VulnSea

Tagged “pip”

CVEs tagged pip, newest first.

4537 CVEsRSS

CVE-2026-91991Medium· 5.4PoC
6d ago

Tornado before 6.5.8 contains an incomplete fix for cookie attribute injection that allows attackers to inject arbitrary cookie attributes by passing capitalized or legacy keyword arguments to set_cookie

Tornado before 6.5.8 contains an incomplete fix for cookie attribute injection that allows attackers to inject arbitrary cookie attributes by passing capitalized or legacy keyword arguments to set_cookie. Attackers can embed semicolon-de…

Twilighttornadoweb · tornadoEPSS 0.22%via NVD
CVE-2026-57586High· 8.6
6d ago

CodeRAG is a lightweight semantic code search and distillation utility for AI coding agents

CodeRAG is a lightweight semantic code search and distillation utility for AI coding agents. Prior to 1.3.1, the default agent-coderag sync flow in code_rag/entry/cli.py calls sync_dependencies for an indexed path, and code_rag/core/mana…

Twilightnaranor · agent-coderagEPSS 0.15%via NVD
CVE-2026-59971Critical· 10.0
6d ago

MySQL MCP Server is a Model Context Protocol server that enables secure interaction with MySQL databases

MySQL MCP Server is a Model Context Protocol server that enables secure interaction with MySQL databases. Prior to 0.4.2, setting MCP_TRANSPORT=sse causes src/mysql_mcp_server/server.py to construct SseServerTransport without security_se…

Midnightdesigncomputer · mysql_mcp_serverEPSS 0.39%via NVD
CVE-2026-50024Medium· 5.3
6d ago

GitHacker is a tool that restores Git repositories from exposed .git directories

GitHacker is a tool that restores Git repositories from exposed .git directories. In 1.1.7 and earlier, add_head_file_tasks parses an attacker-controlled ref path from .git/HEAD and joins unvalidated path segments onto temp_dst/.git/logs…

SunlitWangYihang · GitHackerEPSS 0.44%via NVD
CVE-2026-53710Critical· 10.0
6d ago

MCP Context Forge is an AI gateway, registry, and proxy for MCP, A2A, REST, and gRPC APIs

MCP Context Forge is an AI gateway, registry, and proxy for MCP, A2A, REST, and gRPC APIs. Prior to 1.0.2, the python_sandbox_server in mcp-servers/python/python_sandbox_server/src/python_sandbox_server/server_fastmcp.py exposes raw geta…

MidnightIBM · mcp-context-forgeEPSS 0.83%via NVD
CVE-2026-55211Critical· 9.8
6d ago

Surfio is a library for reading and writing surface files

Surfio is a library for reading and writing surface files. Prior to 0.0.19, surfio does not correctly validate size fields in IRAP files, leading to a buffer overflow when untrusted files are parsed. The severity assumes surfio is used t…

Midnightequinor · surfioEPSS 0.54%via NVD
CVE-2026-57112High· 8.3PoC
6d ago

PraisonAI is a multi-agent teams system

PraisonAI is a multi-agent teams system. From praisonaiagents 0.6.0 until 1.6.59 and PraisonAI 3.10.0 until 4.6.59, ToolsMCPServer.run_sse() in src/praisonai-agents/praisonaiagents/mcp/mcp_server.py mounts SseServerTransport on the legac…

MidnightMervinPraison · PraisonAIEPSS 0.19%via NVD
CVE-2026-57148Critical· 9.8PoC
6d ago

PraisonAI is a multi-agent teams system

PraisonAI is a multi-agent teams system. Prior to 0.1.6, praisonai_platform/services/auth_service.py falls back to the public dev-secret-change-me HS256 signing key when PLATFORM_JWT_SECRET is unset, while the startup and token-issuance …

AbyssalMervinPraison · PraisonAIEPSS 0.37%via NVD
CVE-2026-57147Critical· 9.8PoC
6d ago

