A vulnerability, which was classified as problematic, was found in galaxy-data-resource up to 14.10.0. This affects an unknown part of the component Command Line Template. The manipulation leads to injection. Upgrading to version 14.10.1 is able to address this issue. The patch is named 50d65f45d3f5be5d1fbff2e45ac5cec075f07d42. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-218451.
Conclusion & alert: CVE-2015-10062 is rated Moderate Risk (40.6/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 0.89%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 1.40% | 0.89% | -0.51% |
| 2 | 2026-01-19 | 0.47% | 1.40% | +0.93% |
| 3 | 2026-01-18 | — | 0.47% | — |
Full EPSS history (17 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 5.5 | 3.1 | MEDIUM |
|
2.1 | 3.4 | [email protected] |
| 9.8 | 3.1 | CRITICAL |
|
3.9 | 5.9 | [email protected] |
| 5.2 | 2.0 | MEDIUM |
|
5.1 | 6.4 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| galaxyproject | galaxy | < 14.10.1 | cpe:2.3:a:galaxyproject:galaxy:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://github.com/blankenberg/galaxy-data-resource/commit/50d65f45d3f5be5d1fbff2e45ac5cec075f07d42 | Patch Third Party Advisory |
| https://github.com/blankenberg/galaxy-data-resource/releases/tag/v14.10.1 | Third Party Advisory |
| https://vuldb.com/?ctiid.218451 | Permissions Required Third Party Advisory VDB Entry |
| https://vuldb.com/?id.218451 | Permissions Required Third Party Advisory VDB Entry |