VulnSea

Tagged “pip”

CVEs tagged pip, newest first.

4637 CVEsRSS

CVE-2025-46571Medium
2mo ago

Open WebUI allows limited stored XSS vila uploaded html file

Open WebUI allows limited stored XSS vila uploaded html file

▾ Sunlitopen-webui · open-webuiEPSS 0.35%via GHSA
CVE-2025-46719High
2mo ago

Open WebUI vulnerable to stored XSS via unescaped markdown token in MarkdownTokens.svelte leading to full account takeover and RCE via functions

Open WebUI vulnerable to stored XSS via unescaped markdown token in MarkdownTokens.svelte leading to full account takeover and RCE via functions

▾ Twilightopen-webui · open-webuiEPSS 0.54%via GHSA
CVE-2026-26192High· 7.3
2mo ago

Open WebUI vulnerable to Stored XSS via iFrame in citations model

Open WebUI vulnerable to Stored XSS via iFrame in citations model

▾ Twilightopen-webui · open-webuiEPSS 0.30%via GHSA
CVE-2026-26193High· 7.3
2mo ago

Open WebUI vulnerable to Stored XSS via iFrame embeds in response messages

Open WebUI vulnerable to Stored XSS via iFrame embeds in response messages

▾ Twilightopen-webui · open-webuiEPSS 0.30%via GHSA
CVE-2026-34225Medium· 4.3
2mo ago

Open WebUI has Blind Server Side Request Forgery in its Image Edit Functionality

Open WebUI has Blind Server Side Request Forgery in its Image Edit Functionality

▾ Sunlitopen-webui · open-webuiEPSS 0.30%via GHSA
CVE-2026-44512Medium· 5.5
2mo ago

ONNX has Null Pointer Dereference in Upsample Version Converter Adapter (Zero Inputs)

ONNX has Null Pointer Dereference in Upsample Version Converter Adapter (Zero Inputs)

▾ Sunlitonnx · onnxEPSS 0.19%via OSV
CVE-2026-54234High· 7.5
2mo ago

vllm: vLLM: Denial of Service via malformed speculative decoding workload (CVE-2026-54234)

A flaw was found in vLLM, a high-throughput and memory-efficient inference and serving engine for Large Language Models (LLMs). A remote attacker can exploit this vulnerability by sending a specially crafted multi-request speculative decod…

▾ TwilightRed Hat · Red Hat AI Inference Server 3.4EPSS 0.62%via CSAF
CVE-2026-55646Medium· 6.5
2mo ago

vLLM is an inference and serving engine for large language models. From 0.22.0 to 0.23.0, the /v1/audio/transcriptions and /v1/audio/tran…

vLLM is an inference and serving engine for large language models. From 0.22.0 to 0.23.0, the /v1/audio/transcriptions and /v1/audio/translations routes call request.file.read() to fully materialize an uploaded audio file into memory bef…

▾ Sunlitvllm · vllmEPSS 0.52%via OSV
CVE-2026-55574High· 7.5
2mo ago

vllm: vLLM: Denial of Service via adversarial regular expression in structured outputs API (CVE-2026-55574)

A flaw was found in vLLM, a high-throughput and memory-efficient inference and serving engine for large language models (LLMs). A remote attacker could exploit this vulnerability by providing a specially crafted regular expression to the s…

▾ TwilightRed Hat · Red Hat AI Inference Server 3.4EPSS 0.58%via CSAF
CVE-2026-55380High· 7.5
2mo ago

python-pillow: Pillow: Denial of Service via crafted GD 2.x image file (CVE-2026-55380)

A flaw was found in Pillow, a Python imaging library. A remote attacker could exploit this vulnerability by providing a specially crafted GD 2.x image file. The GdImageFile._open() function reads image dimensions without proper validation,…

▾ TwilightRed Hat · Red Hat OpenShift AI 3.4EPSS 0.64%via CSAF
CVE-2026-55379High· 7.5
2mo ago

python-pillow: Pillow: Denial of Service via crafted BDF font file (CVE-2026-55379)

A flaw was found in Pillow, a Python imaging library. This vulnerability allows a remote attacker to cause a Denial of Service (DoS) by providing a specially crafted BDF font file. The library's image processing function fails to properly …

▾ TwilightRed Hat · Red Hat OpenShift AI 3.4EPSS 0.65%via CSAF
CVE-2026-54060High· 7.5
2mo ago

python-pillow: Pillow: Denial of Service via excessive memory allocation when processing font files (CVE-2026-54060)

A flaw was found in Pillow, a Python imaging library. When processing a specially crafted font file, the library's font compilation function does not adequately check for excessive memory allocation. This oversight allows a remote attacker…

▾ TwilightRed Hat · Red Hat OpenShift AI 3.4EPSS 0.64%via CSAF
CVE-2026-49297High· 8.1
2mo ago

Apache Airflow's Google provider operators `GCSToSFTPOperator` and `GCSTimeSpanFileTransformOperator` joined GCS object names returned by…

Apache Airflow's Google provider operators `GCSToSFTPOperator` and `GCSTimeSpanFileTransformOperator` joined GCS object names returned by the bucket listing API directly to a destination filesystem path without normalisation or containme…

▾ Twilightapache-airflow-providers-google · apache-airflow-providers-googleEPSS 0.99%via OSV
CVE-2026-24014Critical· 9.8
2mo ago

Apache IoTDB DataNode’s internal RPC interface for creating Trigger instances uses the uploaded Trigger JAR name to build a file path wit…

Apache IoTDB DataNode’s internal RPC interface for creating Trigger instances uses the uploaded Trigger JAR name to build a file path without sufficient validation. If the internal DataNode RPC port is exposed to an untrusted network, an…

▾ Midnightapache-iotdb · apache-iotdbEPSS 0.69%via OSV
CVE-2026-24013Critical· 9.1
2mo ago

Authentication Bypass by Spoofing vulnerability in Apache IoTDB.

