VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5710 CVEsRSS

CVE-2025-61728None
8mo ago

Excessive CPU consumption when building archive index in archive/zip

Excessive CPU consumption when building archive index in archive/zip

▾ Sunlitstdlib · stdlibEPSS 0.75%via OSV
CVE-2026-23892Medium· 5.9
8mo ago

OctoPrint has Timing Side-Channel Vulnerability in API Key Authentication

OctoPrint has Timing Side-Channel Vulnerability in API Key Authentication

▾ Sunlitoctoprint · octoprintEPSS 0.44%via OSV
CVE-2026-1213Medium
8mo ago

askbot inexhaustive permissions check allows any user to modify a different user's profile picture

askbot inexhaustive permissions check allows any user to modify a different user's profile picture

▾ Sunlitaskbot · askbotEPSS 0.36%via OSV
CVE-2026-24779High· 7.1
8mo ago

vLLM is an inference and serving engine for large language models (LLMs)

vLLM is an inference and serving engine for large language models (LLMs). Prior to version 0.14.1, a Server-Side Request Forgery (SSRF) vulnerability exists in the `MediaConnector` class within the vLLM project's multimodal feature set. …

▾ Twilightvllm · vllmEPSS 0.59%via NVD
CVE-2026-24486High· 8.6PoC
8mo ago

Python-Multipart is a streaming multipart parser for Python

Python-Multipart is a streaming multipart parser for Python. Prior to version 0.0.22, a Path Traversal vulnerability exists when using non-default configuration options `UPLOAD_DIR` and `UPLOAD_KEEP_FILENAME=True`. An attacker can write …

▾ Midnightfastapiexpert · python-multipartEPSS 2.2%via NVD
CVE-2026-24408None· 0.0
8mo ago

sigstore CSRF possibility in OIDC authentication during signing

sigstore CSRF possibility in OIDC authentication during signing

▾ Sunlitsigstore · sigstoreEPSS 0.18%via OSV
CVE-2026-24489Medium· 5.3
8mo ago

Gakido vulnerable to HTTP Header Injection (CRLF Injection)

Gakido vulnerable to HTTP Header Injection (CRLF Injection)

▾ Sunlitgakido · gakidoEPSS 0.40%via OSV
CVE-2026-24490High· 8.1
8mo ago

MobSF has Stored XSS via Manifest Analysis - Dialer Code Host Field

MobSF has Stored XSS via Manifest Analysis - Dialer Code Host Field

▾ Twilightmobsf · mobsfEPSS 0.35%via OSV
CVE-2026-24123High· 7.4
8mo ago

BentoML has a Path Traversal via Bentofile Configuration

BentoML has a Path Traversal via Bentofile Configuration

▾ Twilightbentoml · bentomlEPSS 0.50%via OSV
CVE-2025-11687Medium· 6.1
8mo ago

GI-DocGen vulnerable to Reflected XSS via unescaped query strings

GI-DocGen vulnerable to Reflected XSS via unescaped query strings

▾ Sunlitgi-docgen · gi-docgenEPSS 0.38%via OSV
CVE-2026-24688MediumPoC
8mo ago

pypdf has possible Infinite Loop when processing outlines/bookmarks

pypdf has possible Infinite Loop when processing outlines/bookmarks

▾ Twilightpypdf · pypdfEPSS 0.45%via OSV
CVE-2025-11065Medium· 5.3
8mo ago

A flaw was found in github.com/go-viper/mapstructure/v2, in the field processing component using mapstructure.WeakDecode

A flaw was found in github.com/go-viper/mapstructure/v2, in the field processing component using mapstructure.WeakDecode. This vulnerability allows information disclosure through detailed error messages that may leak sensitive input valu…

▾ Sunlitgo-viper · github.com/go-viper/mapstructure/v2EPSS 0.41%via NVD
CVE-2025-66719Critical· 9.1
8mo ago

Free5gc NRF is vulnerable to scope validation bypass via maliciously crafted targetNF value

Free5gc NRF is vulnerable to scope validation bypass via maliciously crafted targetNF value

▾ Midnightfree5gc · github.com/free5gc/nrfEPSS 0.35%via OSV
CVE-2026-0770HighCISA KEV0dayPoC
8mo ago

Langflow affected by Remote Code Execution via validate_code() exec()

Langflow affected by Remote Code Execution via validate_code() exec()

▾ Abyssallangflow · langflowEPSS 64%via OSV
CVE-2026-0994High· 7.5PoC
8mo ago

A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth ac…

A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in Python, where the max_recursion_depth limit can be bypassed when parsing nested google.protobuf.Any messages. Due to missing recursion depth ac…

