VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5670 CVEsRSS

CVE-2026-84378Medium· 5.9
3w ago

HTTPX2 is a next generation HTTP client for Python

HTTPX2 is a next generation HTTP client for Python. From 2.5.0 until 2.10.0, the HTTPX2 Server-Sent Events parser in src/httpx2/httpx2/_sse.py repeatedly copies and rescans buffered text in _SSELineDecoder.decode() when an attacker-contr…

▾ Sunlithttpx2 · httpx2EPSS 0.53%via NVD
CVE-2026-32773Medium· 6.1
3w ago

There is a lack of XSS escaping in the Spark History Server prior to 3.5.8 which allows a malicious Spark job to generate arbitrary unescaped frontend code which could lead to a minimal privilege escalation in browser

There is a lack of XSS escaping in the Spark History Server prior to 3.5.8 which allows a malicious Spark job to generate arbitrary unescaped frontend code which could lead to a minimal privilege escalation in browser. Users are encourag…

▾ Sunlitapache · sparkEPSS 0.68%via NVD
CVE-2026-84381High· 8.1
3w ago

HTTPX2 is a next generation HTTP client for Python

HTTPX2 is a next generation HTTP client for Python. Prior to 2.10.0, httpcore2 fails to start TLS in src/httpcore2/httpcore2/_sync/socks_proxy.py and src/httpcore2/httpcore2/_async/socks_proxy.py when the remote origin uses wss through a…

▾ Twilighthttpcore2 · httpcore2EPSS 0.11%via NVD
CVE-2026-56855Medium· 5.3
3w ago

Prevent DoS on deadlocked established channel in golang.org/x/crypto/ssh

Prevent DoS on deadlocked established channel in golang.org/x/crypto/ssh

▾ Sunlitx · golang.org/x/cryptoEPSS 0.50%via OSV
CVE-2026-78662Medium· 5.3
3w ago

golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Denial of Service via channel request flooding (CVE-2026-78662)

A flaw was found in golang.org/x/crypto/ssh. A malicious remote attacker could flood a channel's incoming requests before it is established, leading to a deadlock of the entire connection. This could result in a denial of service (DoS) for…

▾ SunlitRed Hat · Red Hat OpenShift Container Platform 4EPSS 0.43%via CSAF
CVE-2026-59832High· 7.7
3w ago

Siyuan: Authenticated path traversal in /snippets/ static handler (serveSnippets) leaks conf/conf.json secrets and siyuan.db

Siyuan: Authenticated path traversal in /snippets/ static handler (serveSnippets) leaks conf/conf.json secrets and siyuan.db

▾ Twilightsiyuan-note · github.com/siyuan-note/siyuan/kernelEPSS 0.46%via OSV
CVE-2026-12876Medium
3w ago

NLTK: Uncontrolled resource consumption in RecursiveDescentParser via ambiguous or left-recursive grammars

NLTK: Uncontrolled resource consumption in RecursiveDescentParser via ambiguous or left-recursive grammars

▾ Sunlitnltk · nltkvia OSV
CVE-2026-84303Medium
3w ago

gRPC-Go is the Go language implementation of gRPC

gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, the xDS RBAC HTTP filter in internal/xds/httpfilter/rbac/rbac.go does not lowercase header matcher names in normalizeHeaderMatcher even though incoming metadata keys are…

▾ Sunlitgrpc · google.golang.org/grpcEPSS 0.31%via NVD
CVE-2026-84366High· 7.4
3w ago

Scrapy is a high-level web crawling and scraping framework for Python

Scrapy is a high-level web crawling and scraping framework for Python. Prior to 2.17.0, in scrapy/core/downloader/handlers/s3.py, Scrapy's S3DownloadHandler converts an S3-scheme bucket and key request into a plaintext HTTP request to th…

▾ Twilightscrapy · scrapyEPSS 0.25%via NVD
CVE-2026-84196High· 7.7
3w ago

Kyverno before 1.18.0 contains a server-side request forgery vulnerability in apiCall.service.url that allows authenticated users to send arbitrary HTTP requests by injecting user-controlled input through variable substitution

