Launch Week Day 1: Announcing Security Design Review
70 Total advisories
70 Vulnerabilities
0 Malware

Vulnerabilities

UNKNOWN
PyPI

CVE-2012-3361

CVE-2012-3361

UNKNOWN
PyPI

CVE-2012-3371

CVE-2012-3371

UNKNOWN
PyPI

CVE-2020-17376

CVE-2020-17376

UNKNOWN
PyPI

CVE-2019-14433

CVE-2019-14433

UNKNOWN
PyPI

CVE-2012-5625

CVE-2012-5625

UNKNOWN
PyPI

CVE-2012-3447

CVE-2012-3447

UNKNOWN
PyPI

CVE-2012-3360

CVE-2012-3360

UNKNOWN
PyPI

CVE-2012-2654

CVE-2012-2654

UNKNOWN
PyPI

CVE-2012-2101

CVE-2012-2101

UNKNOWN
PyPI

CVE-2012-5625

OpenStack Nova Information leak in libvirt LVM-backed instances

UNKNOWN
PyPI

CVE-2012-5625

CVE-2012-5625

HIGH 8.2
PyPI

CVE-2026-24708

OpenStack Nova calls qemu-img without format restrictions for resize

MEDIUM 6.5
PyPI

CVE-2024-32498

OpenStack Cinder, Glance, and Nova vulnerable to arbitrary file access

MEDIUM 6.5
PyPI

CVE-2024-40767

OpenStack Nova vulnerable to unauthorized access to potentially sensitive data

UNKNOWN
PyPI

PYSEC-2013-45

PYSEC-2013-45

UNKNOWN
PyPI

CVE-2014-0167

OpenStack Compute (Nova) allows remote authenticated users to gain privileges via API requests

UNKNOWN
PyPI

CVE-2013-2096

OpenStack Compute (Nova) does not verify the virtual size of a QCOW2 image

MEDIUM 5.7
PyPI

CVE-2022-47951

OpenStack Cinder, glance, and Nova vulnerable to Path Traversal

UNKNOWN
PyPI

CVE-2013-2256

OpenStack Compute (Nova) allows remote authenticated users to obtain sensitive information

UNKNOWN
PyPI

CVE-2015-3280

OpenStack Compute (nova) allows remote authenticated users to cause a denial of service

UNKNOWN
PyPI

CVE-2014-3608

OpenStack Compute (Nova)'s VMWare driver vulnerable to denial of service

UNKNOWN
PyPI

CVE-2014-3708

OpenStack Compute (Nova) Denial of Service vulnerability

UNKNOWN
PyPI

CVE-2015-7713

OpenStack Compute (Nova) allows remote attackers to bypass intended restriction

UNKNOWN
PyPI

CVE-2014-3517

OpenStack Compute (Nova) Exposure of Sensitive Information to an Unauthorized Actor vulnerability

UNKNOWN
PyPI

CVE-2015-0259

OpenStack Compute (Nova) has Insufficient Verification of Data Authenticity

LOW 3.3
PyPI

CVE-2022-37394

OpenStack Nova Changing vnic_type breaks compute service restart

UNKNOWN
PyPI

CVE-2013-4179

OpenStack Compute (Nova) vulnerable to denial of service via XML Entity Expansion attack

UNKNOWN
PyPI

CVE-2015-3241

OpenStack Nova instance migration process does not stop when instance is deleted

MEDIUM 6.5
PyPI

CVE-2014-2573

OpenStack Nova VMWare driver leaks rescued images

LOW 3.1
PyPI

CVE-2014-0134

OpenStack Nova host data leak to vm instance in rescue mode

MEDIUM 4.7
PyPI

CVE-2015-2687

OpenStack Compute (Nova) Improper Access Control

MEDIUM 6.5
PyPI

CVE-2013-1838

OpenStack Compute (Nova) Denial of service via a large number of calls to the addFixedIp function

HIGH 7.5
PyPI

CVE-2013-7130

OpenStack Nova Live migration can leak root disk into ephemeral storage

MEDIUM 6.5
PyPI

CVE-2013-0335

OpenStack Compute Nova Unauthorised access to arbitrary VM using VNC token from deleted VM

