Tagged “pip”
CVEs tagged pip, newest first.
4682 CVEsRSS
CVE-2020-15190Medium· 5.3Segfault in Tensorflow
Segfault in Tensorflow
CVE-2020-15163High· 8.7Invalid root may become trusted root in The Update Framework (TUF)
Invalid root may become trusted root in The Update Framework (TUF)
CVE-2020-15147High· 8.5Remote Code Execution in Red Discord Bot
Remote Code Execution in Red Discord Bot
CVE-2020-15140High· 8.2Remote Code Execution in Red Discord Bot
Remote Code Execution in Red Discord Bot
CVE-2020-15141Low· 3.0Path Traversal in openapi-python-client
Path Traversal in openapi-python-client
CVE-2020-15142High· 8.0openapi-python-client Arbitrary Code Generation vulnerability
openapi-python-client Arbitrary Code Generation vulnerability
CVE-2020-15120Medium· 4.9Authorization Bypass in I hate money
Authorization Bypass in I hate money
CVE-2020-15110Medium· 6.8Possible pod name collisions in jupyterhub-kubespawner
Possible pod name collisions in jupyterhub-kubespawner
CVE-2020-15118Medium· 5.7Cross-Site Scripting in Wagtail
Cross-Site Scripting in Wagtail
CVE-2020-15105Medium· 5.4User passwords are stored in clear text in the Django session
User passwords are stored in clear text in the Django session
CVE-2020-4071Low· 2.2Timing attack on django-basic-auth-ip-whitelist
Timing attack on django-basic-auth-ip-whitelist
CVE-2020-11090High· 7.5Uncontrolled Resource Consumption in Indy Node
Uncontrolled Resource Consumption in Indy Node
CVE-2020-9402High· 8.8SQL injection in Django
SQL injection in Django
CVE-2020-11078Medium· 6.8CRLF injection in httplib2
CRLF injection in httplib2
CVE-2020-11054Low· 3.5Incorrect Provision of Specified Functionality in qutebrowser
Incorrect Provision of Specified Functionality in qutebrowser
CVE-2020-11037Medium· 6.1Potential Observable Timing Discrepancy in Wagtail
Potential Observable Timing Discrepancy in Wagtail
CVE-2020-11010Medium· 6.3SQL injection in Tortoise ORM
SQL injection in Tortoise ORM
CVE-2020-11001Medium· 5.8Possible XSS attack in Wagtail
Possible XSS attack in Wagtail
CVE-2020-6817High· 7.5regular expression denial-of-service (ReDoS) in Bleach
regular expression denial-of-service (ReDoS) in Bleach
CVE-2020-6816Medium· 6.1Bleach vulnerable to mutation XSS via whitelisted math or svg and raw tag
Bleach vulnerable to mutation XSS via whitelisted math or svg and raw tag
CVE-2020-5252Medium· 5.0Malicious package may avoid detection in python auditing
Malicious package may avoid detection in python auditing
CVE-2020-5262High· 7.7GitHub personal access token leaking into temporary EasyBuild (debug) logs
GitHub personal access token leaking into temporary EasyBuild (debug) logs
CVE-2020-10571Critical· 9.8Potential buffer overflow in psd-tools
Potential buffer overflow in psd-tools
CVE-2020-5240High· 7.62FA bypass through deleting devices in wagtail-2fa
2FA bypass through deleting devices in wagtail-2fa
CVE-2020-6802Medium· 6.1XSS in Bleach when noscript and raw tag whitelisted
XSS in Bleach when noscript and raw tag whitelisted
CVE-2020-5236Medium· 5.7PoCCatastrophic backtracking in regex allows Denial of Service in Waitress
Catastrophic backtracking in regex allows Denial of Service in Waitress
CVE-2020-5215Medium· 5.0Segmentation faultin TensorFlow when converting a Python string to `tf.float16`
Segmentation faultin TensorFlow when converting a Python string to `tf.float16`
CVE-2020-5227Medium· 4.4Feedgen Vulnerable to XML Denial of Service Attacks
Feedgen Vulnerable to XML Denial of Service Attacks
CVE-2020-5224Medium· 6.5Session key exposure through session list in Django User Sessions
Session key exposure through session list in Django User Sessions
CVE-2019-16784High· 7.0PoCLocal Privilege Escalation in PyInstaller
Local Privilege Escalation in PyInstaller