CVE-2026-46380Medium· 6.7▾ Sunlitcompliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the HTTPSFetcher._do_fetch() method passes a user-supplied URL directly to requests.get() without validation. This allows an at…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 36.9 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 15.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.1%
Last analysed / modified upstream
0.1% → 0.2%
compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the HTTPSFetcher._do_fetch() method passes a user-supplied URL directly to requests.get() without validation. This allows an attacker to perform Server-Side Request Forgery, targeting internal services or cloud metadata endpoints. Versions 3.12.2 and 4.0.3 fix the issue.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Affected packages:
compliance-trestle >= 4.0.0, < 4.0.3compliance-trestle < 3.12.2Patched in:
compliance-trestle 4.0.3compliance-trestle 3.12.2Connected by shared product, vendor, weakness, or advisory.
CVE-2026-45774Mediumcompliance-trestle is a tooling platform for managing compliance as code
CVE-2026-54757High· 7.8Trestle has Server-Side Template Injection (SSTI) via Recursive Template Re-evaluation of Untrusted Data
CVE-2026-46439High· 7.8compliance-trestle is a tooling platform for managing compliance as code
CVE-2026-45725Highcompliance-trestle is a tooling platform for managing compliance as code
CVE-2026-46345High· 8.4compliance-trestle is a tooling platform for managing compliance as code
CVE-2026-52776HighCompliance-trestle (Trestle) is a tooling platform for managing compliance as code