VulnSea

Tagged “pip”

CVEs tagged pip, newest first.

4637 CVEsRSS

GHSA-6gqw-jqv7-v88mHigh
3mo ago

stigmem-node: decay sweep expires and counts facts across all tenants (cross-tenant BOLA)

stigmem-node: decay sweep expires and counts facts across all tenants (cross-tenant BOLA)

▾ Twilightstigmem-node · stigmem-nodevia GHSA
GHSA-c795-2g9c-j48mHigh· 8.2
3mo ago

EverOS: Path traversal in EverOS /api/v1/memory/add via unvalidated sender_id

EverOS: Path traversal in EverOS /api/v1/memory/add via unvalidated sender_id

▾ Twilighteveros · everosvia GHSA
GHSA-wvrh-2f4m-924vMedium· 5.5
3mo ago

ChatterBot: Symlink-Following Arbitrary Write via UbuntuCorpusTrainer

ChatterBot: Symlink-Following Arbitrary Write via UbuntuCorpusTrainer

▾ SunlitChatterBot · ChatterBotvia GHSA
GHSA-cw6h-ffmh-x6vhMedium· 6.5
3mo ago

Anki: User scripts in iframes have access to the internal Anki API

Anki: User scripts in iframes have access to the internal Anki API

▾ Sunlitaqt · aqtvia GHSA
GHSA-4cc2-g9w2-fhf6Medium· 5.9
3mo ago

Zeep: Server-Side Request Forgery (SSRF)

Zeep: Server-Side Request Forgery (SSRF)

▾ Sunlitzeep · zeepvia GHSA
GHSA-f4xh-w4cj-qxq8High· 7.7
3mo ago

LangSmith SDK TracingMiddleware: Arbitrary server-side file read

LangSmith SDK TracingMiddleware: Arbitrary server-side file read

▾ Twilightlangsmith · langsmithvia GHSA
GHSA-4xgf-cpjx-pc3jMedium· 5.3
3mo ago

pydantic-settings: NestedSecretsSettingsSource follows symlinks outside secrets_dir, enabling local file read and bypassing secrets_dir_max_size

pydantic-settings: NestedSecretsSettingsSource follows symlinks outside secrets_dir, enabling local file read and bypassing secrets_dir_max_size

▾ Sunlitpydantic-settings · pydantic-settingsvia GHSA
GHSA-869j-r97x-hx2gHigh
3mo ago

Anki's local HTTP server does not sufficiently validate requests

Anki's local HTTP server does not sufficiently validate requests

▾ Twilightaqt · aqtvia GHSA
CVE-2026-57118Critical· 9.8
3mo ago

PraisonAI AgentTeam.launch exposes unauthenticated remote agent listing and invocation endpoints

PraisonAI AgentTeam.launch exposes unauthenticated remote agent listing and invocation endpoints

▾ Midnightpraisonaiagents · praisonaiagentsvia OSV
CVE-2026-57117High· 8.8
3mo ago

PraisonAI: Compute-bridged file tools allow shell command injection

PraisonAI: Compute-bridged file tools allow shell command injection

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-56838High· 7.8
3mo ago

PraisonAI recipe.run_stream skips dangerous-tool policy enforcement

PraisonAI recipe.run_stream skips dangerous-tool policy enforcement

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57114High· 7.2
3mo ago

PraisonAI: Jobs webhook SSRF protection bypass via DNS rebinding

PraisonAI: Jobs webhook SSRF protection bypass via DNS rebinding

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57121High· 8.1
3mo ago

PraisonAI: Missing ownership check on DELETE endpoints allows members to delete others' content in Platform API

PraisonAI: Missing ownership check on DELETE endpoints allows members to delete others' content in Platform API

▾ Twilightpraisonai-platform · praisonai-platformvia OSV
CVE-2026-56835High· 8.3
3mo ago

PraisonAI Slack app_mention bypasses configured user/channel authorization

PraisonAI Slack app_mention bypasses configured user/channel authorization

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57146High· 7.5
3mo ago

PraisonAI A2U incomplete authentication fix leaves current serve command unauthenticated by default

PraisonAI A2U incomplete authentication fix leaves current serve command unauthenticated by default

