VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5681 CVEsRSS

CVE-2026-10812Low· 3.6
3mo ago

GPTCache: File and image cache keys collide because BufferedReader.peek() only reads the buffered prefix

GPTCache: File and image cache keys collide because BufferedReader.peek() only reads the buffered prefix

▾ Sunlitgptcache · gptcacheEPSS 0.07%via OSV
CVE-2026-10804Low· 3.6
3mo ago

Streamlit @st.cache_data hash collision via fixed sampling seed and PIL P-mode palette omission

Streamlit @st.cache_data hash collision via fixed sampling seed and PIL P-mode palette omission

▾ Sunlitstreamlit · streamlitEPSS 0.08%via OSV
CVE-2026-50266Low· 2.2
3mo ago

OpenStack Neutron: Neutron port RBAC policy bypass allows project managers to set trusted device owners on shared networks

OpenStack Neutron: Neutron port RBAC policy bypass allows project managers to set trusted device owners on shared networks

▾ Sunlitneutron · neutronEPSS 0.38%via OSV
CVE-2026-44393High· 7.4
3mo ago

OpenStack oslo.messaging does not verify RabbitMQ broker hostname during TLS handshake

OpenStack oslo.messaging does not verify RabbitMQ broker hostname during TLS handshake

▾ Twilightoslo-messaging · oslo-messagingEPSS 0.28%via OSV
CVE-2026-10803Low· 2.5
3mo ago

mlflow: MLflow: Use of weak hash in Dataset Digest Computation (CVE-2026-10803)

A flaw was found in MLflow. This vulnerability stems from the use of a weak hash algorithm within the Dataset Digest Computation component. A local attacker could potentially exploit this weakness, which may impact the integrity or authent…

▾ SunlitRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.10%via CSAF
CVE-2026-10813Low· 3.6
3mo ago

LMCache: 16-bit multimodal hash collision can poison KV cache entries

LMCache: 16-bit multimodal hash collision can poison KV cache entries

▾ Sunlitlmcache · lmcacheEPSS 0.07%via OSV
CVE-2026-10801Low· 3.6
3mo ago

ms-swift: Image Cache Hash Collision via Missing Dimension Metadata

ms-swift: Image Cache Hash Collision via Missing Dimension Metadata

▾ Sunlitms-swift · ms-swiftEPSS 0.07%via OSV
CVE-2026-46447Medium· 5.8
3mo ago

OpenStack Ironic allows Boot Script Injection

OpenStack Ironic allows Boot Script Injection

▾ Sunlitironic · ironicEPSS 0.43%via OSV
CVE-2026-48681Medium· 5.9
3mo ago

OpenStack Ironic allows file overwrite via directory traversal during deployment with a crafted ISO image

OpenStack Ironic allows file overwrite via directory traversal during deployment with a crafted ISO image

▾ Sunlitironic · ironicEPSS 0.85%via OSV
CVE-2026-41283Critical· 9.9
3mo ago

OpenStack Mistral allows Arbitrary Remote Code Execution when the API is exposed

OpenStack Mistral allows Arbitrary Remote Code Execution when the API is exposed

▾ Midnightmistral · mistralEPSS 0.92%via OSV
CVE-2026-10783Low· 2.5
3mo ago

Gradio: Audio cache key ignores metadata when saving numpy audio outputs

Gradio: Audio cache key ignores metadata when saving numpy audio outputs

▾ Sunlitgradio · gradioEPSS 0.11%via OSV
CVE-2026-47706Medium· 5.3
3mo ago

Strawberry GraphQL has a Circular Fragment Reference DOS

Strawberry GraphQL has a Circular Fragment Reference DOS

▾ Sunlitstrawberry-graphql · strawberry-graphqlEPSS 0.43%via OSV
CVE-2026-47707Medium· 5.3
3mo ago

Strawberry GraphQL's Bypass of MaxAliasesLimiter via Fragment Spreads leading to GraphQL Alias Amplification

Strawberry GraphQL's Bypass of MaxAliasesLimiter via Fragment Spreads leading to GraphQL Alias Amplification

▾ Sunlitstrawberry-graphql · strawberry-graphqlEPSS 0.69%via OSV
CVE-2026-10722Low· 3.3
3mo ago

ebpf-go is vulnerable to integer overflow via LoadCollectionSpecFromReader

ebpf-go is vulnerable to integer overflow via LoadCollectionSpecFromReader

▾ Sunlitcilium · github.com/cilium/ebpfEPSS 0.18%via OSV
CVE-2026-35193Low· 3.1
3mo ago

