python2-tools vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the python2-tools package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
Resource Exhaustion

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
CVE-2024-6923

*
  • L
Race Condition

*
  • L
Improper Input Validation

*
  • M
Cross-site Scripting (XSS)

<0:2.7.18-17.module+el8.10.0+20822+a15ec22d
  • M
Information Exposure

<0:2.7.18-17.module+el8.10.0+20822+a15ec22d
  • M
Incorrect Regular Expression

<0:2.7.18-17.module+el8.10.0+20822+a15ec22d
  • M
Use After Free

<0:2.7.18-17.module+el8.10.0+20822+a15ec22d
  • M
Resource Leak

<0:2.7.18-15.module+el8.9.0+20125+68111a8f
  • M
XML External Entity (XXE) Injection

<0:2.7.18-17.module+el8.10.0+20822+a15ec22d
  • H
Authentication Bypass by Primary Weakness

<0:2.7.18-13.module+el8.8.0+20144+beed974d.2
  • M
Uncontrolled Recursion

*
  • M
Improper Input Validation

*
  • H
Improper Input Validation

<0:2.7.18-13.module+el8.8.0+19042+06909d2c.1
  • M
Resource Exhaustion

<0:2.7.18-12.module+el8.8.0+17629+2cfc9d03
  • M
Directory Traversal

*
  • M
Incorrect Type Conversion or Cast

*
  • M
Improper Input Validation

<0:2.7.18-11.module+el8.7.0+15681+7a92afba
  • M
Arbitrary Code Injection

<0:2.7.18-10.module+el8.6.0+14191+7fdd52cd
  • M
Unchecked Return Value

<0:2.7.18-10.module+el8.6.0+14191+7fdd52cd
  • M
Arbitrary Command Injection

<0:2.7.18-10.module+el8.6.0+14191+7fdd52cd
  • M
Directory Traversal

<0:2.7.18-7.module+el8.5.0+12203+77770ab7
  • M
Resource Exhaustion

<0:2.7.18-10.module+el8.6.0+14191+7fdd52cd
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:2.7.18-10.module+el8.6.0+14191+7fdd52cd
  • M
Resource Exhaustion

*
  • M
Buffer Overflow

<0:2.7.18-4.module+el8.4.0+9577+0b56c8de
  • M
HTTP Request Smuggling

<0:2.7.18-7.module+el8.5.0+12203+77770ab7
  • M
Cross-site Scripting (XSS)

<0:2.7.18-4.module+el8.4.0+9577+0b56c8de
  • M
Eval Injection

<0:2.7.18-7.module+el8.5.0+12203+77770ab7
  • M
Improper Input Validation

<0:2.7.17-2.module+el8.3.0+7681+f1f02ded
  • M
HTTP Response Splitting

<0:2.7.18-4.module+el8.4.0+9577+0b56c8de
  • M
HTTP Response Splitting

<0:2.7.18-4.module+el8.4.0+9577+0b56c8de
  • M
Cross-site Scripting (XSS)

<0:2.7.17-1.module+el8.2.0+4561+f4e0d66a
  • M
Improper Input Validation

<0:2.7.17-1.module+el8.2.0+4561+f4e0d66a
  • M
Directory Traversal

<0:2.7.17-2.module+el8.3.0+7681+f1f02ded
  • M
Improper Input Validation

<0:2.7.17-1.module+el8.2.0+4561+f4e0d66a
  • M
Insufficiently Protected Credentials

<0:2.7.17-1.module+el8.2.0+4561+f4e0d66a
  • M
Insufficiently Protected Credentials

<0:2.7.17-1.module+el8.2.0+4561+f4e0d66a
  • M
HTTP Response Splitting

<0:2.7.16-12.module+el8.1.0+4148+33a50073
  • M
Exposed Dangerous Method or Function

<0:2.7.16-12.module+el8.1.0+4148+33a50073
  • M
HTTP Response Splitting

<0:2.7.16-12.module+el8.1.0+4148+33a50073
  • M
Improperly Implemented Security Check for Standard

<0:2.7.16-12.module+el8.1.0+4148+33a50073
  • M
HTTP Response Splitting

<0:2.7.16-12.module+el8.1.0+4148+33a50073
  • M
Improper Certificate Validation

<0:2.7.16-12.module+el8.1.0+4148+33a50073
  • H
SQL Injection

<0:2.7.15-22.module+el8.0.0+2961+596d0223
  • H
SQL Injection

<0:2.7.15-22.module+el8.0.0+2961+596d0223
  • H
Encoding Error

<0:2.7.15-22.module+el8.0.0+2961+596d0223
  • M
Cross-site Scripting (XSS)

<0:2.7.18-7.module+el8.5.0+12203+77770ab7
  • M
Resource Exhaustion

<0:2.7.18-7.module+el8.5.0+12203+77770ab7
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:2.7.18-7.module+el8.5.0+12203+77770ab7
  • M
Directory Traversal

<0:2.7.18-7.module+el8.5.0+12203+77770ab7
  • M
Improper Input Validation

<0:2.7.18-7.module+el8.5.0+12203+77770ab7
  • L
Improper Handling of Highly Compressed Data (Data Amplification)

*