VulnSea

Tagged “pip”

CVEs tagged pip, newest first.

4668 CVEsRSS

CVE-2023-38686Critical· 9.3
3y ago

Sydent does not verify email server certificates

Sydent does not verify email server certificates

▾ Midnightmatrix-sydent · matrix-sydentEPSS 0.27%via OSV
CVE-2023-38670Medium· 4.7
3y ago

Null pointer dereference in PaddlePaddle

Null pointer dereference in PaddlePaddle

▾ Sunlitpaddlepaddle · paddlepaddleEPSS 0.66%via OSV
CVE-2023-38671High· 8.3
3y ago

Heap buffer overflow in PaddlePaddle

Heap buffer overflow in PaddlePaddle

▾ Twilightpaddlepaddle · paddlepaddleEPSS 0.76%via OSV
CVE-2023-38672Medium· 4.7
3y ago

Float point exception (FPE) in paddlepaddle

Float point exception (FPE) in paddlepaddle

▾ Sunlitpaddlepaddle · paddlepaddleEPSS 0.74%via OSV
CVE-2023-38673Critical· 9.6
3y ago

Command injection in PaddlePaddle

Command injection in PaddlePaddle

▾ Midnightpaddlepaddle · paddlepaddleEPSS 2.3%via OSV
CVE-2023-38669High· 8.3
3y ago

Use after free in PaddlePaddle

Use after free in PaddlePaddle

▾ Twilightpaddlepaddle · paddlepaddleEPSS 0.77%via OSV
CVE-2023-37920High· 7.5
3y ago

Removal of e-Tugra root certificate

Removal of e-Tugra root certificate

▾ Twilightcertifi · certifiEPSS 0.57%via OSV
CVE-2023-36826High· 7.7
3y ago

Improper authorization on debug and artifact file downloads

Improper authorization on debug and artifact file downloads

▾ Twilightsentry · sentryEPSS 0.63%via OSV
CVE-2023-3637Medium· 6.5
3y ago

Denial of service in neutron

Denial of service in neutron

▾ Sunlitneutron · neutronEPSS 1.3%via OSV
CVE-2023-37480Low· 2.7
3y ago

Fides Webserver Vulnerable to Zip Bomb File Uploads

Fides Webserver Vulnerable to Zip Bomb File Uploads

▾ Sunlitethyca-fides · ethyca-fidesEPSS 0.69%via OSV
CVE-2023-37481Low· 2.7
3y ago

Fides Webserver Vulnerable to SVG Bomb File Uploads

Fides Webserver Vulnerable to SVG Bomb File Uploads

▾ Sunlitethyca-fides · ethyca-fidesEPSS 0.70%via OSV
CVE-2023-37474High· 7.5PoC
3y ago

copyparty vulnerable to path traversal attack

copyparty vulnerable to path traversal attack

▾ Midnightcopyparty · copypartyEPSS 45%via OSV
CVE-2023-38325High· 7.5
3y ago

cryptography mishandles SSH certificates

cryptography mishandles SSH certificates

▾ Twilightcryptography · cryptographyEPSS 0.73%via OSV
CVE-2023-37415High· 8.8
3y ago

Apache Airflow Apache Hive Provider Improper Input Validation vulnerability

Apache Airflow Apache Hive Provider Improper Input Validation vulnerability

▾ Twilightapache-airflow-providers-apache-hive · apache-airflow-providers-apache-hiveEPSS 1.6%via OSV
CVE-2023-37271High· 8.4
3y ago

RestrictedPython vulnerable to arbitrary code execution via stack frame sandbox escape

RestrictedPython vulnerable to arbitrary code execution via stack frame sandbox escape

▾ Twilightrestrictedpython · restrictedpythonEPSS 0.85%via OSV
CVE-2023-36827High· 7.5
3y ago

ethyca-fides Webserver API Path Traversal vulnerability

ethyca-fides Webserver API Path Traversal vulnerability

▾ Twilightethyca-fides · ethyca-fidesEPSS 1.5%via OSV
CVE-2023-36829Medium· 6.8
3y ago

