Tagged “osv”
CVEs tagged osv, newest first.
5752 CVEsRSS
CVE-2015-5162High· 7.5OpenStack Cinder, Glance, and Nova contain Uncontrolled Resource Consumption
OpenStack Cinder, Glance, and Nova contain Uncontrolled Resource Consumption
CVE-2014-0157MediumOpenStack Dashboard (aka Horizon) vulnerable to Cross-site Scripting
OpenStack Dashboard (aka Horizon) vulnerable to Cross-site Scripting
CVE-2015-1856MediumOpenStack Swift Unauthorized delete of versioned Swift object
OpenStack Swift Unauthorized delete of versioned Swift object
CVE-2015-8749Medium· 5.9OpenStack Nova Potential Xen connection password leak via StorageError
OpenStack Nova Potential Xen connection password leak via StorageError
CVE-2013-2161HighOpenStack Swift Unchecked user input in XML responses
OpenStack Swift Unchecked user input in XML responses
CVE-2014-4616Medium· 5.9simplejson before 2.6.1 vulnerable to array index error
simplejson before 2.6.1 vulnerable to array index error
CVE-2014-3608MediumOpenStack Compute (Nova)'s VMWare driver vulnerable to denial of service
OpenStack Compute (Nova)'s VMWare driver vulnerable to denial of service
CVE-2017-15112High· 7.8keycloak-httpd-client-install Insecure Secrets
keycloak-httpd-client-install Insecure Secrets
CVE-2014-3801LowOpenStack Heat template URL information leakage
OpenStack Heat template URL information leakage
CVE-2015-7713MediumOpenStack Compute (Nova) allows remote attackers to bypass intended restriction
OpenStack Compute (Nova) allows remote attackers to bypass intended restriction
CVE-2013-2256MediumOpenStack Compute (Nova) allows remote authenticated users to obtain sensitive information
OpenStack Compute (Nova) allows remote authenticated users to obtain sensitive information
CVE-2014-1934Medium· 4.5eyeD3 is vulnerable to arbitrary file modification via symlink attack
eyeD3 is vulnerable to arbitrary file modification via symlink attack
CVE-2016-2140Medium· 5.3OpenStack Nova host data access through resize/migration
OpenStack Nova host data access through resize/migration
CVE-2017-7400Medium· 4.8OpenStack Horizon Cross-site Scripting (XSS)
OpenStack Horizon Cross-site Scripting (XSS)
CVE-2014-3708MediumOpenStack Compute (Nova) Denial of Service vulnerability
OpenStack Compute (Nova) Denial of Service vulnerability
CVE-2015-3241MediumOpenStack Nova instance migration process does not stop when instance is deleted
OpenStack Nova instance migration process does not stop when instance is deleted
CVE-2017-17516High· 8.8Reddit Terminal Viewer (RTV) vulnerable to argument injection attacks
Reddit Terminal Viewer (RTV) vulnerable to argument injection attacks
CVE-2018-17847High· 7.5golang.org/x/net/html has Improper Restriction of Operations within the Bounds of a Memory Buffer
golang.org/x/net/html has Improper Restriction of Operations within the Bounds of a Memory Buffer
CVE-2015-7561Low· 3.1Kubernetes in OpenShift3 Access Control Misconfiguration
Kubernetes in OpenShift3 Access Control Misconfiguration
CVE-2015-7764High· 7.5Lemur uses static IV per key
Lemur uses static IV per key
CVE-2015-7546High· 7.5OpenStack Identity Keystone and keystonemiddleware Insufficiently Protected Credentials
OpenStack Identity Keystone and keystonemiddleware Insufficiently Protected Credentials
CVE-2015-5237High· 8.8protobuf susceptible to buffer overflow
protobuf susceptible to buffer overflow
CVE-2017-12155Medium· 6.3Openstack tripleo-heat-templates unauthenticated file access
Openstack tripleo-heat-templates unauthenticated file access
CVE-2017-16239Medium· 6.5OpenStack Nova Filter Scheduler Bypass
OpenStack Nova Filter Scheduler Bypass
CVE-2017-17051High· 8.6OpenStack Nova DoS by rebuilding the same instance with a new image multiple times
OpenStack Nova DoS by rebuilding the same instance with a new image multiple times
CVE-2016-6519Medium· 5.4Openstack Manila Persistent XSS in Metadata field
Openstack Manila Persistent XSS in Metadata field
CVE-2018-18482Medium· 6.5libpg_query memory leak
libpg_query memory leak
CVE-2018-12291High· 7.5Matrix Synapse Security Filtering Flaw
Matrix Synapse Security Filtering Flaw
CVE-2019-2435High· 8.1Improper Access Control in MySQL Connector Python
Improper Access Control in MySQL Connector Python
CVE-2017-9111High· 8.8OpenEXR invalid write
OpenEXR invalid write