Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi OctoPrint Security Advisories

Browse all Security Advisories for pypi OctoPrint

Loading...
High
GSA_kwCzR0hTQS0ydmpxLWhnNXctNWdtN84AA8EL
OctoPrint has an Authentication Bypass via X-Forwarded-For Header when autologinLocal is enabled
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: 5 months ago
Moderate
GSA_kwCzR0hTQS14N21mLXdyaDktcjc2Y84AA6Gj
XSS via the "Snapshot Test" feature in Classic Webcam plugin settings
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 3.1
Published: 7 months ago
Moderate
GSA_kwCzR0hTQS01NjI2LXB3OWMtaG1qcs4AA498
OctoPrint Unverified Password Change via Access Control Settings
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 3.3
Published: 9 months ago
High
GSA_kwCzR0hTQS1md2ZnLXZwcmgtOTdwaM4AA2Xz
OctoPrint vulnerable to Improper Neutralization of Special Elements Used in a Template Engine
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 5.1
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS1yajVmLXZtNzktNWo4NM4AAvdv
OctoPrint vulnerable to Special Element Injection
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: about 2 years ago
Low
GSA_kwCzR0hTQS00OXdtLTRmcDYtaDU5Y84AAu_E
OctoPrint vulnerable to Unrestricted Upload of File with Dangerous Type
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 2.9
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS05MzdmLXFoM3ctNmc4N84AAu--
OctoPrint vulnerable to Insufficient Session Expiration.
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 3.4
Published: about 2 years ago
High
GSA_kwCzR0hTQS0ycDc1LXEzN3AtZjg1Ms4AAu-9
OctoPrint Improper Privilege Management vulnerability
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 6.8
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS0zOWdmLTg2NHctcHh3NM4AAuZP
Unverified Password Change in OctoPrint
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: about 2 years ago
Low
GSA_kwCzR0hTQS01dzV4LXE5cDUtOXFnM84AAuBj
OctoPrint does not have rate limiting on the login page
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 2.9
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS12Y3g0LWZwbXAtbXZ2Ns4AAodt
OctoPrint API Error Messages vulnerable to XSS
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: over 2 years ago
High
GSA_kwCzR0hTQS14N3I3LXdtajgtdnY1Z84AAgaY
Cross-site Scripting in OctoPrint
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 5.8
Published: over 2 years ago
High
GSA_kwCzR0hTQS1oOHBjLWozMzQtampobc4AAgaQ
Cross-site Scripting in OctoPrint
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 5.8
Published: over 2 years ago
Statistics
Advisories: 20,408
Packages: 8,948
Repositories: 2
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 425 tensorflow-cpu 422 Django 100 apache-airflow 84 Plone 72 ansible 63 salt 55 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 moin 35 matrix-synapse 35 gradio 32 keystone 31 opencv-python 31 opencv-contrib-python 31 Pillow 31 pillow 26 glance 20 mindsdb 18 langchain 18 mercurial 18 cobbler 17 PaddlePaddle 17 notebook 17 neutron 16 cryptography 16 pyload-ng 15 ethyca-fides 15 paddlepaddle 15 pyftpdlib 14 modoboa 14 vantage6 13 lollms 13 OctoPrint 13 twisted 13 swift 12 wagtail 12 aiohttp 12 calibreweb 12 roundup 12 urllib3 12 onionshare-cli 11 zenml 11 horizon 11 trytond 10 nautobot 10 opencv-python-headless 10 Flask-AppBuilder 10 opencv-contrib-python-headless 10 sentry 10 ryu 9 python-keystoneclient 9 waitress 9 Zope 9 cinder 9 zope 9 pyspark 9 kiwitcms 9 aubio 8 ckan 8 label-studio 8 pgadmin4 8 numpy 8 trac 8 litellm 8 ipython 8 matrix-sydent 7 inventree 7 scrapy 7 pysaml2 7 jupyter-server 7 lief 7 pip 7 Products.CMFPlone 7 graphite-web 6 Zope2 6 mage-ai 6 mailman 6 Moin 6 yt-dlp 6 web2py 6 tuf 6 lxml 6 tornado 6 apache-airflow-providers-apache-hive 6 requests 6 aim 6 feedparser 5 grpc 5 python-gnupg 5 Jinja2 5 dtale 5 Werkzeug 5 saleor 5 whoogle-search 5 grpcio 5 bleach 5 paramiko 5 jupyterhub 5 oauthenticator 5 pretix 5 nltk 5 omero-web 5 ait-core 5 lmdb 5 torchserve 5 langchain-experimental 5 werkzeug 5 PyPDF2 4 Scrapy 4 ansible-core 4 Pygments 4 esphome 4 apache-iotdb 4 markdown2 4 Nova 4 Flask-Security-Too 4 tripleo-heat-templates 4 Weblate 4 open-webui 4 dbt-core 4 apache-submarine 4 mobsf 4 indy-node 4 jwcrypto 4 bottle 4 jupyterlab 4 onnx 4 nvflare 4 indico 4 streamlit 4 keylime 4 Keystone 4 Radicale 4 transformers 4 barbican 4 qutebrowser 4 FreeTAKServer-UI 4 GitPython 4 changedetection.io 4 starlette 4 awsiotsdk 4 aws-iot-device-sdk-v2 4 httpie 4 buildbot 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 reportlab 4 flask 3 dulwich 3 wger 3 mysql-connector-python 3 apache-airflow-providers-apache-spark 3 io.grpc:grpc-protobuf 3 sqlparse 3 vanna 3 mistune 3 quokka 3 ansible-runner 3 python-jose 3 octavia 3 httplib2 3 RestrictedPython 3 ajenti 3 localstack 3 sanic 3 apache-libcloud 3 setuptools 3 django-helpdesk 3 pandasai 3 poetry 3 llama-index-core 3 asyncua 3 clearml 3 ecdsa 3 certifi 3 docassemble.webapp 3 fava 3 SQLAlchemy 3 ydata-profiling 3 ray 3 anki 3 mayan-edms 3 keystonemiddleware 3 plone.supermodel 3 keyring 3 micropython-copy 3 Products.PluggableAuthService 3 snowflake-connector-python 3 micropython-io 3 plone.app.dexterity 3 plone.app.theming 3 plone.app.event 3 scikit-learn 3 h2o 3