From fbe00c97ca16a2c07482b5af3416f505cf8c77e0 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Mon, 28 Sep 2026 17:08:18 +0000 Subject: [PATCH] chore: sync incidents from genai_incidents + regenerate data layer --- data/entries/ASI01.json | 6 - data/entries/ASI02.json | 18 - data/entries/ASI03.json | 18 - data/entries/ASI04.json | 24 - data/entries/ASI05.json | 18 - data/entries/ASI07.json | 6 - data/entries/ASI09.json | 6 - data/entries/ASI10.json | 12 - data/entries/LLM01.json | 6 - data/entries/LLM02.json | 18 - data/entries/LLM03.json | 300 +- data/entries/LLM04.json | 266 +- data/entries/LLM05.json | 364 +- data/entries/LLM06.json | 186 +- data/entries/LLM07.json | 40 +- data/entries/LLM08.json | 82 +- data/entries/LLM09.json | 76 +- data/entries/LLM10.json | 386 +- data/incidents.json | 23870 ++++++++-------------------------- docs/backlinks.js | 2 +- docs/data.js | 2122 ++- docs/frameworks-registry.js | 2 +- docs/incidents.js | 23866 ++++++++------------------------- 23 files changed, 12053 insertions(+), 39641 deletions(-) diff --git a/data/entries/ASI01.json b/data/entries/ASI01.json index 1706214..e16a669 100644 --- a/data/entries/ASI01.json +++ b/data/entries/ASI01.json @@ -893,12 +893,6 @@ "year": 2026, "incident_id": "INC-01297" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", diff --git a/data/entries/ASI02.json b/data/entries/ASI02.json index 1b2284c..5ec10ea 100644 --- a/data/entries/ASI02.json +++ b/data/entries/ASI02.json @@ -797,12 +797,6 @@ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "AnythingLLM Multiple CVEs", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", @@ -893,12 +887,6 @@ "year": 2026, "incident_id": "INC-01297" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "MCP fURI -- Microsoft MarkItDown MCP SSRF", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01378.html", @@ -1001,12 +989,6 @@ "year": 2025, "incident_id": "INC-02435" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Pirate Data Exfiltration", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02449.html", diff --git a/data/entries/ASI03.json b/data/entries/ASI03.json index dd7841b..66b4b00 100644 --- a/data/entries/ASI03.json +++ b/data/entries/ASI03.json @@ -838,12 +838,6 @@ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "AnythingLLM Multiple CVEs", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", @@ -910,12 +904,6 @@ "year": 2023, "incident_id": "INC-01291" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", @@ -994,12 +982,6 @@ "year": 2025, "incident_id": "INC-02426" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Cursor Config Overwrite via Case Mismatch", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", diff --git a/data/entries/ASI04.json b/data/entries/ASI04.json index 7306d51..e1f33a1 100644 --- a/data/entries/ASI04.json +++ b/data/entries/ASI04.json @@ -741,12 +741,6 @@ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "AnythingLLM Multiple CVEs", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", @@ -801,12 +795,6 @@ "year": 2023, "incident_id": "INC-01291" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", @@ -909,12 +897,6 @@ "year": 2025, "incident_id": "INC-02435" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Skills Data Exfiltration", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02450.html", @@ -963,12 +945,6 @@ "year": 2025, "incident_id": "INC-02546" }, - { - "name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html", - "year": 2025, - "incident_id": "INC-02590" - }, { "name": "Framelink Figma MCP RCE", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", diff --git a/data/entries/ASI05.json b/data/entries/ASI05.json index 8ce4b89..c83b187 100644 --- a/data/entries/ASI05.json +++ b/data/entries/ASI05.json @@ -734,12 +734,6 @@ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "AnythingLLM Multiple CVEs", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", @@ -812,12 +806,6 @@ "year": 2026, "incident_id": "INC-01297" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", @@ -908,12 +896,6 @@ "year": 2025, "incident_id": "INC-02321" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Desktop PromptJacking RCE", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02447.html", diff --git a/data/entries/ASI07.json b/data/entries/ASI07.json index e1b3668..76c6111 100644 --- a/data/entries/ASI07.json +++ b/data/entries/ASI07.json @@ -754,12 +754,6 @@ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "A2A Protocol -- Agent Card Poisoning Vulnerability", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html", diff --git a/data/entries/ASI09.json b/data/entries/ASI09.json index c45ce58..bd841f7 100644 --- a/data/entries/ASI09.json +++ b/data/entries/ASI09.json @@ -772,12 +772,6 @@ "year": 2026, "incident_id": "INC-01064" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", diff --git a/data/entries/ASI10.json b/data/entries/ASI10.json index 6beb752..c697427 100644 --- a/data/entries/ASI10.json +++ b/data/entries/ASI10.json @@ -819,12 +819,6 @@ "year": 2026, "incident_id": "INC-00834" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", @@ -855,12 +849,6 @@ "year": 2025, "incident_id": "INC-02426" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", diff --git a/data/entries/LLM01.json b/data/entries/LLM01.json index c2ae402..7776bca 100644 --- a/data/entries/LLM01.json +++ b/data/entries/LLM01.json @@ -860,12 +860,6 @@ "year": 2026, "incident_id": "INC-01297" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", diff --git a/data/entries/LLM02.json b/data/entries/LLM02.json index a930e56..a0e239d 100644 --- a/data/entries/LLM02.json +++ b/data/entries/LLM02.json @@ -747,12 +747,6 @@ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "A2A Protocol -- Agent Card Poisoning Vulnerability", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html", @@ -837,12 +831,6 @@ "year": 2023, "incident_id": "INC-01291" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01435.html", @@ -897,12 +885,6 @@ "year": 2025, "incident_id": "INC-02435" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Pirate