pypi
5,085 tracked vulnerabilities.
CVE-2022-24761
HIGH
Waitress < 2.1.1 - HTTP Request Smuggling via Invalid HTTP Request Parsing
Mar 17, 2022
CVSS 7.5
EPSS 0.02
CVE-2022-0959
MEDIUM
pgAdmin 4 < 6.7 - Authenticated Path Traversal via File Upload
Mar 16, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-0430
MEDIUM
httpie < 3.1.0 - Exposure of Sensitive Information
Mar 15, 2022
CVSS 5.3
EPSS 0.01
CVE-2022-27193
MEDIUM
CVRF-CSAF-Converter < 1.0.0-rc2 - XML External Entity Injection
Mar 15, 2022
CVSS 6.1
EPSS 0.01
CVE-2022-21187
HIGH
libvcs < 0.11.1 - OS Command Injection via hg clone URL Parameter
Mar 14, 2022
CVSS 8.1
EPSS 0.04
CVE-2022-0932
MEDIUM
saleor < 3.1.2 - Missing Authorization
Mar 11, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-0860
CRITICAL
cobbler < 3.3.2 - Improper Authorization
Mar 11, 2022
CVSS 9.1
EPSS 0.02
CVE-2022-25512
HIGH
FreeTAKServer-UI 1.9.8 - Exposure of Sensitive API and Websocket Keys
Mar 11, 2022
CVSS 7.5
EPSS 0.01
CVE-2022-25511
MEDIUM
FreeTAKServer-UI <1.9.8 - Path Traversal
Mar 11, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-25510
HIGH
FreeTAKServer < 1.9.8.5 - Authentication Bypass via Hardcoded Flask Secret Key
Mar 11, 2022
CVSS 8.8
EPSS 0.01
CVE-2022-25508
HIGH
FreeTAKServer < 1.9.8.5 - Unauthenticated Denial of Service via Route Creation
Mar 11, 2022
CVSS 7.5
EPSS 0.01
CVE-2022-25507
MEDIUM
FreeTAKServer-UI v1.9.8 - Stored Cross-Site Scripting via Callsign Parameter
Mar 11, 2022
CVSS 5.4
EPSS 0.00
CVE-2022-25506
MEDIUM
FreeTAKServer-UI v1.9.8 - SQL Injection via AuthenticateUser API Endpoint
Mar 11, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-26662
HIGH
Tryton Application Platform <5.0.45-6.2.5 - DoS
Mar 10, 2022
CVSS 7.5
EPSS 0.02
CVE-2022-26661
MEDIUM
Tryton Application Platform <6.2.5-6.2.1 - XXE
Mar 10, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-24737
MEDIUM
httpie < 3.1.0 - Exposure of Sensitive Information via Session Cookie Handling
Mar 07, 2022
CVSS 6.5
EPSS 0.02
CVE-2022-0767
CRITICAL
janeczku/calibre-web <0.6.17 - SSRF
Mar 07, 2022
CVSS 9.9
EPSS 0.01
CVE-2022-0766
CRITICAL
janeczku/calibre-web <0.6.17 - SSRF
Mar 07, 2022
CVSS 9.8
EPSS 0.01
CVE-2022-0697
MEDIUM
archivy/archivy <1.7.0 - Open Redirect
Mar 06, 2022
CVSS 6.1
EPSS 0.01
CVE-2022-0869
MEDIUM
NUCLEI
spirit < 0.12.3 - Open Redirect
Mar 06, 2022
CVSS 6.1
EPSS 0.03
CVE-2022-0845
CRITICAL
PyTorch Lightning < 1.6.0 - Code Injection
Mar 05, 2022
CVSS 9.8
EPSS 0.01
CVE-2022-23915
HIGH
Weblate < 4.11.1 - Authenticated Remote Code Execution via Argument Injection
Mar 04, 2022
CVSS 7.2
EPSS 0.03
CVE-2022-21716
HIGH
Twisted 21.7.0-22.1.0 - Denial of Service via SSH Version Identifier Buffer Overflow
Mar 03, 2022
CVSS 7.5
EPSS 0.04
CVE-2022-0577
MEDIUM
scrapy < 2.6.1 - Exposure of Sensitive Information to an Unauthorized Actor
Mar 02, 2022
CVSS 6.5
EPSS 0.01
CVE-2022-24719
LOW
Fluture-Node 4.0.0/1 - Info Disclosure
Mar 01, 2022
CVSS 2.6
EPSS 0.01
Products
tensorflow 427
tensorflow-gpu 421
tensorflow-cpu 417
Django 147
apache-airflow 128
open-webui 101
Plone 96
mlflow 77
apache-superset 67
salt 67
ansible 66
pillow 60
vllm 52
nova 49
gradio 48
matrix-synapse 44
pyload-ng 44
rdiffweb 43
keystone 40
vyper 39
moin 35
aiohttp 34
opencv-contrib-python 30
opencv-python 30
langflow 28
pypdf 28
PraisonAI 27
pgadmin4 26
openbabel 24
litellm 23
Quick Filters