VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5752 CVEsRSS

CVE-2020-11001Medium· 5.8
6y ago

Possible XSS attack in Wagtail

Possible XSS attack in Wagtail

▾ Sunlitwagtail · wagtailEPSS 1.3%via OSV
CVE-2020-6817High· 7.5
6y ago

regular expression denial-of-service (ReDoS) in Bleach

regular expression denial-of-service (ReDoS) in Bleach

▾ Twilightbleach · bleachEPSS 0.72%via OSV
CVE-2020-6816Medium· 6.1
6y ago

Bleach vulnerable to mutation XSS via whitelisted math or svg and raw tag

Bleach vulnerable to mutation XSS via whitelisted math or svg and raw tag

▾ Sunlitbleach · bleachEPSS 1.3%via OSV
CVE-2020-5252Medium· 5.0
6y ago

Malicious package may avoid detection in python auditing

Malicious package may avoid detection in python auditing

▾ Sunlitsafety · safetyEPSS 0.37%via OSV
CVE-2020-5262High· 7.7
6y ago

GitHub personal access token leaking into temporary EasyBuild (debug) logs

GitHub personal access token leaking into temporary EasyBuild (debug) logs

▾ Twilighteasybuild-framework · easybuild-frameworkEPSS 0.55%via OSV
CVE-2020-10571Critical· 9.8
6y ago

Potential buffer overflow in psd-tools

Potential buffer overflow in psd-tools

▾ Midnightpsd-tools · psd-toolsEPSS 1.8%via OSV
CVE-2020-5240High· 7.6
6y ago

2FA bypass through deleting devices in wagtail-2fa

2FA bypass through deleting devices in wagtail-2fa

▾ Twilightwagtail-2fa · wagtail-2faEPSS 1.00%via OSV
CVE-2020-6802Medium· 6.1
6y ago

XSS in Bleach when noscript and raw tag whitelisted

XSS in Bleach when noscript and raw tag whitelisted

▾ Sunlitbleach · bleachEPSS 1.7%via OSV
CVE-2020-5236Medium· 5.7PoC
6y ago

Catastrophic backtracking in regex allows Denial of Service in Waitress

Catastrophic backtracking in regex allows Denial of Service in Waitress

▾ Twilightwaitress · waitressEPSS 2.4%via OSV
CVE-2020-5215Medium· 5.0
6y ago

Segmentation faultin TensorFlow when converting a Python string to `tf.float16`

Segmentation faultin TensorFlow when converting a Python string to `tf.float16`

▾ Sunlittensorflow · tensorflowEPSS 0.59%via OSV
CVE-2020-5227Medium· 4.4
6y ago

Feedgen Vulnerable to XML Denial of Service Attacks

Feedgen Vulnerable to XML Denial of Service Attacks

▾ Sunlitfeedgen · feedgenEPSS 2.2%via OSV
CVE-2020-5224Medium· 6.5
6y ago

Session key exposure through session list in Django User Sessions

Session key exposure through session list in Django User Sessions

▾ Sunlitdjango-user-sessions · django-user-sessionsEPSS 0.53%via OSV
CVE-2019-16784High· 7.0PoC
6y ago

Local Privilege Escalation in PyInstaller

Local Privilege Escalation in PyInstaller

▾ Midnightpyinstaller · pyinstallerEPSS 0.69%via OSV
CVE-2020-35858Critical· 9.8
6y ago

Parsing a specially crafted message can result in a stack overflow

Parsing a specially crafted message can result in a stack overflow

▾ Midnightprost · prostEPSS 3.4%via OSV
CVE-2019-16785High· 7.1
6y ago

HTTP Request Smuggling: LF vs CRLF handling in Waitress

HTTP Request Smuggling: LF vs CRLF handling in Waitress

▾ Twilightwaitress · waitressEPSS 2.5%via OSV
CVE-2019-16786High· 7.1
6y ago

HTTP Request Smuggling: Invalid Transfer-Encoding in Waitress

HTTP Request Smuggling: Invalid Transfer-Encoding in Waitress

▾ Twilightwaitress · waitressEPSS 2.4%via OSV
CVE-2019-16792Critical
6y ago

HTTP Request Smuggling: Content-Length Sent Twice in Waitress

HTTP Request Smuggling: Content-Length Sent Twice in Waitress

▾ Midnightwaitress · waitressEPSS 2.0%via OSV
CVE-2019-16778Low· 2.6
6y ago

Heap buffer overflow in `UnsortedSegmentSum` in TensorFlow

Heap buffer overflow in `UnsortedSegmentSum` in TensorFlow

▾ Sunlittensorflow · tensorflowEPSS 0.79%via OSV
CVE-2019-16766High· 8.7
6y ago

2FA bypass in Wagtail through new device path

2FA bypass in Wagtail through new device path

▾ Twilightwagtail-2fa · wagtail-2faEPSS 1.5%via OSV
CVE-2019-12417Medium· 4.8
6y ago

Apache Airflow vulnerable to XSS and local file disclosure

Apache Airflow vulnerable to XSS and local file disclosure

▾ Sunlitairflow · airflowEPSS 1.3%via OSV
CVE-2017-18638High· 7.5PoC
6y ago

graphite.composer.views.send_email vulnerable to SSRF

graphite.composer.views.send_email vulnerable to SSRF

▾ Midnightgraphite-web · graphite-webEPSS 15%via OSV
CVE-2019-10751High· 8.8
7y ago

Open Redirect in httpie

Open Redirect in httpie

▾ Twilighthttpie · httpieEPSS 2.0%via OSV
CVE-2019-15554Critical· 9.8
7y ago

Memory corruption in SmallVec::grow()

Memory corruption in SmallVec::grow()

▾ Midnightsmallvec · smallvecEPSS 2.1%via OSV
CVE-2019-1020003Medium· 5.4
7y ago

Cross-site scripting invenio-records

Cross-site scripting invenio-records

▾ Sunlitinvenio-records · invenio-recordsEPSS 0.66%via OSV
CVE-2019-1020005Medium· 5.4
7y ago

Cross-site Scripting in invenio-communities

Cross-site Scripting in invenio-communities

▾ Sunlitinvenio-communities · invenio-communitiesEPSS 0.68%via OSV
CVE-2019-1020019Medium· 6.1
7y ago

Cross-site Scripting in invenio-previewer

Cross-site Scripting in invenio-previewer

▾ Sunlitinvenio-previewer · invenio-previewerEPSS 0.90%via OSV
CVE-2019-1020006Medium· 6.1
7y ago

Invenio-App vulnerable to host header injection attack

Invenio-App vulnerable to host header injection attack

▾ Sunlitinvenio-app · invenio-appEPSS 0.93%via OSV
CVE-2019-16791Medium· 6.9
7y ago

postfix-mta-sts-resolver Algorithm Downgrade vulnerability

postfix-mta-sts-resolver Algorithm Downgrade vulnerability

▾ Sunlitpostfix-mta-sts-resolver · postfix-mta-sts-resolverEPSS 0.78%via OSV
CVE-2019-13177Critical· 9.8
7y ago

Improper Verification of Cryptographic Signature in django-rest-registration

Improper Verification of Cryptographic Signature in django-rest-registration

▾ Midnightdjango-rest-registration · django-rest-registrationEPSS 1.6%via OSV
CVE-2019-15551Critical· 9.8
7y ago

Double-free and use-after-free in SmallVec::grow()

Double-free and use-after-free in SmallVec::grow()

▾ Midnightsmallvec · smallvecEPSS 1.9%via OSV
CVEs tagged “osv” — page 191 · VulnSea