Tagged “osv”
CVEs tagged osv, newest first.
5750 CVEsRSS
CVE-2022-29213Medium· 5.5Incomplete validation in signal ops leads to crashes in TensorFlow
Incomplete validation in signal ops leads to crashes in TensorFlow
CVE-2022-29205Medium· 5.5Segfault due to missing support for quantized types
Segfault due to missing support for quantized types
CVE-2021-38155High· 7.5OpenStack Keystone allows information disclosure during account locking
OpenStack Keystone allows information disclosure during account locking
CVE-2022-29200Medium· 5.5Missing validation causes denial of service via `LSTMBlockCell`
Missing validation causes denial of service via `LSTMBlockCell`
CVE-2022-29208High· 7.1Segfault and OOB write due to incomplete validation in `EditDistance` in TensorFlow
Segfault and OOB write due to incomplete validation in `EditDistance` in TensorFlow
CVE-2022-29193Medium· 5.5Missing validation causes `TensorSummaryV2` to crash
Missing validation causes `TensorSummaryV2` to crash
CVE-2015-9543Low· 3.3OpenStack Nova can leak consoleauth token into log files
OpenStack Nova can leak consoleauth token into log files
CVE-2022-31259Critical· 9.8Access control bypass in beego
Access control bypass in beego
CVE-2014-3840MediumPoCMayan EDMS multiple cross-site scripting (XSS) vulnerabilities
Mayan EDMS multiple cross-site scripting (XSS) vulnerabilities
CVE-2012-3542High· 7.5OpenStack Keystone Allows Remote User Account Creation
OpenStack Keystone Allows Remote User Account Creation
CVE-2015-7315Medium· 5.9Plone unauthorized member addition vulnerability
Plone unauthorized member addition vulnerability
CVE-2012-0878Medium· 6.5Paste Script has improper group memberships permissions
Paste Script has improper group memberships permissions
CVE-2017-12791Critical· 9.8SaltStack Salt Directory traversal vulnerability in minion id validation
SaltStack Salt Directory traversal vulnerability in minion id validation
CVE-2014-1604LowRPLY Predictable Tmpfile Names Allows Cache Spoofing
RPLY Predictable Tmpfile Names Allows Cache Spoofing
CVE-2011-2185MediumFabric vulnerable to symlink attack on tmp files
Fabric vulnerable to symlink attack on tmp files
CVE-2013-1665MediumXML External Entity (XXE) in Django
XML External Entity (XXE) in Django
CVE-2013-4155MediumOpenStack Swift allows authenticated users to cause a denial of service
OpenStack Swift allows authenticated users to cause a denial of service
CVE-2014-0162MediumOpenStack Image Registry and Delivery Service (Glance) Improper Input Validation vulnerability
OpenStack Image Registry and Delivery Service (Glance) Improper Input Validation vulnerability
CVE-2013-1664MediumXML Entity Expansion (XEE) in Django
XML Entity Expansion (XEE) in Django
CVE-2011-0728LowLoggerhead XSS via filename
Loggerhead XSS via filename
CVE-2013-4510High· 7.5Tryton Directory Traversal vulnerability
Tryton Directory Traversal vulnerability
CVE-2014-3641MediumOpenStack Cinder Exposure of Sensitive Information to an Unauthorized Actor vulnerability
OpenStack Cinder Exposure of Sensitive Information to an Unauthorized Actor vulnerability
CVE-2015-5251MediumOpenStack Image Service (Glance) allows remote authenticated users to bypass access restrictions
OpenStack Image Service (Glance) allows remote authenticated users to bypass access restrictions
CVE-2013-2030Medium· 4.3OpenStack Nova uses insecure keystone middleware tmpdir by default
OpenStack Nova uses insecure keystone middleware tmpdir by default
CVE-2011-4030HighPlone anonymous access to sub-objects in CMFEditions where KwAsAttributes classes were publishable
Plone anonymous access to sub-objects in CMFEditions where KwAsAttributes classes were publishable
CVE-2016-4807Medium· 4.8PoCWeb2py Reflected XSS vulnerability
Web2py Reflected XSS vulnerability
CVE-2008-6954HighCobbler Web Interface Kickstart Template Remote Privilege Escalation Vulnerability
Cobbler Web Interface Kickstart Template Remote Privilege Escalation Vulnerability
CVE-2014-0167MediumOpenStack Compute (Nova) allows remote authenticated users to gain privileges via API requests
OpenStack Compute (Nova) allows remote authenticated users to gain privileges via API requests
CVE-2012-4413MediumOpenStack Keystone does not invalidate existing tokens when granting or revoking roles
OpenStack Keystone does not invalidate existing tokens when granting or revoking roles
CVE-2013-2096MediumOpenStack Compute (Nova) does not verify the virtual size of a QCOW2 image
OpenStack Compute (Nova) does not verify the virtual size of a QCOW2 image