VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5683 CVEsRSS

CVE-2026-41490High· 8.3PoC
5mo ago

Dagster Vulnerable to SQL Injection via Dynamic Partition Keys in Database I/O Manager Integrations

Dagster Vulnerable to SQL Injection via Dynamic Partition Keys in Database I/O Manager Integrations

▾ Midnightdagster-duckdb · dagster-duckdbEPSS 0.45%via OSV
CVE-2026-32228High· 7.5
5mo ago

Apache Airflow allows users with asset materialize permissions to trigger DAGs outside of their permissions

Apache Airflow allows users with asset materialize permissions to trigger DAGs outside of their permissions

▾ Twilightapache-airflow-core · apache-airflow-coreEPSS 0.72%via OSV
CVE-2026-25917High· 7.2
5mo ago

Apache Airflow allows code execution through crafted XCom payloads

Apache Airflow allows code execution through crafted XCom payloads

▾ Twilightapache-airflow-core · apache-airflow-coreEPSS 1.1%via OSV
CVE-2026-40948Medium· 5.4
5mo ago

apache-airflow-providers-keycloak: Missing OAuth 2.0 State and PKCE Enables Login CSRF and Session Fixation

apache-airflow-providers-keycloak: Missing OAuth 2.0 State and PKCE Enables Login CSRF and Session Fixation

▾ Sunlitapache-airflow-providers-keycloak · apache-airflow-providers-keycloakEPSS 0.36%via OSV
CVE-2026-41589Critical· 9.6
5mo ago

Wish has SCP Path Traversal that allows arbitrary file read/write

Wish has SCP Path Traversal that allows arbitrary file read/write

▾ Midnightwish · charm.land/wish/v2EPSS 0.51%via OSV
CVE-2026-41491High· 8.1
5mo ago

Dapr: Service Invocation path traversal ACL bypass

Dapr: Service Invocation path traversal ACL bypass

▾ Twilightdapr · github.com/dapr/daprEPSS 0.49%via OSV
CVE-2026-40525Critical· 9.1
5mo ago

OpenViking: Unauthenticated remote bot control via OpenAPI HTTP routes

OpenViking: Unauthenticated remote bot control via OpenAPI HTTP routes

▾ Midnightopenviking · openvikingEPSS 0.76%via OSV
CVE-2026-41506Medium· 4.7
5mo ago

go-git: Credential leak via cross-host redirect in smart HTTP transport

go-git: Credential leak via cross-host redirect in smart HTTP transport

▾ Sunlitgo-git · github.com/go-git/go-git/v5EPSS 0.26%via OSV
CVE-2026-5052Medium· 5.3
5mo ago

HashiCorp Vault has Server-Side Request Forgery in ACME Challenge Validation via Attacker-Controlled DNS

HashiCorp Vault has Server-Side Request Forgery in ACME Challenge Validation via Attacker-Controlled DNS

▾ Sunlithashicorp · github.com/hashicorp/vaultEPSS 0.39%via OSV
CVE-2026-5807High· 7.5
5mo ago

HashiCorp Vault Vulnerable to Denial-of-Service via Unauthenticated Root Token Generation/Rekey Operations

HashiCorp Vault Vulnerable to Denial-of-Service via Unauthenticated Root Token Generation/Rekey Operations

▾ Twilighthashicorp · github.com/hashicorp/vaultEPSS 0.91%via OSV
CVE-2026-4525High· 7.5
5mo ago

HashiCorp Vault May Expose Tokens to Auth Plugins Due to Incorrect Header Sanitization

HashiCorp Vault May Expose Tokens to Auth Plugins Due to Incorrect Header Sanitization

▾ Twilighthashicorp · github.com/hashicorp/vaultEPSS 0.59%via OSV
CVE-2026-35402Low
5mo ago

Neo4j Labs MCP Servers: SSRF and Data Modification via read_only Mode Bypass Through CALL Procedures

Neo4j Labs MCP Servers: SSRF and Data Modification via read_only Mode Bypass Through CALL Procedures

▾ Sunlitmcp-neo4j-cypher · mcp-neo4j-cypherEPSS 0.39%via OSV
CVE-2026-41496High· 8.1
5mo ago

PraisonAI: SQL Injection via unvalidated `table_prefix` in 9 conversation store backends (incomplete fix for CVE-2026-40315)

PraisonAI: SQL Injection via unvalidated `table_prefix` in 9 conversation store backends (incomplete fix for CVE-2026-40315)

▾ Twilightpraisonai · praisonaiEPSS 0.41%via OSV
CVE-2026-40293High· 7.5
5mo ago

OpenFGA: github.com/openfga/openfga: OpenFGA: Information disclosure of preshared API key via playground endpoint (CVE-2026-40293)

A flaw was found in OpenFGA, an authorization/permission engine. When OpenFGA is configured to use preshared-key authentication and the built-in playground is enabled and accessible beyond localhost or trusted networks, a remote attacker c…

