VulnSea

Tagged “pip”

CVEs tagged pip, newest first.

4637 CVEsRSS

MAL-2026-11516None
1mo ago

Malicious code in coldcard-helpers (PyPI)

Malicious code in coldcard-helpers (PyPI)

▾ Sunlitcoldcard-helpers · coldcard-helpersvia OSV
CVE-2026-47763Medium
1mo ago

pdm is a Python package and dependency manager supporting the latest PEP standards

pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes several project-local state or configuration files without symlink protection. If a malicious repository places t…

▾ Sunlitpdm · pdmEPSS 0.20%via NVD
CVE-2026-47764High
1mo ago

pdm is a Python package and dependency manager supporting the latest PEP standards

pdm is a Python package and dependency manager supporting the latest PEP standards. Versions prior to 2.27.0 are vulnerable to path traversal through write_to_fs. InstallDestination.write_to_fs() in src/pdm/installers/installers.py overr…

▾ Twilightpdm · pdmEPSS 0.20%via NVD
CVE-2026-47781High
1mo ago

PDM is a Python package and dependency manager

PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during initialization, allowing an attacker-controlled file in an untrust…

▾ Twilightpdm · pdmEPSS 0.19%via NVD
CVE-2026-73621Medium· 5.4
1mo ago

GitPython: Arbitrary file truncation via git rev-list --output argument injection in unguarded Commit.count

GitPython: Arbitrary file truncation via git rev-list --output argument injection in unguarded Commit.count

▾ Sunlitgitpython · gitpythonEPSS 0.36%via OSV
CVE-2026-73619Medium· 6.5
1mo ago

GitPython: Incomplete unsafe_git_archive_options denylist omits --add-file / --add-virtual-file, enabling arbitrary file read via Repo.ar…

GitPython: Incomplete unsafe_git_archive_options denylist omits --add-file / --add-virtual-file, enabling arbitrary file read via Repo.archive()

▾ Sunlitgitpython · gitpythonEPSS 0.41%via OSV
MAL-2026-11503None
1mo ago

Malicious code in instalogin1234 (PyPI)

Malicious code in instalogin1234 (PyPI)

▾ Sunlitinstalogin1234 · instalogin1234via OSV
CVE-2026-69097High· 7.0
1mo ago

GitPython before 3.1.53 fails to properly escape section names in git config files, allowing attackers to inject arbitrary configuration directives through malicious submodule names

GitPython before 3.1.53 fails to properly escape section names in git config files, allowing attackers to inject arbitrary configuration directives through malicious submodule names. Attackers can inject core.sshCommand or other dangerou…

▾ Twilightgitpython_project · gitpythonEPSS 0.27%via NVD
CVE-2026-69243High· 7.0PoC
1mo ago

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.2, the HTTP parsers were vulnerable to a request smuggling attack relating to WebSocket upgrades. If using the server-side component, an attack…

▾ MidnightRed Hat · Red Hat OpenShift AI 2.25EPSS 0.44%via NVD
CVE-2026-69244High· 7.5
1mo ago

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.3, an out-of-bounds heap read could occur in the C response parser while building an error message for a malformed response. An attacker contro…

▾ TwilightRed Hat · Red Hat OpenShift AI 2.25EPSS 0.53%via NVD
CVE-2026-69247Medium· 5.9
1mo ago

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.0.0, pkcs7_decrypt_der, pkcs7_decrypt_pem, and pkcs7_decrypt_smime reported the outcome of decrypting a Recipien…

▾ SunlitRed Hat · Red Hat Enterprise Linux 10EPSS 0.27%via NVD
CVE-2026-69249High· 7.5
1mo ago

python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers

python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. In versions 42.0.0 through 48.0.0, when resolving invalid certificate chains that include duplicate copies of self-signed cert…

▾ TwilightRed Hat · Red Hat Enterprise Linux AppStream (v. 10)EPSS 0.25%via NVD
CVE-2026-69248High· 7.4
1mo ago

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. In versions 45.0.0 through 48.0.0, if an intermediate constrained CA permits the DNS name foo.example.com, and the leaf certificate h…

▾ TwilightRed Hat · Red Hat Enterprise Linux AppStream (v. 10)EPSS 0.31%via NVD
GHSA-3f7w-8rr8-f37fHigh· 8.1
1mo ago

GitPython: Unguarded git option forwarding in IndexFile.checkout() and TagReference.create() enables arbitrary file overwrite and arbitrary file read

GitPython: Unguarded git option forwarding in IndexFile.checkout() and TagReference.create() enables arbitrary file overwrite and arbitrary file read

▾ TwilightGitPython · GitPythonvia GHSA
GHSA-539m-9xh6-q6rrMedium· 6.5
1mo ago

GitPython: Incomplete unsafe_git_archive_options denylist omits --add-file / --add-virtual-file, enabling arbitrary file read via Repo.archive()

GitPython: Incomplete unsafe_git_archive_options denylist omits --add-file / --add-virtual-file, enabling arbitrary file read via Repo.archive()

▾ SunlitGitPython · GitPythonvia GHSA
GHSA-p538-c434-8v24Medium· 5.4
1mo ago

GitPython: Arbitrary file truncation via git rev-list --output argument injection in unguarded Commit.count

GitPython: Arbitrary file truncation via git rev-list --output argument injection in unguarded Commit.count

