11 Total advisories
11 Vulnerabilities
0 Malware
Dependency scanning
Check whether github.com/snapcore/snapd is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 4.0
CVE-2024-5138
CVE-2024-5138: snapd snapctl auth bypass
UNKNOWN
CVE-2024-5138
CVE-2024-5138 in github.com/snapcore/snapd
UNKNOWN
GHSA-jrr7-64m9-x984
Duplicate Advisory: CVE-2024-5138: snapd snapctl auth bypass
MEDIUM 4.8
CVE-2024-29069
snapd failed to properly check the destination of symbolic links when extracting a snap
HIGH 7.8
CVE-2022-3328
snapd Race Condition vulnerability
MEDIUM 5.8
CVE-2024-29068
snapd failed to properly check the file type when extracting a snap
MEDIUM 6.3
CVE-2024-1724
snapd failed to restrict writes to the $HOME/bin path
UNKNOWN
CVE-2024-1724
snapd failed to restrict writes to the $HOME/bin path in github.com/snapcore/snapd
UNKNOWN
CVE-2024-29069
snapd failed to properly check the destination of symbolic links when extracting a snap in github.com/snapcore/snapd
UNKNOWN
CVE-2024-29068
snapd failed to properly check the file type when extracting a snap in github.com/snapcore/snapd
UNKNOWN
CVE-2022-3328
snapd Race Condition vulnerability in github.com/snapcore/snapd
Browse more Go advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes