Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-p3jp-7gj7-h6pr
  • PyPI/records-mover
records-mover Injection vulnerability 08 Jan
  • Fix available
  • Severity - 4.8 (Medium)
GHSA-xr38-w74q-r8jv
  • PyPI/invenio-app-rdm
  • PyPI/invenio-drafts-resources
  • PyPI/invenio-rdm-records
Permissions not properly checked in Invenio-Drafts-Resources 06 Dec 2021
  • Fix available
  • Severity - 5.1 (Medium)
PYSEC-2021-838
  • PyPI/invenio-rdm-records
  • github.com/inveniosoftware/invenio-drafts-resources
See record for full details 06 Dec 2021
  • Fix available
PYSEC-2019-27
  • PyPI/invenio-records
See record for full details 29 Jul 2019
  • Fix available
GHSA-vxh3-mvv7-265j
  • PyPI/invenio-records
Cross-site scripting invenio-records 16 Jul 2019
  • Fix available
  • Severity - 5.1 (Medium)