VulnSea

Tagged “osv”

CVEs tagged osv, newest first.

5710 CVEsRSS

CVE-2025-67729High· 8.8
9mo ago

lmdeploy vulnerable to Arbitrary Code Execution via Insecure Deserialization in torch.load()

lmdeploy vulnerable to Arbitrary Code Execution via Insecure Deserialization in torch.load()

▾ Twilightlmdeploy · lmdeployEPSS 0.60%via OSV
RUSTSEC-2025-0167None
9mo ago

`Bitmap::try_from(&[u8])` can create invalid values

`Bitmap::try_from(&[u8])` can create invalid values

▾ Sunlitbitmaps · bitmapsvia OSV
CVE-2025-68664Critical· 9.3PoC
9mo ago

langchain-core: LangChain: Arbitrary code execution via serialization injection (CVE-2025-68664)

A flaw was found in LangChain, a framework for building agents and LLM-powered applications. A remote attacker can exploit a serialization injection vulnerability in LangChain's `dumps()` and `dumpd()` functions. This occurs because the fu…

▾ AbyssalRed Hat · Red Hat Ansible Automation Platform 2.5EPSS 43%via CSAF
CVE-2025-65713Medium
9mo ago

Home Assistant Core before is vulnerable to Directory Traversal

Home Assistant Core before is vulnerable to Directory Traversal

▾ Sunlithomeassistant · homeassistantEPSS 0.40%via OSV
CVE-2025-67743Medium· 6.3
9mo ago

Local Deep Research is Vulnerable to Server-Side Request Forgery (SSRF) in Download Service

Local Deep Research is Vulnerable to Server-Side Request Forgery (SSRF) in Download Service

▾ Sunlitlocal-deep-research · local-deep-researchEPSS 0.32%via OSV
CVE-2025-68480Medium· 5.3
9mo ago

Marshmallow has DoS in Schema.load(many)

Marshmallow has DoS in Schema.load(many)

▾ Sunlitmarshmallow · marshmallowEPSS 0.30%via OSV
CVE-2025-68383Medium· 6.5
9mo ago

Filebeat Beats has Buffer Overflow via Malformed Syslog Message or Malicious Tokenizer Pattern in Dissect Configuration

Filebeat Beats has Buffer Overflow via Malformed Syslog Message or Malicious Tokenizer Pattern in Dissect Configuration

▾ Sunlitelastic · github.com/elastic/beats/v7EPSS 0.19%via OSV
CVE-2025-14881Low
9mo ago

pretix has Broken Access Control Allowing Cross-User File Access via UUID

pretix has Broken Access Control Allowing Cross-User File Access via UUID

▾ Sunlitpretix · pretixEPSS 0.25%via OSV
CVE-2025-14882Low
9mo ago

pretix has Broken Access Control Allowing Cross-User File Access via UUID

pretix has Broken Access Control Allowing Cross-User File Access via UUID

▾ Sunlitpretix · pretixEPSS 0.25%via OSV
CVE-2025-14546Medium· 6.3
9mo ago

FastAPI SSP is vulnerable to Cross-site Request Forgery (CSRF) through improper OAuth parameter validation

FastAPI SSP is vulnerable to Cross-site Request Forgery (CSRF) through improper OAuth parameter validation

▾ Sunlitfastapi-sso · fastapi-ssoEPSS 0.36%via OSV
CVE-2025-68481Medium· 5.9
9mo ago

FastAPI Users Vulnerable to 1-click Account Takeover in Apps Using FastAPI SSO

FastAPI Users Vulnerable to 1-click Account Takeover in Apps Using FastAPI SSO

▾ Sunlitfastapi-users · fastapi-usersEPSS 0.26%via OSV
CVE-2025-68477High· 7.7
9mo ago

Langflow vulnerable to Server-Side Request Forgery

Langflow vulnerable to Server-Side Request Forgery

▾ Twilightlangflow · langflowEPSS 6.3%via OSV
CVE-2025-63389Critical
9mo ago

Ollama Platform has missing authentication enabling attackers to perform model management operations

Ollama Platform has missing authentication enabling attackers to perform model management operations

▾ Midnightollama · github.com/ollama/ollamaEPSS 0.71%via OSV
CVE-2025-53000High
9mo ago

nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows

nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows

▾ Twilightnbconvert · nbconvertEPSS 0.26%via OSV
CVE-2025-68463Medium· 4.9
9mo ago

Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez

Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez

▾ Sunlitbiopython · biopythonEPSS 0.32%via OSV
CVE-2025-68279High· 7.7
9mo ago

Weblate has an arbitrary file read via symbolic links

Weblate has an arbitrary file read via symbolic links

▾ Twilightweblate · weblateEPSS 0.41%via OSV
CVE-2025-68145Medium
9mo ago

mcp-server-git has missing path validation when using --repository flag

mcp-server-git has missing path validation when using --repository flag

▾ Sunlitmcp-server-git · mcp-server-gitEPSS 7.0%via OSV
CVE-2025-68144Medium
9mo ago

mcp-server-git argument injection in git_diff and git_checkout functions allows overwriting local files

mcp-server-git argument injection in git_diff and git_checkout functions allows overwriting local files

▾ Sunlitmcp-server-git · mcp-server-gitEPSS 7.2%via OSV
CVE-2025-68143Medium
9mo ago

mcp-server-git's unrestricted git_init tool allows repository creation at arbitrary filesystem locations

mcp-server-git's unrestricted git_init tool allows repository creation at arbitrary filesystem locations

▾ Sunlitmcp-server-git · mcp-server-gitEPSS 8.1%via OSV
CVE-2025-68146Medium· 6.3
9mo ago

filelock has a TOCTOU race condition which allows symlink attacks during lock file creation

filelock has a TOCTOU race condition which allows symlink attacks during lock file creation

▾ Sunlitfilelock · filelockEPSS 0.20%via OSV
CVE-2025-68142Low
9mo ago

PyMdown Extensions has a ReDOS bug in its Figure Capture extension

PyMdown Extensions has a ReDOS bug in its Figure Capture extension

▾ Sunlitpymdown-extensions · pymdown-extensionsEPSS 0.48%via OSV
CVE-2025-68113Medium· 6.5
9mo ago

ALTCHA Proof-of-Work Vulnerable to Challenge Splicing and Replay

ALTCHA Proof-of-Work Vulnerable to Challenge Splicing and Replay

▾ Sunlitaltcha-lib · altcha-libEPSS 0.46%via OSV
CVE-2025-64725Low
9mo ago

Weblate has improper validation upon invitation acceptance

Weblate has improper validation upon invitation acceptance

▾ Sunlitweblate · weblateEPSS 0.35%via OSV
CVE-2025-67747High
9mo ago

Fickling has missing detection for marshal.loads and types.FunctionType in unsafe modules list

Fickling has missing detection for marshal.loads and types.FunctionType in unsafe modules list

▾ Twilightfickling · ficklingEPSS 0.28%via OSV
CVE-2025-14542High· 7.5
9mo ago

Universal Tool Calling Protocol (UTCP) client library for Python vulnerable to Trust Boundary Violation through Manual JSON specification

Universal Tool Calling Protocol (UTCP) client library for Python vulnerable to Trust Boundary Violation through Manual JSON specification

▾ Twilightutcp · utcpEPSS 0.26%via OSV
CVE-2025-66001High· 8.8
9mo ago

NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)

NeuVector OpenID Connect is vulnerable to man-in-the-middle (MITM)

▾ Twilightneuvector · github.com/neuvector/neuvectorEPSS 0.37%via OSV
CVE-2025-67726High· 7.5
9mo ago

Tornado is a Python web framework and asynchronous networking library. Versions 6.5.2 and below use an inefficient algorithm when parsing…

Tornado is a Python web framework and asynchronous networking library. Versions 6.5.2 and below use an inefficient algorithm when parsing parameters for HTTP header values, potentially causing a DoS. The _parseparam function in httputil.…

▾ Twilighttornado · tornadoEPSS 0.53%via OSV
CVE-2025-67725High· 7.5
9mo ago

Tornado is a Python web framework and asynchronous networking library. In versions 6.5.2 and below, a single maliciously crafted HTTP req…

Tornado is a Python web framework and asynchronous networking library. In versions 6.5.2 and below, a single maliciously crafted HTTP request can block the server's event loop for an extended period, caused by the HTTPHeaders.add method.…

▾ Twilighttornado · tornadoEPSS 0.56%via OSV
CVE-2025-67724Medium· 5.4
9mo ago

tornado: Tornado Header Injection and XSS via reason argument (CVE-2025-67724)

An unescaped input flaw has been discovered in the Tornado networking library. In Tornado, the supplied reason phrase is used unescaped in HTTP headers (where it could be used for header injection) or in HTML in the default error page (whe…

▾ SunlitRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.24%via CSAF
CVE-2025-67644High· 7.3PoC
9mo ago

LangGraph's SQLite is vulnerable to SQL injection via metadata filter key in SQLite checkpointer list method

LangGraph's SQLite is vulnerable to SQL injection via metadata filter key in SQLite checkpointer list method

▾ Midnightlanggraph-checkpoint-sqlite · langgraph-checkpoint-sqliteEPSS 2.3%via OSV
CVEs tagged “osv” — page 98 · VulnSea