Humansignal

Label Studio

15 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.74%
  • Veröffentlicht 31.01.2024 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:29:48

Label Studio is a popular open source data labeling tool. The vulnerability affects all versions of Label Studio prior to 1.11.0 and was tested on version 1.8.2. Label Studio's SSRF protections that can be enabled by setting the `SSRF_PROTECTION_ENAB...

  • EPSS 0.59%
  • Veröffentlicht 24.01.2024 00:15:08
  • Zuletzt bearbeitet 21.11.2024 08:58:02

Label Studio, an open source data labeling tool had a remote import feature allowed users to import data from a remote web source, that was downloaded and could be viewed on the website. Prior to version 1.10.1, this feature could had been abused to ...

Exploit
  • EPSS 1.45%
  • Veröffentlicht 23.01.2024 23:15:08
  • Zuletzt bearbeitet 21.11.2024 08:29:48

Label Studio is an a popular open source data labeling tool. Versions prior to 1.9.2 have a cross-site scripting (XSS) vulnerability that could be exploited when an authenticated user uploads a crafted image file for their avatar that gets rendered a...

Exploit
  • EPSS 4.06%
  • Veröffentlicht 13.11.2023 21:15:08
  • Zuletzt bearbeitet 21.11.2024 08:29:48

Label Studio is an open source data labeling tool. In all current versions of Label Studio prior to 1.9.2post0, the application allows users to insecurely set filters for filtering tasks. An attacker can construct a filter chain to filter tasks based...

Exploit
  • EPSS 1.24%
  • Veröffentlicht 09.11.2023 15:15:08
  • Zuletzt bearbeitet 21.11.2024 08:24:47

Label Studio is a multi-type data labeling and annotation tool with standardized output format. There is a vulnerability that can be chained within the ORM Leak vulnerability to impersonate any account on Label Studio. An attacker could exploit these...