mage-ai has 5 CVEs on record. The median CVSS is 6.5 (medium). None have a confirmed exploitation report.
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 6.5
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
Products
- mage-ai 5
5
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2024-45187High· 7.1Mage AI incorrectly gives privileges to users with deleted accounts39CVE-2024-45190Medium· 6.5Mage AI Path Traversal vulnerability36CVE-2024-45189Medium· 6.5Mage AI Path Traversal vulnerability36CVE-2024-45188Medium· 6.5Mage AI Path Traversal vulnerability36CVE-2024-8072Medium· 5.3Mage AI allows remote unauthenticated attackers to leak the terminal server command history of arbitrary users29
mage-ai vulnerabilities
CVEs affecting mage-ai, newest first. Open any entry for full detail, references, and exploit status.
5 CVEsRSS
CVE-2024-45188Medium· 6.5Mage AI Path Traversal vulnerability
Mage AI Path Traversal vulnerability
▾ Sunlitmage-ai · mage-aiEPSS 0.88%via OSV
CVE-2024-45187High· 7.1Mage AI incorrectly gives privileges to users with deleted accounts
Mage AI incorrectly gives privileges to users with deleted accounts
▾ Twilightmage-ai · mage-aiEPSS 0.50%via OSV
CVE-2024-45189Medium· 6.5Mage AI Path Traversal vulnerability
Mage AI Path Traversal vulnerability
▾ Sunlitmage-ai · mage-aiEPSS 0.88%via OSV
CVE-2024-45190Medium· 6.5Mage AI Path Traversal vulnerability
Mage AI Path Traversal vulnerability
▾ Sunlitmage-ai · mage-aiEPSS 0.86%via OSV
CVE-2024-8072Medium· 5.3Mage AI allows remote unauthenticated attackers to leak the terminal server command history of arbitrary users
Mage AI allows remote unauthenticated attackers to leak the terminal server command history of arbitrary users
▾ Sunlitmage-ai · mage-aiEPSS 0.60%via OSV