pypi

5,097 tracked vulnerabilities.

CVE-2015-5217
Ipsilon 0.1.0-1.0.1 - Authenticated Denial of Service via SAML2 SP Name Update
Nov 17, 2015
EPSS 0.01
CVE-2015-7713
OpenStack Compute <2014.2.4 - Privilege Escalation
Oct 29, 2015
EPSS 0.04
CVE-2015-5285
Kallithea <0.3 - HTTP Response Splitting
Oct 29, 2015
EPSS 0.06
CVE-2015-5240
OpenStack Neutron <2014.2.4-2015.1.2 - Privilege Escalation
Oct 27, 2015
EPSS 0.01
CVE-2015-5286
OpenStack Image Service - Auth Bypass
Oct 26, 2015
EPSS 0.02
CVE-2015-5251
OpenStack Image Service - Auth Bypass
Oct 26, 2015
EPSS 0.02
CVE-2015-5223
OpenStack Swift <2.4.0 - Info Disclosure
Oct 26, 2015
EPSS 0.03
CVE-2015-3280
OpenStack Nova < 2014.2.4 and 2015.1.x < 2015.1.2 - Authenticated Denial of Service via Instance Deletion During Resize
Oct 26, 2015
EPSS 0.03
CVE-2015-7337
IPython Notebook < 3.2.2 and Jupyter Notebook 4.0.0-4.0.4 - Remote Code Execution via Crafted File MIME Type
Sep 29, 2015
EPSS 0.02
CVE-2015-6938
Jupyter Notebook < 4.0.5 - Cross-Site Scripting via Folder Name
Sep 21, 2015
EPSS 0.03
CVE-2015-3241
OpenStack Compute <2015.1.1-2014.2.3 - DoS
Sep 08, 2015
EPSS 0.03
CVE-2015-3221
OpenStack Neutron < 2014.2.4 and 2015.1.x < 2015.1.1 - Authenticated Denial of Service via IPTables Firewall Driver
Aug 26, 2015
EPSS 0.11
CVE-2015-5964
Django 1.7.x < 1.7.10 and 1.4.x < 1.4.22 - Denial of Service via Session Store Consumption
Aug 24, 2015
EPSS 0.05
CVE-2015-5963
Django <1.8.4, <1.7.10, <1.4.22 - DoS
Aug 24, 2015
EPSS 0.05
CVE-2015-3219
OpenStack Dashboard (Horizon) <2014.2.4-2015.1.1 - XSS
Aug 20, 2015
EPSS 0.03
CVE-2015-5163
OpenStack Glance 2015.1.x < 2015.1.2 - Authenticated Arbitrary File Read via QCOW2 Backing File
Aug 19, 2015
EPSS 0.01
CVE-2015-3908
Ansible < 1.9.2 - Insufficient Verification of Data Authenticity in X.509 Certificate
Aug 12, 2015
EPSS 0.01
CVE-2015-5145
Django 1.8.x < 1.8.3 - Denial of Service via URLValidator
Jul 14, 2015
EPSS 0.03
CVE-2015-5144
Canonical Ubuntu Linux < 1.4.20 - Improper Input Validation
Jul 14, 2015
EPSS 0.04
CVE-2015-5143
Django 1.4-1.6 1.7-1.7.8 1.8-1.8.2 - Denial of Service via Session Key Flood
Jul 14, 2015
EPSS 0.07
CVE-2015-1851
Canonical Ubuntu Linux < 2014.1.4 - Information Disclosure
Jun 25, 2015
EPSS 0.03
CVE-2015-3010
ceph-deploy < 1.5.23 - Unauthorized Exposure of Sensitive Information via Weak Keyring Permissions
Jun 16, 2015
EPSS 0.00
CVE-2015-4053
ceph-deploy < 1.5.25 - Exposure of Sensitive Information via World-Readable Keyring
Jun 08, 2015
EPSS 0.00
CVE-2015-3982
Django 1.8.x < 1.8.2 - Session Hijacking via Empty Session Key
Jun 02, 2015
EPSS 0.02
CVE-2015-3646
OpenStack Identity (Keystone) <2014.1.5-2014.2.4 - Info Disclosure
May 12, 2015
EPSS 0.03