VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5712 CVEsRSS

CVE-2022-25856High· 7.5
4y ago

Insecure path traversal in Git Trigger Source can lead to arbitrary file read

Insecure path traversal in Git Trigger Source can lead to arbitrary file read

▾ Twilightargoproj · github.com/argoproj/argo-eventsEPSS 1.9%via OSV
CVE-2022-2111High· 8.8
4y ago

Unrestricted Attachment Upload

Unrestricted Attachment Upload

▾ Twilightinventree · inventreeEPSS 1.2%via OSV
CVE-2022-29241High· 7.1
4y ago

Jupyter server Token bruteforcing

Jupyter server Token bruteforcing

▾ Twilightjupyter-server · jupyter-serverEPSS 0.95%via OSV
CVE-2022-31313Critical· 9.8
4y ago

api-res-py package in PyPI 0.1 is vulnerable to a code execution backdoor in the request package.

api-res-py package in PyPI 0.1 is vulnerable to a code execution backdoor in the request package.

▾ Midnightapi-res-py · api-res-pyEPSS 1.8%via OSV
CVE-2022-28224Medium· 5.5
4y ago

Calico vulnerable to pod route hijacking

Calico vulnerable to pod route hijacking

▾ Sunlitprojectcalico · github.com/projectcalico/calicoEPSS 0.59%via OSV
CVE-2022-31030Medium· 5.5
4y ago

containerd CRI plugin: Host memory exhaustion through ExecSync

containerd CRI plugin: Host memory exhaustion through ExecSync

▾ Sunlitcontainerd · github.com/containerd/containerdEPSS 0.38%via OSV
CVE-2022-1708High· 7.5
4y ago

Node DOS by way of memory exhaustion through ExecSync request in CRI-O

Node DOS by way of memory exhaustion through ExecSync request in CRI-O

▾ Twilightcri-o · github.com/cri-o/cri-oEPSS 3.1%via OSV
CVE-2022-29773Medium· 6.5
4y ago

Access control issue in AlekSIS-Core

Access control issue in AlekSIS-Core

▾ Sunlitaleksis-core · aleksis-coreEPSS 0.70%via OSV
CVE-2022-29718Medium· 6.1
4y ago

Open redirect in caddy

Open redirect in caddy

▾ Sunlitcaddyserver · github.com/caddyserver/caddyEPSS 1.0%via OSV
CVE-2021-32546Critical
4y ago

OS Command Injection in gogs

OS Command Injection in gogs

▾ Midnightgogs · gogs.io/gogsEPSS 2.1%via OSV
CVE-2020-13430Medium· 6.1
4y ago

Grafana XSS via the OpenTSDB datasource

Grafana XSS via the OpenTSDB datasource

▾ Sunlitgrafana · github.com/grafana/grafanaEPSS 1.8%via OSV
CVE-2022-29178High· 8.8
4y ago

Access to Unix domain socket can lead to privileges escalation in Cilium

Access to Unix domain socket can lead to privileges escalation in Cilium

▾ Twilightcilium · github.com/cilium/ciliumEPSS 0.28%via OSV
CVE-2020-29652High· 7.5
4y ago

golang.org/x/crypto/ssh NULL Pointer Dereference vulnerability

golang.org/x/crypto/ssh NULL Pointer Dereference vulnerability

▾ Twilightx · golang.org/x/cryptoEPSS 3.3%via OSV
CVE-2020-12458Medium· 5.5
4y ago

Grafana information disclosure

Grafana information disclosure

▾ Sunlitgrafana · github.com/grafana/grafanaEPSS 0.47%via OSV
CVE-2020-8567Medium· 4.9
4y ago

Kubernetes Secrets Store CSI Driver plugins arbitrary file write

Kubernetes Secrets Store CSI Driver plugins arbitrary file write

▾ Sunlithashicorp · github.com/hashicorp/vault-csi-providerEPSS 1.4%via OSV
CVE-2019-9901Critical· 10.0
4y ago

