virtualenv kayıtları
virtualenv üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-287 Improper Authentication1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2024-53899İstismar yok | virtualenv before 20.26.6 allows command injection through the activation scripts for a virtual environment.virtualenv · virtualenv · CWE-77 | Yüksek7,8 | — | %1,6 | 24 Kas 2024 |
25İzleyin | CVE-2013-5123Kavram kanıtı | The mirroring support (-M, --use-mirrors) in Python Pip before 1.5 uses insecure DNS querying and authenticity checks which allows attackerspypa · pip · CWE-287 | Orta5,9 | — | %8,0 | 5 Kas 2019 |
18İzleyin | CVE-2026-22702İstismar yok | virtualenv Has TOCTOU Vulnerabilities in Directory Creationvirtualenv · virtualenv · CWE-59 | Orta4,5 | — | %0,1 | 10 Oca 2026 |
- CVE-2024-5389931İzleyin
virtualenv before 20.26.6 allows command injection through the activation scripts for a virtual environment.
YüksekCVSS 7,8İstismar yokEPSS %2virtualenv · virtualenv24 Kas 2024
- CVE-2013-512325İzleyin
The mirroring support (-M, --use-mirrors) in Python Pip before 1.5 uses insecure DNS querying and authenticity checks which allows attackers
OrtaCVSS 5,9Kavram kanıtıEPSS %8pypa · pip5 Kas 2019
- CVE-2026-2270218İzleyin
virtualenv Has TOCTOU Vulnerabilities in Directory Creation
OrtaCVSS 4,5İstismar yokEPSS %0virtualenv · virtualenv10 Oca 2026