Keyring
This hub aggregates every CVE we track for Keyring, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
3
CVEs tracked
0
Critical
1
High
0
In CISA KEV
Severity distribution
LOW1HIGH1MEDIUM1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 3 most recently published vulnerabilities affecting Keyring.
- CVE-2012-5578Python keyring has insecure permissions on new databases allowing world-readable files to be created6.2
- CVE-2012-5577Python keyring lib before 0.10 created keyring files with world-readable permissions.7.5
- CVE-2012-4571Python Keyring 0.9.1 does not securely initialize the cipher when encrypting passwords for CryptedFileKeyring files, which makes it easier for local users to obtain passwords via a brute-force attack.2.1
Product normalization is registry-driven with AI assist and human review. How it works