Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi cryptography Security Advisories

Browse all Security Advisories for pypi cryptography

Loading...
Moderate
GSA_kwCzR0hTQS1oNGdoLXFxNDUtdmgyN84AA_QU
pyca/cryptography has a vulnerable OpenSSL included in cryptography wheels
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 3 months ago
High
GSA_kwCzR0hTQS02dnF3LTN2NWotNTR4NM4AA5bN
cryptography NULL pointer dereference with pkcs12.serialize_key_and_certificates when called with a non-matching certificate and private key and an hmac_hash override
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 38.4
Published: 9 months ago
High
GSA_kwCzR0hTQS0zd3c0LWdnNGYtanI3Zs4AA5Eq
Python Cryptography package vulnerable to Bleichenbacher timing oracle attack
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 38.4
Published: 10 months ago
Moderate
GSA_kwCzR0hTQS05djloLWNnajgtaDY0cM4AA44M
Null pointer dereference in PKCS12 parsing
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 28.2
Published: 10 months ago
Moderate
GSA_kwCzR0hTQS1qZmhtLTVnaGgtMmY5N84AA3Zw
cryptography vulnerable to NULL-dereference when loading PKCS7 certificates
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 30.2
Published: 12 months ago
Low
GSA_kwCzR0hTQS12OGdyLW01MzMtZ2hqOc4AA1_w
Vulnerable OpenSSL included in cryptography wheels
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 1 year ago
Low
GSA_kwCzR0hTQS1qbTc3LXFwaGYtYzR3OM4AA0_V
pyca/cryptography's wheels include vulnerable OpenSSL
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
High
GSA_kwCzR0hTQS1jZjdwLWdtMm0tODMzbc4AA0t4
cryptography mishandles SSH certificates
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 38.4
Published: over 1 year ago
Low
GSA_kwCzR0hTQS01Y3BxLTh3ajctaGYyds4AAzmB
Vulnerable OpenSSL included in cryptography wheels
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
High
GSA_kwCzR0hTQS14NHFyLTJmdmYtM21yNc4AAxfn
Vulnerable OpenSSL included in cryptography wheels
Ecosystems: cargo, pypi
Packages: openssl-src, cryptography
Source: GitHub Advisory Database
Blast Radius: 64.2
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS13N3BwLW04d2Ytdmo2cs4AAxeE
Cipher.update_into can corrupt memory if passed an immutable python object as the outbuf
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 33.3
Published: almost 2 years ago
Moderate
GSA_kwCzR0hTQS0zOWhjLXY4N2otNzQ3eM4AAvq8
Vulnerable OpenSSL included in cryptography wheels
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 2 years ago
High
GSA_kwCzR0hTQS1xM2NqLTJyMzQtMmN3Y84AAbxz
Improper input validation in cryptography
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 38.4
Published: over 2 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJobTktcDl3NS1md203
PyCA Cryptography symmetrically encrypting large values can lead to integer overflow
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 46.6
Published: almost 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhnZ20tanBnMy12NDc2
RSA decryption vulnerable to Bleichenbacher timing vulnerability
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 30.2
Published: about 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWZjZjktM3F3My1neG1q
PyCA Cryptography vulnerable to GCM tag forgery
Ecosystems: pypi
Packages: cryptography
Source: GitHub Advisory Database
Blast Radius: 38.4
Published: over 6 years ago
Statistics
Advisories: 20,668
Packages: 9,040
Repositories: 2
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 427 tensorflow-cpu 423 Django 100 apache-airflow 85 Plone 72 ansible 63 salt 56 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 moin 35 matrix-synapse 35 gradio 34 keystone 31 opencv-python 31 opencv-contrib-python 31 Pillow 31 pillow 26 langchain 20 glance 20 cobbler 18 mercurial 18 mindsdb 18 notebook 17 PaddlePaddle 16 paddlepaddle 16 pyload-ng 16 neutron 16 cryptography 16 calibreweb 15 OctoPrint 15 ethyca-fides 15 aiohttp 14 modoboa 14 lollms 14 pyftpdlib 14 vantage6 13 wagtail 12 twisted 12 swift 12 zenml 12 roundup 12 urllib3 12 waitress 11 onionshare-cli 11 horizon 11 trytond 11 opencv-python-headless 10 nautobot 10 opencv-contrib-python-headless 10 Flask-AppBuilder 10 sentry 10 python-keystoneclient 9 pyspark 9 cinder 9 ryu 9 zope 9 kiwitcms 9 label-studio 8 litellm 8 ckan 8 trac 8 ipython 8 aubio 8 Zope 8 numpy 8 pgadmin4 8 scrapy 7 inventree 7 pysaml2 7 Products.CMFPlone 7 matrix-sydent 7 pip 7 jupyter-server 7 lief 7 mage-ai 6 web2py 6 ansible-core 6 changedetection.io 6 lxml 6 tuf 6 Zope2 6 tornado 6 aim 6 apache-airflow-providers-apache-hive 6 yt-dlp 6 Moin 6 graphite-web 6 requests 6 mailman 6 grpc 5 grpcio 5 saleor 5 whoogle-search 5 lmdb 5 nltk 5 langchain-experimental 5 pretix 5 Jinja2 5 werkzeug 5 dtale 5 python-gnupg 5 torchserve 5 oauthenticator 5 ait-core 5 Werkzeug 5 paramiko 5 jupyterhub 5 feedparser 5 bleach 5 omero-web 5 Flask-Security-Too 4 Nova 4 langchain-community 4 mobsf 4 Scrapy 4 indico 4 bottle 4 buildbot 4 reportlab 4 esphome 4 Pygments 4 transformers 4 apache-submarine 4 Weblate 4 qutebrowser 4 jupyterlab 4 apache-iotdb 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 aws-iot-device-sdk-v2 4 awsiotsdk 4 pywasm3 4 open-webui 4 jwcrypto 4 Keystone 4 nvflare 4 Radicale 4 PyPDF2 4 httpie 4 langflow 4 wasmtime 4 markdown2 4 FreeTAKServer-UI 4 onnx 4 indy-node 4 tripleo-heat-templates 4 keylime 4 GitPython 4 codechecker 4 dbt-core 4 streamlit 4 barbican 4 vanna 3 mistune 3 rsa 3 plone.app.theming 3 micropython-io 3 quokka 3 plone.app.event 3 RestrictedPython 3 copyparty 3 pycrypto 3 slixmpp 3 mayan-edms 3 keyring 3 datasette 3 bitlyshortener 3 asyncssh 3 localstack 3 httplib2 3 SQLAlchemy 3 sanic 3 ydata-profiling 3 docassemble.webapp 3 starlette 3 apache-airflow-providers-apache-spark 3 ray 3 AccessControl 3 pandasai 3 wasm3 3 fava 3 mysql-connector-python 3 sosreport 3 gerapy 3 anki 3 dulwich 3 Twisted 3 protobuf 3 sqlparse 3 homeassistant 3 micropython-copy 3 django-helpdesk 3 apache-libcloud 3 io.grpc:grpc-protobuf 3 llama-index-core 3