{"id":"CVE-2026-27941","aliases":["PYSEC-2026-2246","GHSA-9jgv-x8cq-296q"],"title":"OpenLIT is an open source platform for AI engineering. Prior to version 1.37.1, several GitHub Actions workflows in OpenLIT's GitHub repo…","summary":"OpenLIT is an open source platform for AI engineering. Prior to version 1.37.1, several GitHub Actions workflows in OpenLIT's GitHub repository use the `pull_request_target` event while checking out and executing untrusted code from fork…","severity":"critical","cvss":9.9,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","vendor":"openlit","product":"openlit","ecosystem":"pip","affected":["openlit >= 1.36.2, < 1.37.1"],"patched":["openlit 1.37.1"],"published":"2026-02-26","updated":"2026-07-13","source":"OSV","sourceUrl":"https://osv.dev/vulnerability/PYSEC-2026-2246","references":[{"url":"https://github.com/openlit/openlit/commit/4a62039a1659d6cbb8913172693f587b5fc2546c"},{"url":"https://github.com/openlit/openlit/security/advisories/GHSA-9jgv-x8cq-296q"}],"tags":["osv","pip","exploit-available"],"epss":0.00549,"epssPercentile":0.43478,"ingestedAt":"2026-07-13T18:58:08.488Z","exploits":{"github":1,"githubRepos":["https://github.com/pvharmo2/gha-lab-6c3094af9e"],"checkedAt":"2026-09-25T08:20:53.900Z"},"exploitAvailable":true,"slug":"CVE-2026-27941","body":"## Overview\n\nOpenLIT is an open source platform for AI engineering. Prior to version 1.37.1, several GitHub Actions workflows in OpenLIT's GitHub repository use the `pull_request_target` event while checking out and executing untrusted code from forked pull requests. These workflows run with the security context of the base repository, including a write-privileged `GITHUB_TOKEN` and numerous sensitive secrets (API keys, database/vector store tokens, and a Google Cloud service account key). Version 1.37.1 contains a fix.\n\n## Affected packages\n\n- `openlit >= 1.36.2, < 1.37.1`\n\n## Remediation\n\nUpgrade to a patched release:\n\n- `openlit 1.37.1`","depth":"abyssal","depthScore":67,"depthScoreParts":{"impact":54.5,"likelihood":0.1,"exploitation":12,"ransomware":0},"changes":[{"seq":5060,"id":"CVE-2026-27941","ts":1788887231774,"field":"exploit_available","old":"false","new":"true"},{"seq":3943,"id":"CVE-2026-27941","ts":1788886361850,"field":"exploit_available","old":"true","new":"false"},{"seq":2764,"id":"CVE-2026-27941","ts":1788883028564,"field":"exploit_available","old":"false","new":"true"},{"seq":1793,"id":"CVE-2026-27941","ts":1788882431605,"field":"exploit_available","old":"true","new":"false"},{"seq":899,"id":"CVE-2026-27941","ts":1788881865524,"field":"exploit_available","old":"false","new":"true"}]}