pypi

5,097 tracked vulnerabilities.

CVE-2014-1929
python-gnupg <0.3.7 - Code Injection
Oct 25, 2014
EPSS 0.00
CVE-2014-1928
python-gnupg < 0.3.5 - OS Command Injection via Shell Metacharacter Bypass
Oct 25, 2014
EPSS 0.01
CVE-2014-1927
python-gnupg 0.3.5 - Remote Code Execution via Shell Metacharacter Injection
Oct 25, 2014
EPSS 0.03
CVE-2014-7960
OpenStack Swift < 2.2.0 - Authenticated Metadata Constraint Bypass via Multiple Requests
Oct 17, 2014
EPSS 0.03
CVE-2014-1830
Requests <2.3.0 - Info Disclosure
Oct 15, 2014
EPSS 0.02
CVE-2014-1829
Requests <2.3.0 - Info Disclosure
Oct 15, 2014
EPSS 0.02
CVE-2014-7231
OpenStack <2013.2.4 & <2014.1.3 - Info Disclosure
Oct 08, 2014
EPSS 0.01
CVE-2014-3641
OpenStack Cinder < 2014.1.3 - Authenticated Sensitive Information Exposure via Crafted qcow2 Header
Oct 08, 2014
EPSS 0.02
CVE-2014-3608
OpenStack Nova < 2014.1.3 - Authenticated Denial of Service via VM Rescue State Bypass
Oct 06, 2014
EPSS 0.02
CVE-2014-7144
OpenStack keystonemiddleware <0.11.0-1.2.0 - Man-in-the-Middle
Oct 02, 2014
EPSS 0.02
CVE-2014-3621
OpenStack Keystone <2013.2.3/2014.1<2014.1.2.1 Authenticated Sensitive Info Exposure
Oct 02, 2014
EPSS 0.02
CVE-2014-0483
Django <1.4.14, 1.5.x <1.5.9, 1.6.x <1.6.6, 1.7 - Info Disclosure
Aug 26, 2014
EPSS 0.02
CVE-2014-0482
Django <1.4.14-1.7 - Auth Bypass
Aug 26, 2014
EPSS 0.02
CVE-2014-0481
Django <1.4.14, <1.5.9, <1.6.6, <1.7 - DoS
Aug 26, 2014
EPSS 0.02
CVE-2014-0480
Django <1.4.14, <1.5.9, <1.6.6, <1.7 - XSS
Aug 26, 2014
EPSS 0.02
CVE-2014-5356
OpenStack Glance < 2013.2.4, 2014.x < 2014.1.3, Juno < Juno-3 - Authenticated Denial of Service via V2 API Image Upload
Aug 25, 2014
EPSS 0.02
CVE-2014-5253
OpenStack Keystone 2014.1.x < 2014.1.2.1 and Juno < Juno-3 - Authenticated Token Persistence via Invalidated Domain
Aug 25, 2014
EPSS 0.01
CVE-2014-5252
OpenStack Keystone 2014.1.x < 2014.1.2.1 and Juno < Juno-3 - Authenticated Token Expiration Bypass via V3 API
Aug 25, 2014
EPSS 0.02
CVE-2014-5251
OpenStack Keystone < 2014.1.2.1 / Juno < Juno-3 Token Expiration Bypass
Aug 25, 2014
EPSS 0.02
CVE-2014-3589
Debian Python-imaging < 2.3.1 - Improper Input Validation
Aug 25, 2014
EPSS 0.03
CVE-2014-3563
SaltStack Salt < 2014.1.10 - Local Privilege Escalation via Temporary File Handling
Aug 22, 2014
EPSS 0.00
CVE-2014-3594
OpenStack Horizon < 2013.2.4, 2014.1 < 2014.1.2, Juno < Juno-3 - Cross-Site Scripting via Host Aggregate Name
Aug 22, 2014
EPSS 0.02
CVE-2014-3517
OpenStack Nova < 2013.2.4 - Instance ID Signature Exposure via Metadata Request Timing
Aug 07, 2014
EPSS 0.02
CVE-2014-3429
Opensuse < 1.2.0 - Code Injection
Aug 07, 2014
EPSS 0.05
CVE-2014-3555
OpenStack Neutron DoS via Allowed Address Pairs (2013.2.4, 2014.1.2, Juno-2)
Jul 23, 2014
EPSS 0.02