VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5752 CVEsRSS

CVE-2021-37654High· 7.3
5y ago

Heap OOB and CHECK fail in `ResourceGather`

Heap OOB and CHECK fail in `ResourceGather`

▾ Twilighttensorflow · tensorflowEPSS 0.17%via OSV
CVE-2021-37691Medium· 5.5
5y ago

FPE in LSH in TFLite

FPE in LSH in TFLite

▾ Sunlittensorflow · tensorflowEPSS 0.15%via OSV
CVE-2021-37644Medium· 5.5
5y ago

`std::abort` raised from `TensorListReserve`

`std::abort` raised from `TensorListReserve`

▾ Sunlittensorflow · tensorflowEPSS 0.15%via OSV
CVE-2021-37673Medium· 5.5
5y ago

`CHECK`-fail in `MapStage`

`CHECK`-fail in `MapStage`

▾ Sunlittensorflow · tensorflowEPSS 0.15%via OSV
CVE-2021-32798Critical· 10.0
5y ago

Special Element Injection in notebook

Special Element Injection in notebook

▾ Midnightnotebook · notebookEPSS 2.1%via OSV
CVE-2021-32797High· 7.4
5y ago

JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

▾ Twilightjupyterlab · jupyterlabEPSS 2.7%via OSV
CVE-2021-38554Medium· 5.3
5y ago

vault: UI erroneously cached and exposed user-viewed secrets between sessions in a single shared browser (CVE-2021-38554)

A flaw was found in the vault package. The Vault UI web application may fail to completely clear a client-side data cache on user logout. As a result, an authenticated user sharing a browser to access Vault may have been able to view the p…

▾ SunlitRed Hat · Red Hat Openshift Container Storage 4EPSS 0.91%via CSAF
CVE-2021-37705Critical· 10.0
5y ago

Improper Authorization and Origin Validation Error in OneFuzz

Improper Authorization and Origin Validation Error in OneFuzz

▾ Midnightonefuzz · onefuzzEPSS 2.4%via OSV
CVE-2021-29063High· 7.5
5y ago

ReDOS in Mpmath

ReDOS in Mpmath

▾ Twilightmpmath · mpmathEPSS 4.2%via OSV
CVE-2021-32813Medium· 4.8
5y ago

Header dropping in traefik

Header dropping in traefik

▾ Sunlittraefik · github.com/traefik/traefik/v2EPSS 1.1%via OSV
CVE-2021-32811High· 7.5
5y ago

Remote Code Execution via Script (Python) objects under Python 3

Remote Code Execution via Script (Python) objects under Python 3

▾ Twilightzope · zopeEPSS 2.3%via OSV
CVE-2021-32807Medium· 4.4
5y ago

Remote Code Execution via unsafe classes in otherwise permitted modules

Remote Code Execution via unsafe classes in otherwise permitted modules

▾ Sunlitaccesscontrol · accesscontrolEPSS 2.0%via OSV
CVE-2021-32806Medium· 6.5
5y ago

URL Redirection to Untrusted Site ('Open Redirect') in Products.isurlinportal

URL Redirection to Untrusted Site ('Open Redirect') in Products.isurlinportal

▾ Sunlitproducts-isurlinportal · products-isurlinportalEPSS 1.0%via OSV
CVE-2020-7964Medium· 5.3
5y ago

Missing Authentication for Critical Function in Saleor

Missing Authentication for Critical Function in Saleor

▾ Sunlitsaleor · saleorEPSS 1.1%via OSV
CVE-2021-32574High· 7.5
5y ago

Hashicorp Consul Missing SSL Certificate Validation

Hashicorp Consul Missing SSL Certificate Validation

▾ Twilighthashicorp · github.com/hashicorp/consulEPSS 1.5%via OSV
CVE-2021-38511High· 7.5
5y ago

Links in archive can create arbitrary directories

Links in archive can create arbitrary directories

▾ Twilighttar · tarEPSS 1.4%via OSV
CVE-2021-32760Medium· 5.5
5y ago

containerd: pulling and extracting crafted container image may result in Unix file permission changes (CVE-2021-32760)

A flaw was found in containerd where pulling and extracting a specially-crafted container image can result in Unix file permission changes for existing files in the host’s filesystem. Changes to file permissions can deny access to the expe…

▾ SunlitRed Hat · RHOSSM 2.4 for RHEL 8EPSS 1.6%via CSAF
CVE-2021-3602Medium· 5.5
5y ago

Buildah processes using chroot isolation may leak environment values to intermediate processes

Buildah processes using chroot isolation may leak environment values to intermediate processes

▾ Sunlitcontainers · github.com/containers/buildahEPSS 0.33%via OSV
CVE-2021-32715Low· 3.1
5y ago

Lenient Parsing of Content-Length Header When Prefixed with Plus Sign

Lenient Parsing of Content-Length Header When Prefixed with Plus Sign

▾ Sunlithyper · hyperEPSS 0.97%via OSV
CVE-2021-32714Medium· 5.9
5y ago

Integer Overflow in Chunked Transfer-Encoding

Integer Overflow in Chunked Transfer-Encoding

▾ Sunlithyper · hyperEPSS 1.2%via OSV
CVE-2020-36407High· 8.8
5y ago

libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid.

libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid.

▾ Twilightavif · avifEPSS 1.4%via OSV
CVE-2021-32721Medium· 4.7
5y ago

Open Redirect in github.com/AndrewBurian/powermux

Open Redirect in github.com/AndrewBurian/powermux

▾ SunlitAndrewBurian · github.com/AndrewBurian/powermuxEPSS 0.61%via OSV
CVE-2020-26242Medium· 6.5
5y ago

Denial of service in geth

Denial of service in geth

▾ Sunlitethereum · github.com/ethereum/go-ethereumEPSS 1.5%via OSV
CVE-2020-15111Medium· 4.2
5y ago

CRLF vulnerability in Fiber

CRLF vulnerability in Fiber

▾ Sunlitgofiber · github.com/gofiber/fiberEPSS 0.86%via OSV
CVE-2020-26241Medium· 6.5
5y ago

Shallow copy bug in geth

Shallow copy bug in geth

▾ Sunlitethereum · github.com/ethereum/go-ethereumEPSS 1.2%via OSV
GHSA-vfvf-6gx5-mqv6High· 7.5
5y ago

Incorrect Authorization in ORY Oathkeeper

Incorrect Authorization in ORY Oathkeeper

▾ Twilightory · github.com/ory/oathkeepervia OSV
CVE-2020-27846Critical· 9.8
5y ago

XML Processing error in github.com/crewjam/saml

XML Processing error in github.com/crewjam/saml

▾ Midnightcrewjam · github.com/crewjam/samlEPSS 4.9%via OSV
CVE-2020-26279High· 7.7
5y ago

Path traversal in github.com/ipfs/go-ipfs

Path traversal in github.com/ipfs/go-ipfs

▾ Twilightipfs · github.com/ipfs/go-ipfsEPSS 1.7%via OSV
GHSA-qvp4-rpmr-xwrrHigh· 7.5
5y ago

Possible bypass of token claim validation when OAuth2 Introspection caching is enabled

Possible bypass of token claim validation when OAuth2 Introspection caching is enabled

▾ Twilightory · github.com/ory/oathkeepervia OSV
CVE-2020-4053Low· 3.7
5y ago

Plugin archive directory traversal in Helm

Plugin archive directory traversal in Helm

▾ Sunlithelm · helm.sh/helm/v3EPSS 1.5%via OSV
CVEs tagged “osv” — page 181 · VulnSea