Data Exfiltration", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02449.html", diff --git a/data/entries/LLM03.json b/data/entries/LLM03.json index c6e0cd2..c8fac5d 100644 --- a/data/entries/LLM03.json +++ b/data/entries/LLM03.json @@ -713,18 +713,6 @@ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, - { - "name": "AnythingLLM Multiple CVEs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", - "year": 2026, - "incident_id": "INC-00627" - }, { "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", @@ -732,22 +720,16 @@ "incident_id": "INC-00671" }, { - "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", + "name": "ChatGPT Data Exfiltration via DNS Covert Channel", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00746.html", "year": 2026, - "incident_id": "INC-00813" + "incident_id": "INC-00746" }, { - "name": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00834.html", + "name": "Claude Cowork File Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00827.html", "year": 2026, - "incident_id": "INC-00834" - }, - { - "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", - "year": 2026, - "incident_id": "INC-00860" + "incident_id": "INC-00827" }, { "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", @@ -762,10 +744,16 @@ "incident_id": "INC-01015" }, { - "name": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01092.html", + "name": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01063.html", + "year": 2026, + "incident_id": "INC-01063" + }, + { + "name": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01064.html", "year": 2026, - "incident_id": "INC-01092" + "incident_id": "INC-01064" }, { "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", @@ -774,58 +762,10 @@ "incident_id": "INC-01291" }, { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, - { - "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", - "year": 2026, - "incident_id": "INC-01340" - }, - { - "name": "MCPJam Inspector RCE (CVE-2026-23744)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01390.html", - "year": 2026, - "incident_id": "INC-01390" - }, - { - "name": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01391.html", - "year": 2026, - "incident_id": "INC-01391" - }, - { - "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", - "year": 2026, - "incident_id": "INC-01429" - }, - { - "name": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01440.html", - "year": 2026, - "incident_id": "INC-01440" - }, - { - "name": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01471.html", - "year": 2026, - "incident_id": "INC-01471" - }, - { - "name": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01589.html", + "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", "year": 2026, - "incident_id": "INC-01589" - }, - { - "name": "PraisonAI Quadruple CVE Disclosure", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01666.html", - "year": 2026, - "incident_id": "INC-01666" + "incident_id": "INC-01411" }, { "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", @@ -834,34 +774,10 @@ "incident_id": "INC-01723" }, { - "name": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01769.html", + "name": "XBOW — first critical CVE discovered entirely by autonomous AI penetration testing agent", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02105.html", "year": 2026, - "incident_id": "INC-01769" - }, - { - "name": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02058.html", - "year": 2026, - "incident_id": "INC-02058" - }, - { - "name": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02190.html", - "year": 2025, - "incident_id": "INC-02190" - }, - { - "name": "AgentSmith Prompt-Hub Proxy Attack", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02191.html", - "year": 2025, - "incident_id": "INC-02191" - }, - { - "name": "Amazon Q Prompt Poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02300.html", - "year": 2025, - "incident_id": "INC-02300" + "incident_id": "INC-02105" }, { "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", @@ -870,28 +786,10 @@ "incident_id": "INC-02321" }, { - "name": "Anthropic SQLite MCP Server SQL Injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02324.html", - "year": 2025, - "incident_id": "INC-02324" - }, - { - "name": "Claude Code DNS Exfiltration (CVE-2025-55284)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02435.html", + "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", "year": 2025, - "incident_id": "INC-02435" - }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, - { - "name": "Claude Skills Data Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02450.html", - "year": 2025, - "incident_id": "INC-02450" + "incident_id": "INC-02426" }, { "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", @@ -900,52 +798,10 @@ "incident_id": "INC-02451" }, { - "name": "Cursor \"Open-Folder\" Autorun Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02462.html", - "year": 2025, - "incident_id": "INC-02462" - }, - { - "name": "Cursor & Windsurf Forked Chromium 94+ N-Day Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02463.html", - "year": 2025, - "incident_id": "INC-02463" - }, - { - "name": "Cursor CLI Project Config RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02467.html", - "year": 2025, - "incident_id": "INC-02467" - }, - { - "name": "Dify SSRF via RemoteFileUploadApi (CVE-2025-56520)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02514.html", + "name": "Cursor Config Overwrite via Case Mismatch", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", "year": 2025, - "incident_id": "INC-02514" - }, - { - "name": "Dify Unauthenticated Information Disclosure (CVE-2025-63387)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02515.html", - "year": 2025, - "incident_id": "INC-02515" - }, - { - "name": "EscapeRoute -- Anthropic Filesystem MCP Sandbox Escape (CVE-2025-53109 & CVE-2025-53110)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02546.html", - "year": 