CVE Browser
Graphite before 1.3.15 has an integer underflow and resultant out-of-bounds write via Graphite actions, because slotat does not ensure that an offset is within…
Graphite Web Absolute Time Range cross site scripting
Graphite Web Template Name cross site scripting
Graphite Web Cookie cross site scripting
graphite-web: graphite.composer.views.send_email vulnerable to SSRF
Multiple cross-site scripting (XSS) vulnerabilities in Graphite before 0.9.11 allow remote attackers to inject arbitrary web script or HTML via unspecified vec…
Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object,…
The renderLocalView function in render/views.py in graphite-web in Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows remote at…
Showing 1 to 8 CVEs · page 1