Skip to content

Datadog security advisories

14 advisories across Datadog

Company profile
Advisory
Datadog SSI Injector can be used to trigger a Local Privilege Escalation in certain conditions
High7.4Jul 7
Unbounded W3C tracestate parsing may lead to DoS
High7.5Jun 22
Improper parsing of W3C baggage headers may lead to DoS
High7.5Jun 9
Improper parsing of W3C baggage headers may lead to DoS
High7.5Jun 5
Improper parsing of W3C baggage headers may lead to DoS
High7.5Jun 5
Improper parsing of W3C baggage headers may lead to DoS
High7.5Jun 5
Improper parsing of W3C baggage headers may lead to DoS
High7.5Jun 5
Improper parsing of W3C baggage headers may lead to DoS
High7.5Jun 5
Improper parsing of W3C baggage headers may lead to DoS
High7.5Jun 5
Improper parsing of W3C baggage headers may lead to DoS
High7.5Jun 5
Unsafe deserialization in dd-trace-java RMI instrumentation may lead to remote code execution
Critical9.3Mar 23
Datadog Linux Host Agent affected by local privilege escalation due to insufficient pycache permissions
High7.0Nov 11, 2025
Malformed unicode header values may throw uncaught exception
Medium6.2Jun 27, 2024
DataDog API Client contains a Local Information Disclosure Vulnerability
LowFeb 24, 2021
About Datadog

Datadog, Inc. is an American company that provides an observability service for cloud-scale applications, providing monitoring of servers, databases, tools, and services, through a SaaS-based data analytics platform.

Elsewhere on fru.dev: Acquisitions · Quarterly · Paydays · Releases · TechConf

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.