pypi
5,085 tracked vulnerabilities.
CVE-2022-24857
HIGH
django-mfa3 < 0.5.0 - Authentication Bypass via Admin Login View
Apr 15, 2022
CVSS 7.3
EPSS 0.01
CVE-2022-24845
HIGH
vyperlang/vyper < 0.3.2 - Integer Overflow via Unvalidated int128 Return
Apr 13, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-27479
CRITICAL
Apache Superset < 1.4.2 - SQL Injection in Chart Data Requests
Apr 13, 2022
CVSS 9.8
EPSS 0.03
CVE-2022-24788
HIGH
vyper < 0.3.2 - Buffer Overrun via JSON Interface Function Import
Apr 13, 2022
CVSS 7.1
EPSS 0.01
CVE-2022-28347
CRITICAL
Django 2.2-2.2.27, 3.2-3.2.12, 4.0-4.0.3 - SQL Injection via QuerySet.explain() Options
Apr 12, 2022
CVSS 9.8
EPSS 0.03
CVE-2022-28346
CRITICAL
Django 2.2-2.2.27, 3.2-3.2.12, 4.0-4.0.3 - SQL Injection via QuerySet Column Alias Dictionary Expansion
Apr 12, 2022
CVSS 9.8
EPSS 0.19
CVE-2022-24801
HIGH
Twisted < 22.4.0 - HTTP Request Smuggling via Non-Conformant HTTP Request Parsing
Apr 04, 2022
CVSS 8.1
EPSS 0.03
CVE-2022-27177
CRITICAL
ConsoleMe < 1.2.2 - Use of Externally-Controlled Format String
Apr 01, 2022
CVSS 9.8
EPSS 0.02
CVE-2022-24798
HIGH
Internet Routing Registry daemon <4 - Info Disclosure
Mar 31, 2022
CVSS 7.5
EPSS 0.01
CVE-2022-24758
HIGH
Jupyter Notebook <6.4.9 - Info Disclosure
Mar 31, 2022
CVSS 7.5
EPSS 0.01
CVE-2022-25598
HIGH
Apache DolphinScheduler < 2.0.5 - Regular Expression Denial of Service in User Registration
Mar 30, 2022
CVSS 7.5
EPSS 0.02
CVE-2022-22941
HIGH
SaltStack Salt < 3002.8 - Incorrect Permission Assignment for Critical Resource via Master-of-Masters Configuration
Mar 29, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-22936
HIGH
SaltStack Salt <3002.8-3004.1 - Privilege Escalation
Mar 29, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-22935
LOW
SaltStack Salt < 3002.8 - Minion Authentication Denial of Service via Master Impersonation
Mar 29, 2022
CVSS 3.7
EPSS 0.02
CVE-2022-22934
HIGH
SaltStack Salt <3002.8-3004.1 - Info Disclosure
Mar 29, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-24303
CRITICAL
Pillow < 9.0.1 - Arbitrary File Deletion via Temporary Pathname Mishandling
Mar 28, 2022
CVSS 9.1
EPSS 0.03
CVE-2022-24776
MEDIUM
Flask-AppBuilder < 3.4.5 - Open Redirect via Database Authentication Login Page
Mar 24, 2022
CVSS 6.1
EPSS 0.01
CVE-2022-25568
HIGH
NUCLEI
MotionEye Config Info Disclosure
Mar 24, 2022
CVSS 7.5
EPSS 0.07
CVE-2022-0315
HIGH
horovod < 0.24.0 - Insecure Temporary File
Mar 24, 2022
CVSS 7.5
EPSS 0.01
CVE-2022-24757
HIGH
Jupyter Server <1.15.4 - Info Disclosure
Mar 23, 2022
CVSS 7.5
EPSS 0.01
CVE-2022-26184
CRITICAL
Poetry < 1.1.9 - Untrusted Search Path on Windows
Mar 21, 2022
CVSS 9.8
EPSS 0.02
CVE-2022-24766
CRITICAL
mitmproxy < 7.0.4 and >=8.0.0 - HTTP Request Smuggling
Mar 21, 2022
CVSS 9.8
EPSS 0.02
CVE-2022-24302
MEDIUM
paramiko < 2.10.1 - Information Disclosure via Race Condition in write_private_key_file
Mar 17, 2022
CVSS 5.9
EPSS 0.02
CVE-2022-24770
HIGH
gradio < 2.8.11 - CSV Injection via Flagging Functionality
Mar 17, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-21822
HIGH
NVIDIA FLARE < 2.0.16 - Unauthenticated Resource Exhaustion via Admin Interface
Mar 17, 2022
CVSS 7.5
EPSS 0.01
Products
tensorflow 427
tensorflow-gpu 421
tensorflow-cpu 417
Django 147
apache-airflow 128
open-webui 101
Plone 96
mlflow 77
apache-superset 67
salt 67
ansible 66
pillow 60
vllm 52
nova 49
gradio 48
matrix-synapse 44
pyload-ng 44
rdiffweb 43
keystone 40
vyper 39
moin 35
aiohttp 34
opencv-contrib-python 30
opencv-python 30
langflow 28
pypdf 28
PraisonAI 27
pgadmin4 26
openbabel 24
litellm 23
Quick Filters