Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2024-22194
Disclosure Date: January 11, 2024 (last updated January 20, 2024)
cdo-local-uuid project provides a specialized UUID-generating function that can, on user request, cause a program to generate deterministic UUIDs. An information leakage vulnerability is present in `cdo-local-uuid` at version `0.4.0`, and in `case-utils` in unpatched versions (matching the pattern `0.x.0`) at and since `0.5.0`, before `0.15.0`. The vulnerability stems from a Python function, `cdo_local_uuid.local_uuid()`, and its original implementation `case_utils.local_uuid()`.
0
Attacker Value
Unknown
CVE-2022-40806
Disclosure Date: September 19, 2022 (last updated October 08, 2023)
The d8s-uuids for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-hypothesis package. The affected version is 0.1.0
0
Attacker Value
Unknown
CVE-2021-3538
Disclosure Date: June 02, 2021 (last updated February 22, 2025)
A flaw was found in github.com/satori/go.uuid in versions from commit 0ef6afb2f6cdd6cdaeee3885a95099c63f18fc8c to d91630c8510268e75203009fe7daf2b8e1d60c45. Due to insecure randomness in the g.rand.Read function the generated UUIDs are predictable for an attacker.
0
Attacker Value
Unknown
CVE-2015-8851
Disclosure Date: January 30, 2020 (last updated February 21, 2025)
node-uuid before 1.4.4 uses insufficiently random data to create a GUID, which could make it easier for attackers to have unspecified impact via brute force guessing.
0
Attacker Value
Unknown
CVE-2013-4184
Disclosure Date: December 10, 2019 (last updated March 28, 2024)
Perl module Data::UUID from CPAN version 1.219 vulnerable to symlink attacks
0
Attacker Value
Unknown
CVE-2018-18476
Disclosure Date: October 24, 2018 (last updated November 27, 2024)
mysql-binuuid-rails 1.1.0 and earlier allows SQL Injection because it removes default string escaping for affected database columns.
0