Tagged “osv”
CVEs tagged osv, newest first.
5712 CVEsRSS
CVE-2022-42906High· 7.8Powerline Gitstatus vulnerable to arbitrary code execution
Powerline Gitstatus vulnerable to arbitrary code execution
CVE-2020-26269Critical· 9.1TensorFlow vulnerable to heap out of bounds read in filesystem glob matching
TensorFlow vulnerable to heap out of bounds read in filesystem glob matching
CVE-2021-21271Medium· 6.5Tendermint Core vulnerable to Uncontrolled Resource Consumption
Tendermint Core vulnerable to Uncontrolled Resource Consumption
CVE-2020-7711High· 7.5goxmldsig vulnerable to crash on nil-pointer dereference caused by sending malformed XML signatures
goxmldsig vulnerable to crash on nil-pointer dereference caused by sending malformed XML signatures
CVE-2021-23385Medium· 6.1Flask-Security vulnerable to Open Redirect
Flask-Security vulnerable to Open Redirect
CVE-2020-15115Medium· 5.8etcd has no minimum password length
etcd has no minimum password length
CVE-2022-41715NoneMemory exhaustion when compiling regular expressions in regexp/syntax
Memory exhaustion when compiling regular expressions in regexp/syntax
CVE-2022-2880NoneIncorrect sanitization of forwarded query parameters in net/http/httputil
Incorrect sanitization of forwarded query parameters in net/http/httputil
CVE-2022-2879NoneUnbounded memory consumption when reading headers in archive/tar
Unbounded memory consumption when reading headers in archive/tar
CVE-2021-21235Medium· 6.5kamadak-exif vulnerable to Infinite loop when parsing PNG files
kamadak-exif vulnerable to Infinite loop when parsing PNG files
CVE-2020-15106Medium· 5.3etcd's WAL `ReadAll` method vulnerable to an entry with large index causing panic
etcd's WAL `ReadAll` method vulnerable to an entry with large index causing panic
CVE-2022-2529High· 7.5Cloudflare GoFlow vulnerable to a Denial of Service in the sflow packet handling package
Cloudflare GoFlow vulnerable to a Denial of Service in the sflow packet handling package
CVE-2022-39254High· 8.6When matrix-nio receives forwarded room keys, the receiver doesn't check if it requested the key from the forwarder
When matrix-nio receives forwarded room keys, the receiver doesn't check if it requested the key from the forwarder
CVE-2022-3355Medium· 5.4Inventree vulnerable to Stored Cross-site Scripting
Inventree vulnerable to Stored Cross-site Scripting
CVE-2022-3290High· 7.5rdiffweb's unlimited username field length can lead to DoS
rdiffweb's unlimited username field length can lead to DoS
CVE-2021-41803High· 7.1HashiCorp Consul does not properly validate node or segment names prior to usage in JWT claim assertions
HashiCorp Consul does not properly validate node or segment names prior to usage in JWT claim assertions
CVE-2021-36782Critical· 9.9PoCRancher API and cluster.management.cattle.io object vulnerable to plaintext storage and exposure of credentials
Rancher API and cluster.management.cattle.io object vulnerable to plaintext storage and exposure of credentials
CVE-2022-1941High· 7.5protobuf-cpp and protobuf-python have potential Denial of Service issue
protobuf-cpp and protobuf-python have potential Denial of Service issue
CVE-2022-3102Mediumjwcrypto token substitution can lead to authentication bypass
jwcrypto token substitution can lead to authentication bypass
CVE-2022-35940Medium· 5.9TensorFlow vulnerable to Int overflow in `RaggedRangeOp`
TensorFlow vulnerable to Int overflow in `RaggedRangeOp`
CVE-2022-35959Medium· 5.9TensorFlow vulnerable to `CHECK` failures in `AvgPool3DGrad`
TensorFlow vulnerable to `CHECK` failures in `AvgPool3DGrad`
CVE-2022-35986Medium· 5.9TensorFlow vulnerable to segfault in `RaggedBincount`
TensorFlow vulnerable to segfault in `RaggedBincount`
CVE-2022-36017Medium· 5.9TensorFlow vulnerable to segfault in `Requantize`
TensorFlow vulnerable to segfault in `Requantize`
CVE-2022-35993Medium· 5.9TensorFlow vulnerable to `CHECK` fail in `SetSize`
TensorFlow vulnerable to `CHECK` fail in `SetSize`
CVE-2022-35987Medium· 5.9TensorFlow vulnerable to `CHECK` fail in `DenseBincount`
TensorFlow vulnerable to `CHECK` fail in `DenseBincount`
CVE-2022-35981Medium· 5.9TensorFlow vulnerable to `CHECK` fail in `FractionalMaxPoolGrad`
TensorFlow vulnerable to `CHECK` fail in `FractionalMaxPoolGrad`
CVE-2022-35991Medium· 5.9TensorFlow vulnerable to `CHECK` fail in `TensorListScatter` and `TensorListScatterV2`
TensorFlow vulnerable to `CHECK` fail in `TensorListScatter` and `TensorListScatterV2`
CVE-2022-35974Medium· 5.9TensorFlow vulnerable to segfault in `QuantizeDownAndShrinkRange`
TensorFlow vulnerable to segfault in `QuantizeDownAndShrinkRange`
CVE-2022-35979Medium· 5.9TensorFlow vulnerable to segfault in `QuantizedRelu` and `QuantizedRelu6`
TensorFlow vulnerable to segfault in `QuantizedRelu` and `QuantizedRelu6`
CVE-2022-35967Medium· 5.9TensorFlow vulnerable to segfault in `QuantizedAdd`
TensorFlow vulnerable to segfault in `QuantizedAdd`