Package impact
PyPI / torchserve
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-43654 | unknown | — | 1.0 | 3y ago | TorchServe Server-Side Request Forgery vulnerability | |||
| CVE-2024-6577 | unknown | — | — | 1y ago | TorchServe script references S3 bucket without ensuring ownership or confirming accessibility | |||
| CVE-2024-35199 | unknown | — | — | 2y ago | TorchServe gRPC Port Exposure | |||
| CVE-2024-35198 | unknown | — | — | 2y ago | TorchServe vulnerable to bypass of allowed_urls configuration | |||
| CVE-2023-48299 | unknown | — | — | 3y ago | TorchServe ZipSlip |