PraisonAI is a multi-agent teams system

PraisonAI is a multi-agent teams system. Prior to 0.1.6, praisonai_platform/services/auth_service.py assigns the public dev-secret-change-me value to JWT_SECRET when PLATFORM_JWT_SECRET is unset, and its production guard does not run whe…

AbyssalMervinPraison · PraisonAIEPSS 0.77%via NVD
CVE-2026-54549High· 8.3PoC
6d ago

Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads

Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads. Prior to version 1.0.115, the upload_ad_image tool in meta_ads_mcp/core/ads.py passes an attacker-controlled image_url to try_multiple_download_m…

Midnightpipeboard-co · meta-ads-mcpEPSS 0.23%via NVD
CVE-2026-54547High· 7.4PoC
6d ago

Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads

Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads. Prior to version 1.0.115, AuthInjectionMiddleware in meta_ads_mcp/core/http_auth_integration.py rejects HTTP MCP requests only when both auth_tok…

Midnightpipeboard-co · meta-ads-mcpEPSS 0.41%via NVD
CVE-2026-54503Medium· 4.3
6d ago

plone.app.textfield provides a zope.schema-style field type called RichText for storing a value with a related MIME type

plone.app.textfield provides a zope.schema-style field type called RichText for storing a value with a related MIME type. Prior to 2.0.2, 3.0.2, and 4.0.1, depending on the release line, RichTextValue.output returns an unsanitized stored…

Sunlitplone · plone.app.textfieldEPSS 0.23%via NVD
CVE-2026-54254Medium· 5.9
6d ago

Cyberdrop-DL is a bulk asynchronous downloader for multiple file hosts

Cyberdrop-DL is a bulk asynchronous downloader for multiple file hosts. From 8.5.0 until 9.14.0, the Pixeldrain crawler uses substring host matching instead of requiring the input host to be an exact member of SUPPORTED_DOMAINS, and then…

SunlitCyberdrop-DL · cyberdrop-dlEPSS 0.32%via NVD
CVE-2026-61667Critical· 9.9
6d ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, DataManagementSystem/Service/FileCatalogHandler.py checkDataset forwards an authenticated caller-controlled data…

MidnightDIRACGrid · DIRACEPSS 0.65%via NVD
CVE-2026-61668High· 8.1
6d ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, WorkloadManagementSystem/Utilities/PilotWrapper.py pilotWrapperScript uses ssl._create_unverified_context to dow…

TwilightDIRACGrid · DIRACEPSS 0.24%via NVD
CVE-2026-53954Medium· 4.3
6d ago

Bugsink is a self-hosted error tracking tool

Bugsink is a self-hosted error tracking tool. Prior to version 2.2.2, Bugsink stores every set of custom tags supplied with an incoming event, allowing a caller with a valid project DSN to submit an unusually large tag set and force exce…

Sunlitbugsink · bugsinkEPSS 0.32%via NVD
CVE-2026-45579Critical· 9.9
6d ago

DIRAC is an interware, meaning a software framework for distributed computing

DIRAC is an interware, meaning a software framework for distributed computing. Prior to versions 8.0.79, 9.0.22, and 9.1.10, the RequestManagementSystem/Service/ReqManagerHandler.py export_getRequestCountersWeb function passes an authent…

MidnightDIRACGrid · DIRACEPSS 0.44%via NVD
CVE-2026-48737Medium· 4.9PoC
6d ago

pyLoad is a free and open-source download manager written in Python

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev101, is_global_address in src/pyload/core/utils/web/check.py relies on Python's global-address classification without examining IPv4 destinations em…

Twilightpyload · pyloadEPSS 0.18%via NVD
CVE-2026-48987Medium· 6.5PoC
6d ago

pyLoad is a free and open-source download manager written in Python

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev101, EventManager in src/pyload/core/managers/event_manager.py appends a Client object to the clients list for each unique uuid submitted to the aut…

Twilightpyload · pyloadEPSS 0.30%via NVD
CVE-2026-55630Low· 0.0
6d ago

Kiwi TCMS is an open source test management system

Kiwi TCMS is an open source test management system. Prior to 16.1, TestCase.extra_link and TestPlan.extra_link accepted unsanitized user input and rendered stored values verbatim, creating an opportunity for cross-site scripting. Officia…

