VulnSea

Tagged “pip”

CVEs tagged pip, newest first.

4637 CVEsRSS

CVE-2026-58501Medium· 5.9
3mo ago

Zeep: Server-Side Request Forgery (SSRF)

Zeep: Server-Side Request Forgery (SSRF)

▾ Sunlitzeep · zeepEPSS 0.41%via OSV
CVE-2026-59152High· 7.7
3mo ago

LangSmith SDK TracingMiddleware: Arbitrary server-side file read

LangSmith SDK TracingMiddleware: Arbitrary server-side file read

▾ Twilightlangsmith · langsmithEPSS 0.20%via OSV
CVE-2026-58266Medium· 6.5
3mo ago

Anki: User scripts in iframes have access to the internal Anki API

Anki: User scripts in iframes have access to the internal Anki API

▾ Sunlitaqt · aqtEPSS 0.22%via OSV
CVE-2026-59153High
3mo ago

Anki's local HTTP server does not sufficiently validate requests

Anki's local HTTP server does not sufficiently validate requests

▾ Twilightaqt · aqtEPSS 0.26%via OSV
CVE-2026-58203Medium· 5.3
3mo ago

pydantic-settings: NestedSecretsSettingsSource follows symlinks outside secrets_dir, enabling local file read and bypassing secrets_dir_m…

pydantic-settings: NestedSecretsSettingsSource follows symlinks outside secrets_dir, enabling local file read and bypassing secrets_dir_max_size

▾ Sunlitpydantic-settings · pydantic-settingsEPSS 0.18%via OSV
GHSA-fwh2-95jw-g4j6High· 8.8
3mo ago

Duplicate Advisory: PraisonAI has Memory State Leakage and Path Traversal in MultiAgent Context Handling

Duplicate Advisory: PraisonAI has Memory State Leakage and Path Traversal in MultiAgent Context Handling

▾ Twilightpraisonai · praisonaivia GHSA
GHSA-x44p-gg67-52fcMedium· 5.5
3mo ago

Duplicate Advisory: PraisonAI: Coarse-Grained Tool Approval Cache Bypasses Per-Invocation Consent for Shell Commands

Duplicate Advisory: PraisonAI: Coarse-Grained Tool Approval Cache Bypasses Per-Invocation Consent for Shell Commands

▾ Sunlitpraisonai · praisonaivia GHSA
CVE-2026-12530High· 7.3
3mo ago

Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()

Improper neutralization of argument delimiters in AWS Bedrock AgentCore Python SDK install_packages()

▾ Twilightbedrock-agentcore · bedrock-agentcoreEPSS 0.34%via GHSA
GHSA-wg5p-8h9p-3mr7High· 8.6
3mo ago

agent-coderag: Gradle Wrapper Execution During Dependency Discovery Enables Arbitrary Code Execution

agent-coderag: Gradle Wrapper Execution During Dependency Discovery Enables Arbitrary Code Execution

▾ Twilightagent-coderag · agent-coderagvia GHSA
GHSA-vmhf-c436-hxj4Medium
3mo ago

JupyterLab: Stored XSS in extension manager through package metadata unsanitized URI protocol

JupyterLab: Stored XSS in extension manager through package metadata unsanitized URI protocol

▾ Sunlitjupyterlab · jupyterlabvia GHSA
GHSA-jv2h-4p9v-wf5wHigh
3mo ago

ouroboros-ai: Incomplete fix of CVE-2026-47211: untrusted project .env can still reach RCE via omitted execution-routing keys

ouroboros-ai: Incomplete fix of CVE-2026-47211: untrusted project .env can still reach RCE via omitted execution-routing keys

▾ Twilightouroboros-ai · ouroboros-aivia GHSA
CVE-2026-23879High· 8.0
3mo ago

py7zr: Arbitrary File Write Vulnerability

py7zr: Arbitrary File Write Vulnerability

▾ Twilightpy7zr · py7zrEPSS 0.57%via GHSA
CVE-2026-54317High· 7.6
3mo ago

Home Assistant: Konnected alarm-panel switch state and zone topology disclosed to unauthenticated actors on the LAN

Home Assistant: Konnected alarm-panel switch state and zone topology disclosed to unauthenticated actors on the LAN

▾ Twilighthomeassistant · homeassistantEPSS 0.31%via GHSA
CVE-2026-54499High· 7.5
3mo ago

Stanza: Remote Code Execution via Unsafe Pickle Deserialization in Model Loaders

Stanza: Remote Code Execution via Unsafe Pickle Deserialization in Model Loaders

▾ Twilightstanza · stanzaEPSS 0.52%via GHSA
CVE-2026-54527High
3mo ago

jupyterlab-git extension: Stored XSS leading to RCE

jupyterlab-git extension: Stored XSS leading to RCE

▾ Twilightjupyterlab-git · jupyterlab-gitEPSS 0.53%via GHSA
CVE-2026-54528High· 7.1
3mo ago

jupyterlab-git excluded_paths Case-Sensitivity Bypass Allows Reading Excluded Directories

jupyterlab-git excluded_paths Case-Sensitivity Bypass Allows Reading Excluded Directories

