Tagged “pip”
CVEs tagged pip, newest first.
4637 CVEsRSS
CVE-2026-53875HighPicklescan (scan_pytorch) Bypass via dynamic eval MAGIC_NUMBER
Picklescan (scan_pytorch) Bypass via dynamic eval MAGIC_NUMBER
CVE-2025-33245High· 8.0NVIDIA NeMo Framework contains a vulnerability where malicious data could cause remote code execution
NVIDIA NeMo Framework contains a vulnerability where malicious data could cause remote code execution
CVE-2025-14009High· 8.8A critical vulnerability exists in the NLTK downloader component of nltk/nltk, affecting all versions
A critical vulnerability exists in the NLTK downloader component of nltk/nltk, affecting all versions. The _unzip_iter function in nltk/downloader.py uses zipfile.extractall() without performing path validation or security checks. This a…
CVE-2026-25087High· 7.0Apache Arrow: Potential use-after-free when reading IPC file with pre-buffering
Apache Arrow: Potential use-after-free when reading IPC file with pre-buffering
MAL-2026-931NoneMalicious code in telebot-infe (PyPI)
Malicious code in telebot-infe (PyPI)
MAL-2026-930NoneMalicious code in telebot-info (PyPI)
Malicious code in telebot-info (PyPI)
CVE-2026-26057Medium· 6.5Skill-scanner Unsecured Network Binding Vulnerability
Skill-scanner Unsecured Network Binding Vulnerability
CVE-2026-25739Medium· 5.4Indico Affected by Cross-Site-Scripting via material uploads
Indico Affected by Cross-Site-Scripting via material uploads
CVE-2026-25738MediumIndico has Server-Side Request Forgery (SSRF) in multiple places
Indico has Server-Side Request Forgery (SSRF) in multiple places
CVE-2026-24126Medium· 6.6PoCWeblate has an argument injection in management console
Weblate has an argument injection in management console
GHSA-27jp-wm6q-gp25Mediumsqlparse: formatting list of tuples leads to denial of service
sqlparse: formatting list of tuples leads to denial of service
CVE-2026-26013Low· 3.7LangChain affected by SSRF via image_url token counting in ChatOpenAI.get_num_tokens_from_messages
LangChain affected by SSRF via image_url token counting in ChatOpenAI.get_num_tokens_from_messages
CVE-2026-1669High· 7.5Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras …
Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras …
CVE-2025-69872Critical· 9.8DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default
DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write access to the cache directory can achieve arbitrary code execution when a victim application reads from the cache.
CVE-2026-25990High· 7.5Pillow is a Python imaging library
Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, an out-of-bounds write may be triggered when loading a specially crafted PSD image. This vulnerability is fixed in 12.1.1.
CVE-2026-25577High· 7.5Emmett-Core: Unhandled CookieError Exception Causing Denial of Service
Emmett-Core: Unhandled CookieError Exception Causing Denial of Service
CVE-2026-26007Medium· 6.5cryptography is a package designed to expose cryptographic primitives and recipes to Python developers
cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 46.0.5, the public_key_from_numbers (or EllipticCurvePublicNumbers.public_key()), EllipticCurvePublicNumbers.public_key(), l…
CVE-2026-22922Medium· 6.5Apache Airflow Has an Authorization Bypass That Allows Unauthorized Task Log Access
Apache Airflow Has an Authorization Bypass That Allows Unauthorized Task Log Access
CVE-2026-24098Medium· 6.5Apache Airflow UI Exposes DAG Import Errors to Unauthorized Authenticated Users
Apache Airflow UI Exposes DAG Import Errors to Unauthorized Authenticated Users
CVE-2026-25480Medium· 6.5Litestar's FileStore key canonicalization collisions allow response cache mixup/poisoning (ASCII ord + Unicode NFKD)
Litestar's FileStore key canonicalization collisions allow response cache mixup/poisoning (ASCII ord + Unicode NFKD)
CVE-2026-25528Medium· 5.8LangSmith Client SDK Affected by Server-Side Request Forgery via Tracing Header Injection
LangSmith Client SDK Affected by Server-Side Request Forgery via Tracing Header Injection
CVE-2026-25905Medium· 5.8MCP Run Python has a Sandbox Escape & Server Takeover Vulnerability
MCP Run Python has a Sandbox Escape & Server Takeover Vulnerability
CVE-2026-25479Medium· 6.5Litestar's AllowedHosts has a validation bypass due to unescaped regex metacharacters in configured host patterns
Litestar's AllowedHosts has a validation bypass due to unescaped regex metacharacters in configured host patterns
CVE-2026-25904Medium· 5.8MCP Run Python Deno Sandbox Misconfiguration Allows SSRF Attacks via Localhost Access
MCP Run Python Deno Sandbox Misconfiguration Allows SSRF Attacks via Localhost Access
CVE-2026-25478High· 7.4Litestar's CORS origin allowlist has a bypass due to unescaped regex metacharacters in allowed origins
Litestar's CORS origin allowlist has a bypass due to unescaped regex metacharacters in allowed origins
GHSA-4f84-67cv-qrv3CriticalA single post-release of dydx-v4-client contained obfuscated multi-stage loader
A single post-release of dydx-v4-client contained obfuscated multi-stage loader
CVE-2026-25650HighMCP-Salesforce's arbitrary attribute access leads to disclosure of Salesforce auth token
MCP-Salesforce's arbitrary attribute access leads to disclosure of Salesforce auth token
CVE-2026-25516Medium· 6.1NiceGUI's XSS vulnerability in ui.markdown() allows arbitrary JavaScript execution through unsanitized HTML content
NiceGUI's XSS vulnerability in ui.markdown() allows arbitrary JavaScript execution through unsanitized HTML content
CVE-2026-25198Medium· 4.7web2py has an Open Redirect Vulnerability
web2py has an Open Redirect Vulnerability
CVE-2026-1707High· 7.4pgadmin4 affected by a Restore restriction bypass via key disclosure vulnerability
pgadmin4 affected by a Restore restriction bypass via key disclosure vulnerability