VYPR

apk package

chainguard/airflow-3

pkg:apk/chainguard/airflow-3

Vulnerabilities (143)

  • CVE-2024-23342HigJan 23, 2024
    affected < 3.2.2-r0fixed 3.2.2-r0

    The `ecdsa` PyPI package is a pure Python implementation of ECC (Elliptic Curve Cryptography) with support for ECDSA (Elliptic Curve Digital Signature Algorithm), EdDSA (Edwards-curve Digital Signature Algorithm) and ECDH (Elliptic Curve Diffie-Hellman). Versions 0.18.0 and prior

  • CVE-2023-48022CriNov 28, 2023
    affected < 0fixed 0

    Anyscale Ray 2.6.3 and 2.8.0 allows a remote attacker to execute arbitrary code via the job submission API. NOTE: the vendor's position is that this report is irrelevant because Ray, as stated in its documentation, is not intended for use outside of a strictly controlled network

  • CVE-2023-46136HigOct 25, 2023
    affected < 3.0.1-r1fixed 3.0.1-r1

    Werkzeug is a comprehensive WSGI web application library. In versions on the 3.x branch prior to 3.0.1 and on the 2.x branch prior to 2.3.8, if an upload of a file that starts with CR or LF and then is followed by megabytes of data without these characters: all of these bytes are

Page 8 of 8