▾ Twilightjupyterlab-git · jupyterlab-gitEPSS 0.41%via GHSA
CVE-2026-55865Medium
3mo ago

Python Liquid: Infinite loop when parsing malformed `{% case %}` tags

Python Liquid: Infinite loop when parsing malformed `{% case %}` tags

▾ Sunlitpython-liquid · python-liquidEPSS 0.45%via OSV
CVE-2026-54911Medium· 6.5
3mo ago

UltraJSON: Malformed/Truncated UTF-8 Accepted and Silently Rewritten in ujson.dumps()

UltraJSON: Malformed/Truncated UTF-8 Accepted and Silently Rewritten in ujson.dumps()

▾ Sunlitujson · ujsonEPSS 0.37%via OSV
GHSA-8823-qg2x-pv9fHigh· 7.5
3mo ago

Ultimate Sitemap Parser (USP): Gzip Decompression Bomb Bypasses Sitemap Size Limit

Ultimate Sitemap Parser (USP): Gzip Decompression Bomb Bypasses Sitemap Size Limit

▾ Twilightultimate-sitemap-parser · ultimate-sitemap-parservia GHSA
GHSA-p5wc-9w9r-m232High· 7.5
3mo ago

Ultimate Sitemap Parser (USP): XML Entity Expansion (Billion Laughs) DoS in XMLSitemapParser

Ultimate Sitemap Parser (USP): XML Entity Expansion (Billion Laughs) DoS in XMLSitemapParser

▾ Twilightultimate-sitemap-parser · ultimate-sitemap-parservia GHSA
GHSA-rpj2-4hq8-938gHigh· 7.8
3mo ago

VCR.py: Arbitrary code execution via unsafe YAML deserialization of cassette files

VCR.py: Arbitrary code execution via unsafe YAML deserialization of cassette files

▾ Twilightvcrpy · vcrpyvia GHSA
CVE-2026-55195Medium
3mo ago

py7zr: Decompression bomb (zip bomb) denial of service via unchecked extraction size

py7zr: Decompression bomb (zip bomb) denial of service via unchecked extraction size

▾ Sunlitpy7zr · py7zrEPSS 0.32%via GHSA
CVE-2026-55206Medium
3mo ago

py7zr: O(n^2) algorithmic complexity DoS in PackInfo._read()

py7zr: O(n^2) algorithmic complexity DoS in PackInfo._read()

▾ Sunlitpy7zr · py7zrEPSS 0.32%via GHSA
CVE-2026-55255Critical· 9.9CISA KEVPoC
3mo ago

Langflow: IDOR Vulnerability in `/api/v1/responses` Endpoint Allows Authenticated Attackers to Access Another User's Flow

Langflow: IDOR Vulnerability in `/api/v1/responses` Endpoint Allows Authenticated Attackers to Access Another User's Flow

▾ Hadallangflow · langflowEPSS 0.89%via GHSA
CVE-2026-55423Medium· 6.1
3mo ago

Langflow: Logout button does not clear session

Langflow: Logout button does not clear session

▾ Sunlitlangflow · langflowEPSS 0.22%via OSV
CVE-2026-55446High· 7.5
3mo ago

Langflow: Unauthenticated DoS through multipart form boundary file upload

Langflow: Unauthenticated DoS through multipart form boundary file upload

▾ Twilightlangflow · langflowEPSS 0.58%via GHSA
CVE-2026-55447Critical· 9.6
3mo ago

Langflow: BaseFileComponent-based nodes arbitrary file read with RCE exploit

Langflow: BaseFileComponent-based nodes arbitrary file read with RCE exploit

▾ Midnightlangflow · langflowEPSS 0.66%via GHSA
GHSA-6v7p-g79w-8964High· 7.5
3mo ago

MessagePack for Python: Out-of-bounds read / crash on Unpacker reuse after a caught error

MessagePack for Python: Out-of-bounds read / crash on Unpacker reuse after a caught error

▾ Twilightmsgpack · msgpackvia GHSA
GHSA-x26h-xmv8-gxf7High
3mo ago

stigmem-node: RTBF tombstones are mis-attributed and suppress reads tenant-blind (cross-tenant BOLA)

stigmem-node: RTBF tombstones are mis-attributed and suppress reads tenant-blind (cross-tenant BOLA)

▾ Twilightstigmem-node · stigmem-nodevia GHSA
GHSA-xhv3-q4xx-349rHigh
3mo ago

stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA)

stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA)

▾ Twilightstigmem-node · stigmem-nodevia GHSA
CVEs tagged “pip” — page 42 · VulnSea