Sunlitkiwitcms · KiwiEPSS 0.32%via NVD
CVE-2026-54724Medium· 6.1
6d ago

Kiwi TCMS is an open source test management system

Kiwi TCMS is an open source test management system. Prior to 16.1, the account confirmation endpoint accepted an unvalidated next parameter, allowing an unauthenticated attacker to create a URL on a trusted Kiwi TCMS hostname that redire…

Sunlitkiwitcms · KiwiEPSS 0.26%via NVD
CVE-2026-46488Critical· 9.1PoC
6d ago

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection. Prior to 0.44.0, motionEye accepts the client-controlled meye_username and meye_password_hash c…

Abyssalmotioneye-project · motioneyeEPSS 0.27%via NVD
CVE-2026-55863Medium· 5.3PoC
6d ago

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection

motionEye (mEye) is an online interface for a piece of software called "motion," which is a video surveillance program with motion detection. Prior to 0.44.0, the ActionHandler.post() method in motioneye/handlers/action.py lacks the Base…

Twilightmotioneye-project · motioneyeEPSS 0.29%via NVD
MAL-2026-16203Critical⚠ Exploited
1w ago

Malicious code in faiss-cpu-avx512 (PyPI)

Malicious code in faiss-cpu-avx512 (PyPI)

Abyssalfaiss-cpu-avx512 · faiss-cpu-avx512via OSV
CVE-2026-73496High· 7.7PoC
1w ago

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira)

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to 0.22.0, the confluence_upload_attachment and confluence_upload_attachments tools pass a client-controlled file_path through src…

Midnightsooperset · mcp-atlassianEPSS 0.33%via NVD
CVE-2026-73497Medium· 6.5
1w ago

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira)

MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). From 0.17.0 until 0.22.0, validate_url_for_ssrf resolves the attacker-controlled X-Atlassian-Jira-Url and X-Atlassian-Confluence-Url hea…

Sunlitsooperset · mcp-atlassianEPSS 0.23%via NVD
CVE-2026-59178Critical· 9.8
1w ago

ESPHome Device Builder Dashboard is a dashboard for the ESPHome home management software

ESPHome Device Builder Dashboard is a dashboard for the ESPHome home management software. Prior to version 1.0.12, the dashboard reads its authentication credentials from `$ESPHOME_USERNAME` and `$ESPHOME_PASSWORD`. Earlier versions, and…

Midnightesphome · device-builderEPSS 0.42%via NVD
CVE-2026-55073Medium· 6.2PoC
1w ago

WeasyPrint helps web developers to create PDF documents

WeasyPrint helps web developers to create PDF documents. Prior to 70.0, server-side applications that configure a restrictive url_fetcher and pass attacker-influenced values to HTML.write_pdf() can have the restriction bypassed through t…

TwilightKozea · WeasyPrintEPSS 0.19%via NVD
CVE-2026-54529Medium· 5.3
1w ago

SQLAdmin is a flexible Admin interface for SQLAlchemy models

SQLAdmin is a flexible Admin interface for SQLAlchemy models. Prior to 0.27.1, ModelView.sort_query in sqladmin/models.py accepts the attacker-controlled sortBy list-view query parameter without enforcing the configured column_sortable_l…

Sunlitsmithyhq · sqladminEPSS 0.38%via NVD
CVE-2026-55244Medium· 5.0PoC
1w ago

ASTEVAL is an evaluator of Python expressions and statements

ASTEVAL is an evaluator of Python expressions and statements. Prior to 1.0.9, FROM_PY in asteval/astutils.py exposes BaseException, SystemExit, KeyboardInterrupt, and GeneratorExit to expressions evaluated by asteval.Interpreter.eval(), …

Twilightlmfit · astevalEPSS 0.19%via NVD
CVEs tagged “pip” — page 3 · VulnSea