▾ TwilightRed Hat · Multicluster Global Hub 1.7.3EPSS 0.50%via CSAF
CVE-2026-5160Medium· 6.1
5mo ago

goldmark vulnerable to Cross-site Scripting (XSS)

goldmark vulnerable to Cross-site Scripting (XSS)

▾ Sunlityuin · github.com/yuin/goldmark/renderer/htmlEPSS 0.34%via OSV
CVE-2026-41205High· 7.5
5mo ago

Mako: Path traversal via double-slash URI prefix in TemplateLookup

Mako: Path traversal via double-slash URI prefix in TemplateLookup

▾ Twilightmako · makoEPSS 0.53%via OSV
CVE-2026-41425Medium· 5.4
5mo ago

Authlib: Cross-site request forging when using cache

Authlib: Cross-site request forging when using cache

▾ Sunlitauthlib · authlibEPSS 0.14%via OSV
CVE-2026-41481Medium· 6.5
5mo ago

LangChain Text Splitters: HTMLHeaderTextSplitter.split_text_from_url SSRF Redirect Bypass

LangChain Text Splitters: HTMLHeaderTextSplitter.split_text_from_url SSRF Redirect Bypass

▾ Sunlitlangchain-text-splitters · langchain-text-splittersEPSS 0.44%via OSV
CVE-2026-40173Critical· 9.4
5mo ago

Dgraph: Unauthenticated /debug/pprof/cmdline discloses admin auth token, enabling unauthorized access to protected Alpha admin endpoints

Dgraph: Unauthenticated /debug/pprof/cmdline discloses admin auth token, enabling unauthorized access to protected Alpha admin endpoints

▾ Midnightdgraph-io · github.com/dgraph-io/dgraph/v25EPSS 0.60%via OSV
CVE-2026-40611High· 8.8
5mo ago

ACME Lego: Arbitrary File Write via Path Traversal in Webroot HTTP-01 Provider

ACME Lego: Arbitrary File Write via Path Traversal in Webroot HTTP-01 Provider

▾ Twilightgo-acme · github.com/go-acme/lego/v4EPSS 0.55%via OSV
CVE-2026-41068High· 7.7
5mo ago

Kyverno: Cross-Namespace Read Bypasses RBAC Isolation (CVE-2026-22039 Incomplete Fix)

Kyverno: Cross-Namespace Read Bypasses RBAC Isolation (CVE-2026-22039 Incomplete Fix)

▾ Twilightkyverno · github.com/kyverno/kyvernoEPSS 0.37%via OSV
CVE-2026-34244Medium· 5.0
5mo ago

Weblate: SSRF via Project-Level Machinery Configuration

Weblate: SSRF via Project-Level Machinery Configuration

▾ Sunlitweblate · weblateEPSS 0.33%via OSV
CVE-2026-40474High· 7.6
5mo ago

wger has Broken Access Control in Global Gym Configuration Update Endpoint

wger has Broken Access Control in Global Gym Configuration Update Endpoint

▾ Twilightwger · wgerEPSS 0.40%via OSV
CVE-2026-41314Medium· 6.5
5mo ago

pypdf: Manipulated FlateDecode image dimensions can exhaust RAM

pypdf: Manipulated FlateDecode image dimensions can exhaust RAM

▾ Sunlitpypdf · pypdfEPSS 0.41%via OSV
CVE-2026-41206Medium
5mo ago

PySpector has a Plugin Code Execution Bypass via Incomplete Static Analysis in PluginSecurity.validate_plugin_code

PySpector has a Plugin Code Execution Bypass via Incomplete Static Analysis in PluginSecurity.validate_plugin_code

▾ Sunlitpyspector · pyspectorEPSS 0.19%via OSV
CVE-2026-33212Low· 3.1
5mo ago

Weblate: Improper access control for pending tasks in API

Weblate: Improper access control for pending tasks in API

▾ Sunlitweblate · weblateEPSS 0.26%via OSV
CVE-2026-41182Medium· 5.3
5mo ago

LangSmith SDK: Streaming token events bypass output redaction

LangSmith SDK: Streaming token events bypass output redaction

▾ Sunlitlangsmith · langsmithEPSS 0.36%via OSV
CVE-2025-54550High· 8.1
5mo ago

Apache Airflow: RCE by race condition in example_xcom dag

Apache Airflow: RCE by race condition in example_xcom dag

▾ Twilightapache-airflow · apache-airflowEPSS 0.58%via OSV
CVE-2026-31987High· 7.5
5mo ago

Apache Airflow: JWT token appearing in logs

Apache Airflow: JWT token appearing in logs

▾ Twilightapache-airflow · apache-airflowEPSS 0.83%via OSV
CVE-2026-34242High· 7.7
5mo ago

Weblate: Arbitrary File Read via Symlink

Weblate: Arbitrary File Read via Symlink

▾ Twilightweblate · weblateEPSS 0.53%via OSV
CVEs tagged “osv” — page 75 · VulnSea