▾ SunlitGitPython · GitPythonvia GHSA
CVE-2026-47211High
1mo ago

Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to constrain behavior

Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to constrain behavior. In versions prior to 0.39.0, if a user clones a malicious repository and runs Ouroboros commands …

▾ Twilightouroboros-ai · ouroboros-aiEPSS 0.19%via NVD
CVE-2026-48061Medium· 5.9
1mo ago

Litestar is an Asynchronous Server Gateway Interface (ASGI) framework

Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. In versions prior to 2.22.0, an attacker can bypass the allowed hosts validation by omitting the Host header and supplying an X-Forwarded-Host header set to a whiteli…

▾ Sunlitlitestar · litestarEPSS 0.38%via NVD
MAL-2026-11429None
1mo ago

Malicious code in trongriden (PyPI)

Malicious code in trongriden (PyPI)

▾ Sunlittrongriden · trongridenvia OSV
MAL-2026-11428None
1mo ago

Malicious code in wacve-utils (PyPI)

Malicious code in wacve-utils (PyPI)

▾ Sunlitwacve-utils · wacve-utilsvia OSV
CVE-2026-9856High· 7.1
1mo ago

A vulnerability in huggingface/transformers versions <=5.8.0.dev0 allows an attacker to perform arbitrary file writes via path traversal

A vulnerability in huggingface/transformers versions <=5.8.0.dev0 allows an attacker to perform arbitrary file writes via path traversal. The issue resides in the `save_pretrained()` methods of `PreTrainedTokenizerBase` and `ProcessorMix…

▾ Twilighttransformers · transformersEPSS 0.46%via NVD
GHSA-6r2r-ww24-7h52High· 8.8
1mo ago

Duplicate Advisory: GitPython: Command Injection via git long-option prefix abbreviation bypass of CVE-2026-42215 blocklist

Duplicate Advisory: GitPython: Command Injection via git long-option prefix abbreviation bypass of CVE-2026-42215 blocklist

▾ Twilightgitpython · gitpythonvia GHSA
GHSA-m4f3-g4cq-hqrxHigh· 7.5
1mo ago

Duplicate Advisory: GitPython: Environment-variable exfiltration via os.path.expandvars() on Repo.clone_from() URL

Duplicate Advisory: GitPython: Environment-variable exfiltration via os.path.expandvars() on Repo.clone_from() URL

▾ Twilightgitpython · gitpythonvia GHSA
GHSA-cw2r-r7mw-j3hcCritical· 9.8
1mo ago

Duplicate Advisory: GitPython unsafe clone option gate bypass through joined short options

Duplicate Advisory: GitPython unsafe clone option gate bypass through joined short options

▾ Midnightgitpython · gitpythonvia GHSA
GHSA-4vpg-pfj8-m33qHigh· 8.4
1mo ago

Duplicate Advisory: GitPython: command injection via unguarded Git options in `Repo.archive()`, `git.ls_remote()`, and arbitrary file overwrite via `Repo.iter_commits()` / `Repo.blame()`

Duplicate Advisory: GitPython: command injection via unguarded Git options in `Repo.archive()`, `git.ls_remote()`, and arbitrary file overwrite via `Repo.iter_commits()` / `Repo.blame()`

▾ Twilightgitpython · gitpythonvia GHSA
CVE-2026-67338Medium· 6.1
1mo ago

JupyterLab before 4.5.9 contains a stored cross-site scripting vulnerability in the Extension Manager that fails to validate URI protocols in package metadata URLs

JupyterLab before 4.5.9 contains a stored cross-site scripting vulnerability in the Extension Manager that fails to validate URI protocols in package metadata URLs. Attackers can publish malicious PyPI packages with javascript: URLs in p…

▾ Sunlitjupyterlab · jupyterlabEPSS 0.30%via NVD
CVE-2026-67326High· 7.0
1mo ago

GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config

GitPython before 3.1.50 fails to validate newline characters in the section parameter of config_writer(), allowing attackers to inject arbitrary section headers into .git/config. Attackers can inject newlines to create a forged [core] se…

▾ Twilightgitpython_project · gitpythonEPSS 0.25%via NVD
CVE-2026-67325High· 8.8
1mo ago

GitPython before 3.1.51 contains an incomplete command injection blocklist that fails to account for git's long-option prefix abbreviation feature

GitPython before 3.1.51 contains an incomplete command injection blocklist that fails to account for git's long-option prefix abbreviation feature. Attackers can bypass the unsafe options guard by using abbreviated option names like uplo…

▾ TwilightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 2.2%via NVD
CVE-2026-67324Critical· 9.8
1mo ago

GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the short form of --upload-pack=<value>) when enforcing its default unsafe-option gate

GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the short form of --upload-pack=<value>) when enforcing its default unsafe-option gate. When an application passes attacker-influenced clone options into Re…

▾ MidnightRed Hat · Red Hat OpenShift AI (RHOAI)EPSS 0.64%via NVD
CVE-2026-67323High· 8.4
1mo ago

GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command injection via options such as --exec/--upload-pack (leading to arbitrary command exe…

GitPython before 3.1.51 fails to guard against dangerous Git options passed as keyword arguments in Repo.archive() and git.ls_remote(), allowing command injection via options such as --exec/--upload-pack (leading to arbitrary command exe…

▾ TwilightGitPython · GitPythonEPSS 1.3%via NVD
CVEs tagged “pip” — page 25 · VulnSea