Kyverno before 1.18.0 contains a server-side request forgery vulnerability in apiCall.service.url that allows authenticated users to send arbitrary HTTP requests by injecting user-controlled input through variable substitution. Attackers…

▾ Twilightkyverno · github.com/kyverno/kyvernoEPSS 0.35%via NVD
CVE-2023-54356Low· 3.7
3w ago

Kyverno versions 1.9.4 and earlier support insecure 3DES cipher suites (TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA and TLS_RSA_WITH_3DES_EDE_CBC_SHA) on their TLS endpoints

Kyverno versions 1.9.4 and earlier support insecure 3DES cipher suites (TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA and TLS_RSA_WITH_3DES_EDE_CBC_SHA) on their TLS endpoints. These 64-bit block ciphers are vulnerable to the Sweet32 attack (CVE-2…

▾ Sunlitkyverno · github.com/kyverno/kyvernoEPSS 0.15%via NVD
CVE-2026-84200Critical· 9.0
3w ago

Kyverno versions v1.9.0 through v1.12.7 contain a policy exception handling flaw

Kyverno versions v1.9.0 through v1.12.7 contain a policy exception handling flaw. When a policy in enforce mode is combined with two PolicyExceptions, the less restrictive exception takes precedence, allowing an attacker to bypass the po…

▾ Midnightkyverno · github.com/kyverno/kyvernoEPSS 0.27%via NVD
CVE-2026-84199High· 7.7
3w ago

Kyverno before 1.16.2 contains a server-side request forgery (SSRF) vulnerability in the APICall feature

Kyverno before 1.16.2 contains a server-side request forgery (SSRF) vulnerability in the APICall feature. The URL field in a Policy's ServiceCall configuration is not validated, so a user with namespace-level Policy creation permissions …

▾ Twilightkyverno · github.com/kyverno/kyvernoEPSS 0.36%via NVD
CVE-2026-84195High· 7.7
3w ago

Kyverno before 1.16.4 automatically attaches the admission controller's ServiceAccount token to outbound HTTP requests in apiCall service mode without explicit authorization headers

Kyverno before 1.16.4 automatically attaches the admission controller's ServiceAccount token to outbound HTTP requests in apiCall service mode without explicit authorization headers. Attackers can exfiltrate the token by directing apiCal…

▾ Twilightkyverno · github.com/kyverno/kyvernoEPSS 0.39%via NVD
CVE-2025-15613Medium· 6.5
3w ago

Kyverno before v1.13.4 is vulnerable to server-side request forgery (SSRF) via its Service Call functionality

Kyverno before v1.13.4 is vulnerable to server-side request forgery (SSRF) via its Service Call functionality. An attacker with permission to create Kyverno (Cluster)Policies can specify an external URL in a policy's apiCall/service conf…

▾ Sunlitkyverno · github.com/kyverno/kyvernoEPSS 0.27%via NVD
MAL-2026-15811None
3w ago

Malicious code in syswatch (PyPI)

Malicious code in syswatch (PyPI)

▾ Sunlitsyswatch · syswatchvia OSV
MAL-2026-15810Critical⚠ Exploited
3w ago

Malicious code in gcphelpit (PyPI)

Malicious code in gcphelpit (PyPI)

▾ Abyssalgcphelpit · gcphelpitvia OSV
MAL-2026-15809None
3w ago

Malicious code in tallyboxlite (PyPI)

Malicious code in tallyboxlite (PyPI)

▾ Sunlittallyboxlite · tallyboxlitevia OSV
CVE-2026-84304High
3w ago

gRPC-Go is the Go language implementation of gRPC

gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, internal/transport/transport.go stores each fragmented HTTP/2 DATA frame as a separate recvMsg in recvBuffer, so millions of one-byte frames can consume disproportionate…

