VYPR

Octoprint

by Octoprint

pypi: octoprint

Source repositories

CVEs (25)

  • CVE-2025-64187MedNov 7, 2025
    risk 0.22cvss 4.4epss 0.00

    OctoPrint provides a web interface for controlling consumer 3D printers. Versions 1.11.3 and below are affected by a vulnerability that allows injection of arbitrary HTML and JavaScript into Action Command notifications and prompts popups generated by the printer. An attacker…

  • CVE-2022-2888MedSep 21, 2022
    risk 0.22cvss 4.4epss 0.00

    If an attacker comes into the possession of a victim's OctoPrint session cookie through whatever means, the attacker can use this cookie to authenticate as long as the victim's account exists.

  • CVE-2025-32788MedApr 22, 2025
    risk 0.21cvss 4.3epss 0.00

    OctoPrint provides a web interface for controlling consumer 3D printers. In versions up to and including 1.10.3, OctoPrint has a vulnerability that allows an attacker to bypass the login redirect and directly access the rendered HTML of certain frontend pages. The primary risk…

  • CVE-2024-23637MedJan 31, 2024
    risk 0.20cvss 4.2epss 0.01

    OctoPrint is a web interface for 3D printer.s OctoPrint versions up until and including 1.9.3 contain a vulnerability that allows malicious admins to change the password of other admin accounts, including their own, without having to repeat their password. An attacker who…

  • CVE-2024-28237MedMar 18, 2024
    risk 0.19cvss 4.0epss 0.00

    OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.9.3 contain a vulnerability that allows malicious admins to configure or talk a victim with administrator rights into configuring a webcam snapshot URL which when…

Page 2 of 2