2025, - "incident_id": "INC-02546" - }, - { - "name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html", - "year": 2025, - "incident_id": "INC-02590" - }, - { - "name": "Framelink Figma MCP RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", - "year": 2025, - "incident_id": "INC-02592" + "incident_id": "INC-02468" }, { "name": "GitHub Copilot & Cursor Code-Agent Exploit", @@ -953,6 +809,12 @@ "year": 2025, "incident_id": "INC-02607" }, + { + "name": "Google Antigravity IDE Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02629.html", + "year": 2025, + "incident_id": "INC-02629" + }, { "name": "GPT-4.1 jailbreak via tool poisoning", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", @@ -965,36 +827,6 @@ "year": 2025, "incident_id": "INC-02700" }, - { - "name": "LangGrinch -- LangChain Core Serialization Injection (CVE-2025-68664)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02813.html", - "year": 2025, - "incident_id": "INC-02813" - }, - { - "name": "Malicious MCP server backdoor on npm — dual reverse shells in mcp-runcommand-server", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02848.html", - "year": 2025, - "incident_id": "INC-02848" - }, - { - "name": "Malicious MCP Server Impersonating Postmark", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02849.html", - "year": 2025, - "incident_id": "INC-02849" - }, - { - "name": "MCP OAuth Response Exploit", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02871.html", - "year": 2025, - "incident_id": "INC-02871" - }, - { - "name": "MCP tool poisoning — hidden instructions in Model Context Protocol tool descriptions", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02874.html", - "year": 2025, - "incident_id": "INC-02874" - }, { "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", @@ -1002,10 +834,10 @@ "incident_id": "INC-02878" }, { - "name": "Ollama GGUF Model File RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02980.html", + "name": "Microsoft Copilot Studio agents public by default — unauthorized data exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02899.html", "year": 2025, - "incident_id": "INC-02980" + "incident_id": "INC-02899" }, { "name": "OpenAI ChatGPT Operator Vulnerability", @@ -1014,40 +846,58 @@ "incident_id": "INC-02997" }, { - "name": "React2Shell Impacting Dify and AI Platforms (CVE-2025-55182)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03149.html", - "year": 2025, - "incident_id": "INC-03149" - }, - { - "name": "Salesloft Drift OAuth breach — Chinese actor UNC6395 accesses 700+ Salesforce CRM environments", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03194.html", - "year": 2025, - "incident_id": "INC-03194" + "name": "Crescendo: multi-turn escalation attack (Microsoft)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03687.html", + "year": 2024, + "incident_id": "INC-03687" }, { - "name": "ShadowMQ — critical RCE in Meta/NVIDIA/vLLM inference servers via pickle deserialization", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03211.html", - "year": 2025, - "incident_id": "INC-03211" + "name": "Many-shot jailbreaking (Anthropic research)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03967.html", + "year": 2024, + "incident_id": "INC-03967" }, { - "name": "Visual Studio Code & Agentic AI workflows RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03334.html", - "year": 2025, - "incident_id": "INC-03334" + "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", + "year": 2024, + "incident_id": "INC-04007" }, { - "name": "Anthropic Sleeper Agents paper — models trained to hide malicious behaviour", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03572.html", + "name": "Nassi et al. \"ComPromptMized\" Morris II multi-agent worm", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04027.html", "year": 2024, - "incident_id": "INC-03572" + "incident_id": "INC-04027" }, { "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", "year": 2024, "incident_id": "INC-04179" + }, + { + "name": "Skeleton Key: direct system prompt override (Microsoft)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04207.html", + "year": 2024, + "incident_id": "INC-04207" + }, + { + "name": "Slack AI indirect injection via channel content", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04208.html", + "year": 2024, + "incident_id": "INC-04208" + }, + { + "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", + "year": 2021, + "incident_id": "INC-08177" + }, + { + "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", + "year": 2023, + "incident_id": "INC-08181" } ], "crossrefs": { diff --git a/data/entries/LLM04.json b/data/entries/LLM04.json index fd3f77a..ef03f80 100644 --- a/data/entries/LLM04.json +++ b/data/entries/LLM04.json @@ -707,28 +707,22 @@ ], "incidents": [ { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, - { - "name": "A2A Protocol -- Agent Card Poisoning Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html", + "name": "AnythingLLM Multiple CVEs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", "year": 2026, - "incident_id": "INC-00036" + "incident_id": "INC-00627" }, { - "name": "AI recommendation poisoning — hidden prompt injections in 'Summarize with AI' buttons across 31 companies", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00198.html", + "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", "year": 2026, - "incident_id": "INC-00198" + "incident_id": "INC-00671" }, { - "name": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00833.html", + "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", "year": 2026, - "incident_id": "INC-00833" + "incident_id": "INC-00813" }, { "name": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", @@ -737,16 +731,16 @@ "incident_id": "INC-00834" }, { - "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", + "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", "year": 2026, - "incident_id": "INC-00924" + "incident_id": "INC-00860" }, { - "name": "Eight Attack Vectors in AWS Bedrock Agents", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00928.html", + "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", "year": 