VulnSea

Tagged “pip”

CVEs tagged pip, newest first.

4637 CVEsRSS

MAL-2026-14525None
1mo ago

Malicious code in 0xfighter3 (PyPI)

Malicious code in 0xfighter3 (PyPI)

▾ Sunlit0xfighter3 · 0xfighter3via OSV
MAL-2026-14524None
1mo ago

Malicious code in bigquery-agent-analytics-tracing (PyPI)

Malicious code in bigquery-agent-analytics-tracing (PyPI)

▾ Sunlitbigquery-agent-analytics-tracing · bigquery-agent-analytics-tracingvia OSV
MAL-2026-14523None
1mo ago

Malicious code in rce-test (PyPI)

Malicious code in rce-test (PyPI)

▾ Sunlitrce-test · rce-testvia OSV
MAL-2026-14522None
1mo ago

Malicious code in syntaxerror-package-12345 (PyPI)

Malicious code in syntaxerror-package-12345 (PyPI)

▾ Sunlitsyntaxerror-package-12345 · syntaxerror-package-12345via OSV
CVE-2026-54569Critical· 9.8
1mo ago

senaite.core Vulnerable to Eval Injection and Missing Authorization

senaite.core Vulnerable to Eval Injection and Missing Authorization

▾ Midnightsenaite-core · senaite-coreEPSS 1.2%via OSV
CVE-2026-54590Medium· 5.9
1mo ago

asyncssh has an incomplete fix for CVE-2026-45309 — AuthorizedKeysFile %u still escapes the intended directory via a leading ~ (and weakl…

asyncssh has an incomplete fix for CVE-2026-45309 — AuthorizedKeysFile %u still escapes the intended directory via a leading ~ (and weakly via ${ENV}) username substitution

▾ Sunlitasyncssh · asyncsshEPSS 0.39%via OSV
CVE-2026-54591High· 8.1
1mo ago

asyncssh has SCP Path Traversal to Arbitrary File Write

asyncssh has SCP Path Traversal to Arbitrary File Write

▾ Twilightasyncssh · asyncsshEPSS 0.49%via OSV
CVE-2026-54553Medium· 5.4
1mo ago

Starlette-Admin's unvalidated `order_by` parameter allows ordering by hidden columns (info-exposure oracle) and HTTP 500 DoS

Starlette-Admin's unvalidated `order_by` parameter allows ordering by hidden columns (info-exposure oracle) and HTTP 500 DoS

▾ Sunlitstarlette-admin · starlette-adminEPSS 0.45%via OSV
CVE-2026-54548Low· 3.3
1mo ago

kas Persistently Disables SSH Host Key Checking

kas Persistently Disables SSH Host Key Checking

▾ Sunlitkas · kasEPSS 0.11%via OSV
GHSA-93qj-5q5v-3c2hCritical
1mo ago

Trojanized pantheon-agents 0.6.1 and 0.6.2 on PyPI ship a credential stealer (supply-chain account compromise)

Trojanized pantheon-agents 0.6.1 and 0.6.2 on PyPI ship a credential stealer (supply-chain account compromise)

▾ Midnightpantheon-agents · pantheon-agentsvia GHSA
GHSA-x287-5c68-36wpMedium· 5.3
1mo ago

OpenWISP IPAM has broken object-level authorization: ExportSubnetView lets a member of one organization export another organization's subnet and all its IP addresses

OpenWISP IPAM has broken object-level authorization: ExportSubnetView lets a member of one organization export another organization's subnet and all its IP addresses

▾ Sunlitopenwisp-ipam · openwisp-ipamvia GHSA
CVE-2026-52776High
1mo ago

Compliance-trestle (Trestle) is a tooling platform for managing compliance as code

Compliance-trestle (Trestle) is a tooling platform for managing compliance as code. In versions before 3.12.4 and versions 4.0.0 through 4.0.3, the URLSecurityValidator that guards trestle's remote-fetch paths against server-side request…

▾ Twilightcompliance-trestle · compliance-trestleEPSS 0.44%via NVD
GHSA-6rj2-96f5-chj9High· 6.5
1mo ago

Duplicate Advisory: GitPython: TagReference.create positional reference bypasses kwargs-only --file guard, enabling arbitrary file read (incomplete fix of 3af0c251)

Duplicate Advisory: GitPython: TagReference.create positional reference bypasses kwargs-only --file guard, enabling arbitrary file read (incomplete fix of 3af0c251)

▾ TwilightGitPython · GitPythonvia GHSA
CVE-2026-78679Medium· 6.5
1mo ago

GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard

GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard. Attackers can supply a reference value like --file=<path> to read arb…

▾ SunlitRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.26%via NVD
GHSA-crmc-f4m7-33fjHigh· 8.4
1mo ago

Duplicate Advisory: Arbitrary local file content disclosure via [include] directive in untrusted .gitmodules (SubmoduleConfigParser never disables merge_includes)

Duplicate Advisory: Arbitrary local file content disclosure via [include] directive in untrusted .gitmodules (SubmoduleConfigParser never disables merge_includes)

▾ Twilightgitpython · gitpythonvia GHSA
GHSA-9557-234j-7rv9Critical· 9.8
1mo ago

Duplicate Advisory: Dormant multi-line git-config values are corrupted into live injected directives (e.g. core.hooksPath) on any unrelated GitConfigParser write, enabling RCE

Duplicate Advisory: Dormant multi-line git-config values are corrupted into live injected directives (e.g. core.hooksPath) on any unrelated GitConfigParser write, enabling RCE

