Vulnerabilities > Numpy > Numpy > 1.0.3.1

DATE CVE VULNERABILITY TITLE RISK
2021-12-17 CVE-2021-34141 Incorrect Comparison vulnerability in multiple products
An incomplete string comparison in the numpy.core component in NumPy before 1.22.0 allows attackers to trigger slightly incorrect copying by constructing specific string objects.
network
low complexity
numpy oracle CWE-697
5.3
2019-01-16 CVE-2019-6446 Deserialization of Untrusted Data vulnerability in multiple products
An issue was discovered in NumPy 1.16.0 and earlier.
network
low complexity
numpy fedoraproject CWE-502
critical
9.8
2018-01-08 CVE-2014-1859 Link Following vulnerability in multiple products
(1) core/tests/test_memmap.py, (2) core/tests/test_multiarray.py, (3) f2py/f2py2e.py, and (4) lib/tests/test_io.py in NumPy before 1.8.1 allow local users to write to arbitrary files via a symlink attack on a temporary file.
local
low complexity
numpy fedoraproject redhat CWE-59
2.1
2018-01-08 CVE-2014-1858 Improper Input Validation vulnerability in Numpy
__init__.py in f2py in NumPy before 1.8.1 allows local users to write to arbitrary files via a symlink attack on a temporary file.
local
low complexity
numpy CWE-20
2.1
2017-08-15 CVE-2017-12852 Infinite Loop vulnerability in Numpy
The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation.
network
low complexity
numpy CWE-835
5.0