VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5710 CVEsRSS

GHSA-89gg-p5r5-q6r4High· 7.6
5mo ago

MONAI: Unsafe functions lead to pickle deserialization rce

MONAI: Unsafe functions lead to pickle deserialization rce

▾ Twilightmonai · monaivia OSV
CVE-2026-22680Medium· 5.3
5mo ago

OpenViking contains a missing authorization vulnerability in the task polling endpoints

OpenViking contains a missing authorization vulnerability in the task polling endpoints

▾ Sunlitopenviking · openvikingEPSS 0.38%via OSV
CVE-2026-1839Medium· 6.5
5mo ago

HuggingFace Transformers allows for arbitrary code execution in the `Trainer` class

HuggingFace Transformers allows for arbitrary code execution in the `Trainer` class

▾ Sunlittransformers · transformersEPSS 0.38%via OSV
CVE-2026-34444Critical· 10.0PoC
5mo ago

Lupa has a Sandbox escape and RCE due to incomplete attribute_filter enforcement in getattr / setattr

Lupa has a Sandbox escape and RCE due to incomplete attribute_filter enforcement in getattr / setattr

▾ Abyssallupa · lupaEPSS 0.80%via OSV
CVE-2026-33816High· 8.3
5mo ago

github.com/jackc/pgx/v5: github.com/jackc/pgx: Memory-safety vulnerability (CVE-2026-33816)

A flaw was found in github.com/jackc/pgx, a PostgreSQL driver for Go. This memory-safety vulnerability could allow an attacker to cause various impacts, such as denial of service (DoS) or potentially arbitrary code execution, by exploiting…

▾ TwilightRed Hat · Red Hat Openshift Data Foundation 4.20EPSS 0.86%via CSAF
CVE-2026-33815High· 8.3
5mo ago

github.com/jackc/pgx/v5: github.com/jackc/pgx: Memory-safety vulnerability (CVE-2026-33815)

A flaw was found in github.com/jackc/pgx. This memory-safety vulnerability could potentially lead to unexpected behavior or system instability.

▾ TwilightRed Hat · Red Hat Openshift Data Foundation 4.20EPSS 0.86%via CSAF
CVE-2026-1114Critical· 9.8
5mo ago

LoLLMs is vulnerable to Improper Access Control through weak secret key

LoLLMs is vulnerable to Improper Access Control through weak secret key

▾ Midnightlollms · lollmsEPSS 0.54%via OSV
CVE-2025-64182High· 7.8
5mo ago

OpenEXR has buffer overflow in PyOpenEXR_old's channels() and channel()

OpenEXR has buffer overflow in PyOpenEXR_old's channels() and channel()

▾ Twilightopenexr · openexrEPSS 0.24%via OSV
CVE-2026-39308High· 7.1
5mo ago

PraisonAI recipe registry publish path traversal allows out-of-root file write

PraisonAI recipe registry publish path traversal allows out-of-root file write

▾ Twilightpraisonai · praisonaiEPSS 0.46%via OSV
CVE-2026-26981Medium· 6.5
5mo ago

OpenEXR has heap-buffer-overflow via signed integer underflow in ImfContextInit.cpp

OpenEXR has heap-buffer-overflow via signed integer underflow in ImfContextInit.cpp

▾ Sunlitopenexr · openexrEPSS 0.50%via OSV
CVE-2026-35492Medium· 6.5PoC
5mo ago

kedro-datasets has a path traversal vulnerability in PartitionedDataset that allows arbitrary file write

kedro-datasets has a path traversal vulnerability in PartitionedDataset that allows arbitrary file write

▾ Twilightkedro-datasets · kedro-datasetsEPSS 0.45%via OSV
CVE-2026-34588High· 8.6
5mo ago

OpenEXR has a signed 32-bit Overflow in PIZ Decoder Leads to OOB Read/Write

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From 3.1.0 to before 3.2.7, 3.3.9, and 3.4.9, internal_exr_undo_piz() advances the working w…

▾ TwilightAcademySoftwareFoundation · openexrEPSS 0.57%via CVEORG
CVE-2025-64183High· 7.5
5mo ago

OpenEXR has use after free in PyObject_StealAttrString

OpenEXR has use after free in PyObject_StealAttrString

▾ Twilightopenexr · openexrEPSS 0.30%via OSV
CVE-2026-39306High· 7.3
5mo ago

PraisonAI recipe registry pull path traversal writes files outside the chosen output directory

PraisonAI recipe registry pull path traversal writes files outside the chosen output directory

▾ Twilightpraisonai · praisonaiEPSS 0.43%via OSV
CVE-2026-39307High· 8.1
5mo ago

PraisonAI Has Arbitrary File Write (Zip Slip) in Templates Extraction

PraisonAI Has Arbitrary File Write (Zip Slip) in Templates Extraction

▾ Twilightpraisonai · praisonaiEPSS 0.46%via OSV
CVE-2025-64181High· 7.5
5mo ago

OpenEXR Makes Use of Uninitialized Memory

OpenEXR Makes Use of Uninitialized Memory

▾ Twilightopenexr · openexrEPSS 0.38%via OSV
CVE-2026-33540High· 7.5
5mo ago

Distribution affected by pull-through cache credential exfiltration via www-authenticate bearer realm

