VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5681 CVEsRSS

CVE-2026-67338Medium· 6.1
1mo ago

JupyterLab before 4.5.9 contains a stored cross-site scripting vulnerability in the Extension Manager that fails to validate URI protocols in package metadata URLs

JupyterLab before 4.5.9 contains a stored cross-site scripting vulnerability in the Extension Manager that fails to validate URI protocols in package metadata URLs. Attackers can publish malicious PyPI packages with javascript: URLs in p…

▾ Sunlitjupyterlab · jupyterlabEPSS 0.30%via NVD
CVE-2026-67326High· 7.0
1mo ago

GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config

GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject newlines to create a forged [core] se…

▾ Twilightgitpython_project · gitpythonEPSS 0.25%via NVD
CVE-2026-67325High· 8.8
1mo ago

GitPython before 3.1.51 contains an incomplete command injection blocklist that fails to account for git's long-option prefix abbreviation feature

GitPython before 3.1.51 contains an incomplete command injection blocklist that fails to account for git's long-option prefix abbreviation feature. Attackers can bypass the unsafe options guard by using abbreviated option names like uplo…

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 2.2%via NVD
CVE-2026-67324Critical· 9.8
1mo ago

GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the short form of --upload-pack=<value>) when enforcing its default unsafe-option gate

GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the short form of --upload-pack=<value>) when enforcing its default unsafe-option gate. When an application passes attacker-influenced clone options into Re…

▾ MidnightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.64%via NVD
CVE-2026-67323High· 8.4
1mo ago

GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command injection via options such as --exec/--upload-pack (leading to arbitrary command exe…

GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command injection via options such as --exec/--upload-pack (leading to arbitrary command exe…

▾ TwilightGitPython · GitPythonEPSS 1.3%via NVD
CVE-2026-67322High· 7.5
1mo ago

GitPython before 3.1.52 is vulnerable to environment-variable exfiltration in Repo.clone_from()

GitPython before 3.1.52 is vulnerable to environment-variable exfiltration in Repo.clone_from(). The caller-supplied remote URL is passed through Git.polish_url(), which on non-Cygwin platforms calls os.path.expandvars() on the URL befor…

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.33%via NVD
RUSTSEC-2026-0224High· 7.5
1mo ago

Verification cache poisoning allows forged Nostr events to bypass signature validation

Verification cache poisoning allows forged Nostr events to bypass signature validation

▾ Twilightnostr-relay-pool · nostr-relay-poolvia OSV
MAL-2026-11426None
1mo ago

Malicious code in trtllm-subdir-test (PyPI)

Malicious code in trtllm-subdir-test (PyPI)

▾ Sunlittrtllm-subdir-test · trtllm-subdir-testvia OSV
MAL-2026-11425None
1mo ago

Malicious code in nvtorch-oot-nightly (PyPI)

Malicious code in nvtorch-oot-nightly (PyPI)

▾ Sunlitnvtorch-oot-nightly · nvtorch-oot-nightlyvia OSV
MAL-2026-11424None
2mo ago

Malicious code in telerape (PyPI)

Malicious code in telerape (PyPI)

▾ Sunlittelerape · telerapevia OSV
MAL-2026-11423None
2mo ago

Malicious code in asdk-plugin-legacy (PyPI)

Malicious code in asdk-plugin-legacy (PyPI)

▾ Sunlitasdk-plugin-legacy · asdk-plugin-legacyvia OSV
MAL-2026-11422None
2mo ago

Malicious code in asdk-plugin-alphagen (PyPI)

Malicious code in asdk-plugin-alphagen (PyPI)

▾ Sunlitasdk-plugin-alphagen · asdk-plugin-alphagenvia OSV
MAL-2026-11421None
2mo ago

Malicious code in asdk-plugin-ai-platform (PyPI)

Malicious code in asdk-plugin-ai-platform (PyPI)

▾ Sunlitasdk-plugin-ai-platform · asdk-plugin-ai-platformvia OSV
CVE-2026-54909Medium· 5.3
2mo ago

Pion STUN vulnerable to remote denial of service via panic while parsing a malformed XOR-MAPPED-ADDRESS attribute

Pion STUN vulnerable to remote denial of service via panic while parsing a malformed XOR-MAPPED-ADDRESS attribute

▾ Sunlitpion · github.com/pion/stun/v3EPSS 0.64%via OSV
RUSTSEC-2026-0223None
2mo ago