Django: UpdateCacheMiddleware may disclose private cached responses by omitting Authorization from Vary

Django: UpdateCacheMiddleware may disclose private cached responses by omitting Authorization from Vary

▾ Sunlitdjango · djangoEPSS 0.43%via OSV
CVE-2026-6873Low· 3.1
3mo ago

Django: signed cookies are vulnerable to salt namespace collisions

Django: signed cookies are vulnerable to salt namespace collisions

▾ Sunlitdjango · djangoEPSS 0.28%via OSV
CVE-2026-48587Low· 3.1
3mo ago

Django: has_vary_header may expose cached responses when Vary values contain whitespace

Django: has_vary_header may expose cached responses when Vary values contain whitespace

▾ Sunlitdjango · djangoEPSS 0.43%via OSV
CVE-2026-8404Low· 3.1
3mo ago

Django: UpdateCacheMiddleware may disclose cached responses due to case-sensitive Cache-Control handling

Django: UpdateCacheMiddleware may disclose cached responses due to case-sensitive Cache-Control handling

▾ Sunlitdjango · djangoEPSS 0.43%via OSV
CVE-2026-37462High· 7.3
3mo ago

GoBGP: Integer underflow in the BGPUpdate.DecodeFromBytes function

GoBGP: Integer underflow in the BGPUpdate.DecodeFromBytes function

▾ Twilightosrg · github.com/osrg/gobgp/v4EPSS 0.49%via OSV
MAL-2026-5173None
3mo ago

Malicious code in spadata (PyPI)

Malicious code in spadata (PyPI)

▾ Sunlitspadata · spadatavia OSV
CVE-2026-44020High· 7.5
3mo ago

Docling: Unsafe XML Entity Expansion in USPTO Patent Backend

Docling: Unsafe XML Entity Expansion in USPTO Patent Backend

▾ Twilightdocling · doclingEPSS 0.60%via OSV
CVE-2026-10766Low· 3.6
3mo ago

mlrun: DataFrame hash collisions can cause dataset artifact path conflicts and silent data corruption

mlrun: DataFrame hash collisions can cause dataset artifact path conflicts and silent data corruption

▾ Sunlitmlrun · mlrunEPSS 0.07%via OSV
CVE-2026-44018Medium· 5.5
3mo ago

Docling: Unsafe Archive Extraction and XML Parsing in METS-GBS Backend

Docling: Unsafe Archive Extraction and XML Parsing in METS-GBS Backend

▾ Sunlitdocling · doclingEPSS 0.16%via OSV
CVE-2026-44016High· 8.2
3mo ago

Docling: Unsafe Playwright-based HTML Rendering

Docling: Unsafe Playwright-based HTML Rendering

▾ Twilightdocling · doclingEPSS 0.59%via OSV
CVE-2026-7666Low· 3.1
3mo ago

Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake

Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake

▾ Sunlitdjango · djangoEPSS 0.21%via OSV
CVE-2026-44023High· 8.6
3mo ago

Docling Core: Unsafe remote filename resolution

Docling Core: Unsafe remote filename resolution

▾ Twilightdocling-core · docling-coreEPSS 0.43%via OSV
CVE-2026-44019High· 8.1
3mo ago

Docling Core: Insufficient validation of image reference URIs

Docling Core: Insufficient validation of image reference URIs

▾ Twilightdocling-core · docling-coreEPSS 0.42%via OSV
CVE-2026-47265Medium
3mo ago

AIOHTTP is vulnerable to cross-origin redirect with per-request cookies

AIOHTTP is vulnerable to cross-origin redirect with per-request cookies

▾ Sunlitaiohttp · aiohttpEPSS 0.21%via OSV
CVE-2026-5241High· 7.7
3mo ago

python-transformers: python-transformers: Arbitrary code execution due to overridden trust_remote_code setting (CVE-2026-5241)

A flaw was found in python-transformers. An attacker can exploit this vulnerability by providing a malicious model repository. During model initialization, the `trust_remote_code` parameter, intended to prevent remote code execution, is ov…

▾ TwilightRed Hat · Red Hat AI Inference Server 3.4EPSS 0.94%via CSAF
CVE-2026-44017High· 7.5
3mo ago

Docling: Unsafe Zip Extraction in EasyOCR Model Download

Docling: Unsafe Zip Extraction in EasyOCR Model Download

▾ Twilightdocling · doclingEPSS 0.71%via OSV
CVEs tagged “osv” — page 55 · VulnSea