dtale vulnerabilities
CVEs whose affected-version data names the dtale package (pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
7 CVEsRSS
CVE-2026-35052MediumD-Tale: Remote Code Execution through redis/shelf storage
D-Tale: Remote Code Execution through redis/shelf storage
▾ Sunlitdtale · dtaleEPSS 0.62%via OSV
CVE-2026-27194HighD-Tale affected by Remote Code Execution through the /save-column-filter endpoint
D-Tale affected by Remote Code Execution through the /save-column-filter endpoint
▾ Twilightdtale · dtaleEPSS 0.73%via OSV
CVE-2024-55890MediumPoCD-Tale allows Remote Code Execution through the Custom Filter Input
D-Tale allows Remote Code Execution through the Custom Filter Input
▾ Twilightdtale · dtaleEPSS 2.4%via OSV
CVE-2024-8862High· 7.3D-Tale Command Execution Vulnerability
D-Tale Command Execution Vulnerability
▾ Twilightdtale · dtaleEPSS 1.3%via OSV
CVE-2024-45595Medium· 6.1D-Tale vulnerable to Remote Code Execution through the Query input on Chart Builder
D-Tale vulnerable to Remote Code Execution through the Query input on Chart Builder
▾ Sunlitdtale · dtaleEPSS 0.78%via OSV
CVE-2024-21642High· 7.5D-Tale server-side request forgery through Web uploads
D-Tale server-side request forgery through Web uploads
▾ Twilightdtale · dtaleEPSS 0.71%via OSV
CVE-2023-46134Medium· 6.1dtale vulnerable to Remote Code Execution through the Custom Filter Input
dtale vulnerable to Remote Code Execution through the Custom Filter Input
▾ Sunlitdtale · dtaleEPSS 0.76%via OSV