2026, - "incident_id": "INC-00928" + "incident_id": "INC-00924" }, { "name": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", @@ -755,10 +749,16 @@ "incident_id": "INC-01015" }, { - "name": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01064.html", + "name": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01092.html", "year": 2026, - "incident_id": "INC-01064" + "incident_id": "INC-01092" + }, + { + "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", + "year": 2023, + "incident_id": "INC-01291" }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", @@ -766,6 +766,18 @@ "year": 2026, "incident_id": "INC-01340" }, + { + "name": "MCPJam Inspector RCE (CVE-2026-23744)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01390.html", + "year": 2026, + "incident_id": "INC-01390" + }, + { + "name": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01391.html", + "year": 2026, + "incident_id": "INC-01391" + }, { "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", @@ -779,10 +791,64 @@ "incident_id": "INC-01440" }, { - "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", + "name": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01471.html", + "year": 2026, + "incident_id": "INC-01471" + }, + { + "name": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01589.html", + "year": 2026, + "incident_id": "INC-01589" + }, + { + "name": "PraisonAI Quadruple CVE Disclosure", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01666.html", + "year": 2026, + "incident_id": "INC-01666" + }, + { + "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01723.html", + "year": 2023, + "incident_id": "INC-01723" + }, + { + "name": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01769.html", + "year": 2026, + "incident_id": "INC-01769" + }, + { + "name": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02058.html", + "year": 2026, + "incident_id": "INC-02058" + }, + { + "name": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02190.html", + "year": 2025, + "incident_id": "INC-02190" + }, + { + "name": "AgentSmith Prompt-Hub Proxy Attack", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02191.html", "year": 2025, - "incident_id": "INC-02186" + "incident_id": "INC-02191" + }, + { + "name": "Amazon Q Prompt Poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02300.html", + "year": 2025, + "incident_id": "INC-02300" + }, + { + "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02321.html", + "year": 2025, + "incident_id": "INC-02321" }, { "name": "Anthropic SQLite MCP Server SQL Injection", @@ -791,16 +857,100 @@ "incident_id": "INC-02324" }, { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" + "name": "Claude Code DNS Exfiltration (CVE-2025-55284)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02435.html", + "year": 2025, + "incident_id": "INC-02435" + }, + { + "name": "Claude Skills Data Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02450.html", + "year": 2025, + "incident_id": "INC-02450" }, { - "name": "GitPublic Issue Repo Hijack", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02613.html", + "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", "year": 2025, - "incident_id": "INC-02613" + "incident_id": "INC-02451" + }, + { + "name": "Cursor \"Open-Folder\" Autorun Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02462.html", + "year": 2025, + "incident_id": "INC-02462" + }, + { + "name": "Cursor & Windsurf Forked Chromium 94+ N-Day Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02463.html", + "year": 2025, + "incident_id": "INC-02463" + }, + { + "name": "Cursor CLI Project Config RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02467.html", + "year": 2025, + "incident_id": "INC-02467" + }, + { + "name": "Dify SSRF via RemoteFileUploadApi (CVE-2025-56520)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02514.html", + "year": 2025, + "incident_id": "INC-02514" + }, + { + "name": "Dify Unauthenticated Information Disclosure (CVE-2025-63387)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02515.html", + "year": 2025, + "incident_id": "INC-02515" + }, + { + "name": "EscapeRoute -- Anthropic Filesystem MCP Sandbox Escape (CVE-2025-53109 & CVE-2025-53110)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02546.html", + "year": 2025, + "incident_id": "INC-02546" + }, + { + "name": "Framelink Figma MCP RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", + "year": 2025, + "incident_id": "INC-02592" + }, + { + "name": "GitHub Copilot & Cursor Code-Agent Exploit", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02607.html", + "year": 2025, + "incident_id": "INC-02607" + }, + { + "name": "GPT-4.1 jailbreak via tool poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", + "year": 2025, + "incident_id": "INC-02646" + }, + { + "name": "Hub MCP Prompt Injection (Cross-Context)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02700.html", + "year": 2025, + "incident_id": "INC-02700" + }, + { + "name": "LangGrinch -- LangChain Core Serialization Injection (CVE-2025-68664)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02813.html", + "year": 2025, + "incident_id": "INC-02813" + }, + { + "name": "Malicious MCP server backdoor on npm — dual reverse shells in mcp-runcommand-server", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02848.html", + "year": 2025, + "incident_id": "INC-02848" + }, + { + "name": "Malicious MCP Server Impersonating Postmark", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02849.html", + "year": 2025, + "incident_id": "INC-02849" }, { "name": "MCP OAuth Response Exploit", @@ -808,6 +958,18 @@ "year": 2025, "incident_id": "INC-02871" }, + { + "name": "MCP tool poisoning — hidden instructions in Model Context Protocol tool descriptions", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02874.html", + "year": 2025, + "incident_id": "INC-02874" + }, + { + "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", + "year": 2025, + "incident_id": "INC-02878" + }, { "name": "Ollama GGUF Model File