VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5681 CVEsRSS

RUSTSEC-2026-0260None
1mo ago

`arrayref` 0.3.10 was removed from crates.io due to a malicious dependency

`arrayref` 0.3.10 was removed from crates.io due to a malicious dependency

▾ Sunlitarrayref · arrayrefvia OSV
RUSTSEC-2026-0259None
1mo ago

`arone` was removed from crates.io due to malicious code

`arone` was removed from crates.io due to malicious code

▾ Sunlitarone · aronevia OSV
GHSA-22w5-2fxg-vrwxLow· 2.6
1mo ago

OpenTofu has high CPU usage when using K8S remote state backend or when parsing specifically crafted TLS certificates from untrusted or c…

OpenTofu has high CPU usage when using K8S remote state backend or when parsing specifically crafted TLS certificates from untrusted or compromised servers

▾ Sunlitopentofu · github.com/opentofu/opentofuvia OSV
CVE-2026-54622Medium· 6.5
1mo ago

django CMS: Clipboard copy IDOR discloses unauthorized plugin content

django CMS: Clipboard copy IDOR discloses unauthorized plugin content

▾ Sunlitdjango-cms · django-cmsEPSS 0.41%via OSV
CVE-2026-54624Medium· 6.5
1mo ago

django CMS: Structure endpoint bypasses page-view permission

django CMS: Structure endpoint bypasses page-view permission

▾ Sunlitdjango-cms · django-cmsEPSS 0.41%via OSV
CVE-2026-55468Medium· 4.3
1mo ago

Wagtail: Improper restriction handling on Pages admin API

Wagtail: Improper restriction handling on Pages admin API

▾ Sunlitwagtail · wagtailEPSS 0.34%via OSV
CVE-2026-75526Medium· 4.4
1mo ago

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. From 5.0.8 until 5.0.9, ContentRenderer.render_placeholder in cms/plugin_rendering.py can pass stored, attacker-controlled values…

▾ Sunlitdjango-cms · django-cmsEPSS 0.26%via NVD
CVE-2026-63003Medium· 6.5
1mo ago

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django

django CMS is an easy-to-use and developer-friendly enterprise content management system powered by Django. Prior to 5.0.9, page duplication lacks an object-level authorization check on the source page. In cms/admin/forms.py, DuplicatePa…

▾ Sunlitdjango-cms · django-cmsEPSS 0.41%via NVD
CVE-2026-61663Medium· 4.3
1mo ago

django CMS: Missing authorization in `render_object_structure` discloses non-PageContent placeholder structure to low-privileged staff

django CMS: Missing authorization in `render_object_structure` discloses non-PageContent placeholder structure to low-privileged staff

▾ Sunlitdjango-cms · django-cmsEPSS 0.34%via OSV
GHSA-9w56-46f6-3qhxMedium· 5.5
1mo ago

asteval Sandbox Escape: arbitrary native memory read/write via numpy ctypes in default asteval Interpreter

asteval Sandbox Escape: arbitrary native memory read/write via numpy ctypes in default asteval Interpreter

▾ Sunlitasteval · astevalvia OSV
CVE-2026-76234High· 7.5
1mo ago

libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs

libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs. libcrux-ecdh did not properly check length and clamping during X25519 secret validation (and had a broken clamping ch…

▾ Twilightlibcrux-ecdh · libcrux-ecdhEPSS 0.31%via NVD
MAL-2026-14308None
1mo ago

Malicious code in libasync (PyPI)

Malicious code in libasync (PyPI)

▾ Sunlitlibasync · libasyncvia OSV
MAL-2026-14306None
1mo ago

Malicious code in rc4-secure (PyPI)

Malicious code in rc4-secure (PyPI)

▾ Sunlitrc4-secure · rc4-securevia OSV
CVE-2026-76237High
1mo ago

stigmem-node before 0.9.0a12 contains a broken object level authorization (cross-tenant BOLA) vulnerability in the quarantine review endpoints

stigmem-node before 0.9.0a12 contains a broken object level authorization (cross-tenant BOLA) vulnerability in the quarantine review endpoints. On multi-tenant deployments running the opt-in stigmem-plugin-multi-tenant, the list/count qu…

▾ Twilightstigmem-node · stigmem-nodeEPSS 0.36%via NVD
CVE-2026-76245High
1mo ago

stigmem (pip package stigmem-node) version 0.9.0a1 contains a timestamp-handling mismatch in federation peer-token validation that can cause valid peer tokens to be incorrectly treated as expired

stigmem (pip package stigmem-node) version 0.9.0a1 contains a timestamp-handling mismatch in federation peer-token validation that can cause valid peer tokens to be incorrectly treated as expired. This affects the availability and reliab…

▾ Twilightstigmem-node · stigmem-nodeEPSS 0.24%via NVD
CVE-2026-76236High
1mo ago

stigmem-node before 0.9.0a12 contains a cross-tenant broken object level authorization (BOLA) flaw in the RTBF (right-to-be-forgotten) tombstone mechanism

stigmem-node before 0.9.0a12 contains a cross-tenant broken object level authorization (BOLA) flaw in the RTBF (right-to-be-forgotten) tombstone mechanism. issue_tombstone defaulted the tenant to "default" instead of the caller's tenant,…

▾ Twilightstigmem-node · stigmem-nodeEPSS 0.36%via NVD
CVE-2026-76220High· 8.8
1mo ago

gitpython: GitPython: Arbitrary command execution via crafted kwargs (CVE-2026-76220)

A flaw was found in GitPython. A remote attacker can bypass the `check_unsafe_options` guard by combining a single-character keyword argument with `split_single_char_options=False`. This allows the attacker to supply a crafted dictionary o…

