Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-354
  • PyPI/horovod
Horovod contains an insecure deserialization vulnerability in its KVStore HTTP server component 29 Jun
  • No fix available
  • Severity - 9.8 (Critical)
PYSEC-2026-355
  • PyPI/horovod
Horovod Vulnerable to Command Injection 29 Jun
  • No fix available
  • Severity - 9.8 (Critical)
GHSA-mf8f-x4r3-jm8c
  • PyPI/horovod
Horovod contains an insecure deserialization vulnerability in its KVStore HTTP server component 12 May
  • No fix available
  • Severity - 9.8 (Critical)
GHSA-mrhh-3ggq-23p2
  • PyPI/horovod
Horovod Vulnerable to Command Injection 20 Mar 2025
  • No fix available
  • Severity - 9.8 (Critical)
GHSA-47wv-vhj2-g66m
  • PyPI/horovod
Use of insecure temporary file in Horovod 29 Mar 2022
  • Fix available
  • Severity - 8.8 (High)
PYSEC-2022-175
  • PyPI/horovod
  • github.com/horovod/horovod
See record for full details 24 Mar 2022
  • Fix available