Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi Products.CMFCore Security Advisories

Loading...
High
GSA_kwCzR0hTQS00aHBqLThyaHYtOXg4N84AA0OV
Products.CMFCore unauthenticated denial of service and crash via unchecked use of input with Python's marshal module
Ecosystems: pypi
Packages: Products.CMFCore
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 11 months ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTM1cmctNDY2dy03N2gz
Cross-site scripting in Products.CMFCore, Products.PluggableAuthService, Plone
Ecosystems: pypi
Packages: Plone, Products.PluggableAuthService, Products.CMFCore
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: almost 3 years ago
Statistics
Advisories: 18,751
Packages: 8,375
Repositories: 2
Ecosystems: 12
Filter by Package
tensorflow 432 tensorflow-cpu 387 tensorflow-gpu 384 django 80 apache-airflow 78 ansible 63 salt 53 Plone 52 apache-superset 49 nova 45 plone 43 rdiffweb 42 Pillow 41 vyper 38 matrix-synapse 35 moin 34 mlflow 33 Django 30 opencv-python 30 opencv-contrib-python 30 keystone 30 langchain 18 glance 18 mercurial 17 PaddlePaddle 17 cobbler 17 neutron 16 pillow 16 paddlepaddle 15 gradio 15 notebook 15 cryptography 15 modoboa 14 pyftpdlib 14 pyload-ng 14 OctoPrint 13 swift 12 vantage6 12 calibreweb 11 twisted 11 horizon 11 urllib3 11 onionshare-cli 11 aiohttp 11 trytond 10 wagtail 10 Flask-AppBuilder 10 opencv-contrib-python-headless 9 opencv-python-headless 9 kiwitcms 9 Zope 9 waitress 9 ryu 9 roundup 9 nautobot 9 ethyca-fides 9 zope 9 label-studio 8 numpy 8 trac 8 cinder 8 python-keystoneclient 8 aubio 8 ipython 7 pip 7 pysaml2 7 lief 7 scrapy 7 jupyter-server 7 pgadmin4 7 matrix-sydent 7 lxml 6 sentry 6 apache-airflow-providers-apache-hive 6 tuf 6 graphite-web 6 mailman 6 Zope2 6 mindsdb 6 inventree 6 web2py 6 Moin 6 paramiko 5 lmdb 5 python-gnupg 5 saleor 5 pyspark 5 ckan 5 whoogle-search 5 Jinja2 5 requests 5 Products.CMFPlone 5 bleach 5 feedparser 5 FreeTAKServer-UI 4 starlette 4 ansible-core 4 httpie 4 oauthenticator 4 grpc 4 grpcio 4 keylime 4 tornado 4 buildbot 4 datasette 4 PyPDF2 4 transformers 4 qutebrowser 4 markdown2 4 yt-dlp 4 jupyterhub 4 pretix 4 werkzeug 4 tripleo-heat-templates 4 Scrapy 4 barbican 4 Werkzeug 4 omero-web 4 Flask-Security-Too 4 nvflare 4 reportlab 4 Keystone 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 GitPython 4 Radicale 4 Pygments 4 esphome 4 bottle 4 awsiotsdk 4 aws-iot-device-sdk-v2 4 jwcrypto 4 nltk 4 protobuf 3 plone.supermodel 3 Kallithea 3 sosreport 3 apache-iotdb 3 homeassistant 3 mitmproxy 3 ansible-runner 3 pycrypto 3 sqlparse 3 httplib2 3 pyarrow 3 onnx 3 Products.PluggableAuthService 3 pywasm3 3 python-jose 3 Weblate 3 jupyterlab 3 indico 3 rsa 3 Mezzanine 3 openvpn-monitor 3 bitlyshortener 3 apache-libcloud 3 changedetection.io 3 fava 3 gerapy 3 sanic 3 octavia 3 plone.app.theming 3 mistune 3 slixmpp 3 ecdsa 3 wger 3 aim 3 clearml 3 plone.app.dexterity 3 docassemble.webapp 3 apache-airflow-providers-apache-spark 3 indy-node 3 Nova 3 ray 3 asyncua 3 pyyaml 3 SQLAlchemy 3 quokka 3 io.grpc:grpc-protobuf 3 asyncssh 3 poetry 3 plone.app.event 3 dulwich 3 sickrage 3 keyring 3 torchserve 3 streamlit 3 flask 3 django-helpdesk 3 pandasai 3 zenml 3 mayan-edms 3 localstack 3 keystonemiddleware 3 ajenti 3 ujson 3 copyparty 3 openapi-python-client 2 apache-airflow-providers-apache-drill 2 pypdf 2