Preemption and traps during bulk operations enable breaking internal VM state

Preemption and traps during bulk operations enable breaking internal VM state

▾ Sunlitwasmtime · wasmtimevia OSV
RUSTSEC-2026-0222Low· 3.8
2mo ago

Stores can mix up type indices between engines

Stores can mix up type indices between engines

▾ Sunlitwasmtime · wasmtimevia OSV
MAL-2026-11420None
2mo ago

Malicious code in walmart-genai-trace (PyPI)

Malicious code in walmart-genai-trace (PyPI)

▾ Sunlitwalmart-genai-trace · walmart-genai-tracevia OSV
MAL-2026-11419None
2mo ago

Malicious code in cognikit (PyPI)

Malicious code in cognikit (PyPI)

▾ Sunlitcognikit · cognikitvia OSV
MAL-2026-11418None
2mo ago

Malicious code in catalogai (PyPI)

Malicious code in catalogai (PyPI)

▾ Sunlitcatalogai · catalogaivia OSV
MAL-2026-11417None
2mo ago

Malicious code in aiprepkit (PyPI)

Malicious code in aiprepkit (PyPI)

▾ Sunlitaiprepkit · aiprepkitvia OSV
MAL-2026-11416None
2mo ago

Malicious code in ailaunchkit (PyPI)

Malicious code in ailaunchkit (PyPI)

▾ Sunlitailaunchkit · ailaunchkitvia OSV
MAL-2026-11415None
2mo ago

Malicious code in aichannel (PyPI)

Malicious code in aichannel (PyPI)

▾ Sunlitaichannel · aichannelvia OSV
MAL-2026-11414None
2mo ago

Malicious code in aiassistcore (PyPI)

Malicious code in aiassistcore (PyPI)

▾ Sunlitaiassistcore · aiassistcorevia OSV
MAL-2026-11413None
2mo ago

Malicious code in reguestsc (PyPI)

Malicious code in reguestsc (PyPI)

▾ Sunlitreguestsc · reguestscvia OSV
CVE-2026-12074High· 7.5
2mo ago

Natural Language Toolkit (NLTK) has path traversal in FramenetCorpusReader.frame() that allows arbitrary XML file read, bypassing the nlt…

Natural Language Toolkit (NLTK) has path traversal in FramenetCorpusReader.frame() that allows arbitrary XML file read, bypassing the nltk.pathsec sandbox (ENFORCE=True)

▾ Twilightnltk · nltkvia OSV
CVE-2026-12072High· 7.5
2mo ago

Natural Language Toolkit (NLTK): Path Traversal in NKJPCorpusReader leads to Arbitrary File Read and bypasses the nltk.pathsec sandbox (E…

Natural Language Toolkit (NLTK): Path Traversal in NKJPCorpusReader leads to Arbitrary File Read and bypasses the nltk.pathsec sandbox (ENFORCE=True)

▾ Twilightnltk · nltkvia OSV
CVE-2026-12061High· 7.5
2mo ago

Natural Language Toolkit (NLTK): ReDoS in NLTK ReviewsCorpusReader FEATURES regex

Natural Language Toolkit (NLTK): ReDoS in NLTK ReviewsCorpusReader FEATURES regex

▾ Twilightnltk · nltkvia OSV
CVE-2026-12075High· 8.6
2mo ago

Natural Language Toolkit (NLTK): DNS-rebinding SSRF filter bypass in nltk.pathsec.urlopen (nltk.download / nltk.data.load) defeats ENFORC…

Natural Language Toolkit (NLTK): DNS-rebinding SSRF filter bypass in nltk.pathsec.urlopen (nltk.download / nltk.data.load) defeats ENFORCE mode

▾ Twilightnltk · nltkvia OSV
CVE-2026-59881Medium· 5.3
2mo ago

aiohttp: AIOHTTP: Denial of Service via unnegotiated WebSocket compression (CVE-2026-59881)

A flaw was found in AIOHTTP. The WebSocket client in AIOHTTP processes compressed data frames even when the compression mechanism, known as permessage-deflate, has not been properly negotiated. A malicious server can exploit this by sendin…

▾ SunlitRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.52%via CSAF
MAL-2026-11202None
2mo ago

Malicious code in ml-shared (PyPI)

Malicious code in ml-shared (PyPI)

▾ Sunlitml-shared · ml-sharedvia OSV
CVEs tagged “osv” — page 34 · VulnSea