Tagged “osv”
CVEs tagged osv, newest first.
5752 CVEsRSS
CVE-2013-4497MediumOpenStack Compute Nova Improper Access Control
OpenStack Compute Nova Improper Access Control
CVE-2013-6419MediumOpenStack Nova Router metadata queries are not restricted by tenant
OpenStack Nova Router metadata queries are not restricted by tenant
CVE-2018-19653Medium· 5.9HashiCorp Consul can use cleartext agent-to-agent RPC communication
HashiCorp Consul can use cleartext agent-to-agent RPC communication
CVE-2016-10075High· 7.8TDQM Arbitrary Code Execution
TDQM Arbitrary Code Execution
CVE-2014-6633High· 8.8Tryton vulnerable to arbitrary command execution
Tryton vulnerable to arbitrary command execution
CVE-2019-9644Medium· 5.4Improper Neutralization of Input During Web Page Generation in Jupyter Notebook
Improper Neutralization of Input During Web Page Generation in Jupyter Notebook
CVE-2017-1000481Medium· 6.1Products.CMFPlone Open Redirect Vulnerability
Products.CMFPlone Open Redirect Vulnerability
CVE-2017-1000482Medium· 5.4Products.CMFPlone XSS in profile home_page property
Products.CMFPlone XSS in profile home_page property
CVE-2014-3517MediumOpenStack Compute (Nova) Exposure of Sensitive Information to an Unauthorized Actor vulnerability
OpenStack Compute (Nova) Exposure of Sensitive Information to an Unauthorized Actor vulnerability
CVE-2014-3225MediumPoCCobbler Path Traversal vulnerability
Cobbler Path Traversal vulnerability
CVE-2015-0259MediumOpenStack Compute (Nova) has Insufficient Verification of Data Authenticity
OpenStack Compute (Nova) has Insufficient Verification of Data Authenticity
CVE-2012-4457MediumOpenStack Keystone Token authorization for a user in a disabled tenant is allowed
OpenStack Keystone Token authorization for a user in a disabled tenant is allowed
CVE-2015-3221MediumPoCOpenStack Neutron Improper Input Validation vulnerability
OpenStack Neutron Improper Input Validation vulnerability
CVE-2017-15111Medium· 5.5keycloak-httpd-client-install symlink attack vulnerability
keycloak-httpd-client-install symlink attack vulnerability
CVE-2018-10657High· 7.5⚠ Exploited0dayMatrix Synapse DoS
Matrix Synapse DoS
CVE-2014-7231LowOpenStack Oslo utility sensitive information exposure via log files
OpenStack Oslo utility sensitive information exposure via log files
CVE-2011-4596MediumOpenStack Nova Multiple directory traversal vulnerabilities
OpenStack Nova Multiple directory traversal vulnerabilities
CVE-2016-5362High· 8.2OpenStack Neutron allows remote attackers to bypass an intended DHCP-spoofing protection mechanism
OpenStack Neutron allows remote attackers to bypass an intended DHCP-spoofing protection mechanism
CVE-2018-1000225Medium· 6.1Cobbler XSS Vulnerability
Cobbler XSS Vulnerability
CVE-2015-5223MediumOpenStack Object Storage (Swift) Sensitive Data Exposure
OpenStack Object Storage (Swift) Sensitive Data Exposure
CVE-2015-1195MediumOpenStack Glance v2 API unrestricted path traversal through filesystem:// scheme
OpenStack Glance v2 API unrestricted path traversal through filesystem:// scheme
CVE-2012-1585MediumOpenStack Nova Long server names grow nova-api log files significantly
OpenStack Nova Long server names grow nova-api log files significantly
CVE-2013-4185MediumOpenStack Nova Denial of Service in network source security groups
OpenStack Nova Denial of Service in network source security groups
CVE-2015-3280MediumOpenStack Compute (nova) allows remote authenticated users to cause a denial of service
OpenStack Compute (nova) allows remote authenticated users to cause a denial of service
CVE-2013-4202MediumOpenStack Cinder Denial of Service using XML entities
OpenStack Cinder Denial of Service using XML entities
CVE-2012-4456HighOpenStack Keystone Improper Authentication vulnerability
OpenStack Keystone Improper Authentication vulnerability
CVE-2016-3954Medium· 5.5web2py exposure of sensitive information
web2py exposure of sensitive information
CVE-2013-6437MediumOpenStack Nova DoS through ephemeral disk backing files
OpenStack Nova DoS through ephemeral disk backing files
CVE-2013-7048LowOpenStack Nova live snapshots use an insecure local directory
OpenStack Nova live snapshots use an insecure local directory
CVE-2014-8333MediumOpenStack Nova VMware instance leak potentially leading to compute DoS
OpenStack Nova VMware instance leak potentially leading to compute DoS