Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-v5h2-q2w4-gpcx
  • Not specified
Sentry improper error handling leaks Application Integration Client Secret yesterday
  • No fix available
  • Severity - 5.3 (Medium)
GHSA-8w49-h785-mj3c
  • PyPI/tornado
Tornado has an HTTP cookie parsing DoS vulnerability yesterday
  • Fix available
  • Severity - 7.5 (High)
MAL-2024-10877
  • Not specified
Malicious code in newpipv3 (PyPI) yesterday
  • No fix available
GHSA-rmxg-6qqf-x8mr
  • PyPI/geonode
GeoNode Server Side Request forgery 2 days ago
  • Fix available
  • Severity - 7.5 (High)
GHSA-hj3w-wrh4-44vp
  • PyPI/llamafactory
LLama Factory Remote OS Command Injection Vulnerability 2 days ago
  • Fix available
  • Severity - 7.5 (High)
GHSA-gjcc-jvgw-wvwj
  • PyPI/litestar
Litestar allows unbounded resource consumption (DoS vulnerability) 3 days ago
  • No fix available
  • Severity - 8.2 (High)
GHSA-j4v3-wwwx-5gqv
  • PyPI/django-filer
django Filer Unrestricted Upload of File with Dangerous Type 3 days ago
  • Fix available
  • Severity - 5.5 (Medium)
GHSA-vxcv-4xvf-pc22
  • PyPI/djangocms-attributes-field
django CMS Attributes Field Cross-site Scripting 3 days ago
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-5jfw-gq64-q45f
  • PyPI/lxml-html-clean
HTML Cleaner allows crafted scripts in special contexts like svg or math to pass through 4 days ago
  • Fix available
  • Severity - 7.7 (High)
MAL-2024-10834
  • Not specified
Malicious code in fc-clip (PyPI) 4 days ago
  • No fix available
MAL-2024-10839
  • Not specified
Malicious code in vtvqa (PyPI) 4 days ago
  • No fix available
MAL-2024-10832
  • Not specified
Malicious code in affinequant (PyPI) 4 days ago
  • No fix available
MAL-2024-10838
  • Not specified
Malicious code in service-affinity-scheduling (PyPI) 4 days ago
  • No fix available
MAL-2024-10837
  • Not specified
Malicious code in portrait-mode-video (PyPI) 4 days ago
  • No fix available
MAL-2024-10835
  • Not specified
Malicious code in netobs (PyPI) 4 days ago
  • No fix available
MAL-2024-10836
  • Not specified
Malicious code in offline-rl-congestion-control (PyPI) 4 days ago
  • No fix available