▾ TwilightRed Hat · Red Hat Satellite 6.19 for RHEL 9EPSS 0.91%via CSAF
CVE-2026-76241High
1mo ago

stigmem-node 0.9.0a1 allows plugin signature enforcement to be disabled via a single configuration flag without a second explicit acknowledgment

stigmem-node 0.9.0a1 allows plugin signature enforcement to be disabled via a single configuration flag without a second explicit acknowledgment. If that setting is carried into an environment where plugin directories are writable by les…

▾ Twilightstigmem-node · stigmem-nodeEPSS 0.11%via NVD
CVE-2026-76244Critical
1mo ago

stigmem-node contains an insecure default configuration vulnerability that allows federation traffic to traverse networks without mTLS protection when non-loopback endpoints are enabled

stigmem-node contains an insecure default configuration vulnerability that allows federation traffic to traverse networks without mTLS protection when non-loopback endpoints are enabled. Operators who explicitly disabled mTLS while bindi…

▾ Midnightstigmem-node · stigmem-nodeEPSS 0.27%via NVD
CVE-2026-76221High· 8.8
1mo ago

gitpython: GitPython: Arbitrary code execution via config-name injection (CVE-2026-76221)

A flaw was found in GitPython. This vulnerability allows attackers to inject malicious configuration options by manipulating option names within the option-name validator. By injecting special characters, an attacker can forge arbitrary gi…

▾ TwilightRed Hat · Red Hat Satellite 6.19 for RHEL 9EPSS 0.77%via CSAF
CVE-2026-76222High· 8.2
1mo ago

gitpython: GitPython: Arbitrary file creation via path traversal in .gitmodules submodule names (CVE-2026-76222)

A flaw was found in GitPython where it fails to properly validate submodule names within .gitmodules files. A remote attacker could craft a malicious Git repository containing specially formed submodule names with directory traversal seque…

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.42%via CSAF
CVE-2026-76243Critical
1mo ago

stigmem versions before 0.9.0a2 allow unauthenticated access when authentication is disabled on non-loopback deployments

stigmem versions before 0.9.0a2 allow unauthenticated access when authentication is disabled on non-loopback deployments. Attackers can perform read, write, and federation operations with anonymous identity when nodes are exposed outside…

▾ Midnightstigmem-node · stigmem-nodeEPSS 0.56%via NVD
CVE-2026-76242Critical
1mo ago

stigmem-node 0.9.0a1 accepts federation peer key material during peer registration without a separate administrator out-of-band fingerprint approval step

stigmem-node 0.9.0a1 accepts federation peer key material during peer registration without a separate administrator out-of-band fingerprint approval step. On nodes that accept federation peer registration over a network where initial reg…

▾ Midnightstigmem-node · stigmem-nodeEPSS 0.35%via NVD
CVE-2026-76218High· 7.5
1mo ago

gitpython: GitPython: Remote Code Execution via malicious Git hooks (CVE-2026-76218)

A flaw was found in GitPython. This vulnerability allows a remote attacker to achieve arbitrary code execution. By supplying a specially crafted template parameter to the `Repo.init` function, an attacker can point to a directory containin…

▾ TwilightRed Hat · Red Hat Satellite 6.19 for RHEL 9EPSS 0.83%via CSAF
CVE-2026-76240High
1mo ago

stigmem-node 0.9.0a1 interpolates Postgres backend schema identifiers into SQL strings without defensive quoting

stigmem-node 0.9.0a1 interpolates Postgres backend schema identifiers into SQL strings without defensive quoting. In the affected code path the schema value is operator-controlled, but the unsafe pattern could allow SQL injection if a sc…

▾ Twilightstigmem-node · stigmem-nodeEPSS 0.38%via NVD
CVE-2026-76238High
1mo ago

stigmem versions before 0.9.0a12 contain a broken object level authorization vulnerability in the decay sweep endpoint that allows authenticated attackers with write credentials for one tenant to execute decay operations affecting all te…

stigmem versions before 0.9.0a12 contain a broken object level authorization vulnerability in the decay sweep endpoint that allows authenticated attackers with write credentials for one tenant to execute decay operations affecting all te…

▾ Twilightstigmem-node · stigmem-nodeEPSS 0.36%via NVD
CVE-2026-76239Medium· 6.3
1mo ago

Stigmem before 0.9.0a11 fails to validate the delivery_address parameter when creating webhook subscriptions, allowing authenticated users to specify internal loopback and private network destinations

Stigmem before 0.9.0a11 fails to validate the delivery_address parameter when creating webhook subscriptions, allowing authenticated users to specify internal loopback and private network destinations. Attackers can trigger matching fact…

▾ Sunlitstigmem-node · stigmem-nodeEPSS 0.32%via NVD
CVE-2026-76219High· 8.1
1mo ago

gitpython: GitPython: Arbitrary File Overwrite via `git read-tree` option injection (CVE-2026-76219)

A flaw was found in GitPython. This vulnerability allows an attacker to overwrite arbitrary files on the system. By injecting specific options into the `git read-tree` command through methods like `IndexFile.from_tree`, `IndexFile.reset`, …

▾ TwilightRed Hat · Red Hat Satellite 6.19 for RHEL 9EPSS 0.54%via CSAF
CVE-2026-61711Medium
1mo ago

BuildKit: Custom frontend could bypass Seccomp/AppArmor

BuildKit: Custom frontend could bypass Seccomp/AppArmor

▾ Sunlitmoby · github.com/moby/buildkitEPSS 0.47%via OSV
CVE-2026-61712Low
1mo ago

BuildKit has a possible runtime DoS via unbounded group parsing

BuildKit has a possible runtime DoS via unbounded group parsing

▾ Sunlitmoby · github.com/moby/buildkitEPSS 0.53%via OSV
CVEs tagged “osv” — page 24 · VulnSea