Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi ethyca-fides Security Advisories

Browse all Security Advisories for pypi ethyca-fides

Loading...
High
GSA_kwCzR0hTQS1jMzRyLTIzOHgtZjdxeM4AA_TA
Remote Code Execution Vulnerability via SSTI in Fides Webserver Jinja Email Templating Engine
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 3 months ago
Low
GSA_kwCzR0hTQS0yaDQ2LThnZjUtZm14ds4AA_S_
Timing-Based Username Enumeration Vulnerability in Fides Webserver Authentication
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 3 months ago
Moderate
GSA_kwCzR0hTQS01M3E3LTQ4NzQtMjRxZ84AA9m9
Information Disclosure Vulnerability in Privacy Center of SERVER_SIDE_FIDES_API_URL
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 5 months ago
Low
GSA_kwCzR0hTQS1jdnc0LWM2OWctN3Y3bc4AA9d0
Inclusion of Untrusted polyfill.io Code Vulnerability in fides.js
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 5 months ago
Moderate
GSA_kwCzR0hTQS1yY3ZnLWpqM2ctcmo3Y84AA8mN
Sensitive Data Disclosure Vulnerability in Connection Configuration Endpoints
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 6 months ago
Low
GSA_kwCzR0hTQS04Y201LWpmajItMjZxN84AA8jP
Fides Webserver Logs Hosted Database Password Partial Exposure Vulnerability
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 6 months ago
High
GSA_kwCzR0hTQS04MnZyLTU3NjktNjM1OM4AA3Nk
Ethyca Fides Cryptographically Weak Generation of One-Time Codes for Identity Verification
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS0zdnBmLW1jajctNWgzOM4AA2_U
Ethyca Fides HTML Injection Vulnerability in HTML-Formatted DSR Packages
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: about 1 year ago
Low
GSA_kwCzR0hTQS1mZ2pqLTVqbXItZ2g4M84AA2oR
Fides JavaScript Injection Vulnerability in Privacy Center URL
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: about 1 year ago
Moderate
GSA_kwCzR0hTQS1yanhnLXJwZzMtOXI4Oc4AA2oP
Fides Information Disclosure Vulnerability in Config API Endpoint
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: about 1 year ago
High
GSA_kwCzR0hTQS1qcTN3LTltZ2YtNDNtNM4AA2oO
Fides Server-Side Request Forgery Vulnerability in Custom Integration Upload
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: about 1 year ago
High
GSA_kwCzR0hTQS1wNnAyLXFxOTUtdnE1aM4AA1v9
Remote Code Execution in Custom Integration Upload
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: about 1 year ago
Low
GSA_kwCzR0hTQS0zcncyLXdmYzgtd21qNc4AA0xu
Fides Webserver Vulnerable to SVG Bomb File Uploads
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: over 1 year ago
Low
GSA_kwCzR0hTQS1nOTVjLTJqZ20taHFjNs4AA0xt
Fides Webserver Vulnerable to Zip Bomb File Uploads
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: over 1 year ago
High
GSA_kwCzR0hTQS1yMjVtLWNyNnYtcDlocc4AA0Xk
ethyca-fides Webserver API Path Traversal vulnerability
Ecosystems: pypi
Packages: ethyca-fides
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: over 1 year ago
Statistics
Advisories: 20,668
Packages: 9,040
Repositories: 1
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 427 tensorflow-cpu 423 Django 100 apache-airflow 85 Plone 72 ansible 63 salt 56 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 moin 35 matrix-synapse 35 gradio 34 Pillow 31 keystone 31 opencv-contrib-python 31 opencv-python 31 pillow 26 langchain 20 glance 20 mindsdb 18 cobbler 18 mercurial 18 notebook 17 neutron 16 pyload-ng 16 paddlepaddle 16 cryptography 16 PaddlePaddle 16 calibreweb 15 OctoPrint 15 ethyca-fides 15 modoboa 14 lollms 14 pyftpdlib 14 aiohttp 14 vantage6 13 swift 12 wagtail 12 zenml 12 twisted 12 roundup 12 urllib3 12 onionshare-cli 11 trytond 11 horizon 11 waitress 11 Flask-AppBuilder 10 nautobot 10 opencv-contrib-python-headless 10 opencv-python-headless 10 sentry 10 python-keystoneclient 9 pyspark 9 cinder 9 zope 9 kiwitcms 9 ryu 9 trac 8 litellm 8 aubio 8 Zope 8 numpy 8 label-studio 8 ipython 8 ckan 8 pgadmin4 8 scrapy 7 lief 7 jupyter-server 7 Products.CMFPlone 7 pip 7 inventree 7 matrix-sydent 7 pysaml2 7 mage-ai 6 tuf 6 requests 6 apache-airflow-providers-apache-hive 6 web2py 6 lxml 6 yt-dlp 6 changedetection.io 6 mailman 6 graphite-web 6 aim 6 Zope2 6 ansible-core 6 tornado 6 Moin 6 lmdb 5 torchserve 5 oauthenticator 5 paramiko 5 omero-web 5 dtale 5 Jinja2 5 feedparser 5 langchain-experimental 5 grpc 5 grpcio 5 nltk 5 python-gnupg 5 ait-core 5 Werkzeug 5 jupyterhub 5 bleach 5 saleor 5 whoogle-search 5 werkzeug 5 pretix 5 Keystone 4 awsiotsdk 4 aws-iot-device-sdk-v2 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 apache-iotdb 4 jupyterlab 4 wasmtime 4 onnx 4 indy-node 4 open-webui 4 FreeTAKServer-UI 4 bottle 4 transformers 4 dbt-core 4 Radicale 4 streamlit 4 buildbot 4 codechecker 4 keylime 4 barbican 4 markdown2 4 indico 4 pywasm3 4 Flask-Security-Too 4 apache-submarine 4 tripleo-heat-templates 4 langchain-community 4 Scrapy 4 GitPython 4 esphome 4 Weblate 4 PyPDF2 4 httpie 4 langflow 4 Nova 4 reportlab 4 jwcrypto 4 nvflare 4 qutebrowser 4 mobsf 4 Pygments 4 sickrage 3 pandasai 3 Mezzanine 3 ajenti 3 Products.PluggableAuthService 3 bitlyshortener 3 localstack 3 openvpn-monitor 3 poetry 3 octavia 3 homeassistant 3 mitmproxy 3 mayan-edms 3 Twisted 3 django-cms 3 datasette 3 ray 3 asyncssh 3 wasm3 3 sosreport 3 io.grpc:grpc-protobuf 3 sqlparse 3 snowflake-connector-python 3 slixmpp 3 wasmtime 3 rsa 3 protobuf 3 pyarrow 3 pycrypto 3 django-helpdesk 3 starlette 3 ecdsa 3 quokka 3 fava 3 plone.app.event 3 docassemble.webapp 3 clearml 3 plone.app.theming 3 Kallithea 3 plone.app.dexterity 3 plone.supermodel 3 dulwich 3 copyparty 3