VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5681 CVEsRSS

CVE-2026-53540Low· 3.7
3mo ago

python-multipart: Negative Content-Length in parse_form buffers the entire body in memory

python-multipart: Negative Content-Length in parse_form buffers the entire body in memory

▾ Sunlitpython-multipart · python-multipartEPSS 0.34%via OSV
CVE-2026-53539High· 7.5
3mo ago

python-multipart: Quadratic-time querystring parsing with semicolon separators causes CPU denial of service

python-multipart: Quadratic-time querystring parsing with semicolon separators causes CPU denial of service

▾ Twilightpython-multipart · python-multipartEPSS 0.46%via OSV
GHSA-pw6j-qg29-8w7fMedium· 5.9
3mo ago

Tornado: CurlAsyncHTTPClient leaks per-request credentials on handle reuse

Tornado: CurlAsyncHTTPClient leaks per-request credentials on handle reuse

▾ Sunlittornado · tornadovia OSV
CVE-2026-54282Low· 3.7
3mo ago

Starlette: Unvalidated request path concatenated into authority poisons request.url.hostname

Starlette: Unvalidated request path concatenated into authority poisons request.url.hostname

▾ Sunlitstarlette · starletteEPSS 0.27%via OSV
CVE-2026-54421Medium· 6.8
3mo ago

OpenStack Ironic can return unredacted sensitive information when applying a PATCH to update fields in volume properties

OpenStack Ironic can return unredacted sensitive information when applying a PATCH to update fields in volume properties

▾ Sunlitironic · ironicEPSS 0.47%via OSV
MAL-2026-5768None
3mo ago

Malicious code in bash8 (PyPI)

Malicious code in bash8 (PyPI)

▾ Sunlitbash8 · bash8via OSV
CVE-2026-11624Critical
3mo ago

MCP Toolbox for Databases has an Origin Validation Error

MCP Toolbox for Databases has an Origin Validation Error

▾ Midnightgoogleapis · github.com/googleapis/mcp-toolboxEPSS 0.22%via OSV
RUSTSEC-2026-0180None
3mo ago

Panic decoding a malformed `hstore` value allows denial of service

Panic decoding a malformed `hstore` value allows denial of service

▾ Sunlitpostgres-protocol · postgres-protocolvia OSV
RUSTSEC-2026-0179None
3mo ago

Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service

Unbounded SCRAM iteration count allows a malicious server to cause CPU-exhaustion denial of service

▾ Sunlitpostgres-protocol · postgres-protocolvia OSV
RUSTSEC-2026-0178None
3mo ago

Panic on a `DataRow` with fewer fields than columns allows denial of service

Panic on a `DataRow` with fewer fields than columns allows denial of service

▾ Sunlittokio-postgres · tokio-postgresvia OSV
CVE-2026-3433Medium· 4.3
3mo ago

Mattermost doesn't restrict role_updated websocket event broadcasts to members of the affected team or channel

Mattermost doesn't restrict role_updated websocket event broadcasts to members of the affected team or channel

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.30%via OSV
CVE-2026-6739Medium· 6.7
3mo ago

Mattermost doesn't require system-level permission when patching protected default system roles

Mattermost doesn't require system-level permission when patching protected default system roles

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.46%via OSV
CVE-2026-6689Medium· 4.3
3mo ago

Mattermost doesn't enforce PermissionInviteUser when setting AllowOpenInvite or AllowedDomains during team creation

Mattermost doesn't enforce PermissionInviteUser when setting AllowOpenInvite or AllowedDomains during team creation

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.25%via OSV
CVE-2026-7184Medium· 6.5
3mo ago

Mattermost doesn't sanitize the Remote Cluster API response on PATCH operations

Mattermost doesn't sanitize the Remote Cluster API response on PATCH operations

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.44%via OSV
CVE-2026-6961High· 7.6
3mo ago

Mattermost doesn't sanitize FileInfo.Name received from federated peers during shared channel file sync

Mattermost doesn't sanitize FileInfo.Name received from federated peers during shared channel file sync

▾ Twilightmattermost · github.com/mattermost/mattermost-serverEPSS 0.45%via OSV
CVE-2026-7387High· 8.8
3mo ago

Mattermost doesn't require role-management authorization when setting the scheme_admin flag on group syncable link and patch endpoints

Mattermost doesn't require role-management authorization when setting the scheme_admin flag on group syncable link and patch endpoints

▾ Twilightmattermost · github.com/mattermost/mattermost-serverEPSS 0.42%via OSV
CVE-2026-6046Medium· 5.3
3mo ago