▾ Midnightgoogle · protobufEPSS 0.72%via NVD
CVE-2026-24117Medium· 5.3
8mo ago

github.com/sigstore/rekor: Rekor Server-Side Request Forgery (SSRF) (CVE-2026-24117)

A Server-Side Request Forgery (SSRF) flaw has been discovered in the Rekor transparency log tool. In versions 1.4.3 and below, attackers can trigger SSRF to arbitrary internal services because /api/v1/index/retrieve supports retrieving a p…

▾ SunlitRed Hat · Red Hat Openshift Data Foundation 4.22EPSS 0.37%via CSAF
CVE-2026-23831Medium· 5.3
8mo ago

github.com/sigstore/rekor: Rekor denial of service (CVE-2026-23831)

Rekor’s cose v0.0.1 entry implementation can panic on attacker-controlled input when canonicalizing a proposed entry with an empty spec.message. validate() returns nil (success) when message is empty, leaving sign1Msg uninitialized, and Ca…

▾ SunlitRed Hat · Red Hat Openshift Data Foundation 4.22EPSS 0.43%via CSAF
CVE-2025-67221HighPoC
8mo ago

orjson does not limit recursion for deeply nested JSON documents

orjson does not limit recursion for deeply nested JSON documents

▾ Midnightorjson · orjsonEPSS 0.64%via OSV
CVE-2026-23991Medium· 5.9
8mo ago

github.com/theupdateframework/go-tuf/v2: go-tuf client DoS via malformed server response (CVE-2026-23991)

A denial of service flaw has been discovered in go-tuf. If the TUF repository (or any of its mirrors) returns invalid TUF metadata JSON (valid JSON but not well formed TUF metadata), the client will panic during parsing, causing a denial o…

▾ SunlitRed Hat · OpenShift PipelinesEPSS 0.59%via CSAF
CVE-2026-63763High
8mo ago

SurrealDB Affected by Confused Deputy Privilege Escalation through Future Fields and Functions

SurrealDB Affected by Confused Deputy Privilege Escalation through Future Fields and Functions

▾ Twilightsurrealdb · surrealdbEPSS 0.50%via OSV
MAL-2026-470None
8mo ago

Malicious code in urlsssser (PyPI)

Malicious code in urlsssser (PyPI)

▾ Sunliturlsssser · urlsssservia OSV
MAL-2026-468None
8mo ago

Malicious code in urlsser (PyPI)

Malicious code in urlsser (PyPI)

▾ Sunliturlsser · urlsservia OSV
CVE-2026-24009High· 8.1PoC
8mo ago

docling-core vulnerable to Remote Code Execution via unsafe PyYAML usage

docling-core vulnerable to Remote Code Execution via unsafe PyYAML usage

▾ Midnightdocling-core · docling-coreEPSS 1.6%via OSV
CVE-2025-71176Medium· 6.8
8mo ago

pytest has vulnerable tmpdir handling

pytest has vulnerable tmpdir handling

▾ Sunlitpytest · pytestEPSS 0.16%via OSV
CVE-2026-24130Low
8mo ago

Moonraker affected by LDAP search filter injection

Moonraker affected by LDAP search filter injection

▾ Sunlitmoonraker · moonrakerEPSS 0.31%via OSV
CVE-2026-1260High· 7.8
8mo ago

Invalid memory access in Sentencepiece versions less than 0.2.1 when using a vulnerable model file, which is not created in the normal training procedure.

Invalid memory access in Sentencepiece versions less than 0.2.1 when using a vulnerable model file, which is not created in the normal training procedure.

▾ Twilightgoogle · sentencepieceEPSS 0.18%via NVD
CVE-2026-24049High· 7.1PoC
8mo ago

wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427

wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after e…

▾ Midnightwheel_project · wheelEPSS 0.36%via NVD
CVE-2026-23990Medium· 5.3
8mo ago

Flux Operator Web UI Impersonation Bypass via Empty OIDC Claims

Flux Operator Web UI Impersonation Bypass via Empty OIDC Claims

▾ Sunlitcontrolplaneio-fluxcd · github.com/controlplaneio-fluxcd/flux-operatorEPSS 0.35%via OSV
CVE-2026-23849Medium· 5.3
8mo ago

File Browser Vulnerable to Username Enumeration via Timing Attack in /api/login

File Browser Vulnerable to Username Enumeration via Timing Attack in /api/login

▾ Sunlitfilebrowser · github.com/filebrowser/filebrowserEPSS 0.49%via OSV
CVE-2026-23968Medium· 5.5
8mo ago

Copier safe template has arbitrary filesystem read access via symlinks when _preserve_symlinks: false

Copier safe template has arbitrary filesystem read access via symlinks when _preserve_symlinks: false

▾ Sunlitcopier · copierEPSS 0.24%via OSV
CVEs tagged “osv” — page 94 · VulnSea