Tagged “pip”
CVEs tagged pip, newest first.
4643 CVEsRSS
CVE-2025-61677Low· 2.5DataChain Vulnerable to Deserialization of Untrusted Data from Environment Variables
DataChain Vulnerable to Deserialization of Untrusted Data from Environment Variables
GHSA-xjv7-6w92-42r7Mediummarimo vulnerable to proxy abuse of /mpl/{port}/
marimo vulnerable to proxy abuse of /mpl/{port}/
CVE-2025-61587Medium· 6.1Weblate is a web based localization tool. An open redirect exists in versions 5.13.2 and below via the redir parameter on .within.website…
Weblate is a web based localization tool. An open redirect exists in versions 5.13.2 and below via the redir parameter on .within.website when Weblate is configured with Anubis and REDIRECT_DOMAINS is not set. An attacker can craft a URL…
CVE-2025-59682High· 8.8⚖ disputeddjango: Potential partial directory-traversal via archive.extract() (CVE-2025-59682)
A flaw was found in Django. The django.utils.archive.extract() function, used by startapp --templateand startproject --template, allowed partial directory-traversal via an archive with file paths sharing a common prefix with the target dir…
CVE-2025-57275Medium· 5.5SPDK is vulnerable to buffer overflow in the NVMe-oF target component
SPDK is vulnerable to buffer overflow in the NVMe-oF target component
CVE-2025-59940Medium· 6.5mkdocs-include-markdown-plugin: mkdocs-include-markdown-plugin susceptible to unvalidated input colliding with substitution placeholders (C…
There is an improper input validation flaw in the python `mkdocs-include-markdown-plugin` package. Under certain conditions placeholders are not properly validated and may collide with other data elements resulting in inconsistent output.
CVE-2025-7647High· 7.3llama-index-core insecurely handles temporary files
llama-index-core insecurely handles temporary files
CVE-2025-59842LowJupyterLab LaTeX typesetter links did not enforce `noopener` attribute
JupyterLab LaTeX typesetter links did not enforce `noopener` attribute
CVE-2025-10952Medium· 5.3PoCml-logger file handler allows reading arbitrary files
ml-logger file handler allows reading arbitrary files
CVE-2025-10951High· 7.3PoCml-logger has path traversal in the file argument
ml-logger has path traversal in the file argument
CVE-2025-10950Medium· 6.3ml-logger deserialization vulnerability
ml-logger deserialization vulnerability
CVE-2025-55178Medium· 5.3Llama Stack could potentially allow for remote code execution
Llama Stack could potentially allow for remote code execution
CVE-2025-8869MediumWhen extracting a tar archive pip may not check symbolic links point into the extraction directory if the tarfile module doesn't implement PEP 706. Note that upgrading pip to a "fixed" version for this vulnerability doesn't fix all known…
When extracting a tar archive pip may not check symbolic links point into the extraction directory if the tarfile module doesn't implement PEP 706. Note that upgrading pip to a "fixed" version for this vulnerability doesn't fix all known…
CVE-2025-6921Medium· 5.3Hugging Face Transformers vulnerable to Regular Expression Denial of Service (ReDoS) in the AdamWeightDecay optimizer
Hugging Face Transformers vulnerable to Regular Expression Denial of Service (ReDoS) in the AdamWeightDecay optimizer
CVE-2025-59420High· 7.5authlib: Authlib RFC violation (CVE-2025-59420)
Authlib’s JWS verification accepts tokens that declare unknown critical header parameters (crit), violating RFC 7515 “must‑understand” semantics. An attacker can craft a signed token with a critical header (for example, bork or cnf) that s…
CVE-2025-9905HighThe Keras `Model.load_model` method **silently** ignores `safe_mode=True` and allows arbitrary code execution when a `.h5`/`.hdf5` file i…
The Keras `Model.load_model` method **silently** ignores `safe_mode=True` and allows arbitrary code execution when a `.h5`/`.hdf5` file is loaded.
CVE-2025-9906High· 7.3Keras is vulnerable to Deserialization of Untrusted Data
Keras is vulnerable to Deserialization of Untrusted Data
CVE-2025-59376Medium· 5.3PoCmcp-kubernetes-server has a Command Injection vulnerability
mcp-kubernetes-server has a Command Injection vulnerability
CVE-2025-6051Medium· 5.3Hugging Face Transformers library has Regular Expression Denial of Service
Hugging Face Transformers library has Regular Expression Denial of Service
CVE-2025-6638Medium· 5.3Hugging Face Transformers is vulnerable to ReDoS through its MarianTokenizer
Hugging Face Transformers is vulnerable to ReDoS through its MarianTokenizer
CVE-2025-10193HighNeo4j Cypher MCP server is vulnerable to DNS rebinding
Neo4j Cypher MCP server is vulnerable to DNS rebinding
CVE-2025-58065Medium· 6.5Flask App Builder has an Authentication Bypass vulnerability when using non AUTH_DB methods
Flask App Builder has an Authentication Bypass vulnerability when using non AUTH_DB methods
CVE-2025-59036Medium· 5.5Infrahub: Deleted and expired API tokens can still authenticate
Infrahub: Deleted and expired API tokens can still authenticate
CVE-2025-59042HighPyInstaller has local privilege escalation vulnerability
PyInstaller has local privilege escalation vulnerability
CVE-2025-11059Highxml2rfc is vulnerable to arbitrary file reads through prepped files
xml2rfc is vulnerable to arbitrary file reads through prepped files
CVE-2025-59035Medium· 4.6Indico vulnerable to Cross-Site Scripting via LaTeX math code
Indico vulnerable to Cross-Site Scripting via LaTeX math code
CVE-2025-59034Medium· 4.3Indico may disclose unauthorized user details access via legacy API
Indico may disclose unauthorized user details access via legacy API
CVE-2025-58753Mediumcopyparty: Sharing a single file does not fully restrict access to other files in source folder
copyparty: Sharing a single file does not fully restrict access to other files in source folder
CVE-2025-10164High· 7.3SGLang Remote Code Execution Vulnerability via Unsafe Deserialization in update_weights_from_tensor
SGLang Remote Code Execution Vulnerability via Unsafe Deserialization in update_weights_from_tensor
CVE-2025-58180High· 8.8PoCOctoPrint is Vulnerable to RCE Attacks via Unsanitized Filename in File Upload
OctoPrint is Vulnerable to RCE Attacks via Unsanitized Filename in File Upload