Vulnerabilities > Paddlepaddle > Paddlepaddle > 2.4.0

DATE CVE VULNERABILITY TITLE RISK
2023-07-26 CVE-2023-38672 Divide By Zero vulnerability in Paddlepaddle
FPE in paddle.trace in PaddlePaddle before 2.5.0.
network
low complexity
paddlepaddle CWE-369
7.5
2023-07-26 CVE-2023-38673 OS Command Injection vulnerability in Paddlepaddle
PaddlePaddle before 2.5.0 has a command injection in fs.py.
network
low complexity
paddlepaddle CWE-78
critical
9.8
2023-07-26 CVE-2023-38670 NULL Pointer Dereference vulnerability in Paddlepaddle
Null pointer dereference in paddle.flip in PaddlePaddle before 2.5.0.
network
low complexity
paddlepaddle CWE-476
7.5
2023-07-26 CVE-2023-38671 Out-of-bounds Write vulnerability in Paddlepaddle
Heap buffer overflow in paddle.trace in PaddlePaddle before 2.5.0.
network
low complexity
paddlepaddle CWE-787
critical
9.8
2023-07-26 CVE-2023-38669 Use After Free vulnerability in Paddlepaddle
Use after free in paddle.diagonal in PaddlePaddle before 2.5.0.
network
low complexity
paddlepaddle CWE-416
critical
9.8
2022-12-07 CVE-2022-46742 Code Injection vulnerability in Paddlepaddle 2.4.0
Code injection in paddle.audio.functional.get_window in PaddlePaddle 2.4.0-rc0 allows arbitrary code execution.
network
low complexity
paddlepaddle CWE-94
critical
9.8