Linkerd
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Linkerd product.
RSS Feeds for Linkerd security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Linkerd products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Linkerd Sorted by Most Security Vulnerabilities since 2018
By the Year
In 2026 there have been 0 vulnerabilities in Linkerd. Last year, in 2025 Linkerd had 1 security vulnerability published. Right now, Linkerd is on track to have less security vulnerabilities in 2026 than it did last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 1 | 0.00 |
| 2024 | 0 | 0.00 |
| 2023 | 1 | 7.50 |
It may take a day or so for new Linkerd vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Linkerd Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2025-43915 | May 05, 2025 |
Linkerd proxy metrics DoS via resource exhaustion (edge<25.2.1)In Linkerd edge releases before edge-25.2.1, and Buoyant Enterprise for Linkerd releases 2.13.02.13.7, 2.14.02.14.10, 2.15.02.15.7, 2.16.02.16.4, and 2.17.02.17.1, resource exhaustion can occur for Linkerd proxy metrics. |
|
| CVE-2023-44487 | Oct 10, 2023 |
HTTP/2 DoS via Stream Reset in nginxThe HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023. |
|