VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5712 CVEsRSS

CVE-2022-41895Medium· 4.8
3y ago

`MirrorPadGrad` heap out of bounds read

`MirrorPadGrad` heap out of bounds read

▾ Sunlittensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-41901Medium· 4.8
3y ago

`CHECK_EQ` fail via input in `SparseMatrixNNZ`

`CHECK_EQ` fail via input in `SparseMatrixNNZ`

▾ Sunlittensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-41910Medium· 4.8
3y ago

Heap overflow in `QuantizeAndDequantizeV2`

Heap overflow in `QuantizeAndDequantizeV2`

▾ Sunlittensorflow · tensorflowEPSS 0.42%via OSV
CVE-2022-41897Medium· 4.8
3y ago

`FractionalMaxPoolGrad` Heap out of bounds read

`FractionalMaxPoolGrad` Heap out of bounds read

▾ Sunlittensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-41902High· 7.1
3y ago

Out of bounds write in grappler in Tensorflow

Out of bounds write in grappler in Tensorflow

▾ Twilighttensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-41887Medium· 4.8
3y ago

Overflow in `tf.keras.losses.poisson`

Overflow in `tf.keras.losses.poisson`

▾ Sunlittensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-41885Medium· 4.8
3y ago

Overflow in `FusedResizeAndPadConv2D`

Overflow in `FusedResizeAndPadConv2D`

▾ Sunlittensorflow · tensorflowEPSS 0.46%via OSV
CVE-2022-41888Medium· 4.8
3y ago

FPE in `tf.image.generate_bounding_box_proposals`

FPE in `tf.image.generate_bounding_box_proposals`

▾ Sunlittensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-41893Medium· 4.8
3y ago

`CHECK_EQ` fail in `tf.raw_ops.TensorListResize`

`CHECK_EQ` fail in `tf.raw_ops.TensorListResize`

▾ Sunlittensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-41891Medium· 4.8
3y ago

Segfault in `tf.raw_ops.TensorListConcat`

Segfault in `tf.raw_ops.TensorListConcat`

▾ Sunlittensorflow · tensorflowEPSS 0.46%via OSV
CVE-2022-41886Medium· 4.8
3y ago

Overflow in `ImageProjectiveTransformV2`

Overflow in `ImageProjectiveTransformV2`

▾ Sunlittensorflow · tensorflowEPSS 0.46%via OSV
CVE-2022-41907Medium· 4.8
3y ago

Overflow in `ResizeNearestNeighborGrad`

Overflow in `ResizeNearestNeighborGrad`

▾ Sunlittensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-41899Medium· 4.8
3y ago

`CHECK` fail via inputs in `SdcaOptimizer`

`CHECK` fail via inputs in `SdcaOptimizer`

▾ Sunlittensorflow · tensorflowEPSS 0.47%via OSV
CVE-2022-3920High· 7.5
3y ago

Missing Authorization in HashiCorp Consul

Missing Authorization in HashiCorp Consul

▾ Twilighthashicorp · github.com/hashicorp/consulEPSS 0.70%via OSV
CVE-2022-42964Medium· 5.9
3y ago

pymatgen is vulnerable to Regular Expression Denial of Service (ReDoS)

pymatgen is vulnerable to Regular Expression Denial of Service (ReDoS)

▾ Sunlitpymatgen · pymatgenEPSS 0.86%via OSV
CVE-2022-44244Medium· 6.6
3y ago

Lin CMS vulnerable to Improper Authentication

Lin CMS vulnerable to Improper Authentication

▾ Sunlitlin-cms · lin-cmsEPSS 1.1%via OSV
CVE-2022-42965Medium· 5.9
3y ago

snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)

snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)

▾ Sunlitsnowflake-connector-python · snowflake-connector-pythonEPSS 0.86%via OSV
CVE-2022-42966Medium· 5.9
3y ago

cleo is vulnerable to Regular Expression Denial of Service (ReDoS)

cleo is vulnerable to Regular Expression Denial of Service (ReDoS)

▾ Sunlitcleo · cleoEPSS 0.95%via OSV
CVE-2022-39307Medium· 5.3
3y ago

grafana: User enumeration via forget password (CVE-2022-39307)

An information leak was discovered in Grafana. Remote unauthenticated users could exploit the forget password feature to discover which user accounts exist.

▾ SunlitRed Hat · Red Hat Enterprise Linux 8EPSS 0.75%via CSAF
CVE-2022-39306High· 8.1
3y ago

grafana: email addresses and usernames cannot be trusted (CVE-2022-39306)

An authentication bypass flaw was discovered in Grafana. This issue could allow a remote unauthenticated attacker to create an account and provide access to a certain organization, which can be exploited by gaining access to the signup lin…

▾ TwilightRed Hat · Red Hat Enterprise Linux 8EPSS 0.76%via CSAF
CVE-2022-3023Critical· 9.8
3y ago

TiDB vulnerable to Use of Externally-Controlled Format String

TiDB vulnerable to Use of Externally-Controlled Format String

▾ Midnightpingcap · github.com/pingcap/tidbEPSS 0.61%via OSV
CVE-2022-33684High· 8.1
3y ago

Apache Pulsar Disabled Certificate Validation for OAuth Client Credential Requests makes C++/Python Clients vulnerable to MITM attack

Apache Pulsar Disabled Certificate Validation for OAuth Client Credential Requests makes C++/Python Clients vulnerable to MITM attack

▾ Twilightpulsar-client · pulsar-clientEPSS 0.74%via OSV
CVE-2022-3616Medium· 5.4
3y ago

OctoRPKI crashes when max iterations is reached

OctoRPKI crashes when max iterations is reached

▾ Sunlitcloudflare · github.com/cloudflare/cfrpkiEPSS 0.43%via OSV
CVE-2022-44020Medium· 5.5
3y ago

OpenStack Sushy-Tools and VirtualBMC Improper Preservation of Permissions

OpenStack Sushy-Tools and VirtualBMC Improper Preservation of Permissions

▾ Sunlitsushy-tools · sushy-toolsEPSS 0.23%via OSV
CVE-2022-3697High· 7.5
3y ago

Ansible leaks password to logs

Ansible leaks password to logs

▾ Twilightansible · ansibleEPSS 0.77%via OSV
CVE-2022-39348Medium· 5.4
3y ago

Twisted vulnerable to NameVirtualHost Host header injection

Twisted vulnerable to NameVirtualHost Host header injection

▾ Sunlittwisted · twistedEPSS 1.2%via OSV
CVE-2022-3644Medium· 5.5
3y ago

Plaintext storage of tokens in pulp_ansible

Plaintext storage of tokens in pulp_ansible

▾ Sunlitpulp-ansible · pulp-ansibleEPSS 0.28%via OSV
CVE-2022-31683Medium· 5.4
3y ago

Team scope authorization bypass when Post/Put request with :team_name in body, allows HTTP parameter pollution

Team scope authorization bypass when Post/Put request with :team_name in body, allows HTTP parameter pollution

▾ Sunlitconcourse · github.com/concourse/concourseEPSS 0.45%via OSV
CVE-2022-41547High· 7.5
3y ago

MobSF allows attackers to read arbitrary files via a crafted HTTP request

MobSF allows attackers to read arbitrary files via a crafted HTTP request

▾ Twilightmobsf · mobsfEPSS 1.3%via OSV
CVE-2022-32149High· 7.5
3y ago

golang.org/x/text/language Denial of service via crafted Accept-Language header

golang.org/x/text/language Denial of service via crafted Accept-Language header

▾ Twilightx · golang.org/x/textEPSS 1.5%via OSV
CVEs tagged “osv” — page 155 · VulnSea