Authentication Bypass by Spoofing vulnerability in Apache IoTDB. Certain Thrift RPC query handlers lack strict validation of the sessionId parameter. An attacker can construct requests with a forged sessionId and, without performing open…

▾ Midnightapache-iotdb · apache-iotdbEPSS 0.64%via OSV
CVE-2026-24012High· 7.5
2mo ago

Uncontrolled Resource Consumption vulnerability in Apache IoTDB. 

Uncontrolled Resource Consumption vulnerability in Apache IoTDB.  Some interface fails to impose reasonable limits on the time span and aggregation interval of the query. An attacker can construct a request with extreme parameters (e.g.…

▾ Twilightapache-iotdb · apache-iotdbEPSS 0.74%via OSV
CVE-2026-55615Critical
2mo ago

Langroid: Neo4jChatAgent executes LLM-generated Cypher without validation (prompt-to-Cypher injection; config-conditional RCE), mirroring the SQLChatAgent bug fixed in CVE-2026-25879

Langroid: Neo4jChatAgent executes LLM-generated Cypher without validation (prompt-to-Cypher injection; config-conditional RCE), mirroring the SQLChatAgent bug fixed in CVE-2026-25879

▾ Midnightlangroid · langroidEPSS 0.46%via GHSA
CVE-2026-54760Critical
2mo ago

Langroid: SQLChatAgent dangerous-function blocklist can be bypassed with quoted or schema-qualified pg_read_file calls

Langroid: SQLChatAgent dangerous-function blocklist can be bypassed with quoted or schema-qualified pg_read_file calls

▾ Midnightlangroid · langroidEPSS 0.65%via GHSA
CVE-2026-54769Critical· 10.0
2mo ago

Langroid: Sandbox Escape to Remote Code Execution via Incomplete `eval()` Mitigation in TableChatAgent

Langroid: Sandbox Escape to Remote Code Execution via Incomplete `eval()` Mitigation in TableChatAgent

▾ Midnightlangroid · langroidEPSS 0.91%via GHSA
CVE-2026-54771High· 8.1
2mo ago

Langroid: handle_message() executes user-supplied tool JSON without sender verification

Langroid: handle_message() executes user-supplied tool JSON without sender verification

▾ Twilightlangroid · langroidEPSS 0.39%via GHSA
CVE-2026-55787High· 7.1
2mo ago

flyto-core has SSRF guard bypass via IPv6 transition addresses (IPv4-mapped / 6to4 / NAT64) in validate_url_ssrf

flyto-core has SSRF guard bypass via IPv6 transition addresses (IPv4-mapped / 6to4 / NAT64) in validate_url_ssrf

▾ Twilightflyto-core · flyto-corevia GHSA
CVE-2026-55786High· 8.4
2mo ago

flyto-core has Unauthenticated Command Execution via HTTP MCP `execute_module`

flyto-core has Unauthenticated Command Execution via HTTP MCP `execute_module`

▾ Twilightflyto-core · flyto-corevia GHSA
CVE-2022-46292High· 7.8
2mo ago

Open Babel has out-of-bounds write in MOPAC translationVectors[] (UNIT CELL TRANSLATION)

Open Babel has out-of-bounds write in MOPAC translationVectors[] (UNIT CELL TRANSLATION)

▾ Twilightopenbabel · openbabelEPSS 0.80%via GHSA
MAL-2026-6759None
2mo ago

Malicious code in urlllib321 (PyPI)

Malicious code in urlllib321 (PyPI)

▾ Sunliturlllib321 · urlllib321via OSV
MAL-2026-6758None
2mo ago

Malicious code in httpprobe (PyPI)

Malicious code in httpprobe (PyPI)

▾ Sunlithttpprobe · httpprobevia OSV
MAL-2026-6754None
2mo ago

Malicious code in yt-api-dlp (PyPI)

Malicious code in yt-api-dlp (PyPI)

▾ Sunlityt-api-dlp · yt-api-dlpvia OSV
MAL-2026-6753None
2mo ago

Malicious code in schemavault (PyPI)

Malicious code in schemavault (PyPI)

▾ Sunlitschemavault · schemavaultvia OSV
MAL-2026-6752None
2mo ago

Malicious code in confighub (PyPI)

Malicious code in confighub (PyPI)

▾ Sunlitconfighub · confighubvia OSV
MAL-2026-6751None
2mo ago

Malicious code in bytekit (PyPI)

Malicious code in bytekit (PyPI)

▾ Sunlitbytekit · bytekitvia OSV
MAL-2026-6750None
2mo ago

Malicious code in procwire (PyPI)

Malicious code in procwire (PyPI)

▾ Sunlitprocwire · procwirevia OSV
CVEs tagged “pip” — page 37 · VulnSea