UNKNOWN
PyPI

CVE-2014-2573

CVE-2014-2573

UNKNOWN
PyPI

CVE-2013-0335

CVE-2013-0335

UNKNOWN
PyPI

CVE-2013-1838

CVE-2013-1838

UNKNOWN
PyPI

CVE-2014-0134

CVE-2014-0134

UNKNOWN
PyPI

CVE-2013-7130

CVE-2013-7130

MEDIUM 4.7
PyPI

CVE-2015-2687

CVE-2015-2687

UNKNOWN
PyPI

CVE-2012-3360

OpenStack Nova Directory traversal vulnerability

UNKNOWN
PyPI

CVE-2012-3361

OpenStack Nova Arbitrary file injection/corruption through directory traversal issues

UNKNOWN
PyPI

CVE-2012-3371

OpenStack Nova Scheduler denial of service through scheduler_hints

UNKNOWN
PyPI

CVE-2012-2101

Openstack Compute (Nova) Denial of service via network request that triggers large number of iptables rules

UNKNOWN
PyPI

CVE-2012-2654

OpenStack Compute (Nova) Improper Input Validation

MEDIUM 6.5
PyPI

CVE-2019-14433

OpenStack Nova Server Resource Faults Leak External Exception Details

MEDIUM 6.5
PyPI

CVE-2012-3447

Arbitrary file overwrite in OpenStack Nova

HIGH 8.3
PyPI

CVE-2020-17376

OpenStack Nova Live migration fails to update persistent domain XML

CRITICAL 9.8
PyPI

CVE-2017-7214

OpenStack Nova logs sensitive context from notification exceptions

HIGH 7.5
PyPI

CVE-2017-18191

OpenStack Nova Denial of service attack on the compute host

HIGH 8.6
PyPI

CVE-2017-17051

OpenStack Nova DoS by rebuilding the same instance with a new image multiple times

MEDIUM 6.5
PyPI

CVE-2017-16239

OpenStack Nova Filter Scheduler Bypass

MEDIUM 5.3
PyPI

CVE-2016-2140

OpenStack Nova host data access through resize/migration

MEDIUM 5.9
PyPI

CVE-2015-8749

OpenStack Nova Potential Xen connection password leak via StorageError

UNKNOWN
PyPI

CVE-2014-8333

OpenStack Nova VMware instance leak potentially leading to compute DoS

UNKNOWN
PyPI

CVE-2013-7048

OpenStack Nova live snapshots use an insecure local directory

UNKNOWN
PyPI

CVE-2013-6437

OpenStack Nova DoS through ephemeral disk backing files

UNKNOWN
PyPI

CVE-2013-6419

OpenStack Nova Router metadata queries are not restricted by tenant

UNKNOWN
PyPI

CVE-2013-4497

OpenStack Compute Nova Improper Access Control

UNKNOWN
PyPI

CVE-2013-4469

OpenStack Compute (Nova) Denial of service due to improper validation of virtual size of QCOW2 image

UNKNOWN
PyPI

CVE-2013-4463

OpenStack Nova denial of service through compressed disk images

UNKNOWN
PyPI

CVE-2013-4278

OpenStack Compute (Nova) Resource limit circumvention in Nova private flavors

UNKNOWN
PyPI

CVE-2013-4185

OpenStack Nova Denial of Service in network source security groups

UNKNOWN
PyPI

CVE-2012-1585

OpenStack Nova Long server names grow nova-api log files significantly

UNKNOWN
PyPI

CVE-2011-4596

OpenStack Nova Multiple directory traversal vulnerabilities

LOW 3.3
PyPI

CVE-2015-9543

OpenStack Nova can leak consoleauth token into log files

LOW 2.8
PyPI

CVE-2011-3147

Openstack nova qcow format could expose host filesystem information

MEDIUM 5.9
PyPI

CVE-2011-4076

OpenStack Nova Exposure of Sensitive Information to an Unauthorized Actor

MEDIUM 6.1
PyPI

CVE-2021-3654

Open Redirect in CPython that affects users of OpenStack Nova

HIGH 7.5
PyPI

CVE-2015-5162

OpenStack Cinder, Glance, and Nova contain Uncontrolled Resource Consumption

Ready to move

Start Securing

Free, no credit card | First findings in minutes