Launch Week Day 1: Announcing Security Design Review
23 Total advisories
23 Vulnerabilities
0 Malware

Vulnerabilities

MEDIUM 6.5
PyPI

CVE-2025-55039

CVE-2025-55039

UNKNOWN
PyPI

CVE-2023-32007

CVE-2023-32007

UNKNOWN
PyPI

CVE-2019-10099

CVE-2019-10099

UNKNOWN
PyPI

CVE-2018-1334

CVE-2018-1334

UNKNOWN
PyPI

CVE-2023-22946

CVE-2023-22946

UNKNOWN
PyPI

CVE-2022-31777

CVE-2022-31777

UNKNOWN
PyPI

CVE-2020-9480

CVE-2020-9480

HIGH 8.8
Maven KEV

CVE-2022-33891

Apache Spark UI can allow impersonation if ACLs enabled

HIGH 8.8
Maven

CVE-2023-32007

Apache Spark UI vulnerable to Command Injection

UNKNOWN
Maven

CVE-2025-55039

Apache Spark has Inadequate Encryption Strength

UNKNOWN
PyPI KEV

CVE-2022-33891

CVE-2022-33891

MEDIUM 5.4
PyPI

CVE-2022-31777

Apache Spark vulnerable to Log Injection

MEDIUM 5.5
PyPI

CVE-2018-11760

Pyspark User Impersonation Vulnerability

HIGH 7.8
Maven

CVE-2017-12612

Apache Spark Deserialization of Untrusted Data vulnerability

HIGH 7.8
PyPI

CVE-2017-12612

CVE-2017-12612

HIGH 7.5
Maven

CVE-2021-38296

Authentication Bypass by Capture-replay in Apache Spark

HIGH 7.5
Maven

CVE-2019-10099

Sensitive data written to disk unencrypted in Spark

MEDIUM 4.7
Maven

CVE-2018-1334

Exposure of Sensitive Information to an Unauthorized Actor in Apache Spark

CRITICAL 9.9
Maven

CVE-2023-22946

Apache Spark vulnerable to Improper Privilege Management

CRITICAL 9.8
Maven

CVE-2020-9480

Improper Authentication in Apache Spark

UNKNOWN
PyPI

CVE-2021-38296

CVE-2021-38296

UNKNOWN
PyPI

CVE-2018-11760

CVE-2018-11760

UNKNOWN
PyPI

PYSEC-2019-44

PYSEC-2019-44

Ready to move

Start Securing

Free, no credit card | First findings in minutes