VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5712 CVEsRSS

CVE-2026-34881Medium· 5.0
6mo ago

OpenStack Glance is affected by Server-Side Request Forgery (SSRF)

OpenStack Glance is affected by Server-Side Request Forgery (SSRF)

▾ Sunlitglance · glanceEPSS 0.44%via OSV
CVE-2025-64340Medium· 6.7
6mo ago

FastMCP has a Command Injection vulnerability - Gemini CLI

FastMCP has a Command Injection vulnerability - Gemini CLI

▾ Sunlitfastmcp · fastmcpEPSS 0.73%via OSV
CVE-2026-34400Medium
6mo ago

alerta-server has potential SQL Injection vulnerability in Query String Syntax (q=) API

alerta-server has potential SQL Injection vulnerability in Query String Syntax (q=) API

▾ Sunlitalerta-server · alerta-serverEPSS 0.59%via OSV
CVE-2026-32727High· 8.1
6mo ago

SciTokens has an Authorization Bypass via Path Traversal in Scope Validation

SciTokens has an Authorization Bypass via Path Traversal in Scope Validation

▾ Twilightscitokens · scitokensEPSS 0.53%via OSV
CVE-2026-27489High
6mo ago

onnx Vulnerable to Path Traversal via Symlink

onnx Vulnerable to Path Traversal via Symlink

▾ Twilightonnx · onnxEPSS 0.62%via OSV
CVE-2026-34070High· 7.5PoC
6mo ago

LangChain is a framework for building agents and LLM-powered applications

LangChain is a framework for building agents and LLM-powered applications. Prior to version 1.2.22, multiple functions in langchain_core.prompts.loading read files from paths embedded in deserialized config dicts without validating again…

▾ Midnightlangchain · langchain_coreEPSS 1.2%via NVD
CVE-2026-33030High· 8.8
6mo ago

nginx-UI has Unencrypted Storage of DNS API Tokens and ACME Private Keys

nginx-UI has Unencrypted Storage of DNS API Tokens and ACME Private Keys

▾ Twilight0xJacky · github.com/0xJacky/nginx-uiEPSS 0.38%via OSV
CVE-2025-15036Critical· 9.6
6mo ago

MLFlow path traversal vulnerability

MLFlow path traversal vulnerability

▾ Midnightmlflow · mlflowEPSS 0.58%via OSV
CVE-2025-15379Critical· 10.0
6mo ago

A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to_env()` function

A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to_env()` function. When deploying a model with `env_manager=LOCAL`, MLflow reads dependen…

▾ Midnightlfprojects · mlflowEPSS 2.4%via NVD
CVE-2026-34231Medium· 6.1
6mo ago

Slippers Vulnerable to Cross-Site Scripting (XSS) in `attrs` Template Tag

Slippers Vulnerable to Cross-Site Scripting (XSS) in `attrs` Template Tag

▾ Sunlitslippers · slippersEPSS 0.34%via OSV
CVE-2026-33641High· 7.8PoC
6mo ago

Glances Vulnerable to Command Injection via Dynamic Configuration Values

Glances Vulnerable to Command Injection via Dynamic Configuration Values

▾ Midnightglances · glancesEPSS 0.78%via OSV
CVE-2026-33533High
6mo ago

Glances Vulnerable to Cross-Origin System Information Disclosure via XML-RPC Server CORS Wildcard

Glances Vulnerable to Cross-Origin System Information Disclosure via XML-RPC Server CORS Wildcard

▾ Twilightglances · glancesEPSS 0.47%via OSV
CVE-2026-27018High
6mo ago

Gotenberg has Chromium deny-list bypass via case-insensitive URL scheme (bypass of GHSA-rh2x-ccvw-q7r3)

Gotenberg has Chromium deny-list bypass via case-insensitive URL scheme (bypass of GHSA-rh2x-ccvw-q7r3)

▾ Twilightgotenberg · github.com/gotenberg/gotenberg/v8EPSS 1.6%via OSV
CVE-2026-32287High· 7.5
6mo ago

XPath: Boolean expression infinite loop leads to denial of service via CPU exhaustion

XPath: Boolean expression infinite loop leads to denial of service via CPU exhaustion

▾ Twilightantchfx · github.com/antchfx/xpathEPSS 0.69%via OSV
GHSA-46wh-3698-f2cxHigh
6mo ago

Traefik: Deny Rule Bypass via Unauthenticated Malicious gRPC Requests in gRPC-Go Dependency (CVE-2026-33186)

Traefik: Deny Rule Bypass via Unauthenticated Malicious gRPC Requests in gRPC-Go Dependency (CVE-2026-33186)

▾ Twilighttraefik · github.com/traefik/traefik/v2via OSV
CVE-2026-0560High· 7.5PoC
6mo ago

A Server-Side Request Forgery (SSRF) vulnerability exists in parisneo/lollms versions prior to 2.2.0, specifically in the `/api/files/exp…

A Server-Side Request Forgery (SSRF) vulnerability exists in parisneo/lollms versions prior to 2.2.0, specifically in the `/api/files/export-content` endpoint. The `_download_image_to_temp()` function in `backend/routers/files.py` fails …

