boxlite vulnerabilities
CVEs whose affected-version data names the boxlite package (pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
3 CVEsRSS
CVE-2026-47213Medium· 6.5BoxLite has a Timeout Bypass Vulnerability
BoxLite has a Timeout Bypass Vulnerability
▾ Sunlitboxlite · boxliteEPSS 0.27%via OSV
CVE-2026-46695Critical· 10.0BoxLite: Permission Bypass Allows Modification of Read-Only Files
BoxLite: Permission Bypass Allows Modification of Read-Only Files
▾ Midnightboxlite · boxliteEPSS 0.29%via OSV
CVE-2026-46703Critical· 9.6Boxlite: Path Traversal Vulnerability Leads to Arbitrary File Write on the Host
Boxlite: Path Traversal Vulnerability Leads to Arbitrary File Write on the Host
▾ Midnightboxlite · boxliteEPSS 0.48%via OSV