VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5712 CVEsRSS

CVE-2023-30613High· 7.7
3y ago

Unrestricted file upload in kiwi TCMS

Unrestricted file upload in kiwi TCMS

▾ Twilightkiwitcms · kiwitcmsEPSS 1.0%via OSV
CVE-2023-30544None· 0.0
3y ago

kiwi TCMS has possibility for user to update email address to unverified one

kiwi TCMS has possibility for user to update email address to unverified one

▾ Sunlitkiwitcms · kiwitcmsEPSS 0.42%via OSV
CVE-2023-27524High· 8.9CISA KEVPoC
3y ago

Apache superset missing check for default SECRET_KEY

Apache superset missing check for default SECRET_KEY

▾ Abyssalapache-superset · apache-supersetEPSS 97%via OSV
CVE-2023-30622Medium· 6.7
3y ago

A potential risk in clusternet which can be leveraged to make a cluster-level privilege escalation

A potential risk in clusternet which can be leveraged to make a cluster-level privilege escalation

▾ Sunlitclusternet · github.com/clusternet/clusternetEPSS 0.19%via OSV
CVE-2023-27525Medium· 4.3
3y ago

Apache Superset vulnerable to Improper Authorization

Apache Superset vulnerable to Improper Authorization

▾ Sunlitapache-superset · apache-supersetEPSS 0.78%via OSV
CVE-2023-2106High· 7.3
3y ago

Weak Password Requirements in calibreweb

Weak Password Requirements in calibreweb

▾ Twilightcalibreweb · calibrewebEPSS 0.75%via OSV
CVE-2022-2525Medium
3y ago

Improper Restriction of Excessive Authentication Attempts in calibreweb

Improper Restriction of Excessive Authentication Attempts in calibreweb

▾ Sunlitcalibreweb · calibrewebEPSS 0.77%via OSV
CVE-2023-29013High· 7.5
3y ago

Traefik HTTP header parsing could cause a denial of service

Traefik HTTP header parsing could cause a denial of service

▾ Twilighttraefik · github.com/traefik/traefik/v2EPSS 1.1%via OSV
CVE-2023-29194Medium· 4.1
3y ago

vitess allows users to create keyspaces that can deny access to already existing keyspaces

vitess allows users to create keyspaces that can deny access to already existing keyspaces

▾ Sunlitvitess · vitess.io/vitessEPSS 0.78%via OSV
CVE-2023-25392Medium· 5.9
3y ago

Allegro Tech BigFlow vulnerable to Missing SSL Certificate Validation

Allegro Tech BigFlow vulnerable to Missing SSL Certificate Validation

▾ Sunlitbigflow · bigflowEPSS 0.43%via OSV
CVE-2023-29005High· 7.5
3y ago

Flask-AppBuilder Has No Rate Limiting on Login AUTH DB

Flask-AppBuilder Has No Rate Limiting on Login AUTH DB

▾ Twilightflask-appbuilder · flask-appbuilderEPSS 0.63%via OSV
CVE-2023-28710High· 7.5
3y ago

Apache Airflow Spark Provider vulnerable to improper input validation

Apache Airflow Spark Provider vulnerable to improper input validation

▾ Twilightapache-airflow-providers-apache-spark · apache-airflow-providers-apache-sparkEPSS 2.2%via OSV
CVE-2023-28707High· 7.5
3y ago

Apache Airflow Drill Provider vulnerable to improper input validation

Apache Airflow Drill Provider vulnerable to improper input validation

▾ Twilightapache-airflow-providers-apache-drill · apache-airflow-providers-apache-drillEPSS 2.1%via OSV
CVE-2023-28842Medium· 6.8
3y ago

moby: Encrypted overlay network with a single endpoint is unauthenticated (CVE-2023-28842)

A vulnerability was found in Moby due to an unprotected alternate channel within encrypted overlay networks, which could allow a remote attacker to bypass security restrictions. By sending a specially crafted request, an attacker could inj…

▾ SunlitRed Hat · multicluster engine for Kubernetes 2.4 for RHEL 8EPSS 1.4%via CSAF
CVE-2023-28836Medium· 6.4
3y ago

