mechanize has 2 CVEs on record. 2 were published in the last 90 days. The median CVSS is 6.8 (medium).
CVEs per month
Last 12 months, by publish date
1125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/091026/10
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 6.8
- Publish → KEV
- —
- Last 90 days
- 2 prev 0
2
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
mechanize vulnerabilities
CVEs affecting mechanize, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2026-107715Medium· 6.8The Mechanize library is used for automating interaction with websites
The Mechanize library is used for automating interaction with websites. Prior to 2.14.1, Mechanize sends caller-supplied credential headers to a different host after an HTTP redirect. Mechanize#request_headers= is reapplied by Mechanize:…
▾ Sunlitmechanize · mechanizeEPSS 0.40%via NVD
CVE-2026-107399Medium· 6.8The Mechanize library is used for automating interaction with websites
The Mechanize library is used for automating interaction with websites. Prior to 2.14.1, Mechanize applies no origin trust boundary in Mechanize::HTTP::Agent#response_follow_meta_refresh when Mechanize#follow_meta_refresh is enabled. A p…
▾ Sunlitmechanize · mechanizevia NVD