Distribution affected by pull-through cache credential exfiltration via www-authenticate bearer realm

▾ Twilightdistribution · github.com/distribution/distribution/v3EPSS 0.39%via OSV
CVE-2026-34972Medium· 4.2
5mo ago

github.com/openfga/openfga: OpenFGA: Improper policy enforcement via specific BatchCheck calls (CVE-2026-34972)

A flaw was found in OpenFGA, a high-performance authorization engine. Under specific conditions, a user making BatchCheck calls with multiple checks for the same object, relation, and user combination can trigger improper policy enforcemen…

▾ SunlitRed Hat · Multicluster Global HubEPSS 0.27%via CSAF
CVE-2026-35480Medium· 6.2
5mo ago

go-ipld-prime: DAG-CBOR decoder unbounded memory allocation from CBOR headers

go-ipld-prime: DAG-CBOR decoder unbounded memory allocation from CBOR headers

▾ Sunlitipld · github.com/ipld/go-ipld-primeEPSS 0.16%via OSV
CVE-2026-34756Medium· 6.5
5mo ago

vLLM is an inference and serving engine for large language models (LLMs)

vLLM is an inference and serving engine for large language models (LLMs). From 0.1.0 to before 0.19.0, a Denial of Service vulnerability exists in the vLLM OpenAI-compatible API server. Due to the lack of an upper bound validation on the…

▾ Sunlitvllm · vllmEPSS 0.77%via NVD
CVE-2026-34755Medium· 6.5
5mo ago

vLLM is an inference and serving engine for large language models (LLMs)

vLLM is an inference and serving engine for large language models (LLMs). From 0.7.0 to before 0.19.0, the VideoMediaIO.load_base64() method at vllm/multimodal/media/video.py splits video/jpeg data URLs by comma to extract individual JPE…

▾ Sunlitvllm · vllmEPSS 0.84%via NVD
CVE-2026-34986High· 7.5
5mo ago

Go JOSE provides an implementation of the Javascript Object Signing and Encryption set of standards in Go, including support for JSON Web Encryption (JWE), JSON Web Signature (JWS), and JSON Web Token (JWT) standards

Go JOSE provides an implementation of the Javascript Object Signing and Encryption set of standards in Go, including support for JSON Web Encryption (JWE), JSON Web Signature (JWS), and JSON Web Token (JWT) standards. Prior to 4.1.4 and …

▾ Twilightgo-jose_project · go-joseEPSS 0.76%via NVD
CVE-2026-5559Medium· 6.3
5mo ago

PyBlade: SSTI/RCE via Bypassed AST Validation in sandbox.py

PyBlade: SSTI/RCE via Bypassed AST Validation in sandbox.py

▾ Sunlitpyblade · pybladeEPSS 0.41%via OSV
CVE-2026-35463High· 8.8
5mo ago

pyLoad: Improper Neutralization of Special Elements used in an OS Command

pyLoad: Improper Neutralization of Special Elements used in an OS Command

▾ Twilightpyload-ng · pyload-ngEPSS 0.91%via OSV
CVE-2026-30762High· 7.5
5mo ago

LightRAG: Hardcoded JWT Signing Secret Allows Authentication Bypass

LightRAG: Hardcoded JWT Signing Secret Allows Authentication Bypass

▾ Twilightlightrag-hku · lightrag-hkuvia OSV
CVE-2026-40072High· 7.2PoC
5mo ago

web3.py: SSRF via CCIP Read (EIP-3668) OffchainLookup URL handling

web3.py: SSRF via CCIP Read (EIP-3668) OffchainLookup URL handling

▾ Midnightweb3 · web3EPSS 0.31%via OSV
CVE-2026-35187High· 7.7
5mo ago

pyLoad: SSRF in parse_urls API endpoint via unvalidated URL parameter

pyLoad: SSRF in parse_urls API endpoint via unvalidated URL parameter

▾ Twilightpyload-ng · pyload-ngEPSS 0.36%via OSV
CVE-2026-35464High· 7.5
5mo ago

pyLoad: Unprotected storage_folder enables arbitrary file write to Flask session store and code execution (Incomplete fix for CVE-2026-33…

pyLoad: Unprotected storage_folder enables arbitrary file write to Flask session store and code execution (Incomplete fix for CVE-2026-33509)

▾ Twilightpyload-ng · pyload-ngEPSS 0.61%via OSV
CVE-2026-0545Critical· 9.8PoC
6mo ago

In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled

In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled. This vulnerability affects the latest version of the repository. If job e…

▾ Abyssallfprojects · mlflowEPSS 4.4%via NVD
CVE-2026-34543High
6mo ago

OpenEXR: Heap information disclosure in PXR24 decompression via unchecked decompressed size (undo_pxr24_impl)

OpenEXR: Heap information disclosure in PXR24 decompression via unchecked decompressed size (undo_pxr24_impl)

▾ Twilightopenexr · openexrEPSS 0.52%via OSV
CVEs tagged “osv” — page 81 · VulnSea