Wagtail vulnerable to stored Cross-site Scripting attack via ModelAdmin views

Wagtail vulnerable to stored Cross-site Scripting attack via ModelAdmin views

▾ Sunlitwagtail · wagtailEPSS 0.78%via OSV
CVE-2023-28837Medium· 4.4
3y ago

Wagtail vulnerable to denial-of-service via memory exhaustion when uploading large files

Wagtail vulnerable to denial-of-service via memory exhaustion when uploading large files

▾ Sunlitwagtail · wagtailEPSS 1.1%via OSV
CVE-2023-26112Low· 3.7
3y ago

configobj ReDoS exploitable by developer using values in a server-side configuration file

configobj ReDoS exploitable by developer using values in a server-side configuration file

▾ Sunlitconfigobj · configobjEPSS 1.3%via OSV
CVE-2023-30620High· 7.5
3y ago

mindsdb arbitrary file write when extracting a remotely retrieved Tarball

mindsdb arbitrary file write when extracting a remotely retrieved Tarball

▾ Twilightmindsdb · mindsdbEPSS 0.99%via OSV
CVE-2023-27489High· 7.6
3y ago

Kiwi TCMS Stored Cross-site Scripting via SVG file

Kiwi TCMS Stored Cross-site Scripting via SVG file

▾ Twilightkiwitcms · kiwitcmsEPSS 0.48%via OSV
CVE-2023-25661Medium· 6.5
3y ago

TensorFlow Denial of Service vulnerability

TensorFlow Denial of Service vulnerability

▾ Sunlittensorflow · tensorflowEPSS 0.44%via OSV
CVE-2023-0241Medium· 6.5
3y ago

pgAdmin 4 vulnerable to directory traversal

pgAdmin 4 vulnerable to directory traversal

▾ Sunlitpgadmin4 · pgadmin4EPSS 8.8%via OSV
GHSA-cpmr-mw4j-99r7High· 7.5
3y ago

Nginx alias path traversal allows unauthenticated attackers to read all files on /label_studio/core/

Nginx alias path traversal allows unauthenticated attackers to read all files on /label_studio/core/

▾ Twilightlabel-studio · label-studiovia OSV
CVE-2023-25669High· 7.5
3y ago

TensorFlow has Floating Point Exception in AvgPoolGrad with XLA

TensorFlow has Floating Point Exception in AvgPoolGrad with XLA

▾ Twilighttensorflow · tensorflowEPSS 0.39%via OSV
CVE-2023-25660High· 7.5
3y ago

TensorFlow vulnerable to seg fault in `tf.raw_ops.Print`

TensorFlow vulnerable to seg fault in `tf.raw_ops.Print`

▾ Twilighttensorflow · tensorflowEPSS 0.39%via OSV
CVE-2023-25671High· 7.5
3y ago

TensorFlow has segmentation fault in tfg-translate

TensorFlow has segmentation fault in tfg-translate

▾ Twilighttensorflow · tensorflowEPSS 0.52%via OSV
CVE-2023-25674High· 7.5
3y ago

TensorFlow has Null Pointer Error in RandomShuffle with XLA enable

TensorFlow has Null Pointer Error in RandomShuffle with XLA enable

▾ Twilighttensorflow · tensorflowEPSS 0.39%via OSV
CVE-2023-25667Medium· 6.5
3y ago

TensorFlow vulnerable to segfault when opening multiframe gif

TensorFlow vulnerable to segfault when opening multiframe gif

▾ Sunlittensorflow · tensorflowEPSS 0.31%via OSV
CVE-2023-25666High· 7.5
3y ago

TensorFlow has Floating Point Exception in AudioSpectrogram

TensorFlow has Floating Point Exception in AudioSpectrogram

▾ Twilighttensorflow · tensorflowEPSS 0.39%via OSV
CVE-2023-25801High· 8.0
3y ago

TensorFlow has double free in Fractional(Max/Avg)Pool

TensorFlow has double free in Fractional(Max/Avg)Pool

▾ Twilighttensorflow · tensorflowEPSS 0.15%via OSV
CVE-2023-25672High· 7.5
3y ago

TensorFlow has Null Pointer Error in LookupTableImportV2

TensorFlow has Null Pointer Error in LookupTableImportV2

▾ Twilighttensorflow · tensorflowEPSS 0.36%via OSV
CVEs tagged “osv” — page 150 · VulnSea