Логотип exploitDog
bind:"CVE-2024-4032" OR bind:"CVE-2024-8088" OR bind:"CVE-2024-6923" OR bind:"CVE-2024-6345"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-4032" OR bind:"CVE-2024-8088" OR bind:"CVE-2024-6923" OR bind:"CVE-2024-6345"

Количество 93

Количество 93

suse-cvrf логотип

SUSE-SU-2024:3357-1

9 месяцев назад

Security update for python310

EPSS: Низкий
ubuntu логотип

CVE-2024-6923

11 месяцев назад

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2024-6923

11 месяцев назад

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

CVSS3: 6.8
EPSS: Низкий
nvd логотип

CVE-2024-6923

11 месяцев назад

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2024-6923

8 месяцев назад

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2024-6923

11 месяцев назад

There is a MEDIUM severity vulnerability affecting CPython. The emai ...

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2024-6345

11 месяцев назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2024-6345

11 месяцев назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2024-6345

11 месяцев назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2024-6345

8 месяцев назад

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2024-6345

11 месяцев назад

A vulnerability in the package_index module of pypa/setuptools version ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3294-1

9 месяцев назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3200-1

9 месяцев назад

Security update for python311

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2974-1

10 месяцев назад

Security update for python310

EPSS: Низкий
redos логотип

ROS-20240905-02

10 месяцев назад

Уязвимость python3

CVSS3: 5.5
EPSS: Низкий
rocky логотип

RLSA-2024:6146

9 месяцев назад

Moderate: python3.12 security update

EPSS: Низкий
github логотип

GHSA-87qc-q3w7-7m8w

11 месяцев назад

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

CVSS3: 5.5
EPSS: Низкий
oracle-oval логотип

ELSA-2024-6179

10 месяцев назад

ELSA-2024-6179: python3.11 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-6163

10 месяцев назад

ELSA-2024-6163: python3.9 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-6146

10 месяцев назад

ELSA-2024-6146: python3.12 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2024:3357-1

Security update for python310

9 месяцев назад
ubuntu логотип
CVE-2024-6923

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

CVSS3: 5.5
0%
Низкий
11 месяцев назад
redhat логотип
CVE-2024-6923

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

CVSS3: 6.8
0%
Низкий
11 месяцев назад
nvd логотип
CVE-2024-6923

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

CVSS3: 5.5
0%
Низкий
11 месяцев назад
msrc логотип
CVSS3: 5.5
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-6923

There is a MEDIUM severity vulnerability affecting CPython. The emai ...

CVSS3: 5.5
0%
Низкий
11 месяцев назад
ubuntu логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
0%
Низкий
11 месяцев назад
redhat логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
0%
Низкий
11 месяцев назад
nvd логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
0%
Низкий
11 месяцев назад
msrc логотип
CVSS3: 8.8
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools version ...

CVSS3: 8.8
0%
Низкий
11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3294-1

Security update for python3

0%
Низкий
9 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3200-1

Security update for python311

0%
Низкий
9 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2974-1

Security update for python310

0%
Низкий
10 месяцев назад
redos логотип
ROS-20240905-02

Уязвимость python3

CVSS3: 5.5
0%
Низкий
10 месяцев назад
rocky логотип
RLSA-2024:6146

Moderate: python3.12 security update

0%
Низкий
9 месяцев назад
github логотип
GHSA-87qc-q3w7-7m8w

There is a MEDIUM severity vulnerability affecting CPython. The email module didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized.

CVSS3: 5.5
0%
Низкий
11 месяцев назад
oracle-oval логотип
ELSA-2024-6179

ELSA-2024-6179: python3.11 security update (MODERATE)

10 месяцев назад
oracle-oval логотип
ELSA-2024-6163

ELSA-2024-6163: python3.9 security update (MODERATE)

10 месяцев назад
oracle-oval логотип
ELSA-2024-6146

ELSA-2024-6146: python3.12 security update (MODERATE)

10 месяцев назад

Уязвимостей на страницу