Celeryproject
celeryproject
2 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Celeryproject Fedoraproject3Celery Extra Packages For Enterprise LinuxFedoraJun 17, 2026 Dec 29, 2021 N/A· v4 7.5 HIGH· v3 6.0 MEDIUM· v2 This affects the package celery before 5.2.2. It by default trusts the messages and metadata stored in backends (result stores). When reading task metadata from the backend, the data is deserialized. Given that an attack...Show more |
Celery 2.1 and 2.2 before 2.2.8, 2.3 before 2.3.4, and 2.4 before 2.4.4 changes the effective id but not the real id during processing of the --uid and --gid arguments to celerybeat, celeryd_detach, celeryd-multi, and ce...Show more |