Tagged “osv”
CVEs tagged osv, newest first.
5710 CVEsRSS
CVE-2025-67729High· 8.8lmdeploy vulnerable to Arbitrary Code Execution via Insecure Deserialization in torch.load()
lmdeploy vulnerable to Arbitrary Code Execution via Insecure Deserialization in torch.load()
RUSTSEC-2025-0167None`Bitmap::try_from(&[u8])` can create invalid values
`Bitmap::try_from(&[u8])` can create invalid values
CVE-2025-68664Critical· 9.3PoClangchain-core: LangChain: Arbitrary code execution via serialization injection (CVE-2025-68664)
A flaw was found in LangChain, a framework for building agents and LLM-powered applications. A remote attacker can exploit a serialization injection vulnerability in LangChain's `dumps()` and `dumpd()` functions. This occurs because the fu…
CVE-2025-65713MediumHome Assistant Core before is vulnerable to Directory Traversal
Home Assistant Core before is vulnerable to Directory Traversal
CVE-2025-67743Medium· 6.3Local Deep Research is Vulnerable to Server-Side Request Forgery (SSRF) in Download Service
Local Deep Research is Vulnerable to Server-Side Request Forgery (SSRF) in Download Service
CVE-2025-68480Medium· 5.3Marshmallow has DoS in Schema.load(many)
Marshmallow has DoS in Schema.load(many)
CVE-2025-68383Medium· 6.5Filebeat Beats has Buffer Overflow via Malformed Syslog Message or Malicious Tokenizer Pattern in Dissect Configuration
Filebeat Beats has Buffer Overflow via Malformed Syslog Message or Malicious Tokenizer Pattern in Dissect Configuration
CVE-2025-14881Lowpretix has Broken Access Control Allowing Cross-User File Access via UUID
pretix has Broken Access Control Allowing Cross-User File Access via UUID
CVE-2025-14882Lowpretix has Broken Access Control Allowing Cross-User File Access via UUID
pretix has Broken Access Control Allowing Cross-User File Access via UUID
CVE-2025-14546Medium· 6.3FastAPI SSP is vulnerable to Cross-site Request Forgery (CSRF) through improper OAuth parameter validation
FastAPI SSP is vulnerable to Cross-site Request Forgery (CSRF) through improper OAuth parameter validation
CVE-2025-68481Medium· 5.9FastAPI Users Vulnerable to 1-click Account Takeover in Apps Using FastAPI SSO
FastAPI Users Vulnerable to 1-click Account Takeover in Apps Using FastAPI SSO
CVE-2025-68477High· 7.7Langflow vulnerable to Server-Side Request Forgery
Langflow vulnerable to Server-Side Request Forgery
CVE-2025-63389CriticalOllama Platform has missing authentication enabling attackers to perform model management operations
Ollama Platform has missing authentication enabling attackers to perform model management operations
CVE-2025-53000Highnbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows
nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows
CVE-2025-68463Medium· 4.9Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
CVE-2025-68279High· 7.7Weblate has an arbitrary file read via symbolic links
Weblate has an arbitrary file read via symbolic links
CVE-2025-68145Mediummcp-server-git has missing path validation when using --repository flag
mcp-server-git has missing path validation when using --repository flag
CVE-2025-68144Mediummcp-server-git argument injection in git_diff and git_checkout functions allows overwriting local files
mcp-server-git argument injection in git_diff and git_checkout functions allows overwriting local files
CVE-2025-68143Mediummcp-server-git's unrestricted git_init tool allows repository creation at arbitrary filesystem locations
mcp-server-git's unrestricted git_init tool allows repository creation at arbitrary filesystem locations
CVE-2025-68146Medium· 6.3filelock has a TOCTOU race condition which allows symlink attacks during lock file creation
filelock has a TOCTOU race condition which allows symlink attacks during lock file creation
CVE-2025-68142LowPyMdown Extensions has a ReDOS bug in its Figure Capture extension
PyMdown Extensions has a ReDOS bug in its Figure Capture extension
CVE-2025-68113Medium· 6.5ALTCHA Proof-of-Work Vulnerable to Challenge Splicing and Replay
ALTCHA Proof-of-Work Vulnerable to Challenge Splicing and Replay
CVE-2025-64725LowWeblate has improper validation upon invitation acceptance
Weblate has improper validation upon invitation acceptance
CVE-2025-67747HighFickling has missing detection for marshal.loads and types.FunctionType in unsafe modules list
Fickling has missing detection for marshal.loads and types.FunctionType in unsafe modules list
CVE-2025-14542High· 7.5Universal Tool Calling Protocol (UTCP) client library for Python vulnerable to Trust Boundary Violation through Manual JSON specification
Universal Tool Calling Protocol (UTCP) client library for Python vulnerable to Trust Boundary Violation through Manual JSON specification
CVE-2025-66001High· 8.8NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)
NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)
CVE-2025-67726High· 7.5Tornado is a Python web framework and asynchronous networking library. Versions 6.5.2 and below use an inefficient algorithm when parsing…
Tornado is a Python web framework and asynchronous networking library. Versions 6.5.2 and below use an inefficient algorithm when parsing parameters for HTTP header values, potentially causing a DoS. The _parseparam function in httputil.…
CVE-2025-67725High· 7.5Tornado is a Python web framework and asynchronous networking library. In versions 6.5.2 and below, a single maliciously crafted HTTP req…
Tornado is a Python web framework and asynchronous networking library. In versions 6.5.2 and below, a single maliciously crafted HTTP request can block the server's event loop for an extended period, caused by the HTTPHeaders.add method.…
CVE-2025-67724Medium· 5.4tornado: Tornado Header Injection and XSS via reason argument (CVE-2025-67724)
An unescaped input flaw has been discovered in the Tornado networking library. In Tornado, the supplied reason phrase is used unescaped in HTTP headers (where it could be used for header injection) or in HTML in the default error page (whe…
CVE-2025-67644High· 7.3PoCLangGraph's SQLite is vulnerable to SQL injection via metadata filter key in SQLite checkpointer list method
LangGraph's SQLite is vulnerable to SQL injection via metadata filter key in SQLite checkpointer list method