Количество 13
Количество 13
CVE-2026-8643
pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute path to the installation directory, leading to entry points being installed outside the installation directory.
CVE-2026-8643
pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute path to the installation directory, leading to entry points being installed outside the installation directory.
CVE-2026-8643
pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute path to the installation directory, leading to entry points being installed outside the installation directory.
CVE-2026-8643
pip can extract console_scripts and gui_scripts outside installation directory
CVE-2026-8643
pip would treat console_scripts and gui_scripts as paths instead of fi ...
openSUSE-SU-2026:20993-1
Security update for python-pip
ROS-20260709-73-0034
Уязвимость python-pip
RLSA-2026:36315
Important: python3.14-pip security update
RLSA-2026:36193
Important: python3.14-pip security update
GHSA-wf93-45jw-7689
pip: Path traversal in console_scripts/gui_scripts entry point names allows installing scripts outside of target directory
ELSA-2026-36315
ELSA-2026-36315: python3.14-pip security update (IMPORTANT)
ELSA-2026-36193
ELSA-2026-36193: python3.14-pip security update (IMPORTANT)
SUSE-SU-2026:2634-1
Security update for python-pip
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-8643 pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute path to the installation directory, leading to entry points being installed outside the installation directory. | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-8643 pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute path to the installation directory, leading to entry points being installed outside the installation directory. | CVSS3: 8 | 0% Низкий | 2 месяца назад | |
CVE-2026-8643 pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute path to the installation directory, leading to entry points being installed outside the installation directory. | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-8643 pip can extract console_scripts and gui_scripts outside installation directory | 0% Низкий | около 2 месяцев назад | ||
CVE-2026-8643 pip would treat console_scripts and gui_scripts as paths instead of fi ... | CVSS3: 5.5 | 0% Низкий | около 2 месяцев назад | |
openSUSE-SU-2026:20993-1 Security update for python-pip | 0% Низкий | около 1 месяца назад | ||
ROS-20260709-73-0034 Уязвимость python-pip | CVSS3: 5 | 0% Низкий | 22 дня назад | |
RLSA-2026:36315 Important: python3.14-pip security update | 0% Низкий | 23 дня назад | ||
RLSA-2026:36193 Important: python3.14-pip security update | 0% Низкий | 23 дня назад | ||
GHSA-wf93-45jw-7689 pip: Path traversal in console_scripts/gui_scripts entry point names allows installing scripts outside of target directory | CVSS3: 8 | 0% Низкий | около 2 месяцев назад | |
ELSA-2026-36315 ELSA-2026-36315: python3.14-pip security update (IMPORTANT) | 24 дня назад | |||
ELSA-2026-36193 ELSA-2026-36193: python3.14-pip security update (IMPORTANT) | 15 дней назад | |||
SUSE-SU-2026:2634-1 Security update for python-pip | около 1 месяца назад |
Уязвимостей на страницу