VYPR
Vendor

SageMath

Products
4
CVEs
2
Across products
4
Status
Private

Products

4

Recent CVEs

2
  • CVE-2019-17526CriOct 18, 2019
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in SageMath Sage Cell Server through 2019-10-05. Python Code Injection can occur in the context of an internet facing web application. Malicious actors can execute arbitrary commands on the underlying operating system, as demonstrated by an…

  • CVE-2023-29465MedApr 6, 2023
    risk 0.00cvss 5.5epss 0.00

    SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).