Tagged “osv”
CVEs tagged osv, newest first.
5752 CVEsRSS
CVE-2020-15257Medium· 5.2PoCcontainerd-shim API Exposed to Host Network Containers
containerd-shim API Exposed to Host Network Containers
CVE-2020-15222High· 8.1Token reuse in Ory fosite
Token reuse in Ory fosite
CVE-2020-15233Medium· 6.1OAuth2 Redirect URL validity does not respect query parameters and character casing for loopback addresses
OAuth2 Redirect URL validity does not respect query parameters and character casing for loopback addresses
CVE-2020-13794Medium· 4.3Authenticated users can exploit an enumeration vulnerability in Harbor
Authenticated users can exploit an enumeration vulnerability in Harbor
CVE-2020-15216Medium· 5.3github.com/russellhaering/goxmldsig vulnerable to Signature Validation Bypass
github.com/russellhaering/goxmldsig vulnerable to Signature Validation Bypass
CVE-2020-15186Low· 3.4Improper Sanitizing of plugin names in helm
Improper Sanitizing of plugin names in helm
CVE-2020-25040High· 8.8Insecure permissions on build temporary rootfs in Singularity
Insecure permissions on build temporary rootfs in Singularity
CVE-2020-15185Low· 2.2Repository index file allows for duplicates of the same chart entry in helm
Repository index file allows for duplicates of the same chart entry in helm
CVE-2020-26213Medium· 5.9Denial-of-Service within Docker container
Denial-of-Service within Docker container
CVE-2020-15187Low· 3.0plugin.yaml file allows for duplicate entries in helm
plugin.yaml file allows for duplicate entries in helm
CVE-2020-15184Low· 3.7Aliases are never checked in helm
Aliases are never checked in helm
CVE-2021-29618Low· 2.5Crash in `tf.transpose` with complex inputs
Crash in `tf.transpose` with complex inputs
CVE-2021-29541Low· 2.5Null pointer dereference in `StringNGrams`
Null pointer dereference in `StringNGrams`
CVE-2021-29525Low· 2.5Division by 0 in `Conv2DBackpropInput`
Division by 0 in `Conv2DBackpropInput`
CVE-2021-29527Low· 2.5Division by 0 in `QuantizedConv2D`
Division by 0 in `QuantizedConv2D`
CVE-2021-29613Medium· 6.3Incomplete validation in `tf.raw_ops.CTCLoss`
Incomplete validation in `tf.raw_ops.CTCLoss`
CVE-2021-29524Low· 2.5Division by 0 in `Conv2DBackpropFilter`
Division by 0 in `Conv2DBackpropFilter`
CVE-2021-29615Low· 2.5Stack overflow in `ParseAttrValue` with nested tensors
Stack overflow in `ParseAttrValue` with nested tensors
CVE-2021-29546Low· 2.5Division by 0 in `QuantizedBiasAdd`
Division by 0 in `QuantizedBiasAdd`
CVE-2021-29535Low· 2.5Heap buffer overflow in `QuantizedMul`
Heap buffer overflow in `QuantizedMul`
CVE-2021-29592Medium· 4.4Null pointer dereference in TFLite's `Reshape` operator
Null pointer dereference in TFLite's `Reshape` operator
CVE-2021-29605High· 7.1Integer overflow in TFLite memory allocation
Integer overflow in TFLite memory allocation
CVE-2021-29521Low· 2.5Segfault in SparseCountSparseOutput
Segfault in SparseCountSparseOutput
CVE-2021-29614High· 7.1Interpreter crash from `tf.io.decode_raw`
Interpreter crash from `tf.io.decode_raw`
CVE-2021-29537Low· 2.5Heap buffer overflow in `QuantizedResizeBilinear`
Heap buffer overflow in `QuantizedResizeBilinear`
CVE-2021-29528Low· 2.5Division by 0 in `QuantizedMul`
Division by 0 in `QuantizedMul`
CVE-2021-21404High· 7.5Crash due to malformed relay protocol message
Crash due to malformed relay protocol message
CVE-2021-23347Medium· 4.7Possible XSS when using SSO with the CLI in github.com/argoproj/argo-cd/v2
Possible XSS when using SSO with the CLI in github.com/argoproj/argo-cd/v2
CVE-2021-27098High· 8.1Legacy Node API Allows Impersonation in github.com/spiffe/spire/pkg/server/endpoints/node
Legacy Node API Allows Impersonation in github.com/spiffe/spire/pkg/server/endpoints/node
CVE-2021-29652Medium· 6.1pomerium_signature is not verified in middleware in github.com/pomerium/pomerium
pomerium_signature is not verified in middleware in github.com/pomerium/pomerium