Tagged “pip”
CVEs tagged pip, newest first.
4637 CVEsRSS
CVE-2026-40072High· 7.2PoCweb3.py: SSRF via CCIP Read (EIP-3668) OffchainLookup URL handling
web3.py: SSRF via CCIP Read (EIP-3668) OffchainLookup URL handling
CVE-2026-35187High· 7.7pyLoad: SSRF in parse_urls API endpoint via unvalidated URL parameter
pyLoad: SSRF in parse_urls API endpoint via unvalidated URL parameter
CVE-2026-35464High· 7.5pyLoad: Unprotected storage_folder enables arbitrary file write to Flask session store and code execution (Incomplete fix for CVE-2026-33…
pyLoad: Unprotected storage_folder enables arbitrary file write to Flask session store and code execution (Incomplete fix for CVE-2026-33509)
CVE-2026-0545Critical· 9.8PoCIn mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled
In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization when the `basic-auth` app is enabled. This vulnerability affects the latest version of the repository. If job e…
CVE-2026-34543HighOpenEXR: Heap information disclosure in PXR24 decompression via unchecked decompressed size (undo_pxr24_impl)
OpenEXR: Heap information disclosure in PXR24 decompression via unchecked decompressed size (undo_pxr24_impl)
CVE-2026-33175High· 8.8Auth0OAuthenticator has an Authentication Bypass via Unverified Email Claims
Auth0OAuthenticator has an Authentication Bypass via Unverified Email Claims
CVE-2026-33752High· 8.6PoCcurl_cffi: Redirect-based SSRF leads to internal network access in curl_cffi (with TLS impersonation bypass)
curl_cffi: Redirect-based SSRF leads to internal network access in curl_cffi (with TLS impersonation bypass)
CVE-2026-34753Medium· 5.4PoCvLLM: Server-Side Request Forgery (SSRF) in `download_bytes_from_url `
vLLM: Server-Side Request Forgery (SSRF) in `download_bytes_from_url `
CVE-2026-34544HighOpenEXR: integer overflow to OOB write in uncompress_b44_impl()
OpenEXR: integer overflow to OOB write in uncompress_b44_impl()
CVE-2026-34052Medium· 5.9LTI JupyterHub Authenticator: Unbounded Memory Growth via Nonce Storage (Denial of Service)
LTI JupyterHub Authenticator: Unbounded Memory Growth via Nonce Storage (Denial of Service)
CVE-2026-35175HighAjenti has an authorization bypass during custom package installation
Ajenti has an authorization bypass during custom package installation
CVE-2026-35029HighPoCLiteLLM: Privilege escalation via unrestricted proxy configuration endpoint
LiteLLM: Privilege escalation via unrestricted proxy configuration endpoint
CVE-2026-35052MediumD-Tale: Remote Code Execution through redis/shelf storage
D-Tale: Remote Code Execution through redis/shelf storage
CVE-2026-33709Medium· 6.1JupyterHub has an Open Redirect Vulnerability
JupyterHub has an Open Redirect Vulnerability
CVE-2026-34824High· 7.5Mesop: Unbounded Thread Creation in WebSocket Handler Leads to Denial of Service
Mesop: Unbounded Thread Creation in WebSocket Handler Leads to Denial of Service
CVE-2026-35536Medium· 5.4tornado: Tornado: Cookie attribute injection due to improper handling of cookie arguments (CVE-2026-35536)
A flaw was found in Tornado. A remote attacker could exploit this vulnerability by injecting specially crafted characters into the `domain`, `path`, and `samesite` arguments when setting cookies. This could lead to cookie attribute injecti…
CVE-2026-34760High· 7.1vLLM is an inference and serving engine for large language models (LLMs). From version 0.5.5 to before version 0.18.0, Librosa defaults t…
vLLM is an inference and serving engine for large language models (LLMs). From version 0.5.5 to before version 0.18.0, Librosa defaults to using numpy.mean for mono downmixing (to_mono), while the international standard ITU-R BS.775-4 sp…
CVE-2026-32871Critical· 10.0FastMCP is a Pythonic way to build MCP servers and clients
FastMCP is a Pythonic way to build MCP servers and clients. Prior to version 3.2.0, the OpenAPIProvider in FastMCP exposes internal APIs to MCP clients by parsing OpenAPI specifications. The RequestDirector class is responsible for const…
GHSA-qc22-xmq4-qg46Mediumc2cciutils affected by CVE-2022-40896
c2cciutils affected by CVE-2022-40896
CVE-2026-34447Medium· 5.5ONNX: External Data Symlink Traversal
ONNX: External Data Symlink Traversal
CVE-2026-74877Mediumopenssl-encrypt has no owner verification on key revocation — any client can revoke any key
openssl-encrypt has no owner verification on key revocation — any client can revoke any key
CVE-2026-74876Mediumopenssl-encrypt's unverified key bundle from_dict() + to_identity() path allows encryption to attacker keys
openssl-encrypt's unverified key bundle from_dict() + to_identity() path allows encryption to attacker keys
CVE-2026-74880Mediumopenssl-encrypt accepts refresh tokens as URL query parameters causing token leakage
openssl-encrypt accepts refresh tokens as URL query parameters causing token leakage
CVE-2026-74879Mediumopenssl-encrypt's readiness endpoint leaks database error details to unauthenticated callers
openssl-encrypt's readiness endpoint leaks database error details to unauthenticated callers
CVE-2026-35000NoneChangeDetection.io versions prior to 0.54.7 contain a protection bypass vulnerability in the SafeXPath3Parser implementation that allows …
ChangeDetection.io versions prior to 0.54.7 contain a protection bypass vulnerability in the SafeXPath3Parser implementation that allows attackers to read arbitrary local files by using unblocked XPath 3.0/3.1 functions such as json-doc(…
CVE-2026-34936High· 7.7PraisonAI: SSRF via Unvalidated api_base in passthrough() Fallback
PraisonAI: SSRF via Unvalidated api_base in passthrough() Fallback
CVE-2026-34452Medium· 5.3Claude SDK for Python: Memory Tool Path Validation Race Condition Allows Sandbox Escape
Claude SDK for Python: Memory Tool Path Validation Race Condition Allows Sandbox Escape
CVE-2026-34937High· 7.8PraisonAI: Shell Injection in run_python() via Unescaped $() Substitution
PraisonAI: Shell Injection in run_python() via Unescaped $() Substitution
CVE-2026-22815Mediumaiohttp allows unlimited trailer headers, leading to possible uncapped memory usage
aiohttp allows unlimited trailer headers, leading to possible uncapped memory usage
CVE-2026-34955High· 8.8PraisonAI Has Sandbox Escape via shell=True and Bypassable Blocklist in SubprocessSandbox
PraisonAI Has Sandbox Escape via shell=True and Bypassable Blocklist in SubprocessSandbox