CWE-1357
4 CVEs • Abstraction: Class
Reliance on Insufficiently Trustworthy Component
The product is built from multiple separate components, but it uses a component that is not sufficiently trusted to meet expectations for security, reliability, updateability, and maintainability.
CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Conda-build contains commands and tools to build conda packages. Prior to version 25.3.0, the pyproject.toml lists conda-index as a Python dependency. This package is not published in PyPI. An attacker could claim this n...Show more |
SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in Substation Server. |
SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in PowerSYSTEM Center. |
SUBNET Solutions Inc. has identified vulnerabilities in third-party
components used in PowerSYSTEM Server 2021 and Substation Server 2021. |