VYPR

apk package

wolfi/py3.10-tensorflow-core

pkg:apk/wolfi/py3.10-tensorflow-core

Vulnerabilities (3)

  • CVE-2024-3651Jul 7, 2024
    affected < 2.16.1-r1fixed 2.16.1-r1

    A vulnerability was identified in the kjd/idna library, specifically within the `idna.encode()` function, affecting version 3.6. The issue arises from the function's handling of crafted input strings, which can lead to quadratic complexity and consequently, a denial of service co

  • CVE-2024-35195MedMay 20, 2024
    affected < 2.16.1-r1fixed 2.16.1-r1

    Requests is a HTTP library. Prior to 2.32.0, when making requests through a Requests `Session`, if the first request is made with `verify=False` to disable cert verification, all subsequent requests to the same host will continue to ignore cert verification regardless of changes

  • CVE-2024-34069May 6, 2024
    affected < 2.16.1-r1fixed 2.16.1-r1

    Werkzeug is a comprehensive WSGI web application library. The debugger in affected versions of Werkzeug can allow an attacker to execute code on a developer's machine under some circumstances. This requires the attacker to get the developer to interact with a domain and subdomain