Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi OctoPrint Security Advisories

Browse all Security Advisories for pypi OctoPrint

Loading...
Moderate
GSA_kwCzR0hTQS1jYzZ4LThjYzctOTk1M84ABA-T
OctoPrint has API key access in settings without reauthentication
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: 16 days ago
Moderate
GSA_kwCzR0hTQS14dnhxLWc4aHctZng0Z84ABA-S
OctoPrint Vulnerable to Reflected XSS in Jinja2 Templates
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 4.3
Published: 16 days ago
High
GSA_kwCzR0hTQS0ydmpxLWhnNXctNWdtN84AA8EL
OctoPrint has an Authentication Bypass via X-Forwarded-For Header when autologinLocal is enabled
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: 6 months ago
Moderate
GSA_kwCzR0hTQS14N21mLXdyaDktcjc2Y84AA6Gj
XSS via the "Snapshot Test" feature in Classic Webcam plugin settings
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 3.1
Published: 8 months ago
Moderate
GSA_kwCzR0hTQS01NjI2LXB3OWMtaG1qcs4AA498
OctoPrint Unverified Password Change via Access Control Settings
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 3.3
Published: 10 months ago
High
GSA_kwCzR0hTQS1md2ZnLXZwcmgtOTdwaM4AA2Xz
OctoPrint vulnerable to Improper Neutralization of Special Elements Used in a Template Engine
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 5.1
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS1yajVmLXZtNzktNWo4NM4AAvdv
OctoPrint vulnerable to Special Element Injection
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: about 2 years ago
Low
GSA_kwCzR0hTQS00OXdtLTRmcDYtaDU5Y84AAu_E
OctoPrint vulnerable to Unrestricted Upload of File with Dangerous Type
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 2.9
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS05MzdmLXFoM3ctNmc4N84AAu--
OctoPrint vulnerable to Insufficient Session Expiration.
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 3.4
Published: about 2 years ago
High
GSA_kwCzR0hTQS0ycDc1LXEzN3AtZjg1Ms4AAu-9
OctoPrint Improper Privilege Management vulnerability
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 6.8
Published: about 2 years ago
Moderate
GSA_kwCzR0hTQS0zOWdmLTg2NHctcHh3NM4AAuZP
Unverified Password Change in OctoPrint
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: about 2 years ago
Low
GSA_kwCzR0hTQS01dzV4LXE5cDUtOXFnM84AAuBj
OctoPrint does not have rate limiting on the login page
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 2.9
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS12Y3g0LWZwbXAtbXZ2Ns4AAodt
OctoPrint API Error Messages vulnerable to XSS
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 4.7
Published: over 2 years ago
High
GSA_kwCzR0hTQS14N3I3LXdtajgtdnY1Z84AAgaY
Cross-site Scripting in OctoPrint
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 5.8
Published: over 2 years ago
High
GSA_kwCzR0hTQS1oOHBjLWozMzQtampobc4AAgaQ
Cross-site Scripting in OctoPrint
Ecosystems: pypi
Packages: OctoPrint
Source: GitHub Advisory Database
Blast Radius: 5.8
Published: over 2 years ago
Statistics
Advisories: 20,668
Packages: 9,040
Repositories: 2
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 427 tensorflow-cpu 423 Django 100 apache-airflow 85 Plone 72 ansible 63 salt 56 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 moin 35 matrix-synapse 35 gradio 34 Pillow 31 keystone 31 opencv-contrib-python 31 opencv-python 31 pillow 26 langchain 20 glance 20 cobbler 18 mindsdb 18 mercurial 18 notebook 17 paddlepaddle 16 PaddlePaddle 16 pyload-ng 16 cryptography 16 neutron 16 calibreweb 15 OctoPrint 15 ethyca-fides 15 aiohttp 14 modoboa 14 lollms 14 pyftpdlib 14 vantage6 13 swift 12 twisted 12 zenml 12 urllib3 12 roundup 12 wagtail 12 trytond 11 waitress 11 horizon 11 onionshare-cli 11 opencv-python-headless 10 Flask-AppBuilder 10 opencv-contrib-python-headless 10 nautobot 10 sentry 10 zope 9 pyspark 9 python-keystoneclient 9 cinder 9 ryu 9 kiwitcms 9 ckan 8 ipython 8 aubio 8 trac 8 label-studio 8 Zope 8 litellm 8 numpy 8 pgadmin4 8 matrix-sydent 7 scrapy 7 pip 7 jupyter-server 7 inventree 7 Products.CMFPlone 7 pysaml2 7 lief 7 changedetection.io 6 mage-ai 6 aim 6 tornado 6 apache-airflow-providers-apache-hive 6 graphite-web 6 tuf 6 web2py 6 Zope2 6 yt-dlp 6 requests 6 ansible-core 6 lxml 6 mailman 6 Moin 6 pretix 5 python-gnupg 5 lmdb 5 bleach 5 Werkzeug 5 langchain-experimental 5 dtale 5 werkzeug 5 saleor 5 ait-core 5 grpcio 5 grpc 5 torchserve 5 oauthenticator 5 paramiko 5 nltk 5 omero-web 5 feedparser 5 jupyterhub 5 whoogle-search 5 Jinja2 5 Radicale 4 Flask-Security-Too 4 open-webui 4 reportlab 4 dbt-core 4 mobsf 4 awsiotsdk 4 aws-iot-device-sdk-v2 4 markdown2 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 keylime 4 apache-iotdb 4 indy-node 4 qutebrowser 4 buildbot 4 onnx 4 bottle 4 Pygments 4 wasmtime 4 PyPDF2 4 codechecker 4 langflow 4 jupyterlab 4 jwcrypto 4 Scrapy 4 indico 4 Nova 4 GitPython 4 transformers 4 esphome 4 streamlit 4 nvflare 4 httpie 4 Weblate 4 FreeTAKServer-UI 4 Keystone 4 tripleo-heat-templates 4 pywasm3 4 barbican 4 apache-submarine 4 langchain-community 4 starlette 3 Kallithea 3 plone.supermodel 3 plone.app.dexterity 3 plone.app.event 3 plone.app.theming 3 quokka 3 ecdsa 3 wasmtime 3 fava 3 poetry 3 docassemble.webapp 3 localstack 3 homeassistant 3 sosreport 3 datasette 3 wasm3 3 sickrage 3 sqlparse 3 snowflake-connector-python 3 Products.PluggableAuthService 3 slixmpp 3 Mezzanine 3 protobuf 3 pycrypto 3 io.grpc:grpc-protobuf 3 vanna 3 apache-libcloud 3 python-jose 3 ujson 3 ansible-runner 3 llama-index-core 3 tinymce 3 tinymce/tinymce 3 TinyMCE 3 django-tinymce 3 pyyaml 3 sanic 3 jupyter-server-proxy 3 clearml 3 Twisted 3 django-helpdesk 3 ajenti 3