Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
EN
中
Loading…
PyPI/h2o — 8 CVEs · VulnScope
pkg:PyPI/
h2o
8 total CVEs
CRITICAL
6
HIGH
2
MEDIUM
2
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.8
CVE-2026-3960
H2O-3 is Vulnerable to Code Injection
from 0, < 3.46.0.10
CRITICAL
9.8
CVE-2025-6544
H2O affected by a deserialization vulnerability
from 0, <= 3.46.0.7
CRITICAL
9.8
CVE-2024-10553
H2O Deserialization of Untrusted Data Vulnerability
from 0, < 3.46.0.6
CRITICAL
9.3
External Control of File Name or Path in h2oai/h2o-3
from 0, < 3.46.0.1
CRITICAL
9.1
H2O has an External Control of File Name or Path vulnerability
from 0, <= 3.46.0.1
CRITICAL
9.1
H2O.ai H2O vulnerable to deserialization attacks via a JDBC Connection URL
from 0, <= 3.46.0.7
HIGH
7.5
h2o vulnerable to unexpected POST request shutting down server
from 0, <= 3.46.0
HIGH
7.5
h2o vulnerable to unexpected POST request shutting down server
from 0, <= 3.46.0
MEDIUM
5.3
Arbitrary system path lookup in h20
from 0, <= 3.40.0.4
MEDIUM
5.3
Arbitrary system path lookup in h20
from 0, <= 3.40.0.4
CVE-2023-6569
CVE-2024-5986
CVE-2024-45758
CVE-2024-5979
CVE-2024-5979
CVE-2024-5550
CVE-2024-5550