Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Pypi CRITICAL 9.8
CVE-2022-34500

The bin-collect package in PyPI before v0.1 included a code execution backdoor inserted by a third party.

Fix: after 0.1
Fix from $2,300 2022-07-22
Pypi CRITICAL 9.8
CVE-2022-34501

The bin-collection package in PyPI before v0.1 included a code execution backdoor inserted by a third party.

Fix: after 0.1
Fix from $2,300 2022-07-22
Rootinteractive CRITICAL 9.8
CVE-2022-32997

The RootInteractive package in PyPI v0.0.5 to v0.0.19b0 was discovered to contain a code execution backdoor via the request package. This vulnerabili…

Fix: 0.0.19+
Fix from $2,300 2022-06-24
Cryptoasset Data Downloader CRITICAL 9.8
CVE-2022-32998

The cryptoasset-data-downloader package in PyPI v1.0.0 to v1.0.1 was discovered to contain a code execution backdoor via the request package. This vu…

Fix: after 1.0.1
Fix from $2,300 2022-06-24
Cloudlabeling CRITICAL 9.8
CVE-2022-32999

The cloudlabeling package in PyPI v0.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attac…

No fix yet
Fix from $2,300 2022-06-24
Ml Scanner CRITICAL 9.8
CVE-2022-33000

The ML-Scanner package in PyPI v0.1.0 to v0.1.5 was discovered to contain a code execution backdoor via the request package. This vulnerability allow…

Fix: after 0.1.5
Fix from $2,300 2022-06-24
Aamiles CRITICAL 9.8
CVE-2022-33001

The AAmiles package in PyPI v0.1.0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers t…

No fix yet
Fix from $2,300 2022-06-24
Explore CRITICAL 9.8
CVE-2022-33002

The KGExplore package in PyPI v0.1.1 to v0.1.2 was discovered to contain a code execution backdoor via the request package. This vulnerability allows…

Fix: after 0.1.2
Fix from $2,300 2022-06-24
Watools CRITICAL 9.8
CVE-2022-33003

The watools package in PyPI v0.0.1 to v0.0.8 was discovered to contain a code execution backdoor via the request package. This vulnerability allows a…

Fix: after 0.0.8
Fix from $2,300 2022-06-24
Beginner CRITICAL 9.8
CVE-2022-33004

The Beginner package in PyPI v0.0.2 to v0.0.4 was discovered to contain a code execution backdoor via the request package. This vulnerability allows …

Fix: after 0.0.4
Fix from $2,300 2022-06-24
Dr Web Engine CRITICAL 9.8
CVE-2022-34053

The DR-Web-Engine package in PyPI v0.2.0b0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows att…

No fix yet
Fix from $2,300 2022-06-24
Perdido CRITICAL 9.8
CVE-2022-34054

The Perdido package in PyPI v0.0.1 to v0.0.2 was discovered to contain a code execution backdoor via the request package. This vulnerability allows a…

Fix: after 0.0.2
Fix from $2,300 2022-06-24
Drxhello CRITICAL 9.8
CVE-2022-34055

The drxhello package in PyPI v0.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers …

No fix yet
Fix from $2,300 2022-06-24
Watertools CRITICAL 9.8
CVE-2022-34056

The Watertools package in PyPI v0.0.0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attacker…

No fix yet
Fix from $2,300 2022-06-24
Django Navbar Client CRITICAL 9.8
CVE-2022-32996

The django-navbar-client package of v0.9.50 to v1.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability…

Fix: after 1.0.1
Fix from $2,300 2022-06-24
Bsdiff4 HIGH 7.8
CVE-2020-15904

A buffer overflow in the patching routine of bsdiff4 before 1.2.0 allows an attacker to write to heap memory (beyond allocated bounds) via a crafted …

Fix: 1.2.0+
Fix from $1,950 2020-07-22