▾ Midnightlollms · lollmsEPSS 1.8%via OSV
CVE-2026-0558Critical· 9.8PoC
6mo ago

A vulnerability in parisneo/lollms, up to and including version 2.2.0, allows unauthenticated users to upload and process files through t…

A vulnerability in parisneo/lollms, up to and including version 2.2.0, allows unauthenticated users to upload and process files through the `/api/files/extract-text` endpoint. This endpoint does not enforce authentication, unlike other f…

▾ Abyssallollms · lollmsEPSS 2.0%via OSV
CVE-2026-32695Medium
6mo ago

Traefik has Knative Ingress Rule Injection that Allows Host Restriction Bypass

Traefik has Knative Ingress Rule Injection that Allows Host Restriction Bypass

▾ Sunlittraefik · github.com/traefik/traefik/v3EPSS 0.53%via OSV
CVE-2026-33748Medium· 6.5
6mo ago

github.com/moby/buildkit: BuildKit: Unauthorized file access via Git URL fragment subdir components (CVE-2026-33748)

A flaw was found in BuildKit. Insufficient validation of Git URL fragment subdirectory components may allow a remote attacker to access files outside the checked-out Git repository root. This access is limited to files on the same mounted …

▾ SunlitRed Hat · Red Hat Openshift Data Foundation 4.22EPSS 0.53%via CSAF
CVE-2026-33747High· 8.2
6mo ago

BuildKit: github.com/moby/buildkit: BuildKit: Arbitrary file write and code execution via untrusted frontend (CVE-2026-33747)

A flaw was found in BuildKit, a toolkit for converting source code to build artifacts. An untrusted BuildKit frontend can be leveraged to craft a malicious API message, allowing files to be written outside of the designated BuildKit state …

▾ TwilightRed Hat · Red Hat Openshift Data Foundation 4.22EPSS 0.58%via CSAF
CVE-2026-34204High· 7.1
6mo ago

MinIO is Vulnerable to SSE Metadata Injection via Replication Headers

MinIO is Vulnerable to SSE Metadata Injection via Replication Headers

▾ Twilightminio · github.com/minio/minioEPSS 0.21%via OSV
CVE-2026-27877Medium· 6.5
6mo ago

Grafana public dashboards disclose all direct mode datasources

Grafana public dashboards disclose all direct mode datasources

▾ Sunlitgrafana · github.com/grafana/grafanaEPSS 0.40%via OSV
CVE-2026-34073Medium· 5.3
6mo ago

cryptography has incomplete DNS name constraint enforcement on peer names

cryptography has incomplete DNS name constraint enforcement on peer names

▾ Sunlitcryptography · cryptographyEPSS 0.17%via OSV
CVE-2026-29071Low· 3.1
6mo ago

Open WebUI's Insecure Direct Object Reference (IDOR) allows access to other users' memories

Open WebUI's Insecure Direct Object Reference (IDOR) allows access to other users' memories

▾ Sunlitopen-webui · open-webuiEPSS 0.27%via OSV
CVE-2026-28786Medium· 4.3
6mo ago

Open WebUI vulnerable to Path Traversal in `POST /api/v1/audio/transcriptions`

Open WebUI vulnerable to Path Traversal in `POST /api/v1/audio/transcriptions`

▾ Sunlitopen-webui · open-webuiEPSS 0.42%via OSV
CVE-2026-33980High· 8.3PoC
6mo ago

Azure Data Explorer MCP Server: KQL Injection in multiple tools allows MCP client to execute arbitrary Kusto queries

Azure Data Explorer MCP Server: KQL Injection in multiple tools allows MCP client to execute arbitrary Kusto queries

▾ Midnightadx-mcp-server · adx-mcp-serverEPSS 0.43%via OSV
CVE-2026-33044Low
6mo ago

Home Assistant has stored XSS in Map-card through malicious device name

Home Assistant has stored XSS in Map-card through malicious device name

▾ Sunlithomeassistant · homeassistantEPSS 0.28%via OSV
CVE-2026-28788High· 7.1
6mo ago

Open WebUI's process_files_batch() endpoint missing ownership check, allows unauthorized file overwrite

Open WebUI's process_files_batch() endpoint missing ownership check, allows unauthorized file overwrite

▾ Twilightopen-webui · open-webuiEPSS 0.38%via OSV
CVE-2025-15381High· 8.1
6mo ago

MLFlow allows Tracing + Assessments Access

MLFlow allows Tracing + Assessments Access

▾ Twilightmlflow · mlflowEPSS 0.33%via OSV
CVE-2026-34172High
6mo ago

Giskard Agents have Server-side template injection via ChatWorkflow.chat() using non-sandboxed Jinja2 Environment

Giskard Agents have Server-side template injection via ChatWorkflow.chat() using non-sandboxed Jinja2 Environment

▾ Twilightgiskard-agents · giskard-agentsEPSS 0.84%via OSV
CVEs tagged “osv” — page 84 · VulnSea