VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5712 CVEsRSS

CVE-2026-63762Medium
7mo ago

SurrealDB vulnerable to Denial of Service through scripting function memory edge case

SurrealDB vulnerable to Denial of Service through scripting function memory edge case

▾ Sunlitsurrealdb · surrealdbEPSS 0.45%via OSV
CVE-2026-26190Critical· 9.8PoC
7mo ago

Milvus: Unauthenticated Access to Restful API on Metrics Port (9091) Leads to Critical System Compromise

Milvus: Unauthenticated Access to Restful API on Metrics Port (9091) Leads to Critical System Compromise

▾ Abyssalmilvus-io · github.com/milvus-io/milvusEPSS 4.0%via OSV
CVE-2026-26013Low· 3.7
7mo ago

LangChain affected by SSRF via image_url token counting in ChatOpenAI.get_num_tokens_from_messages

LangChain affected by SSRF via image_url token counting in ChatOpenAI.get_num_tokens_from_messages

▾ Sunlitlangchain-core · langchain-coreEPSS 0.43%via OSV
CVE-2026-1669High· 7.5
7mo ago

Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras …

Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras …

▾ Twilightkeras · kerasEPSS 0.31%via NVD
CVE-2025-69872Critical· 9.8
7mo ago

DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default

DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write access to the cache directory can achieve arbitrary code execution when a victim application reads from the cache.

▾ Midnightdiskcache · diskcacheEPSS 0.53%via NVD
CVE-2026-25990High· 7.5
7mo ago

Pillow is a Python imaging library

Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, an out-of-bounds write may be triggered when loading a specially crafted PSD image. This vulnerability is fixed in 12.1.1.

▾ Twilightpython · pillowEPSS 0.44%via NVD
CVE-2026-25890High· 8.1PoC
7mo ago

File Browser has a Path-Based Access Control Bypass via Multiple Leading Slashes in URL

File Browser has a Path-Based Access Control Bypass via Multiple Leading Slashes in URL

▾ Midnightfilebrowser · github.com/filebrowser/filebrowser/v2EPSS 0.56%via OSV
CVE-2026-2303Medium· 6.5
7mo ago

mongo-go-driver has Heap Out-of-Bounds Read in GSSAPI Error Handling

mongo-go-driver has Heap Out-of-Bounds Read in GSSAPI Error Handling

▾ Sunlitmongo-driver · go.mongodb.org/mongo-driverEPSS 0.24%via OSV
CVE-2026-25577High· 7.5
7mo ago

Emmett-Core: Unhandled CookieError Exception Causing Denial of Service

Emmett-Core: Unhandled CookieError Exception Causing Denial of Service

▾ Twilightemmett-core · emmett-coreEPSS 0.50%via OSV
CVE-2026-26007Medium· 6.5
7mo ago

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 46.0.5, the public_key_from_numbers (or EllipticCurvePublicNumbers.public_key()), EllipticCurvePublicNumbers.public_key(), l…

▾ Sunlitcryptography.io · cryptographyEPSS 0.35%via NVD
CVE-2025-66630Critical
7mo ago

Fiber has an insecure fallback in utils.UUIDv4() / utils.UUID() — predictable / zero‑UUID on crypto/rand failure

Fiber has an insecure fallback in utils.UUIDv4() / utils.UUID() — predictable / zero‑UUID on crypto/rand failure

▾ Midnightgofiber · github.com/gofiber/fiber/v2EPSS 0.50%via OSV
CVE-2026-25934Medium· 4.3
7mo ago

go-git/go-git: go-git: Data integrity issue due to improper verification of pack and index files (CVE-2026-25934)

A flaw was found in go-git, a library for Git implementation in Go. This vulnerability allows a remote attacker to provide specially crafted Git pack or index files that are not properly verified for data integrity. Successful exploitation…

▾ SunlitRed Hat · Red Hat Openshift Data Foundation 4.22EPSS 0.16%via CSAF
CVE-2026-22922Medium· 6.5
7mo ago

Apache Airflow Has an Authorization Bypass That Allows Unauthorized Task Log Access

Apache Airflow Has an Authorization Bypass That Allows Unauthorized Task Log Access

▾ Sunlitapache-airflow · apache-airflowEPSS 0.39%via OSV
CVE-2026-24098Medium· 6.5
7mo ago

Apache Airflow UI Exposes DAG Import Errors to Unauthorized Authenticated Users

Apache Airflow UI Exposes DAG Import Errors to Unauthorized Authenticated Users

▾ Sunlitapache-airflow · apache-airflowEPSS 0.75%via OSV
CVE-2026-25480Medium· 6.5
7mo ago

Litestar's FileStore key canonicalization collisions allow response cache mixup/poisoning (ASCII ord + Unicode NFKD)

