Ecosyste.ms: Advisories
An open API service providing security vulnerability metadata for many open source software ecosystems.
pypi pyload-ng Security Advisories
Loading...
Critical
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 3 months ago
GSA_kwCzR0hTQS0zZjd3LXA4dnItNHY1Zs4AA7Ss
pyLoad allows upload to arbitrary folder lead to RCEEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 3 months ago
Moderate
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 6 months ago
GSA_kwCzR0hTQS1nM2NtLXFnMnYtMmhqNc4AA5Ev
pyLoad open redirect vulnerability due to improper validation of the is_safe_url functionEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 6 months ago
Critical
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 6 months ago
GSA_kwCzR0hTQS1wZ3BqLXY4NXEtaDVmbc4AA4kU
Cross-Site Request Forgery on any API call in pyLoad may lead to admin privilege escalationEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 6 months ago
High
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 7 months ago
GSA_kwCzR0hTQS1tcXBxLTJwNjgtNDZmds4AA4Qg
pyload Unauthenticated Flask Configuration Leakage vulnerabilityEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 7 months ago
Moderate
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 7 months ago
GSA_kwCzR0hTQS1naG13LXJ3aDgtNnFtcs4AA4PI
pyload Log Injection vulnerabilityEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 7 months ago
High
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
GSA_kwCzR0hTQS1oNzNtLXBjZnctMjVoMs4AA3S3
Download to arbitrary folder can lead to RCEEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: 8 months ago
Moderate
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS13Y202LXd2OTUtN2p3Ns4AAxNP
Cross-site Scripting in pyload-ngEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
High
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS04djUzLTIzbXgtaGNmOc4AAxNf
Improper Certificate Validation in pyload-ngEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
Critical
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS02am14LXB2Nzctd201d84AAxHU
Excessive Attack Surface in pyload-ngEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
Moderate
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS14OXZjLTVxNzctbTd4NM4AAxHP
Improper Input Validation in pyload-ngEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
Critical
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS1wZjM4LTVwMjIteDZoNs4AAw-v
Code Injection in pyload-ngEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
Moderate
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS1ydjl4LXdtdzQtNDRxas4AAw74
Pyload Insufficient Session Expiration vulnerabilityEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
Moderate
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS1oOHI5LTQ2N3ItdmpqZs4AAwv-
pyLoad vulnerable to Improper Restriction of Rendered UI Layers or FramesEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
Moderate
Ecosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
GSA_kwCzR0hTQS1tM2c3LXdycnEtdjVjOM4AAwv4
Pyload contains Sensitive Cookie in HTTPS Session Without 'Secure' AttributeEcosystems: pypi
Packages: pyload-ng
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 1 year ago
Statistics
Advisories: 19,584
Packages: 8,642
Repositories: 1
Ecosystems: 12
Packages: 8,642
Repositories: 1
Ecosystems: 12
Filter by Severity
Filter by Ecosystem
Filter by Package
tensorflow
432
tensorflow-cpu
387
tensorflow-gpu
384
apache-airflow
82
django
80
ansible
63
salt
55
Plone
52
apache-superset
51
nova
47
mlflow
46
plone
43
rdiffweb
42
Pillow
41
vyper
38
Django
36
matrix-synapse
35
moin
35
keystone
31
opencv-contrib-python
30
opencv-python
30
glance
20
gradio
18
langchain
18
cobbler
17
mercurial
17
PaddlePaddle
17
neutron
16
pillow
16
paddlepaddle
15
cryptography
15
notebook
15
modoboa
14
pyload-ng
14
pyftpdlib
14
ethyca-fides
13
OctoPrint
13
vantage6
13
calibreweb
12
urllib3
12
swift
12
wagtail
12
roundup
12
zenml
11
twisted
11
aiohttp
11
onionshare-cli
11
horizon
11
nautobot
10
trytond
10
Flask-AppBuilder
10
opencv-contrib-python-headless
9
opencv-python-headless
9
zope
9
ryu
9
waitress
9
cinder
9
kiwitcms
9
Zope
9
python-keystoneclient
8
aubio
8
sentry
8
trac
8
numpy
8
label-studio
8
pysaml2
7
lief
7
litellm
7
scrapy
7
ipython
7
pip
7
matrix-sydent
7
jupyter-server
7
pgadmin4
7
lollms
7
Zope2
6
web2py
6
tuf
6
lxml
6
tornado
6
mailman
6
requests
6
graphite-web
6
apache-airflow-providers-apache-hive
6
yt-dlp
6
inventree
6
mindsdb
6
Moin
6
pyspark
5
nltk
5
whoogle-search
5
ckan
5
paramiko
5
omero-web
5
torchserve
5
Jinja2
5
python-gnupg
5
lmdb
5
saleor
5
Products.CMFPlone
5
oauthenticator
5
feedparser
5
bleach
5
transformers
4
markdown2
4
keylime
4
FreeTAKServer-UI
4
Keystone
4
httpie
4
buildbot
4
nvflare
4
tripleo-heat-templates
4
pretix
4
esphome
4
langchain-experimental
4
GitPython
4
datasette
4
ansible-core
4
dbt-core
4
PyPDF2
4
starlette
4
Nova
4
Flask-Security-Too
4
Werkzeug
4
jupyterhub
4
barbican
4
grpc
4
grpcio
4
werkzeug
4
qutebrowser
4
Radicale
4
jwcrypto
4
software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk
4
Scrapy
4
bottle
4
aws-iot-device-sdk-v2
4
awsiotsdk
4
Pygments
4
Weblate
4
reportlab
4
Kallithea
3
sickrage
3
setuptools
3
apache-libcloud
3
jupyterlab
3
ajenti
3
onnx
3
protobuf
3
mitmproxy
3
pyarrow
3
httplib2
3
python-jose
3
certifi
3
asyncssh
3
sosreport
3
scikit-learn
3
changedetection.io
3
vanna
3
pandasai
3
ray
3
apache-airflow-providers-apache-spark
3
sanic
3
ydata-profiling
3
mayan-edms
3
homeassistant
3
fava
3
indy-node
3
aim
3
rsa
3
io.grpc:grpc-protobuf
3
openvpn-monitor
3
apache-iotdb
3
gerapy
3
asyncua
3
wger
3
bitlyshortener
3
pywasm3
3
keyring
3
Mezzanine
3
SQLAlchemy
3
dtale
3
Products.PluggableAuthService
3
copyparty
3
mistune
3
pyyaml
3
indico
3
flask
3
keystonemiddleware
3
localstack
3
poetry
3
streamlit
3
ecdsa
3
clearml
3
plone.app.event
3
torch
3
sqlparse
3
Red-DiscordBot
3
docassemble.webapp
3
tinymce
3
llama-index
3
Filter by Repository