VYPR

Miniconda3

by Conda

CVEs (2)

  • CVE-2024-46062HigDec 17, 2025
    risk 0.51cvss 7.8epss 0.00

    Miniconda3 macOS installers before 23.11.0-1 contain a local privilege escalation vulnerability when installed outside the user's home directory. During installation, world-writable files are created and executed with root privileges. This flaw allows a local low-privileged user…

  • CVE-2022-26526HigMar 17, 2022
    risk 0.51cvss 7.8epss 0.00

    Anaconda Anaconda3 (Anaconda Distribution) through 2021.11.0.0 and Miniconda3 through 4.11.0.0 can create a world-writable directory under %PROGRAMDATA% and place that directory into the system PATH environment variable. Thus, for example, local users can gain privileges by…