Litestar's FileStore key canonicalization collisions allow response cache mixup/poisoning (ASCII ord + Unicode NFKD)

▾ Sunlitlitestar · litestarEPSS 0.52%via OSV
CVE-2026-25528Medium· 5.8
7mo ago

LangSmith Client SDK Affected by Server-Side Request Forgery via Tracing Header Injection

LangSmith Client SDK Affected by Server-Side Request Forgery via Tracing Header Injection

▾ Sunlitlangsmith · langsmithEPSS 0.33%via OSV
CVE-2026-25905Medium· 5.8
7mo ago

MCP Run Python has a Sandbox Escape & Server Takeover Vulnerability

MCP Run Python has a Sandbox Escape & Server Takeover Vulnerability

▾ Sunlitmcp-run-python · mcp-run-pythonEPSS 0.21%via OSV
CVE-2026-25479Medium· 6.5
7mo ago

Litestar's AllowedHosts has a validation bypass due to unescaped regex metacharacters in configured host patterns

Litestar's AllowedHosts has a validation bypass due to unescaped regex metacharacters in configured host patterns

▾ Sunlitlitestar · litestarEPSS 0.42%via OSV
CVE-2026-25904Medium· 5.8
7mo ago

MCP Run Python Deno Sandbox Misconfiguration Allows SSRF Attacks via Localhost Access

MCP Run Python Deno Sandbox Misconfiguration Allows SSRF Attacks via Localhost Access

▾ Sunlitmcp-run-python · mcp-run-pythonEPSS 0.20%via OSV
CVE-2026-25478High· 7.4
7mo ago

Litestar's CORS origin allowlist has a bypass due to unescaped regex metacharacters in allowed origins

Litestar's CORS origin allowlist has a bypass due to unescaped regex metacharacters in allowed origins

▾ Twilightlitestar · litestarEPSS 0.48%via OSV
CVE-2026-25793High
7mo ago

Blocklist Bypass possible via ECDSA Signature Malleability

Blocklist Bypass possible via ECDSA Signature Malleability

▾ Twilightslackhq · github.com/slackhq/nebulaEPSS 0.17%via OSV
GHSA-4f84-67cv-qrv3Critical
7mo ago

A single post-release of dydx-v4-client contained obfuscated multi-stage loader

A single post-release of dydx-v4-client contained obfuscated multi-stage loader

▾ Midnightdydx-v4-client · dydx-v4-clientvia OSV
CVE-2026-25650High
7mo ago

MCP-Salesforce's arbitrary attribute access leads to disclosure of Salesforce auth token

MCP-Salesforce's arbitrary attribute access leads to disclosure of Salesforce auth token

▾ Twilightmcp-salesforce-connector · mcp-salesforce-connectorEPSS 0.53%via OSV
CVE-2025-68121None
7mo ago

Unexpected session resumption in crypto/tls

Unexpected session resumption in crypto/tls

▾ Sunlitstdlib · stdlibEPSS 0.86%via OSV
CVE-2026-25516Medium· 6.1
7mo ago

NiceGUI's XSS vulnerability in ui.markdown() allows arbitrary JavaScript execution through unsanitized HTML content

NiceGUI's XSS vulnerability in ui.markdown() allows arbitrary JavaScript execution through unsanitized HTML content

▾ Sunlitnicegui · niceguiEPSS 0.29%via OSV
CVE-2026-25198Medium· 4.7
7mo ago

web2py has an Open Redirect Vulnerability

web2py has an Open Redirect Vulnerability

▾ Sunlitweb2py · web2pyEPSS 0.31%via OSV
CVE-2026-1707High· 7.4
7mo ago

pgadmin4 affected by a Restore restriction bypass via key disclosure vulnerability

pgadmin4 affected by a Restore restriction bypass via key disclosure vulnerability

▾ Twilightpgadmin4 · pgadmin4EPSS 0.42%via OSV
CVE-2026-24513Low· 3.1
7mo ago

ingress-nginx has Improper Check for Unusual or Exceptional Conditions

ingress-nginx has Improper Check for Unusual or Exceptional Conditions

▾ Sunlitingress-nginx · k8s.io/ingress-nginxEPSS 0.32%via OSV
CVE-2026-25145Medium· 5.5
7mo ago

melange has a path traversal in license-path which allows reading files outside workspace

melange has a path traversal in license-path which allows reading files outside workspace

▾ Sunlitmelange · chainguard.dev/melangeEPSS 0.18%via OSV
CVE-2026-24514Medium· 6.5PoC
7mo ago

ingress-nginx vulnerable to Allocation of Resources Without Limits or Throttling

ingress-nginx vulnerable to Allocation of Resources Without Limits or Throttling

▾ Twilightingress-nginx · k8s.io/ingress-nginxEPSS 0.49%via OSV
CVEs tagged “osv” — page 92 · VulnSea