Vulnerability Database

Go icon github.com/nats-io/nats-server/v2

Title Severity Exploit Date Affected Version
CVE-2025-30215 Critical Apr 15, 2025 >= 2.11.0-RC.1 < 2.11.1
>= 2.2.0 < 2.10.27
CVE-2022-29946 Medium Jul 11, 2024 < 2.8.2
CVE-2021-32026 Low May 14, 2024 < 2.2.3
CVE-2023-46129 High Oct 31, 2023 >= 2.10.0 < 2.10.4
CVE-2023-47090 Medium Oct 30, 2023 >= 2.2.0 < 2.9.23
>= 2.10.0 < 2.10.2
NATS.io: Adding accounts for just the system account adds auth bypass High Oct 19, 2023 >= 2.2.0 < 2.9.23
>= 2.10.0 < 2.10.2
CVE-2022-26652 Medium Mar 10, 2022 >= 2.2.0 < 2.7.4
CVE-2022-24450 High Feb 8, 2022 >= 2.0.0 < 2.7.2
Import token permissions checking not enforced Critical May 21, 2021 < 2.2.0
Import loops in account imports, nats-server DoS Low May 21, 2021 < 2.2.0