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-56834High· 7.5
3mo ago

PraisonAI dynamic-context artifact tools read arbitrary host files outside artifact storage

PraisonAI dynamic-context artifact tools read arbitrary host files outside artifact storage

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57496Critical· 9.6
3mo ago

netlicensing-mcp: REST Path Traversal Bypasses Token Redaction

netlicensing-mcp: REST Path Traversal Bypasses Token Redaction

▾ Midnightnetlicensing-mcp · netlicensing-mcpvia OSV
CVE-2026-56837High· 8.6
3mo ago

PraisonAI LinearBot processes unsigned webhooks when LINEAR_WEBHOOK_SECRET is missing

PraisonAI LinearBot processes unsigned webhooks when LINEAR_WEBHOOK_SECRET is missing

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57113High· 8.1
3mo ago

PraisonAI GitHub template cache path traversal allows outside-cache file write and directory deletion

PraisonAI GitHub template cache path traversal allows outside-cache file write and directory deletion

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57116Critical· 9.8
3mo ago

PraisonAI: AgentOS remains unauthenticated after incomplete fix version and allows remote agent invocation

PraisonAI: AgentOS remains unauthenticated after incomplete fix version and allows remote agent invocation

▾ Midnightpraisonai · praisonaivia OSV
CVE-2026-56832High· 8.8
3mo ago

PraisonAI DiscordApproval accepts unrelated channel messages as dangerous-tool approvals

PraisonAI DiscordApproval accepts unrelated channel messages as dangerous-tool approvals

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57142High· 7.8
3mo ago

PraisonAI recipe workflow policy can be bypassed by declaring and YAML-approving dangerous tools outside TEMPLATE.yaml

PraisonAI recipe workflow policy can be bypassed by declaring and YAML-approving dangerous tools outside TEMPLATE.yaml

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57144High· 8.8
3mo ago

PraisonAI SandlockSandbox falls back to unrestricted subprocess execution when Landlock is unavailable

PraisonAI SandlockSandbox falls back to unrestricted subprocess execution when Landlock is unavailable

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-56840High· 8.8
3mo ago

PraisonAI: HTTPApproval dashboard renders tool arguments as raw HTML, allowing approval-page XSS to approve dangerous tools

PraisonAI: HTTPApproval dashboard renders tool arguments as raw HTML, allowing approval-page XSS to approve dangerous tools

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-56836High· 8.2
3mo ago

PraisonAI recipe serve Typer command bypasses the non-localhost authentication guard

PraisonAI recipe serve Typer command bypasses the non-localhost authentication guard

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57143High· 8.8
3mo ago

PraisonAI: Server-Side Request Forgery (SSRF) in SearxNG / search_web tools via attacker-controlled searxng_url parameter

PraisonAI: Server-Side Request Forgery (SSRF) in SearxNG / search_web tools via attacker-controlled searxng_url parameter

▾ Twilightpraisonaiagents · praisonaiagentsvia OSV
CVE-2026-56833High· 7.5
3mo ago

PraisonAI Dynamic Context history and terminal tools read files outside configured storage via path traversal

PraisonAI Dynamic Context history and terminal tools read files outside configured storage via path traversal

▾ Twilightpraisonai · praisonaivia OSV
CVE-2026-57573High· 8.6
3mo ago

Crawl4AI: Unauthenticated SSRF on the Docker server streaming crawl path (/crawl/stream)

Crawl4AI: Unauthenticated SSRF on the Docker server streaming crawl path (/crawl/stream)

▾ Twilightcrawl4ai · crawl4aiEPSS 0.45%via OSV
CVE-2026-57572Critical· 10.0
3mo ago

Crawl4AI: Unauthenticated RCE via Chromium launch-argument injection in browser_config.extra_args

Crawl4AI: Unauthenticated RCE via Chromium launch-argument injection in browser_config.extra_args

▾ Midnightcrawl4ai · crawl4aiEPSS 0.94%via OSV
CVE-2026-57204Medium
3mo ago

pypdf: Missing stream length values ignore defined limits

pypdf: Missing stream length values ignore defined limits

▾ Sunlitpypdf · pypdfEPSS 0.37%via OSV
CVEs tagged “pip” — page 43 · VulnSea