Sylabs
19 known vulnerabilities
Top Products
Apptainer is an open source container platform for Linux. There is an ext4 use-after-free flaw that is exploitable throu
github.com/sylabs/scs-library-client is the Go client for the Singularity Container Services (SCS) Container Library Ser
syslabs/sif is the Singularity Image Format (SIF) reference implementation. In versions prior to 2.8.1the `github.com/sy
Sylabs Singularity Enterprise through 1.6.2 has Insufficient Entropy in a nonce.
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value
Singularity is an open source container platform. In verions 3.7.2 and 3.7.3, Dde to incorrect use of a default URL, `si
SIF is an open source implementation of the Singularity Container Image Format. The `siftool new` command and func sifto
Open Container Initiative umoci before 0.4.7 allows attackers to overwrite arbitrary host paths via a crafted image that
Singularity (an open source container platform) from version 3.1.1 through 3.6.3 has a vulnerability. Due to insecure ha
Sylabs Singularity through 3.6.2 has Insecure Permissions on temporary directories used in explicit and implicit contain
Sylabs Singularity 3.2.0 through 3.6.2 has Insecure Permissions on temporary directories used in fakeroot or user namesp
Sylabs Singularity 3.0 through 3.5 lacks support for an Integrity Check. Singularity's sign and verify commands do not s
Sylabs Singularity 3.5.0 through 3.5.3 fails to report an error in a Status Code.
Sylabs Singularity 3.0 through 3.5 has Improper Validation of an Integrity Check Value. Image integrity is not validated
Insecure permissions (777) are set on $HOME/.singularity when it is newly created by Singularity (version from 3.3.0 to
An issue was discovered in Singularity 3.1.0 to 3.2.0-rc2, a malicious user with local/network access to the host system
Sylabs Singularity 2.4 to 2.6 allows local users to conduct Improper Input Validation attacks.
Singularity 2.3.0 through 2.5.1 is affected by an incorrect access control on systems supporting overlay file system. Wh
Frequently Asked Questions
How many CVEs affect Sylabs?
Sylabs has 19 CVE records in our database, including 3 critical and 11 high severity vulnerabilities.
What are the most severe Sylabs vulnerabilities?
Sylabs has 3 critical severity (CVSS 9.0+) and 11 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Sylabs vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Sylabs products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Sylabs Vulnerabilities
CyberStrike scans your infrastructure for Sylabs vulnerabilities and provides real-time remediation guidance.
Get Started