RCE", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02980.html", @@ -821,22 +983,28 @@ "incident_id": "INC-02997" }, { - "name": "PoisonedRAG — 5 malicious texts in millions achieve 90% attack success rate on RAG systems", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03036.html", + "name": "React2Shell Impacting Dify and AI Platforms (CVE-2025-55182)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03149.html", "year": 2025, - "incident_id": "INC-03036" + "incident_id": "INC-03149" }, { - "name": "WhatsApp MCP tool poisoning — hidden instructions exfiltrate entire message history", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03368.html", + "name": "Salesloft Drift OAuth breach — Chinese actor UNC6395 accesses 700+ Salesforce CRM environments", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03194.html", "year": 2025, - "incident_id": "INC-03368" + "incident_id": "INC-03194" }, { - "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03376.html", + "name": "ShadowMQ — critical RCE in Meta/NVIDIA/vLLM inference servers via pickle deserialization", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03211.html", "year": 2025, - "incident_id": "INC-03376" + "incident_id": "INC-03211" + }, + { + "name": "Visual Studio Code & Agentic AI workflows RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03334.html", + "year": 2025, + "incident_id": "INC-03334" }, { "name": "Anthropic Sleeper Agents paper — models trained to hide malicious behaviour", @@ -845,16 +1013,10 @@ "incident_id": "INC-03572" }, { - "name": "Many-shot jailbreaking (Anthropic research)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03967.html", - "year": 2024, - "incident_id": "INC-03967" - }, - { - "name": "RAG corpus poisoning — embedding-space manipulation to force retrieval", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04142.html", + "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", "year": 2024, - "incident_id": "INC-04142" + "incident_id": "INC-04179" } ], "crossrefs": { diff --git a/data/entries/LLM05.json b/data/entries/LLM05.json index f5540ec..03e6bb6 100644 --- a/data/entries/LLM05.json +++ b/data/entries/LLM05.json @@ -681,34 +681,22 @@ ], "incidents": [ { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, - { - "name": "AnythingLLM Multiple CVEs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", - "year": 2026, - "incident_id": "INC-00627" - }, - { - "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", + "name": "A2A Protocol -- Agent Card Poisoning Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html", "year": 2026, - "incident_id": "INC-00671" + "incident_id": "INC-00036" }, { - "name": "ChatGPT Data Exfiltration via DNS Covert Channel", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00746.html", + "name": "AI recommendation poisoning — hidden prompt injections in 'Summarize with AI' buttons across 31 companies", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00198.html", "year": 2026, - "incident_id": "INC-00746" + "incident_id": "INC-00198" }, { - "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", + "name": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00833.html", "year": 2026, - "incident_id": "INC-00813" + "incident_id": "INC-00833" }, { "name": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", @@ -716,24 +704,18 @@ "year": 2026, "incident_id": "INC-00834" }, - { - "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", - "year": 2026, - "incident_id": "INC-00860" - }, - { - "name": "Docker MCP Server OS Command Injection (CVE-2026-5741)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00904.html", - "year": 2026, - "incident_id": "INC-00904" - }, { "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", "year": 2026, "incident_id": "INC-00924" }, + { + "name": "Eight Attack Vectors in AWS Bedrock Agents", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00928.html", + "year": 2026, + "incident_id": "INC-00928" + }, { "name": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01015.html", @@ -741,34 +723,10 @@ "incident_id": "INC-01015" }, { - "name": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01063.html", - "year": 2026, - "incident_id": "INC-01063" - }, - { - "name": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01092.html", - "year": 2026, - "incident_id": "INC-01092" - }, - { - "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", - "year": 2023, - "incident_id": "INC-01291" - }, - { - "name": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01297.html", + "name": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01064.html", "year": 2026, - "incident_id": "INC-01297" - }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" + "incident_id": "INC-01064" }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", @@ -776,24 +734,6 @@ "year": 2026, "incident_id": "INC-01340" }, - { - "name": "Marimo Pre-Auth RCE (CVE-2026-39987)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01370.html", - "year": 2026, - "incident_id": "INC-01370" - }, - { - "name": "MCPJam Inspector RCE (CVE-2026-23744)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01390.html", - "year": 2026, - "incident_id": "INC-01390" - }, - { - "name": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01391.html", - "year": 2026, - "incident_id": "INC-01391" - }, { "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", @@ -806,36 +746,6 @@ "year": 2026, "incident_id": "INC-01440" }, - { - "name": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01471.html", - "year": 2026, - "incident_id": "INC-01471" - }, - { - "name": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01589.html", - "year": 2026, - "incident_id": "INC-01589" - }, - { - "name": "PraisonAI Quadruple CVE Disclosure", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01666.html", - "year": 2026, - "incident_id": "INC-01666" - }, - { - "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01723.html", - "year": 2023, - "incident_id": "INC-01723" - }, - { - "name": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01769.html", - "year": 