VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5710 CVEsRSS

CVE-2024-1141Medium· 5.5
2y ago

glance-store logs s3 access keys

glance-store logs s3 access keys

▾ Sunlitglance-store · glance-storeEPSS 0.23%via OSV
CVE-2020-27534Medium· 5.3
2y ago

Path Traversal in Moby builder

Path Traversal in Moby builder

▾ Sunlitmoby · github.com/moby/mobyEPSS 1.8%via OSV
CVE-2024-23652Critical· 10.0PoC
2y ago

BuildKit vulnerable to possible host system access from mount stub cleaner

BuildKit vulnerable to possible host system access from mount stub cleaner

▾ Abyssalmoby · github.com/moby/buildkitEPSS 2.5%via OSV
CVE-2019-19499Medium· 6.5
2y ago

Grafana Arbitrary File Read

Grafana Arbitrary File Read

▾ Sunlitgrafana · github.com/grafana/grafanaEPSS 3.6%via OSV
CVE-2020-15114High· 7.7
2y ago

Etcd Gateway can include itself as an endpoint resulting in resource exhaustion

Etcd Gateway can include itself as an endpoint resulting in resource exhaustion

▾ Twilightetcd · go.etcd.io/etcdEPSS 1.2%via OSV
CVE-2023-47116Medium· 5.3
2y ago

Label Studio SSRF on Import Bypassing `SSRF_PROTECTION_ENABLED` Protections

Label Studio SSRF on Import Bypassing `SSRF_PROTECTION_ENABLED` Protections

▾ Sunlitlabel-studio · label-studioEPSS 0.74%via OSV
CVE-2024-23637Medium· 4.2
2y ago

OctoPrint Unverified Password Change via Access Control Settings

OctoPrint Unverified Password Change via Access Control Settings

▾ Sunlitoctoprint · octoprintEPSS 0.52%via OSV
CVE-2021-21284Medium· 6.8
2y ago

moby Access to remapped root allows privilege escalation to real root

moby Access to remapped root allows privilege escalation to real root

▾ Sunlitmoby · github.com/moby/mobyEPSS 1.1%via OSV
CVE-2021-21334Medium· 6.3
2y ago

containerd environment variable leak

containerd environment variable leak

▾ Sunlitcontainerd · github.com/containerd/containerdEPSS 2.0%via OSV
CVE-2021-21285Medium· 6.5
2y ago

moby docker daemon crash during image pull of malicious image

moby docker daemon crash during image pull of malicious image

▾ Sunlitmoby · github.com/moby/mobyEPSS 3.3%via OSV
CVE-2021-41091Medium· 5.9PoC
2y ago

Moby (Docker Engine) Insufficiently restricted permissions on data directory

Moby (Docker Engine) Insufficiently restricted permissions on data directory

▾ Twilightmoby · github.com/moby/mobyEPSS 2.8%via OSV
CVE-2024-24567Medium· 4.8
2y ago

Vyper's raw_call `value=` kwargs not disabled for static and delegate calls

Vyper's raw_call `value=` kwargs not disabled for static and delegate calls

▾ Sunlitvyper · vyperEPSS 0.48%via OSV
CVE-2024-21649High· 8.8
2y ago

vantage6 remote code execution vulnerability

vantage6 remote code execution vulnerability

▾ Twilightvantage6 · vantage6EPSS 1.3%via OSV
CVE-2024-22193Low· 3.5
2y ago

vantage6 may create unencrypted tasks in encrypted collaboration

vantage6 may create unencrypted tasks in encrypted collaboration

▾ Sunlitvantage6 · vantage6EPSS 0.26%via OSV
CVE-2021-29511Medium· 6.5
2y ago

Memory over-allocation in evm crate

Memory over-allocation in evm crate

▾ Sunlitevm · evmEPSS 1.3%via OSV
CVE-2024-21671Low· 3.7
2y ago

vantage6 vulnerable to username timing attack

vantage6 vulnerable to username timing attack

▾ Sunlitvantage6-server · vantage6-serverEPSS 0.40%via OSV
CVE-2024-21653Medium· 6.5
2y ago