EnvoyProxy Envoy Missing HTTP URL path normalization

EnvoyProxy Envoy Missing HTTP URL path normalization

▾ Midnightenvoyproxy · github.com/envoyproxy/envoyEPSS 5.0%via OSV
CVE-2020-36846Medium· 6.5
4y ago

Integer overflow in the bundled Brotli C library

Integer overflow in the bundled Brotli C library

▾ Sunlitcompu-brotli-sys · compu-brotli-sysEPSS 0.63%via OSV
CVE-2018-1002104Medium· 5.3
4y ago

Kubernetes ingress exposes sensitive information

Kubernetes ingress exposes sensitive information

▾ Sunlitingress-nginx · k8s.io/ingress-nginxEPSS 1.1%via OSV
CVE-2020-8553Medium· 5.9
4y ago

ingress-nginx component for Kubernetes allows file overwrite

ingress-nginx component for Kubernetes allows file overwrite

▾ Sunlitingress-nginx · k8s.io/ingress-nginxEPSS 0.89%via OSV
CVE-2019-11842High· 7.5
4y ago

matrix-sydent and matrix-synapse Use Cryptographically Weak PRNG

matrix-sydent and matrix-synapse Use Cryptographically Weak PRNG

▾ Twilightmatrix-sydent · matrix-sydentEPSS 1.8%via OSV
CVE-2020-7938High· 8.8
4y ago

Plone Privilege Escallation

Plone Privilege Escallation

▾ Twilightplone-restapi · plone-restapiEPSS 1.5%via OSV
CVE-2019-12274High· 8.8
4y ago

Rancher Privilege Escalation Vulnerability

Rancher Privilege Escalation Vulnerability

▾ Twilightrancher · github.com/rancher/rancherEPSS 1.1%via OSV
CVE-2021-25313Medium· 6.1
4y ago

Rancher Cross-site Scripting Vulnerability

Rancher Cross-site Scripting Vulnerability

▾ Sunlitrancher · github.com/rancher/rancherEPSS 1.5%via OSV
CVE-2022-29211Medium· 5.5
4y ago

Segfault if `tf.histogram_fixed_width` is called with NaN values in TensorFlow

Segfault if `tf.histogram_fixed_width` is called with NaN values in TensorFlow

▾ Sunlittensorflow · tensorflowEPSS 0.32%via OSV
CVE-2020-15703Medium· 4.0
4y ago

aptdaemon Information Disclosure via Improper Input Validation in Transaction class

aptdaemon Information Disclosure via Improper Input Validation in Transaction class

▾ Sunlitaptdaemon · aptdaemonEPSS 0.49%via OSV
CVE-2020-10755Medium· 6.5
4y ago

Openstack cinder Improper handling of ScaleIO backend credentials

Openstack cinder Improper handling of ScaleIO backend credentials

▾ Sunlitcinder · cinderEPSS 1.2%via OSV
CVE-2022-29206Medium· 5.5
4y ago

Missing validation results in undefined behavior in `SparseTensorDenseAdd

Missing validation results in undefined behavior in `SparseTensorDenseAdd

▾ Sunlittensorflow · tensorflowEPSS 0.34%via OSV
CVE-2019-11340Medium· 5.9
4y ago

Matrix Sydent mishandles emails

Matrix Sydent mishandles emails

▾ Sunlitmatrix-sydent · matrix-sydentEPSS 1.9%via OSV
CVE-2019-13628Medium· 4.7
4y ago

wolfCrypt leaks cryptographic information via timing side channel

wolfCrypt leaks cryptographic information via timing side channel

▾ Sunlitwolfcrypt · wolfcryptEPSS 0.36%via OSV
CVE-2022-29201Medium· 5.5
4y ago

Missing validation results in undefined behavior in `QuantizedConv2D`

Missing validation results in undefined behavior in `QuantizedConv2D`

▾ Sunlittensorflow · tensorflowEPSS 0.34%via OSV
CVEs tagged “osv” — page 160 · VulnSea