Known Vulnerabilities for Package Hub by Opensuse
Listed below are 1 of the newest known vulnerabilities associated with "Package Hub" by "Opensuse".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-69249 json | python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-69248 json | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.0, if a... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-69247 json | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-69096 json | OpenWrt luci-app-dockerman (LuCI master and openwrt-25.12 snapshots containing the ucode docker_rpc.uc RPC backend after the ... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-67529 json | OpenProject is open-source, web-based project management software. Prior to 17.6.0, GET /api/v3/time_entries and GET /api/v3/... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-67527 json | OpenProject is open-source, web-based project management software. Prior to 17.6.0, PATCH /api/v3/work_packages/{id} accepted... | Not Provided | 2026-07-30 | 2026-07-31 |
| CVE-2026-67338 json | JupyterLab before 4.5.9 contains a stored cross-site scripting vulnerability in the Extension Manager that fails to validate ... | Not Provided | 2026-08-01 | 2026-08-03 |
| CVE-2026-65896 json | Grav API Plugin (Composer package getgrav/grav-plugin-api) before 1.0.10 fails to properly validate the slug field in the POS... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65617 json | A deserialization weakness in JFrog Artifactory package handling could allow a low-privileged user to impact confidentiality,... | Not Provided | 2026-07-27 | 2026-07-27 |
| CVE-2026-65595 json | n8n before 2.30.1 and 2.29.8 assigns all Public API key scopes to JWTs issued through the Token Exchange module regardless of... | Not Provided | 2026-07-22 | 2026-07-24 |