2026, - "incident_id": "INC-01769" - }, { "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", @@ -843,166 +753,16 @@ "incident_id": "INC-02186" }, { - "name": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02190.html", - "year": 2025, - "incident_id": "INC-02190" - }, - { - "name": "Amazon Q Prompt Poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02300.html", - "year": 2025, - "incident_id": "INC-02300" - }, - { - "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02321.html", - "year": 2025, - "incident_id": "INC-02321" - }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, - { - "name": "Claude Desktop PromptJacking RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02447.html", - "year": 2025, - "incident_id": "INC-02447" - }, - { - "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", - "year": 2025, - "incident_id": "INC-02451" - }, - { - "name": "Cline AI Coding Agent Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02455.html", - "year": 2025, - "incident_id": "INC-02455" - }, - { - "name": "Cursor \"Open-Folder\" Autorun Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02462.html", - "year": 2025, - "incident_id": "INC-02462" - }, - { - "name": "Cursor & Windsurf Forked Chromium 94+ N-Day Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02463.html", + "name": "Anthropic SQLite MCP Server SQL Injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02324.html", "year": 2025, - "incident_id": "INC-02463" + "incident_id": "INC-02324" }, { - "name": "Cursor CLI Project Config RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02467.html", + "name": "GitPublic Issue Repo Hijack", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02613.html", "year": 2025, - "incident_id": "INC-02467" - }, - { - "name": "Cursor Config Overwrite via Case Mismatch", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", - "year": 2025, - "incident_id": "INC-02468" - }, - { - "name": "Cursor Workspace File Injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02471.html", - "year": 2025, - "incident_id": "INC-02471" - }, - { - "name": "Cursorignore Bypass via New Cursorignore Write", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02480.html", - "year": 2025, - "incident_id": "INC-02480" - }, - { - "name": "Devin AI Agent Prompt Injection & Data Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02512.html", - "year": 2025, - "incident_id": "INC-02512" - }, - { - "name": "Dify SSRF via RemoteFileUploadApi (CVE-2025-56520)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02514.html", - "year": 2025, - "incident_id": "INC-02514" - }, - { - "name": "Dify Unauthenticated Information Disclosure (CVE-2025-63387)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02515.html", - "year": 2025, - "incident_id": "INC-02515" - }, - { - "name": "EscapeRoute -- Anthropic Filesystem MCP Sandbox Escape (CVE-2025-53109 & CVE-2025-53110)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02546.html", - "year": 2025, - "incident_id": "INC-02546" - }, - { - "name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html", - "year": 2025, - "incident_id": "INC-02590" - }, - { - "name": "Framelink Figma MCP RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", - "year": 2025, - "incident_id": "INC-02592" - }, - { - "name": "GitHub Copilot & Cursor Code-Agent Exploit", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02607.html", - "year": 2025, - "incident_id": "INC-02607" - }, - { - "name": "Google Antigravity AI Data Wipe", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02627.html", - "year": 2025, - "incident_id": "INC-02627" - }, - { - "name": "Google Antigravity IDE Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02629.html", - "year": 2025, - "incident_id": "INC-02629" - }, - { - "name": "Google Gemini CLI File Loss", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02631.html", - "year": 2025, - "incident_id": "INC-02631" - }, - { - "name": "GPT-4.1 jailbreak via tool poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", - "year": 2025, - "incident_id": "INC-02646" - }, - { - "name": "Hub MCP Prompt Injection (Cross-Context)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02700.html", - "year": 2025, - "incident_id": "INC-02700" - }, - { - "name": "Kiro IDE Command Injection (CVE-2026-0830)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02793.html", - "year": 2025, - "incident_id": "INC-02793" - }, - { - "name": "LangGrinch -- LangChain Core Serialization Injection (CVE-2025-68664)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02813.html", - "year": 2025, - "incident_id": "INC-02813" + "incident_id": "INC-02613" }, { "name": "MCP OAuth Response Exploit", @@ -1010,12 +770,6 @@ "year": 2025, "incident_id": "INC-02871" }, - { - "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", - "year": 2025, - "incident_id": "INC-02878" - }, { "name": "Ollama GGUF Model File RCE", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02980.html", @@ -1023,52 +777,22 @@ "incident_id": "INC-02980" }, { - "name": "OpenHands ZombAI RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03010.html", + "name": "OpenAI ChatGPT Operator Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02997.html", "year": 2025, - "incident_id": "INC-03010" + "incident_id": "INC-02997" }, { - "name": "Postgres MCP Server SQL Injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03039.html", + "name": "PoisonedRAG — 5 malicious texts in millions achieve 90% attack success rate on RAG systems", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03036.html", "year": 2025, - "incident_id": "INC-03039" + "incident_id": "INC-03036" }, { - "name": "React2Shell Impacting Dify and AI Platforms (CVE-2025-55182)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03149.html", + "name": "WhatsApp MCP tool poisoning — hidden instructions exfiltrate entire message history", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03368.html", "year": 2025, - "incident_id": "INC-03149" - }, - { - "name": "Salesloft Drift OAuth breach — Chinese actor UNC6395 accesses 700+ Salesforce CRM environments", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03194.html", - "year": 2025, - "incident_id": "INC-03194" - }, - { - "name": "ShadowMQ — critical RCE in Meta/NVIDIA/vLLM inference servers via pickle deserialization", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03211.html", - "year": 2025, - "incident_id": "INC-03211" - }, - { - "name": "ToolShell RCE via SharePoint", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03300.html", - "year": 2025, - "incident_id": "INC-03300" - }, - { - "name": "Trail of Bits: Prompt Injection to RCE in AI Agents", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03304.html", - "year": 2025, - "incident_id": "INC-03304" - }, - { - "name": "Visual Studio Code & Agentic AI workflows RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03334.html", - "year": 2025, - "incident_id": "INC-03334" + "incident_id": "INC-03368" }, { "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", @@ -1077,22 +801,22 @@ "incident_id": "INC-03376" }, { - "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", + "name": "Anthropic Sleeper Agents paper — models trained to hide malicious behaviour", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03572.html", "year": 2024, - "incident_id": "INC-04007" + "incident_id": "INC-03572" }, { - "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", - "year": 2021, - "incident_id": "INC-08177" + "name": "Many-shot jailbreaking (Anthropic research)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03967.html", + "year": 2024, + "incident_id": "INC-03967" }, { - "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", - "year": 2023, - "incident_id": "INC-08181" + "name": "RAG corpus poisoning — embedding-space manipulation to force retrieval", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04142.html", + "year": 2024, + "incident_id": "INC-04142" } ], "crossrefs": { diff --git a/data/entries/LLM06.json b/data/entries/LLM06.json index 61cf172..36450f3 100644 --- a/data/entries/LLM06.json +++ b/data/entries/LLM06.json @@ -698,90 +698,12 @@ } ], "incidents": [ - { - "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", - "year": 2026, - "incident_id": "INC-00671" - }, - { - "name": "ChatGPT Data Exfiltration via DNS Covert Channel", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00746.html", - "year": 2026, - "incident_id": "INC-00746" - }, - { - "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", - "year": 2026, - "incident_id": "INC-00813" - }, - { - "name": "Claude Cowork File Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00827.html", - "year": 2026, - "incident_id": "INC-00827" - }, - { - "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", - "year": 2026, - "incident_id": "INC-00924" - }, - { - "name": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01015.html", - "year": 2025, - "incident_id": "INC-01015" - }, - { - "name": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01063.html", - "year": 2026, - "incident_id": "INC-01063" - }, - { - "name": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01064.html", - "year": 2026, - "incident_id": "INC-01064" - }, { "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", "year": 2023, "incident_id": "INC-01291" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, - { - "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", - "year": 2026, - "incident_id": "INC-01411" - }, - { - "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01723.html", - "year": 2023, - "incident_id": "INC-01723" - }, - { - "name": "XBOW — first critical CVE discovered entirely by autonomous AI penetration testing agent", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02105.html", - "year": 2026, - "incident_id": "INC-02105" - }, - { - "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02321.html", - "year": 2025, - "incident_id": "INC-02321" - }, { "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", @@ -789,118 +711,16 @@ "incident_id": "INC-02426" }, { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, - { - "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", - "year": 2025, - "incident_id": "INC-02451" - }, - { - "name": "Cursor Config Overwrite via Case Mismatch", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", - "year": 2025, - "incident_id": "INC-02468" - }, - { - "name": "GitHub Copilot & Cursor Code-Agent Exploit", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02607.html", - "year": 2025, - "incident_id": "INC-02607" - }, - { - "name": "Google Antigravity IDE Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02629.html", - "year": 2025, - "incident_id": "INC-02629" - }, - { - "name": "GPT-4.1 jailbreak via tool poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", - "year": 2025, - "incident_id": "INC-02646" - }, - { - "name": "Hub MCP Prompt Injection (Cross-Context)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02700.html", - "year": 2025, - "incident_id": "INC-02700" - }, - { - "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", - "year": 2025, - "incident_id": "INC-02878" - }, - { - "name": "Microsoft Copilot Studio agents public by default — unauthorized data exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02899.html", - "year": 2025, - "incident_id": "INC-02899" - }, - { - "name": "OpenAI ChatGPT Operator Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02997.html", - "year": 2025, - "incident_id": "INC-02997" - }, - { - "name": "Crescendo: multi-turn escalation attack (Microsoft)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03687.html", - "year": 2024, - "incident_id": "INC-03687" - }, - { - "name": "Many-shot jailbreaking (Anthropic research)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03967.html", - "year": 2024, - "incident_id": "INC-03967" - }, - { - "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", - "year": 2024, - "incident_id": "INC-04007" - }, - { - "name": "Nassi et al. \"ComPromptMized\" Morris II multi-agent worm", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04027.html", - "year": 