Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi cobbler Security Advisories

Browse all Security Advisories for pypi cobbler

Loading...
Critical
GSA_kwCzR0hTQS1tMjZjLWZjZ2gtY3A2aM4ABBeO
cobbler allows anyone to connect to cobbler XML-RPC server with known password and make changes
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 10.2
Published: 2 days ago
High
GSA_kwCzR0hTQS1qaG03LTM4eGotcHZtOM4AAgFD
Cobbler is vulnerable to code injection
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS1nMzRjLW1nNm0teHZ4as4AAfoT
Cobbler subject to Command Injection
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1ocGozLTVwNDYtZzg3d84AAeNk
Cobbler vulnerable to code injection via unsafe YAML loading
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS1wOHcyLWY0NHAtZm1jas4AAaur
Cobbler Web Interface Kickstart Template Remote Privilege Escalation Vulnerability
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS05Nmh3LXY1OTgtanZnaM4AAXi3
Cobbler vulnerable to arbitrary code execution
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 10.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS14Yzd3LWp2aHgtcDZxOc4AAWID
Cobbler Path Traversal vulnerability
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1xOWc1LTk4cG0tdzZxN84AAVU1
Cobbler XSS Vulnerability
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 6.4
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS04Nzg3LTYzcHgtM20yM84AATHc
Cobbler has Exposed Dangerous Method or Function
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 10.2
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS1mODhxLTIyZzgtZnJjZ84AASjg
Cobbler Improper Validation of Security Tokens
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 10.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS00dmM5LTR4cHEtNzd2bc4AARmW
Cobbler Arbitrary File Read
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 6.4
Published: over 2 years ago
High
GSA_kwCzR0hTQS05ZnFyLXBxYzktZjdwas0_Ew
Cobbler Web Interface Lacks CSRF Protection
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 9.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1tY2c2LWgzNjItY21xNc0yIQ
Improper Authorization in cobbler
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 8.5
Published: over 2 years ago
High
GSA_kwCzR0hTQS01OTQ2LW1wdzUtcHF4eM0t4A
Incorrect Default Permissions in Cobbler
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 7.4
Published: over 2 years ago
High
GSA_kwCzR0hTQS02Y200LWdtODUtOTcyY80t2w
Command Injection in Cobbler
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 8.1
Published: almost 3 years ago
High
GSA_kwCzR0hTQS1jcjNmLXIyNGotM2Nod80WIw
Cobbler before 3.3.0 allows authorization bypass for modification of settings.
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 7.8
Published: about 3 years ago
High
GSA_kwCzR0hTQS1jcHFmLTNjM3ItYzlnMs0WIg
Cobbler before 3.3.0 allows log poisoning
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 10.2
Published: about 3 years ago
High
GSA_kwCzR0hTQS00Y2ZyLWdqZngtZmozeM0WIQ
Cobbler before 3.3.0 allows arbitrary file write operations via upload_log_data.
Ecosystems: pypi
Packages: cobbler
Source: GitHub Advisory Database
Blast Radius: 7.8
Published: about 3 years ago
Statistics
Advisories: 20,668
Packages: 9,040
Repositories: 2
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 427 tensorflow-cpu 423 Django 100 apache-airflow 85 Plone 72 ansible 63 salt 56 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 matrix-synapse 35 moin 35 gradio 34 Pillow 31 opencv-contrib-python 31 keystone 31 opencv-python 31 pillow 26 langchain 20 glance 20 mindsdb 18 mercurial 18 cobbler 18 notebook 17 neutron 16 cryptography 16 PaddlePaddle 16 pyload-ng 16 paddlepaddle 16 calibreweb 15 OctoPrint 15 ethyca-fides 15 aiohttp 14 pyftpdlib 14 lollms 14 modoboa 14 vantage6 13 roundup 12 urllib3 12 wagtail 12 twisted 12 swift 12 zenml 12 waitress 11 horizon 11 trytond 11 onionshare-cli 11 sentry 10 Flask-AppBuilder 10 opencv-contrib-python-headless 10 nautobot 10 opencv-python-headless 10 kiwitcms 9 pyspark 9 zope 9 ryu 9 python-keystoneclient 9 cinder 9 ckan 8 numpy 8 litellm 8 label-studio 8 ipython 8 aubio 8 pgadmin4 8 trac 8 Zope 8 pysaml2 7 jupyter-server 7 Products.CMFPlone 7 scrapy 7 matrix-sydent 7 pip 7 lief 7 inventree 7 tornado 6 web2py 6 mage-ai 6 Moin 6 Zope2 6 apache-airflow-providers-apache-hive 6 lxml 6 requests 6 yt-dlp 6 graphite-web 6 tuf 6 aim 6 ansible-core 6 mailman 6 changedetection.io 6 omero-web 5 nltk 5 paramiko 5 bleach 5 Werkzeug 5 whoogle-search 5 feedparser 5 dtale 5 lmdb 5 ait-core 5 jupyterhub 5 langchain-experimental 5 torchserve 5 werkzeug 5 pretix 5 grpc 5 Jinja2 5 python-gnupg 5 grpcio 5 oauthenticator 5 saleor 5 Pygments 4 pywasm3 4 mobsf 4 wasmtime 4 reportlab 4 indico 4 apache-iotdb 4 Nova 4 Radicale 4 jupyterlab 4 barbican 4 jwcrypto 4 Weblate 4 nvflare 4 Keystone 4 langflow 4 httpie 4 open-webui 4 markdown2 4 awsiotsdk 4 aws-iot-device-sdk-v2 4 indy-node 4 PyPDF2 4 FreeTAKServer-UI 4 keylime 4 Flask-Security-Too 4 transformers 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 esphome 4 buildbot 4 codechecker 4 tripleo-heat-templates 4 onnx 4 GitPython 4 dbt-core 4 langchain-community 4 apache-submarine 4 qutebrowser 4 Scrapy 4 bottle 4 streamlit 4 mysql-connector-python 3 certifi 3 pyarrow 3 protobuf 3 openstack-heat 3 localstack 3 django-cms 3 slixmpp 3 ajenti 3 httplib2 3 sosreport 3 sqlparse 3 SQLAlchemy 3 python-jose 3 Products.PluggableAuthService 3 ujson 3 pandasai 3 pycrypto 3 wasm3 3 django-helpdesk 3 openc3 3 openc3 3 micropython-copy 3 micropython-io 3 gerapy 3 anki 3 fava 3 Red-DiscordBot 3 mayan-edms 3 vanna 3 mistune 3 dulwich 3 snowflake-connector-python 3 apache-airflow-providers-apache-spark 3 clearml 3 starlette 3 apache-libcloud 3 ydata-profiling 3 mitmproxy 3 docassemble.webapp 3 poetry 3 wger 3 quokka 3