opentelemetry_sdk
Activity
- Latest release
- 3mo ago
- Total releases
- 22
- Cadence
- ~2 months
- Last 12 months
- 2
Details
- License
- Apache-2.0
- First release
- Jun 27, 2019
| Version | Released | |
|---|---|---|
0.32.1
unknown
|
0.32.1
unknown
Dependencies (20)
+ 12 more |
|
0.32.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.32.0
unknown
Dependencies (20)
+ 12 more |
|
0.31.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.31.0
unknown
Dependencies (18)
+ 10 more |
|
0.30.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.30.0
unknown
Dependencies (18)
+ 10 more |
|
0.29.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.29.0
unknown
Dependencies (20)
+ 12 more |
|
0.28.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.28.0
unknown
Dependencies (22)
+ 14 more |
|
0.27.1
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.27.1
unknown
Dependencies (21)
+ 13 more |
|
0.27.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.27.0
unknown
Dependencies (22)
+ 14 more |
|
0.26.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.26.0
unknown
Dependencies (22)
+ 14 more |
|
0.25.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.25.0
unknown
Dependencies (21)
+ 13 more |
|
0.24.1
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.24.1
unknown
Dependencies (21)
+ 13 more |
|
0.24.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.24.0
unknown
Dependencies (21)
+ 13 more |
|
0.23.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.23.0
unknown
Dependencies (24)
+ 16 more |
|
0.22.1
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.22.1
unknown
Dependencies (24)
+ 16 more |
|
0.22.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.22.0
unknown
Dependencies (24)
+ 16 more |
|
0.21.2
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.21.2
unknown
Dependencies (23)
+ 15 more |
|
0.21.1
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.21.1
unknown
Dependencies (23)
+ 15 more |
|
0.21.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.21.0
unknown
Dependencies (23)
+ 15 more |
|
0.20.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.20.0
unknown
Dependencies (23)
+ 15 more |
|
0.19.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.19.0
unknown
Dependencies (24)
+ 16 more |
|
0.18.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.18.0
unknown
Dependencies (23)
+ 15 more |
|
0.1.0
unknown
1 CVE
CVE-2026-48504
GHSA-w9wp-h8wv-79jx
Jun 25, 2026
opentelemetry_sdk has unbounded memory allocation in W3C Baggage propagation
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
None
None
Low
Summary
The SDK now applies limits aligned with the W3C Baggage limits:
ImpactServices that accept untrusted inbound propagation headers may experience increased per-request resource usage when processing oversized The impact is limited to availability. This issue does not expose telemetry data, modify telemetry data, or allow code execution. PatchesUpgrade Version WorkaroundsIf upgrading immediately is not possible, reject or limit inbound Resources
Credittonghuaroot Fixed in
0.32.1
References Updated Sep 10, 2026 · Source: OSV.dev |
0.1.0
unknown
Dependencies (2)
|