Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Snyk Cli HIGH 7.2
CVE-2025-6624

Versions of the package snyk before 1.1297.3 are vulnerable to Insertion of Sensitive Information into Log File through local Snyk CLI debug logs. Co…

Fix: 1.1297.3+
Fix from $1,950 2025-06-26
Snyk Cli CRITICAL 9.8
CVE-2024-48963

The package Snyk CLI before 1.1294.0 is vulnerable to Code Injection when scanning an untrusted PHP project. The vulnerability can be triggered if Sn…

Fix: 1.1294.0+
Fix from $2,300 2024-10-23
Snyk Cli HIGH 8.8
CVE-2024-48964

The package Snyk CLI before 1.1294.0 is vulnerable to Code Injection when scanning an untrusted Gradle project. The vulnerability can be triggered if…

Fix: 1.1294.0+
Fix from $1,950 2024-10-23
Advisor MEDIUM 5.4
CVE-2023-1767

The Snyk Advisor website (https://snyk.io/advisor/) was vulnerable to a stored XSS prior to 28th March 2023. A feature of Snyk Advisor is to display …

Fix: 2023-03-28+
Fix from $1,600 2023-04-20
Kubernetes Monitor MEDIUM 5.3
CVE-2023-1065

This vulnerability in the Snyk Kubernetes Monitor can result in irrelevant data being posted to a Snyk Organization, which could in turn obfuscate ot…

Fix: 2.0.0+
Fix from $1,600 2023-02-28
Snyk Cli HIGH 8.8
CVE-2022-24441

The package snyk before 1.1064.0 are vulnerable to Code Injection when analyzing a project. An attacker who can convince a user to scan a malicious p…

Fix: 1.1064.0+
Fix from $1,950 2022-11-30
Snyk Cli MEDIUM 6.3
CVE-2022-22984

The package snyk before 1.1064.0; the package snyk-mvn-plugin before 2.31.3; the package snyk-gradle-plugin before 3.24.5; the package @snyk/snyk-coc…

Fix: 1.1.6 / 1.24.2+
Fix from $1,600 2022-11-30
Cli HIGH 7.8
CVE-2022-40764

Snyk CLI before 1.996.0 allows arbitrary command execution, affecting Snyk IDE plugins and the snyk npm package. Exploitation could follow from the c…

Fix: 1.19.1 / 1.996.0+
Fix from $1,950 2022-10-03