Mattermost doesn't validate that a username returned during bot registration belongs to a bot account

Mattermost doesn't validate that a username returned during bot registration belongs to a bot account

▾ Sunlitmattermost · github.com/mattermost/mattermost-serverEPSS 0.30%via OSV
CVE-2026-45831High· 8.8
3mo ago

ChromaDB's SimpleRBACAuthorizationProvider doesn't check which tenant, database, or collection a permission applies to

ChromaDB's SimpleRBACAuthorizationProvider doesn't check which tenant, database, or collection a permission applies to

▾ Twilightchromadb · chromadbEPSS 0.42%via OSV
CVE-2026-45833CriticalPoC
3mo ago

ChromaDB has a code injection vulnerability

ChromaDB has a code injection vulnerability

▾ Abyssalchromadb · chromadbEPSS 0.63%via OSV
CVE-2026-45830High· 8.8
3mo ago

ChromaDB allows any authenticated users to arbitrarily read, write, update, or delete data in any tenant's collection

ChromaDB allows any authenticated users to arbitrarily read, write, update, or delete data in any tenant's collection

▾ Twilightchromadb · chromadbEPSS 0.50%via OSV
CVE-2026-42306High· 7.2
3mo ago

github.com/docker/docker: github.com/moby/moby: Moby container framework: Host file overwrite via race condition in docker cp mount setup (…

A flaw was found in the Moby container framework. A race condition occurs during the `docker cp` mount setup, which a malicious container can exploit. This vulnerability allows the container to redirect a bind mount target to an arbitrary …

▾ TwilightRed Hat · Red Hat Edge Manager 1.1EPSS 0.10%via CSAF
MAL-2026-5698None
3mo ago

Malicious code in nagios-xi (PyPI)

Malicious code in nagios-xi (PyPI)

▾ Sunlitnagios-xi · nagios-xivia OSV
CVE-2026-12681Medium· 6.8
3mo ago

Go-Attestation: Hash injection into trusted measurement list via unskipped SignatureHeaderSize vendor bytes in parseEfiSignatureList()

Go-Attestation: Hash injection into trusted measurement list via unskipped SignatureHeaderSize vendor bytes in parseEfiSignatureList()

▾ Sunlitgoogle · github.com/google/go-attestationEPSS 0.27%via OSV
CVE-2026-48155Medium
3mo ago

pypdf: Possible large memory usage for large offsets for layout mode text

pypdf: Possible large memory usage for large offsets for layout mode text

▾ Sunlitpypdf · pypdfEPSS 0.18%via OSV
CVE-2026-48156Low· 3.3
3mo ago

pypdf: Possible long runtimes for zero-only width values in cross-reference streamsuntimes for zero-only width values in cross-reference …

pypdf: Possible long runtimes for zero-only width values in cross-reference streamsuntimes for zero-only width values in cross-reference streams

▾ Sunlitpypdf · pypdfEPSS 0.17%via OSV
CVE-2026-49854Low· 3.7
3mo ago

Tornado has out-of-bounds memory access via C extension

Tornado has out-of-bounds memory access via C extension

▾ Sunlittornado · tornadoEPSS 0.42%via OSV
CVE-2026-11816High· 8.1
3mo ago

Keras versions prior to 3.14.0 are vulnerable to a path traversal issue in the archive extraction utilities located in `keras/src/utils/f…

Keras versions prior to 3.14.0 are vulnerable to a path traversal issue in the archive extraction utilities located in `keras/src/utils/file_utils.py`. The functions `filter_safe_tarinfos()` and `filter_safe_zipinfos()` validate archive …

▾ Twilightkeras · kerasEPSS 0.56%via OSV
MAL-2026-5545None
3mo ago

Malicious code in acme-widget-layout-utils (PyPI)

Malicious code in acme-widget-layout-utils (PyPI)

▾ Sunlitacme-widget-layout-utils · acme-widget-layout-utilsvia OSV
CVE-2026-48096Medium· 5.0
3mo ago

OpenFGA has cache-key delimiter injection in shared-iterator and v2 iterator that caches enables intra-store authorization-decision poiso…

OpenFGA has cache-key delimiter injection in shared-iterator and v2 iterator that caches enables intra-store authorization-decision poisoning

▾ Sunlitopenfga · github.com/openfga/openfgaEPSS 0.13%via OSV
RUSTSEC-2026-0175None
3mo ago

`onering` 1.4.1 was removed from crates.io for malicious code

`onering` 1.4.1 was removed from crates.io for malicious code

▾ Sunlitonering · oneringvia OSV
CVEs tagged “osv” — page 51 · VulnSea