VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5712 CVEsRSS

CVE-2024-45858High· 8.8
2y ago

Guardrails has an arbitrary code execution vulnerability

Guardrails has an arbitrary code execution vulnerability

▾ Twilightguardrails-ai · guardrails-aiEPSS 0.38%via OSV
CVE-2024-45601High· 7.5
2y ago

Mesop has a local file Inclusion via static file serving functionality

Mesop has a local file Inclusion via static file serving functionality

▾ Twilightmesop · mesopEPSS 0.28%via OSV
CVE-2024-35515High· 8.8
2y ago

sqlitedict insecure deserialization vulnerability

sqlitedict insecure deserialization vulnerability

▾ Twilightsqlitedict · sqlitedictEPSS 0.89%via OSV
CVE-2024-8939Medium· 6.2
2y ago

vLLM Denial of Service via the best_of parameter

vLLM Denial of Service via the best_of parameter

▾ Sunlitvllm · vllmEPSS 0.23%via OSV
CVE-2024-8768High· 7.5
2y ago

vLLM denial of service vulnerability

vLLM denial of service vulnerability

▾ Twilightvllm · vllmEPSS 0.68%via OSV
CVE-2024-45606High· 7.1
2y ago

Sentry improperly authorizes muting of alert rules

Sentry improperly authorizes muting of alert rules

▾ Twilightsentry · sentryEPSS 0.36%via OSV
CVE-2024-5998Medium· 5.2
2y ago

LangChain pickle deserialization of untrusted data

LangChain pickle deserialization of untrusted data

▾ Sunlitlangchain-community · langchain-communityEPSS 0.36%via OSV
CVE-2024-45605Medium· 6.5
2y ago

Sentry improperly authorizes deletion of user issue alert notifications

Sentry improperly authorizes deletion of user issue alert notifications

▾ Sunlitsentry · sentryEPSS 0.39%via OSV
CVE-2024-8863Low· 3.5
2y ago

Aim Stored XSS through TEXT EXPLORER

Aim Stored XSS through TEXT EXPLORER

▾ Sunlitaim · aimEPSS 0.50%via OSV
CVE-2024-8864Medium· 5.5
2y ago

Composio Code Injection Vulnerability

Composio Code Injection Vulnerability

▾ Sunlitcomposio-core · composio-coreEPSS 0.83%via OSV
CVE-2024-8862High· 7.3
2y ago

D-Tale Command Execution Vulnerability

D-Tale Command Execution Vulnerability

▾ Twilightdtale · dtaleEPSS 1.3%via OSV
CVE-2024-8865Low· 3.5
2y ago

Composio Path Traversal vulnerability

Composio Path Traversal vulnerability

▾ Sunlitcomposio-core · composio-coreEPSS 0.87%via OSV
CVE-2024-8775Medium· 5.5
2y ago

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without se…

▾ SunlitRed Hat · ansible-coreEPSS 0.27%via NVD
CVE-2024-6587High· 7.5PoC
2y ago

LiteLLM Server-Side Request Forgery (SSRF) vulnerability

LiteLLM Server-Side Request Forgery (SSRF) vulnerability

▾ Midnightlitellm · litellmEPSS 35%via OSV
CVE-2024-27320High· 7.8
2y ago

Refuel Autolab Eval Injection vulnerability

Refuel Autolab Eval Injection vulnerability

▾ Twilightrefuel-autolabel · refuel-autolabelEPSS 0.35%via OSV
CVE-2024-45847High· 8.8
2y ago

MindsDB Eval Injection vulnerability

MindsDB Eval Injection vulnerability

▾ Twilightmindsdb · mindsdbEPSS 0.85%via OSV
CVE-2024-45857High· 7.8
2y ago

Cleanlab Deserialization of Untrusted Data vulnerability

Cleanlab Deserialization of Untrusted Data vulnerability

▾ Twilightcleanlab · cleanlabEPSS 0.24%via OSV
CVE-2024-27321High· 7.8
2y ago

Refuel Autolab Eval Injection vulnerability

Refuel Autolab Eval Injection vulnerability

▾ Twilightrefuel-autolabel · refuel-autolabelEPSS 0.35%via OSV
CVE-2024-45856Critical· 9.0
2y ago

MindsDB Cross-site Scripting vulnerability

MindsDB Cross-site Scripting vulnerability

▾ Midnightmindsdb · mindsdbEPSS 0.51%via OSV
CVE-2024-45595Medium· 6.1
2y ago

D-Tale vulnerable to Remote Code Execution through the Query input on Chart Builder

D-Tale vulnerable to Remote Code Execution through the Query input on Chart Builder

▾ Sunlitdtale · dtaleEPSS 0.78%via OSV
RUSTSEC-2024-0404None
2y ago

Unsoundness in anstream

Unsoundness in anstream

▾ Sunlitanstream · anstreamvia OSV
CVE-2024-45498High· 8.8
2y ago

Apache Airflow vulnerable to Improper Encoding or Escaping of Output

Apache Airflow vulnerable to Improper Encoding or Escaping of Output

▾ Twilightapache-airflow · apache-airflowEPSS 1.2%via OSV
CVE-2024-45034High· 8.8
2y ago

Apache Airflow vulnerable to Execution with Unnecessary Privileges

Apache Airflow vulnerable to Execution with Unnecessary Privileges

▾ Twilightapache-airflow · apache-airflowEPSS 1.7%via OSV
CVE-2024-34158None
2y ago

Stack exhaustion in Parse in go/build/constraint

Stack exhaustion in Parse in go/build/constraint

▾ Sunlitstdlib · stdlibEPSS 1.0%via OSV
CVE-2024-45314Low· 3.6
2y ago

Flask-AppBuilder's login form allows browser to cache sensitive fields

Flask-AppBuilder's login form allows browser to cache sensitive fields

▾ Sunlitflask-appbuilder · flask-appbuilderEPSS 0.27%via OSV
CVE-2024-45053Critical· 9.1
2y ago

Remote Code Execution Vulnerability via SSTI in Fides Webserver Jinja Email Templating Engine

Remote Code Execution Vulnerability via SSTI in Fides Webserver Jinja Email Templating Engine

▾ Midnightethyca-fides · ethyca-fidesEPSS 1.3%via OSV
CVE-2024-45052Low
2y ago

Timing-Based Username Enumeration Vulnerability in Fides Webserver Authentication

Timing-Based Username Enumeration Vulnerability in Fides Webserver Authentication

▾ Sunlitethyca-fides · ethyca-fidesEPSS 0.56%via OSV
GHSA-h4gh-qq45-vh27Medium
2y ago

pyca/cryptography has a vulnerable OpenSSL included in cryptography wheels

pyca/cryptography has a vulnerable OpenSSL included in cryptography wheels

▾ Sunlitcryptography · cryptographyvia OSV
GHSA-w2pj-9cgh-mq2cHigh· 8.8
2y ago

opencv-contrib-python-headless bundled libwebp binaries in wheels that are vulnerable to CVE-2023-4863

opencv-contrib-python-headless bundled libwebp binaries in wheels that are vulnerable to CVE-2023-4863

▾ Twilightopencv-contrib-python-headless · opencv-contrib-python-headlessvia OSV
GHSA-qr4w-53vh-m672High· 8.8
2y ago

opencv-python bundled libwebp binaries in wheels that are vulnerable to CVE-2023-4863

opencv-python bundled libwebp binaries in wheels that are vulnerable to CVE-2023-4863

▾ Twilightopencv-python · opencv-pythonvia OSV
CVEs tagged “osv” — page 124 · VulnSea