Security Advisories for github.com/portainer/portainer in go
Moderate
17 days ago
Portainer missing authorization on custom template file endpoint, which exposes template content
go
github.com/portainer/portainer
High
17 days ago
Portainer: JWT accepted in URL query leaks tokens to logs and referers
go
github.com/portainer/portainer
Critical
17 days ago
Portainer has an endpoint security bypass via Swarm service create/update
go
github.com/portainer/portainer
High
17 days ago
Portainer's Kubernetes middleware continues after token validation failure, bypassing endpoint authorization
go
github.com/portainer/portainer
High
17 days ago
Portainer Has an Arbitrary File Read via Git Symlink Injection in Stack Auto-Update
go
github.com/portainer/portainer
High
17 days ago
Portainer has a bind-mount restriction bypass via HostConfig.Mounts
go
github.com/portainer/portainer
Moderate
17 days ago
Portainer has a path traversal in backup archive extraction that allows arbitrary file write
go
github.com/portainer/portainer
Critical
17 days ago
Portainer missing authorization on Docker plugin endpoints, which allows host RCE
go
github.com/portainer/portainer
High
over 1 year ago
Portainer improperly uses an encryption algorithm in the AesEncrypt function
go
github.com/portainer/portainer