Tagged “osv”
CVEs tagged osv, newest first.
5681 CVEsRSS
CVE-2026-44022Medium· 5.5Docling: Potential Path Traversal via LaTeX \includegraphics and \input Commands
Docling: Potential Path Traversal via LaTeX \includegraphics and \input Commands
CVE-2026-44546Low· 3.7daphne: WebSocket handshake header smuggling through autobahn splitlines() mishandling of non-standard line separators
daphne: WebSocket handshake header smuggling through autobahn splitlines() mishandling of non-standard line separators
CVE-2026-44545Medium· 5.3daphne: Unauthenticated attackers can cause excessive memory consumption by sending arbitrarily large WebSocket messages/frames
daphne: Unauthenticated attackers can cause excessive memory consumption by sending arbitrarily large WebSocket messages/frames
CVE-2026-4035Critical· 9.1MLflow: Environment variable injection in AI Gateway secrets enables server-side credential exfiltration
MLflow: Environment variable injection in AI Gateway secrets enables server-side credential exfiltration
CVE-2026-10692Medium· 4.3Code Index MCP is vulnerable to Uncontrolled Resource Consumption
Code Index MCP is vulnerable to Uncontrolled Resource Consumption
CVE-2026-40898Medium· 5.3quic-go: HTTP/3 QPACK Trailer Expansion Memory Exhaustion
quic-go: HTTP/3 QPACK Trailer Expansion Memory Exhaustion
RUSTSEC-2026-0279High· 8.1Rojo development server vulnerable to DNS rebinding, allowing unauthenticated read/write access and local program execution
Rojo development server vulnerable to DNS rebinding, allowing unauthenticated read/write access and local program execution
CVE-2026-42507Medium· 5.3net/textproto: golang: Golang net/textproto: Misleading error messages via input injection (CVE-2026-42507)
A flaw was found in the net/textproto package in Golang. When functions in this package return errors, they include their input as part of the error message. An attacker could exploit this by injecting misleading content into these error m…
MAL-2026-5171NoneMalicious code in spaysdata (PyPI)
Malicious code in spaysdata (PyPI)
MAL-2026-5170NoneMalicious code in spaysrbdata (PyPI)
Malicious code in spaysrbdata (PyPI)
CVE-2026-42504High· 7.5Quadratic complexity in WordDecoder.DecodeHeader in mime
Decoding a maliciously-crafted MIME header containing many invalid encoded-words can consume excessive CPU.
CVE-2026-47117Critical· 9.8PoCOpenMed vulnerable to remote code injection through privacy-filter model loading path
OpenMed vulnerable to remote code injection through privacy-filter model loading path
CVE-2026-34993High· 7.2aiohttp: AIOHTTP: Arbitrary code execution via untrusted input to CookieJar.load() (CVE-2026-34993)
A flaw was found in AIOHTTP, an asynchronous HTTP client/server framework for asyncio and Python. An attacker could exploit this vulnerability by providing untrusted input to the `CookieJar.load()` function. This could potentially lead to …
RUSTSEC-2026-0155None`exploration` was removed from crates.io for malicious code
`exploration` was removed from crates.io for malicious code
CVE-2026-3198Medium· 6.5MLflow: Any authenticated user can enumerate all gateway secrets, endpoints, and model definitions
MLflow: Any authenticated user can enumerate all gateway secrets, endpoints, and model definitions
CVE-2026-5422Medium· 6.8Jupyter Server vulnerable to Path Traversal via incorrect root directory boundary check in _get_os_path()
Jupyter Server vulnerable to Path Traversal via incorrect root directory boundary check in _get_os_path()
CVE-2026-3514High· 7.5Prefect has an Authentication Middleware Bypass when URL paths are appended with 'health' or 'ready'
Prefect has an Authentication Middleware Bypass when URL paths are appended with 'health' or 'ready'
CVE-2026-10300Low· 3.7SGLang: Reachable Assertion via lora_path in LoRAManager enables remote Denial of Dervice
SGLang: Reachable Assertion via lora_path in LoRAManager enables remote Denial of Dervice
CVE-2026-10566Medium· 5.3FoundationAgents MetaGPT: Deserialization through flawed argument mapping via Message.check_instruct_content()
FoundationAgents MetaGPT: Deserialization through flawed argument mapping via Message.check_instruct_content()
MAL-2026-5160NoneMalicious code in bt-signal-utils (PyPI)
Malicious code in bt-signal-utils (PyPI)
CVE-2026-27145Medium· 6.5PoC(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries
(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings.Split(host, ".") to execute repeatedly on the same input hostname. With a large DNS SA…
CVE-2026-48119High· 7.1Nezha's authenticated agents can forge service-monitor results for other users' services
Nezha's authenticated agents can forge service-monitor results for other users' services
CVE-2026-10224Medium· 5.3hermes-agent has an Uncontrolled Resource Consumption issue
hermes-agent has an Uncontrolled Resource Consumption issue
CVE-2026-10223Medium· 6.3hermes-agent has an Injection issue
hermes-agent has an Injection issue
CVE-2026-10221High· 7.3hermes-agent has an Injection issue
hermes-agent has an Injection issue
CVE-2026-49138Medium· 5.0Nanobot contains a server-side request forgery vulnerability in the web_fetch tool
Nanobot contains a server-side request forgery vulnerability in the web_fetch tool
CVE-2026-44740High· 7.5github.com/go-git/go-billy: Billy: Denial of Service via crafted input due to insufficient validation (CVE-2026-44740)
A flaw was found in Billy, an interface filesystem abstraction for Go. This vulnerability allows a remote attacker to cause a Denial of Service (DoS) by providing crafted or malformed input. The issue arises from insufficient validation an…
CVE-2026-47415High· 8.3praisonai-platform: Issue endpoints accept any issue_id without workspace ownership check, cross-workspace read/update/delete IDOR
praisonai-platform: Issue endpoints accept any issue_id without workspace ownership check, cross-workspace read/update/delete IDOR
CVE-2026-47411Medium· 6.5praisonai-platform: Any workspace member can rewrite workspace name, description, and settings via PATCH /workspaces/{id}
praisonai-platform: Any workspace member can rewrite workspace name, description, and settings via PATCH /workspaces/{id}
CVE-2026-47425Mediumrattler has an entry-point path traversal in noarch:python install (arbitrary file write)
rattler has an entry-point path traversal in noarch:python install (arbitrary file write)