Tagged “osv”
CVEs tagged osv, newest first.
5752 CVEsRSS
CVE-2021-41199Medium· 5.5Overflow/crash in `tf.image.resize` when size is large
Overflow/crash in `tf.image.resize` when size is large
CVE-2021-41217Medium· 5.5Null pointer exception when `Exit` node is not preceded by `Enter` op
Null pointer exception when `Exit` node is not preceded by `Enter` op
CVE-2021-41208Critical· 9.3Incomplete validation in boosted trees code
Incomplete validation in boosted trees code
CVE-2021-41219High· 7.8Undefined behavior via `nullptr` reference binding in sparse matrix multiplication
Undefined behavior via `nullptr` reference binding in sparse matrix multiplication
CVE-2021-41205High· 7.1Heap OOB read in all `tf.raw_ops.QuantizeAndDequantizeV*` ops
Heap OOB read in all `tf.raw_ops.QuantizeAndDequantizeV*` ops
CVE-2021-41228High· 7.5Code injection in `saved_model_cli`
Code injection in `saved_model_cli`
CVE-2021-41216Medium· 5.5Heap buffer overflow in `Transpose`
Heap buffer overflow in `Transpose`
CVE-2021-41226High· 7.1Heap OOB in `SparseBinCount`
Heap OOB in `SparseBinCount`
CVE-2021-39182High· 7.5Improper hashing in enrocrypt
Improper hashing in enrocrypt
CVE-2021-41198Medium· 5.5Overflow/crash in `tf.tile` when tiling tensor is large
Overflow/crash in `tf.tile` when tiling tensor is large
CVE-2021-41232High· 8.1Improper Neutralization of Special Elements used in an LDAP Query in stevenweathers/thunderdome-planning-poker
Improper Neutralization of Special Elements used in an LDAP Query in stevenweathers/thunderdome-planning-poker
CVE-2021-41134High· 8.7Stored XSS in Jupyter nbdime
Stored XSS in Jupyter nbdime
CVE-2021-41247Low· 3.5incomplete JupyterHub logout with simultaneous JupyterLab sessions
incomplete JupyterHub logout with simultaneous JupyterLab sessions
CVE-2021-3840High· 8.8Antilles Dependency Confusion Vulnerability
Antilles Dependency Confusion Vulnerability
CVE-2024-21910Medium· 6.1Cross-site scripting vulnerability in TinyMCE plugins
Cross-site scripting vulnerability in TinyMCE plugins
CVE-2021-41194Critical· 9.1Improper Access Control in jupyterhub-firstuseauthenticator
Improper Access Control in jupyterhub-firstuseauthenticator
CVE-2021-41173Medium· 5.7Geth Node Vulnerable to DoS via maliciously crafted p2p message
Geth Node Vulnerable to DoS via maliciously crafted p2p message
CVE-2021-41146High· 8.8Arbitrary command execution on Windows via qutebrowserurl: URL handler
Arbitrary command execution on Windows via qutebrowserurl: URL handler
CVE-2021-41127High· 7.3Maliciously Crafted Model Archive Can Lead To Arbitrary File Write
Maliciously Crafted Model Archive Can Lead To Arbitrary File Write
CVE-2021-41135Medium· 6.5Authz Module Non-Determinism
Authz Module Non-Determinism
CVE-2021-41149High· 8.2Improper sanitization of target names
Improper sanitization of target names
CVE-2021-41131High· 7.5Client metadata path-traversal
Client metadata path-traversal
CVE-2021-41078High· 8.6PoCNameko Arbitrary code execution due to YAML deserialization
Nameko Arbitrary code execution due to YAML deserialization
CVE-2021-41132Critical· 9.8Inconsistent input sanitisation leads to XSS vectors
Inconsistent input sanitisation leads to XSS vectors
CVE-2021-41138Medium· 5.3Validity check missing in Frontier
Validity check missing in Frontier
CVE-2020-8897High· 8.1Security issues in AWS KMS and AWS Encryption SDKs: in-band protocol negotiation and robustness
Security issues in AWS KMS and AWS Encryption SDKs: in-band protocol negotiation and robustness
CVE-2021-41121High· 7.5Memory corruption when returning a literal struct with a private call inside of it
Memory corruption when returning a literal struct with a private call inside of it
CVE-2019-16249Medium· 5.3Out-of-bounds Read in OpenCV
Out-of-bounds Read in OpenCV
CVE-2017-12863High· 8.8Integer Overflow or Wraparound in OpenCV
Integer Overflow or Wraparound in OpenCV
CVE-2017-12601High· 8.8Improper Restriction of Operations within the Bounds of a Memory Buffer in OpenCV
Improper Restriction of Operations within the Bounds of a Memory Buffer in OpenCV