Dependency scanning
Check whether cobbler is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
CVE-2018-1000226
Cobbler Improper Validation of Security Tokens
CVE-2017-1000469
Cobbler vulnerable to arbitrary code execution
CVE-2018-1000225
Cobbler XSS Vulnerability
CVE-2010-2235
Cobbler is vulnerable to code injection
CVE-2012-2395
Cobbler subject to Command Injection
CVE-2011-4953
Cobbler vulnerable to code injection via unsafe YAML loading
CVE-2014-3225
Cobbler Path Traversal vulnerability
CVE-2008-6954
Cobbler Web Interface Kickstart Template Remote Privilege Escalation Vulnerability
CVE-2008-6954
Cobbler Web Interface Kickstart Template Remote Privilege Escalation Vulnerability
CVE-2014-3225
Cobbler Path Traversal vulnerability
CVE-2018-1000225
Cobbler XSS Vulnerability
CVE-2010-2235
Cobbler is vulnerable to code injection
CVE-2011-4953
Cobbler vulnerable to code injection via unsafe YAML loading
CVE-2012-2395
Cobbler subject to Command Injection
CVE-2011-4952
Cobbler Web Interface Lacks CSRF Protection
CVE-2016-9605
Cobbler Arbitrary File Read
CVE-2011-4952
Cobbler Web Interface Lacks CSRF Protection
CVE-2016-9605
Cobbler Arbitrary File Read
CVE-2024-47533
cobbler allows anyone to connect to cobbler XML-RPC server with known password and make changes
CVE-2018-10931
Cobbler has Exposed Dangerous Method or Function
CVE-2017-1000469
Cobbler vulnerable to arbitrary code execution
CVE-2024-47533
cobbler allows anyone to connect to cobbler XML-RPC server with known password and make changes
CVE-2018-10931
Cobbler has Exposed Dangerous Method or Function
CVE-2018-1000226
Cobbler Improper Validation of Security Tokens
CVE-2021-45083
CVE-2021-45083
CVE-2021-45082
CVE-2021-45082
CVE-2022-0860
CVE-2022-0860
CVE-2021-40325
CVE-2021-40325
CVE-2021-40324
CVE-2021-40324
CVE-2021-40323
CVE-2021-40323
CVE-2022-0860
Improper Authorization in cobbler
CVE-2021-45083
Incorrect Default Permissions in Cobbler
CVE-2021-40325
Cobbler before 3.3.0 allows authorization bypass for modification of settings.
CVE-2021-40324
Cobbler before 3.3.0 allows arbitrary file write operations via upload_log_data.
CVE-2021-40323
Cobbler before 3.3.0 allows log poisoning
CVE-2021-45082
Command Injection in Cobbler
Browse more PyPI advisories
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes