vantage6 has insecure SSH configuration for node and server containers
Modified: 9/10/2026
package
pkg:pypi/vantage6
vantage6 has insecure SSH configuration for node and server containers
Modified: 9/10/2026
vantage6 vulnerable to Observable Response Discrepancy
Modified: 7/9/2026
vantage6: Algorithm developer can edit another developer's algorithm that is pending / under review
Modified: 8/19/2026
vantage6's CORS settings overly permissive
Modified: 9/10/2026
Vantage6: 2FA can be circumvented with hacked email access
Modified: 7/13/2026
vantage6 refresh tokens do not expire
Modified: 9/10/2026
Vantage6: No limit on emails sent for password/MFA reset
Modified: 7/13/2026
vantage6 vulnerable to a username timing attack on recover password/MFA token
Modified: 7/7/2026
Pickle serialization vulnerable to Deserialization of Untrusted Data
Modified: 9/10/2026
Defining resource name as integer may give unintended access in vantage6
Modified: 9/10/2026
vantage6 collaboration admins can extend their influence by expanding the collaboration
Modified: 9/10/2026
Vantage6: Set admin user and password from environment or configuration
Modified: 7/13/2026
Improper Access Control in vantage6
Modified: 11/18/2024
vantage6 lacks brute-force protection on change password functionality
Modified: 6/8/2026
vantage6 does not properly delete linked resources when deleting a collaboration
Modified: 9/10/2026
vantage6 may create unencrypted tasks in encrypted collaboration
Modified: 9/10/2026
vantage6 vulnerable to Improper Preservation of Permissions
Modified: 9/10/2026
vantage6 remote code execution vulnerability
Modified: 9/10/2026
vantage6 node has an Improper Access Control issue
Modified: 7/13/2026
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 7/9/2026
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 2/8/2024
Modified: 7/7/2026
Modified: 2/8/2024
Modified: 5/20/2026
vantage6 has insecure SSH configuration for node and server containers
Modified: 7/7/2026
vantage6's CORS settings overly permissive
Modified: 7/13/2026
vantage6 vulnerable to a username timing attack on recover password/MFA token
Modified: 7/7/2026
Defining resource name as integer may give unintended access in vantage6
Modified: 7/7/2026
vantage6 collaboration admins can extend their influence by expanding the collaboration
Modified: 7/7/2026
Vantage6: 2FA can be circumvented with hacked email access
Modified: 7/13/2026
Vantage6: No limit on emails sent for password/MFA reset
Modified: 7/13/2026
Vantage6: Set admin user and password from environment or configuration
Modified: 7/13/2026
vantage6 node has an Improper Access Control issue
Modified: 7/13/2026
vantage6: Algorithm developer can edit another developer's algorithm that is pending / under review
Modified: 8/19/2026