Sentry CORS misconfiguration

Sentry CORS misconfiguration

▾ Sunlitsentry · sentryEPSS 0.67%via OSV
CVE-2023-35934Medium· 6.1
3y ago

yt-dlp File Downloader cookie leak

yt-dlp File Downloader cookie leak

▾ Sunlityt-dlp · yt-dlpEPSS 1.0%via OSV
CVE-2023-25504Medium· 6.5
3y ago

Apache Superset Server-Side Request Forgery vulnerability

Apache Superset Server-Side Request Forgery vulnerability

▾ Sunlitapache-superset · apache-supersetEPSS 0.96%via OSV
CVE-2023-30776Medium· 6.5
3y ago

Apache Superset vulnerable to Exposure of Sensitive Information

Apache Superset vulnerable to Exposure of Sensitive Information

▾ Sunlitapache-superset · apache-supersetEPSS 2.1%via OSV
CVE-2023-36188Critical· 9.8
3y ago

langchain vulnerable to arbitrary code execution

langchain vulnerable to arbitrary code execution

▾ Midnightlangchain · langchainEPSS 1.9%via OSV
CVE-2023-34457Medium· 5.9
3y ago

MechanicalSoup vulnerable to malicious web server reading arbitrary files on client using file input inside HTML form

MechanicalSoup vulnerable to malicious web server reading arbitrary files on client using file input inside HTML form

▾ Sunlitmechanicalsoup · mechanicalsoupEPSS 1.1%via OSV
CVE-2023-36814High· 7.5
3y ago

Products.CMFCore unauthenticated denial of service and crash via unchecked use of input with Python's marshal module

Products.CMFCore unauthenticated denial of service and crash via unchecked use of input with Python's marshal module

▾ Twilightproducts-cmfcore · products-cmfcoreEPSS 0.72%via OSV
CVE-2023-36809High· 8.1
3y ago

Kiwi TCMS's misconfigured HTTP headers allow stored XSS execution with Firefox

Kiwi TCMS's misconfigured HTTP headers allow stored XSS execution with Firefox

▾ Twilightkiwitcms · kiwitcmsEPSS 0.69%via OSV
CVE-2023-37365Medium· 6.5
3y ago

hnswlib Double Free vulnerability

hnswlib Double Free vulnerability

▾ Sunlithnswlib · hnswlibEPSS 0.59%via OSV
CVE-2023-36810Medium· 6.2
3y ago

PyPDF2 quadratic runtime with malformed PDF missing xref marker

PyPDF2 quadratic runtime with malformed PDF missing xref marker

▾ Sunlitpypdf2 · pypdf2EPSS 0.63%via OSV
CVE-2023-36807Medium· 6.2
3y ago

PyPDF2 vulnerable to possible Infinite Loop when reading malformed objects

PyPDF2 vulnerable to possible Infinite Loop when reading malformed objects

▾ Sunlitpypdf2 · pypdf2EPSS 0.57%via OSV
CVE-2023-36464Medium· 6.2
3y ago

pypdf and PyPDF2 possible Infinite Loop when a comment isn't followed by a character

pypdf and PyPDF2 possible Infinite Loop when a comment isn't followed by a character

▾ Sunlitpypdf · pypdfEPSS 0.35%via OSV
CVE-2023-22886High· 8.8
3y ago

Apache Airflow JDBC Provider Improper Input Validation vulnerability

Apache Airflow JDBC Provider Improper Input Validation vulnerability

▾ Twilightapache-airflow-providers-jdbc · apache-airflow-providers-jdbcEPSS 1.5%via OSV
CVE-2023-35798Medium· 4.3
3y ago

Apache Airflow ODBC Provider, Apache Airflow MSSQL Provider Improper Input Validation vulnerability

Apache Airflow ODBC Provider, Apache Airflow MSSQL Provider Improper Input Validation vulnerability

▾ Sunlitapache-airflow-providers-odbc · apache-airflow-providers-odbcEPSS 1.3%via OSV
CVEs tagged “pip” — page 122 · VulnSea