▾ MidnightGitPython · GitPythonvia GHSA
GHSA-89ff-m8wv-p99rHigh· 6.5
1mo ago

Duplicate Advisory: GitPython: Incomplete unsafe_git_revision_options denylist omits --contents/-S, enabling arbitrary file read via Repo.blame()

Duplicate Advisory: GitPython: Incomplete unsafe_git_revision_options denylist omits --contents/-S, enabling arbitrary file read via Repo.blame()

▾ Twilightgitpython · gitpythonvia GHSA
GHSA-7r39-6q8m-qw68High· 7.5
1mo ago

Duplicate Advisory: clone_from()/clone() omit --separate-git-dir from unsafe_git_clone_options, enabling arbitrary git-directory creation outside the destination

Duplicate Advisory: clone_from()/clone() omit --separate-git-dir from unsafe_git_clone_options, enabling arbitrary git-directory creation outside the destination

▾ Twilightgitpython · gitpythonvia GHSA
CVE-2026-78678Medium· 6.5
1mo ago

gitpython: GitPython: Arbitrary file read via Repo.blame() (CVE-2026-78678)

A flaw was found in GitPython. An incomplete denylist in the `unsafe_git_revision_options` guard omits `--contents` and `-S` options. This allows an attacker to read arbitrary files by passing these options to the `Repo.blame()` function. …

▾ SunlitRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.41%via CSAF
CVE-2026-78677High· 7.5
1mo ago

GitPython: GitPython: Arbitrary Code Execution via Path Traversal (CVE-2026-78677)

A flaw was found in GitPython. This vulnerability allows a remote attacker to create arbitrary Git directories outside the intended clone destination. By manipulating the `separate_git_dir` parameter during repository cloning, an attacker …

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.65%via CSAF
CVE-2026-78676Critical· 9.8
1mo ago

gitpython: GitPython before 3.1.59 Remote Code Execution via Config Injection (CVE-2026-78676)

GitPython before 3.1.59 fails to safely re-serialize multi-line git-config values during write operations, corrupting dormant quoted values into injected directives like core.hooksPath. Attackers can craft config files with embedded newlin…

▾ MidnightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.78%via CSAF
CVE-2026-65087Medium· 6.1
1mo ago

NVIDIA NemoClaw contains a vulnerability where an attacker could cause

NVIDIA NemoClaw contains a vulnerability where an attacker could cause insufficiently protected credentials . A successful exploit of this vulnerability might lead to information disclosure and data tampering.

▾ Sunlituff · uffEPSS 0.15%via OSV
CVE-2026-79674High· 7.5
1mo ago

nltk: NLTK: Information disclosure via path traversal in corpus-reader constructors (CVE-2026-79674)

A flaw was found in NLTK. A path traversal vulnerability in corpus-reader constructors allows a remote attacker to bypass the intended data root sandbox. By supplying arbitrary corpus root paths to LinThesaurusCorpusReader and PanLexLiteCo…

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.39%via CSAF
CVE-2026-78682High· 7.5
1mo ago

nltk: NLTK: Server-Side Request Forgery via HTTP Proxy Configuration (CVE-2026-78682)

A flaw was found in NLTK. When an HTTP proxy is configured, a server-side request forgery (SSRF) vulnerability exists in the `nltk.pathsec.urlopen` function. An attacker can exploit this by providing a seemingly valid public URL, which the…

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.43%via CSAF
CVE-2026-79675High· 8.1
1mo ago

nltk: NLTK before 3.10.3 JVM Argument Injection via Per-Call Options (CVE-2026-79675)

A flaw was found in NLTK. When processing untrusted input for its `per-call options` parameter in the `java()` function, NLTK fails to validate Java Virtual Machine (JVM) options. A remote attacker could exploit this by injecting dangerous…

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.78%via CSAF
CVE-2026-78680High· 7.8
1mo ago

NLTK versions before 3.10.3 fail to use validated absolute paths when invoking the Graphviz dot binary in dependencygraph.dot2img and AlignedSent._repr_svg_, allowing attackers to execute arbitrary code by placing a malicious dot binary …

NLTK versions before 3.10.3 fail to use validated absolute paths when invoking the Graphviz dot binary in dependencygraph.dot2img and AlignedSent._repr_svg_, allowing attackers to execute arbitrary code by placing a malicious dot binary …

▾ Twilightnltk · nltkEPSS 0.18%via NVD
MAL-2026-14516None
1mo ago

Malicious code in minecraft-ytreceiver (PyPI)

Malicious code in minecraft-ytreceiver (PyPI)

▾ Sunlitminecraft-ytreceiver · minecraft-ytreceivervia OSV
MAL-2026-14488None
1mo ago

Malicious code in python-walletlibr-v (PyPI)

Malicious code in python-walletlibr-v (PyPI)

▾ Sunlitpython-walletlibr-v · python-walletlibr-vvia OSV
CVE-2026-45018Critical· 9.8
1mo ago

Chainlit is a Python framework for building production-ready conversational AI applications

Chainlit is a Python framework for building production-ready conversational AI applications. From 2.4.0rc0 until 2.12.0, Chainlit deployments with features.mcp.enabled set to true in .chainlit/config.toml expose the POST /mcp endpoint wi…

▾ Midnightchainlit · chainlitEPSS 1.1%via NVD
CVE-2026-45019High· 7.2
1mo ago

Chainlit is a Python framework for building production-ready conversational AI applications

Chainlit is a Python framework for building production-ready conversational AI applications. From 2.4.0rc0 until 2.12.0, Chainlit deployments with features.mcp.enabled set to true in .chainlit/config.toml expose the POST /mcp endpoint wi…

▾ Twilightchainlit · chainlitEPSS 0.43%via NVD
CVEs tagged “pip” — page 13 · VulnSea