pypi

5,097 tracked vulnerabilities.

CVE-2015-2674 MEDIUM
restkit - Improper Certificate Validation via ssl.wrap_socket Default
Aug 09, 2017
CVSS 5.9
EPSS 0.01
CVE-2015-7764 HIGH
Lemur < 0.1.5 - Insufficient Entropy in AES-CBC IV Generation
Aug 09, 2017
CVSS 7.5
EPSS 0.01
CVE-2015-6941 CRITICAL
salt <2015.5.6-2015.8.1 - Info Disclosure
Aug 09, 2017
CVSS 9.8
EPSS 0.02
CVE-2015-3171 MEDIUM
sosreport < 3.3 - Exposure of Sensitive Information via Weak Archive Permissions
Jul 25, 2017
CVSS 5.5
EPSS 0.00
CVE-2015-3220 HIGH
tlslite < 0.4.9 - Denial of Service via Runtime Exception
Jun 13, 2017
CVSS 7.5
EPSS 0.03
CVE-2015-6240 HIGH
Ansible < 1.9.2 - Symlink Attack via Chroot, Jail, and Zone Connection Plugins
Jun 07, 2017
CVSS 7.8
EPSS 0.00
CVE-2015-1839 MEDIUM
SaltStack <2014.7.4 - Info Disclosure
Apr 13, 2017
CVSS 5.3
EPSS 0.00
CVE-2015-1838 MEDIUM
SaltStack <2014.7.4 - Info Disclosure
Apr 13, 2017
CVSS 5.3
EPSS 0.00
CVE-2015-8234 MEDIUM
OpenStack Glance 11.0.0 - Auth Bypass
Mar 29, 2017
CVSS 5.5
EPSS 0.01
CVE-2015-8310 MEDIUM
CherryMusic < 0.36.0 - Authenticated Stored Cross-Site Scripting via Playlist Name
Mar 27, 2017
CVSS 5.4
EPSS 0.01
CVE-2015-8309 MEDIUM
Cherry Music <0.36.0 - Path Traversal
Mar 27, 2017
CVSS 4.3
EPSS 0.07
CVE-2015-8034 LOW
Salt < 2015.8.3 - Exposure of Sensitive Information via Weak Cache Permissions
Jan 30, 2017
CVSS 3.3
EPSS 0.00
CVE-2015-5162 HIGH
OpenStack Cinder 7.0.2, 8.0.0-8.1.1 - Denial of Service via Image Parser
Oct 07, 2016
CVSS 7.5
EPSS 0.03
CVE-2015-8914 CRITICAL
OpenStack Neutron 7.0.0-7.0.3 and 8.0.0-8.1.0 - Denial of Service via ICMPv6 Spoofing Bypass
Jun 17, 2016
CVSS 9.1
EPSS 0.04
CVE-2015-5271 HIGH
TripleO Heat templates - Info Disclosure
Apr 15, 2016
CVSS 7.5
EPSS 0.02
CVE-2015-0861 MEDIUM
trytond < 3.2.10, 3.4.8, 3.6.5, 3.8.1 - Authenticated Arbitrary Field Write
Apr 13, 2016
CVSS 4.3
EPSS 0.01
CVE-2015-5303 HIGH
TripleO Heat templates - Open Redirect
Apr 11, 2016
CVSS 7.5
EPSS 0.02
CVE-2015-8748 MEDIUM
Radicale < 1.1 - Authenticated Access Control Bypass via Regex Metacharacters in Username
Feb 03, 2016
CVSS 5.3
EPSS 0.02
CVE-2015-8747 CRITICAL
Radicale < 1.1 - Unauthenticated Arbitrary File Read and Write via Multifilesystem Storage Backend
Feb 03, 2016
CVSS 10.0
EPSS 0.03
CVE-2015-7546 HIGH
OpenStack Identity <2015.1.3-8.0.2 - Privilege Escalation
Feb 03, 2016
CVSS 7.5
EPSS 0.02
CVE-2015-8749 MEDIUM
OpenStack Nova 12.0.0 - Exposure of Sensitive Information in Xen Backend StorageError Message
Jan 15, 2016
CVSS 5.9
EPSS 0.02
CVE-2015-8557 CRITICAL
Pygments <2.0.2 - Remote Code Execution
Jan 08, 2016
CVSS 9.0
EPSS 0.07
CVE-2015-8213
Django <1.7.11, <1.8.7, <1.9rc2 - Info Disclosure
Dec 07, 2015
EPSS 0.04
CVE-2015-5306
OpenStack Ironic Inspector - Remote Code Execution via Flask Debug Console
Nov 25, 2015
EPSS 0.02
CVE-2015-5301
Ipsilon 0.1.0-1.0.1 and 1.1.x < 1.1.1 - Authenticated Denial of Service via SAML2 Service Provider Deletion
Nov 17, 2015
EPSS 0.01