vantage6 has insecure SSH configuration for node and server containers

vantage6 has insecure SSH configuration for node and server containers

▾ Sunlitvantage6 · vantage6EPSS 0.47%via OSV
CVE-2024-23334Medium· 5.9PoC
2y ago

aiohttp is vulnerable to directory traversal

aiohttp is vulnerable to directory traversal

▾ Twilightaiohttp · aiohttpEPSS 77%via OSV
CVE-2024-0960Medium· 5.0
2y ago

ai-flow Deserialization of Untrusted Data vulnerability

ai-flow Deserialization of Untrusted Data vulnerability

▾ Sunlitai-flow · ai-flowEPSS 0.72%via OSV
CVE-2024-0727Medium· 5.5
2y ago

Null pointer dereference in PKCS12 parsing

Null pointer dereference in PKCS12 parsing

▾ Sunlitcryptography · cryptographyEPSS 3.2%via OSV
CVE-2023-47115High· 7.1PoC
2y ago

Cross-site Scripting Vulnerability on Avatar Upload

Cross-site Scripting Vulnerability on Avatar Upload

▾ Midnightlabel-studio · label-studioEPSS 1.4%via OSV
CVE-2024-23633Medium· 4.7
2y ago

Cross-site Scripting Vulnerability on Data Import

Cross-site Scripting Vulnerability on Data Import

▾ Sunlitlabel-studio · label-studioEPSS 0.59%via OSV
CVE-2024-23345High· 7.1
2y ago

XSS potential in rendered Markdown fields (comments, description, notes, etc.)

XSS potential in rendered Markdown fields (comments, description, notes, etc.)

▾ Twilightnautobot · nautobotEPSS 0.43%via OSV
CVE-2024-23329Low· 3.7
2y ago

changedetection.io API endpoint is not secured with API token

changedetection.io API endpoint is not secured with API token

▾ Sunlitchangedetection-io · changedetection-ioEPSS 0.59%via OSV
CVE-2024-23341Medium· 6.1
2y ago

html injection vulnerability in the `tuitse_html` function.

html injection vulnerability in the `tuitse_html` function.

▾ Sunlittuitse-tsusin · tuitse-tsusinEPSS 0.43%via OSV
CVE-2024-23342High· 7.4
2y ago

Minerva timing attack on P-256 in python-ecdsa

Minerva timing attack on P-256 in python-ecdsa

▾ Twilightecdsa · ecdsaEPSS 0.98%via OSV
CVE-2024-0521Critical· 9.3
2y ago

Code Injection in paddlepaddle

Code Injection in paddlepaddle

▾ Midnightpaddlepaddle · paddlepaddleEPSS 0.46%via OSV
CVE-2024-23332Medium· 4.0
2y ago

Go package github.com/notaryproject/notation configured with permissive trust policies potentially susceptible to rollback attack from co…

Go package github.com/notaryproject/notation configured with permissive trust policies potentially susceptible to rollback attack from compromised registry

▾ Sunlitnotaryproject · github.com/notaryproject/notationEPSS 0.29%via OSV
CVE-2024-22416Critical· 9.6PoC
2y ago

Cross-Site Request Forgery on any API call in pyLoad may lead to admin privilege escalation

Cross-Site Request Forgery on any API call in pyLoad may lead to admin privilege escalation

▾ Abyssalpyload-ng · pyload-ngEPSS 0.95%via OSV
CVE-2023-50447High· 8.1
2y ago

Arbitrary Code Execution in Pillow

Arbitrary Code Execution in Pillow

▾ Twilightpillow · pillowEPSS 1.7%via OSV
CVEs tagged “osv” — page 138 · VulnSea