VYPR

apk package

chainguard/opensearch-dashboards-3-security-analytics-dashboards-plugin

pkg:apk/chainguard/opensearch-dashboards-3-security-analytics-dashboards-plugin

Vulnerabilities (45)

  • CVE-2025-9288CriAug 20, 2025
    affected < 3.1.0-r4fixed 3.1.0-r4

    Improper Input Validation vulnerability in sha.js allows Input Data Manipulation.This issue affects sha.js: through 2.4.11.

  • CVE-2025-9287CriAug 20, 2025
    affected < 3.1.0-r4fixed 3.1.0-r4

    Improper Input Validation vulnerability in cipher-base allows Input Data Manipulation.This issue affects cipher-base: through 1.0.4.

  • CVE-2025-54798LowAug 7, 2025
    affected < 3.5.0-r5fixed 3.5.0-r5

    tmp is a temporary file and directory creator for node.js. In versions 0.2.3 and below, tmp is vulnerable to an arbitrary temporary file / directory write via symbolic link dir parameter. This is fixed in version 0.2.4.

  • CVE-2025-7783CriJul 18, 2025
    affected < 3.1.0-r2fixed 3.1.0-r2

    Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP). This vulnerability is associated with program files lib/form_data.Js. This issue affects form-data: < 2.5.4, 3.0.0 - 3.0.3, 4.0.0 - 4.0.3.

  • CVE-2025-5889LowJun 9, 2025
    affected < 3.0.0-r1fixed 3.0.0-r1

    A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be l

Page 3 of 3