,1.10.3)
  • M
Access Restriction Bypass

[2.0.0,2.8.2)
  • M
Out-of-Bounds

[,1.8.5)
  • M
Cross-site Scripting (XSS)

[,1.14.0)
  • M
Improper Input Validation

[,1.8.5)
  • M
Cross-site Scripting (XSS)

[,1.4.1)
  • M
Cross-site Request Forgery (CSRF)

[,1.10.3)
  • M
Out-of-Bounds

[,1.8.6)
  • C
Remote Code Execution (RCE)

[,2.6.2)
  • H
Information Exposure

[,2.0.0)
  • H
Access Restriction Bypass

[2.0.0,2.8.1)
  • H
Improper Certificate Validation

[2.5.0,2.11.10)[2.12.0,2.12.6)[2.13.0,2.13.1)
  • H
Cryptographic Issues

[2.0.0,2.8.2)
  • M
Directory Traversal

[2.3.0,2.7.5)[2.8.0,2.8.3)
  • H
Code Injection

[2.4.0,2.11.10)[2.12.0,2.12.5)
  • H
Information Exposure

[2.0.0,2.11.10)[2.12.0,2.12.5)
  • H
Directory Traversal

[2.0.0,2.6.4)[2.7.0,2.7.4)[2.8.0,2.8.2)
  • M
NULL Pointer Dereference

[2.0.0,2.8.2)
  • H
Incorrect Privilege Assignment

[,1.7.2)
  • M
Cross-site Request Forgery (CSRF)

[,2.6.2)
  • C
Improper Certificate Validation

[2.8.0,2.11.8)