Tagged “pip”
CVEs tagged pip, newest first.
4637 CVEsRSS
CVE-2026-48775Medium· 6.8LangGraph Checkpoint: Unsafe JSON deserialization in checkpoint loading
LangGraph Checkpoint: Unsafe JSON deserialization in checkpoint loading
CVE-2026-48776Medium· 4.2LangGraph SDK has unsafe URL path construction
LangGraph SDK has unsafe URL path construction
CVE-2026-9291High· 7.1amazon-braket-sdk vulnerable to Insecure Deserialization via pickle.loads()
amazon-braket-sdk vulnerable to Insecure Deserialization via pickle.loads()
CVE-2026-50221Medium· 5.4OpenStack Swift vulnerable to authenticated server-side request forgery
OpenStack Swift vulnerable to authenticated server-side request forgery
GHSA-g7vj-qw6x-g3p8Critical· 9.8Duplicate Advisory: PickleScan has multiple stdlib modules with direct RCE not in blocklist
Duplicate Advisory: PickleScan has multiple stdlib modules with direct RCE not in blocklist
GHSA-q8qp-8jq6-78mcHigh· 8.1Duplicate Advisory: Picklescan missing detection when calling pytorch function torch.jit.unsupported_tensor_ops.execWrapper
Duplicate Advisory: Picklescan missing detection when calling pytorch function torch.jit.unsupported_tensor_ops.execWrapper
GHSA-gq8p-2329-gh3xHigh· 8.1Duplicate Advisory: Picklescan has a missing detection when calling built-in python idlelib.autocomplete.AutoComplete.fetch_completions
Duplicate Advisory: Picklescan has a missing detection when calling built-in python idlelib.autocomplete.AutoComplete.fetch_completions
GHSA-x36p-c636-788xHigh· 8.1Duplicate Advisory: Picklescan is vulnerable to RCE through missing detection when calling numpy.f2py.crackfortran.myeval
Duplicate Advisory: Picklescan is vulnerable to RCE through missing detection when calling numpy.f2py.crackfortran.myeval
GHSA-mg57-j93w-g3c7High· 8.1Duplicate Advisory: Picklescan has a missing detection when calling built-in python profile.Profile.runctx
Duplicate Advisory: Picklescan has a missing detection when calling built-in python profile.Profile.runctx
CVE-2026-56695Medium· 6.5OpenHarness remote resume commands expose other users' saved session snapshots
OpenHarness remote resume commands expose other users' saved session snapshots
CVE-2026-56696Medium· 5.4OpenHarness remote project-context commands allow persistent prompt poisoning
OpenHarness remote project-context commands allow persistent prompt poisoning
MAL-2026-6327NoneMalicious code in security-alerts-sdk (PyPI)
Malicious code in security-alerts-sdk (PyPI)
CVE-2026-9073Medium· 6.2A flaw was found in foreman-mcp-server
A flaw was found in foreman-mcp-server. This component utilizes two distinct logging mechanisms that can expose sensitive session and authentication data. One mechanism logs session identifiers, which are treated as authentication creden…
CVE-2026-53925High· 7.8Glances has arbitrary file write and command execution via `secure_popen` redirection and chaining operators in AMP command configuration
Glances has arbitrary file write and command execution via `secure_popen` redirection and chaining operators in AMP command configuration
CVE-2026-54134HighOctoPrint has possible file exfiltration via query parameters on upload endpoints
OctoPrint has possible file exfiltration via query parameters on upload endpoints
CVE-2026-55488HighmotionEye's Absolute Path Traversal in Media File Handlers Allows Arbitrary File Read
motionEye's Absolute Path Traversal in Media File Handlers Allows Arbitrary File Read
GHSA-qxvg-h7q2-hcxhCritical· 9.8motionEye: LFI → pass‑the‑hash admin → unsafe restore → unauth action exec (RCE)
motionEye: LFI → pass‑the‑hash admin → unsafe restore → unauth action exec (RCE)
GHSA-phv5-334h-mxcwCriticalmotionEye Partial Authentication Bypass: Unauthenticated Admin Credential Theft via Path Traversal
motionEye Partial Authentication Bypass: Unauthenticated Admin Credential Theft via Path Traversal
GHSA-w2j7-f3c6-g8cwMedium· 4.7Flask-Security has an Open Redirect issue
Flask-Security has an Open Redirect issue
CVE-2026-56104High· 7.4Chainlit contains a session hijacking vulnerability
Chainlit contains a session hijacking vulnerability
CVE-2025-66336High· 8.1Apache Doris MCP Server is vulnerable to SQL Injection via metadata query path
Apache Doris MCP Server is vulnerable to SQL Injection via metadata query path
CVE-2026-12479Medium· 6.1Keras: DiskIOStore permits path traversal through crafted layer names
Keras: DiskIOStore permits path traversal through crafted layer names
CVE-2026-47155Medium· 6.5vllm: vLLM: Supply-chain integrity issue due to inconsistent revision pinning controls (CVE-2026-47155)
A flaw was found in vLLM, an inference and serving engine for large language models (LLMs). The revision pinning controls in vLLM do not consistently apply to all artifacts loaded for a model. This allows a deployment configured with speci…
CVE-2026-54276Medium· 6.1AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, DigestAuthMiddleware can send an authentication response after following a cross-origin redirect. This likely requires an open redirect vuln…
CVE-2026-54280High· 7.5⚖ disputedAIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, payload resources are not closed correctly when a client disconnects in the middle of a write. If a payload is using an open file or similar…
CVE-2026-54283High· 7.5starlette: Starlette: request.form() limits silently ignored for application/x-www-form-urlencoded enable DoS (CVE-2026-54283)
A flaw was found in Starlette where the request.form() method silently ignores configured resource limits (max_fields and max_part_size) when parsing application/x-www-form-urlencoded data. An unauthenticated attacker can exploit this by s…
CVE-2026-54293High· 7.5PoCNLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Language Processing
NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Language Processing. Prior to 3.10.0-rc1, nltk.data.load() in NLTK is vulnerable to path tr…
CVE-2026-41523High· 7.5vllm: vLLM: Arbitrary code execution via malicious HuggingFace model (CVE-2026-41523)
A flaw was found in vLLM, an inference and serving engine for large language models (LLMs). An unauthenticated attacker can exploit an assert-based security check during activation function loading. By publishing a malicious HuggingFace mo…
CVE-2026-48746Critical· 9.1PoCvLLM is an inference and serving engine for large language models (LLMs)
vLLM is an inference and serving engine for large language models (LLMs). From 0.3.0 until 0.22.0, a vulnerability in ASGI web servers and starlette's trust on those web servers enables an authentication bypass of the OpenAI API Authenti…
CVE-2024-37155Medium· 6.5OpenCTI May Bypass Introspection Restriction
OpenCTI May Bypass Introspection Restriction