▾ Twilightgrpc · google.golang.org/grpcEPSS 0.61%via NVD
CVE-2026-84305Medium
3w ago

sqlparse is a non-validating SQL parser module for Python

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, sqlparse.format(sql, reindent=True) and sqlformat --reindent route attacker-controlled parenthesized tuple lists through ReindentFilter._get_offset() in sqlparse/…

▾ Sunlitsqlparse · sqlparseEPSS 0.18%via NVD
CVE-2026-84309Medium· 5.5
3w ago

pypdf is a free and open-source pure-python PDF library

pypdf is a free and open-source pure-python PDF library. Prior to 6.16.0, an attacker can craft a PDF whose cyclic tree structure causes pypdf/generic/_data_structures.py TreeObject.insert_child to follow /Next links indefinitely when a …

▾ Sunlitpypdf · pypdfEPSS 0.18%via NVD
CVE-2026-84311Medium· 5.5
3w ago

pypdf is a free and open-source pure-python PDF library

pypdf is a free and open-source pure-python PDF library. Prior to 6.16.1, an attacker can craft a PDF that causes pypdf/_page.py PageObject._extract_text and PageObject.extract_xform_text to traverse a directed acyclic graph of reused fo…

▾ Sunlitpypdf · pypdfEPSS 0.18%via NVD
CVE-2026-84310Medium· 5.5
3w ago

pypdf is a free and open-source pure-python PDF library

pypdf is a free and open-source pure-python PDF library. Prior to 6.16.1, an attacker can craft a PDF that causes pypdf/_doc_common.py _get_outline to consume long runtimes and large amounts of memory when retrieving document outlines wi…

▾ Sunlitpypdf · pypdfEPSS 0.18%via NVD
GHSA-wwv5-g3v4-889xLow
3w ago

Tornado: Incomplete fix for CVE-2026-35536: cookie attribute injection re-opened via the legacy case-insensitive `**kwargs` path in `set_…

Tornado: Incomplete fix for CVE-2026-35536: cookie attribute injection re-opened via the legacy case-insensitive `**kwargs` path in `set_cookie`

▾ Sunlittornado · tornadovia OSV
GHSA-8423-8fgw-73vqMedium
3w ago

tornado: multipart split() creates huge temp list before max_parts check -> memory amplification DoS (httputil.py:34)

tornado: multipart split() creates huge temp list before max_parts check -> memory amplification DoS (httputil.py:34)

▾ Sunlittornado · tornadovia OSV
CVE-2026-78422None
4w ago

`zbus_polkit`: authorization bypass via PID reuse

`zbus_polkit`: authorization bypass via PID reuse

▾ Sunlitzbus_polkit · zbus_polkitEPSS 0.13%via OSV
CVE-2026-82398Medium· 5.3
4w ago

pypdf is a free and open-source pure-python PDF library

pypdf is a free and open-source pure-python PDF library. Prior to 6.15.0, an attacker can craft a PDF that causes long runtimes when the pypdf/_utils.py function read_until_whitespace reads a stream containing a long run of bytes without…

▾ Sunlitpypdf · pypdfEPSS 0.52%via NVD
CVE-2026-82397High· 7.5
4w ago

Tornado is a Python web framework and asynchronous networking library

Tornado is a Python web framework and asynchronous networking library. Prior to 6.5.8, Tornado parses application/x-www-form-urlencoded request bodies with urllib.parse.parse_qs in tornado/escape.py without passing max_num_fields. Reques…

▾ Twilighttornado · tornadoEPSS 0.63%via NVD
MAL-2026-15603Critical⚠ Exploited
4w ago

Malicious code in pyservercheck (PyPI)

Malicious code in pyservercheck (PyPI)

▾ Abyssalpyservercheck · pyservercheckvia OSV
MAL-2026-15588None
4w ago

Malicious code in tronlinker (PyPI)

Malicious code in tronlinker (PyPI)

▾ Sunlittronlinker · tronlinkervia OSV
CVEs tagged “osv” — page 16 · VulnSea