2024, - "incident_id": "INC-04027" - }, - { - "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", - "year": 2024, - "incident_id": "INC-04179" - }, - { - "name": "Skeleton Key: direct system prompt override (Microsoft)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04207.html", - "year": 2024, - "incident_id": "INC-04207" - }, - { - "name": "Slack AI indirect injection via channel content", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04208.html", + "name": "OpenAI GPT-4 system prompt extraction toolkit — systematic prompt leakage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04067.html", "year": 2024, - "incident_id": "INC-04208" + "incident_id": "INC-04067" }, { "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", "year": 2021, "incident_id": "INC-08177" - }, - { - "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", - "year": 2023, - "incident_id": "INC-08181" } ], "crossrefs": { diff --git a/data/entries/LLM07.json b/data/entries/LLM07.json index 5b5a2bf..d20051c 100644 --- a/data/entries/LLM07.json +++ b/data/entries/LLM07.json @@ -640,10 +640,16 @@ ], "incidents": [ { - "name": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00833.html", + "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", "year": 2026, - "incident_id": "INC-00833" + "incident_id": "INC-01411" + }, + { + "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", + "year": 2025, + "incident_id": "INC-02186" }, { "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", @@ -658,34 +664,28 @@ "incident_id": "INC-02646" }, { - "name": "OpenAI GPT-4 system prompt extraction toolkit — systematic prompt leakage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04067.html", - "year": 2024, - "incident_id": "INC-04067" + "name": "Replit vibe coding meltdown — agent hallucinated data, deleted production database, hid mistakes", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03152.html", + "year": 2025, + "incident_id": "INC-03152" }, { - "name": "Skeleton Key: direct system prompt override (Microsoft)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04207.html", + "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", "year": 2024, - "incident_id": "INC-04207" + "incident_id": "INC-04007" }, { - "name": "Perez & Ribeiro — 'Ignore Previous Prompt': foundational direct injection study", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-05172.html", - "year": 2022, - "incident_id": "INC-05172" + "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", + "year": 2024, + "incident_id": "INC-04179" }, { "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", "year": 2021, "incident_id": "INC-08177" - }, - { - "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", - "year": 2023, - "incident_id": "INC-08181" } ], "crossrefs": { diff --git a/data/entries/LLM08.json b/data/entries/LLM08.json index 54485e2..a741992 100644 --- a/data/entries/LLM08.json +++ b/data/entries/LLM08.json @@ -693,76 +693,52 @@ ], "incidents": [ { - "name": "Claude Cowork File Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00827.html", + "name": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00833.html", "year": 2026, - "incident_id": "INC-00827" + "incident_id": "INC-00833" }, { - "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", - "year": 2026, - "incident_id": "INC-00860" - }, - { - "name": "Eight Attack Vectors in AWS Bedrock Agents", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00928.html", - "year": 2026, - "incident_id": "INC-00928" - }, - { - "name": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01440.html", - "year": 2026, - "incident_id": "INC-01440" - }, - { - "name": "Devin AI Agent Prompt Injection & Data Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02512.html", + "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", "year": 2025, - "incident_id": "INC-02512" + "incident_id": "INC-02426" }, { - "name": "HashJack -- URL Fragment Prompt Injection for AI Browsers", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02686.html", + "name": "GPT-4.1 jailbreak via tool poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", "year": 2025, - "incident_id": "INC-02686" + "incident_id": "INC-02646" }, { - "name": "PoisonedRAG — 5 malicious texts in millions achieve 90% attack success rate on RAG systems", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03036.html", - "year": 2025, - "incident_id": "INC-03036" - }, - { - "name": "ToolShell RCE via SharePoint", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03300.html", - "year": 2025, - "incident_id": "INC-03300" + "name": "OpenAI GPT-4 system prompt extraction toolkit — systematic prompt leakage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04067.html", + "year": 2024, + "incident_id": "INC-04067" }, { - "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03376.html", - "year": 2025, - "incident_id": "INC-03376" + "name": "Skeleton Key: direct system prompt override (Microsoft)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04207.html", + "year": 2024, + "incident_id": "INC-04207" }, { - "name": "Nassi et al. \"ComPromptMized\" Morris II multi-agent worm", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04027.html", - "year": 2024, - "incident_id": "INC-04027" + "name": "Perez & Ribeiro — 'Ignore Previous Prompt': foundational direct injection study", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-05172.html", + "year": 2022, + "incident_id": "INC-05172" }, { - "name": "RAG corpus poisoning — embedding-space manipulation to force retrieval", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04142.html", - "year": 2024, - "incident_id": "INC-04142" + "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", + "year": 2021, + "incident_id": "INC-08177" }, { - "name": "Slack AI indirect injection via channel content", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04208.html", - "year": 2024, - "incident_id": "INC-04208" + "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", + "year": 2023, + "incident_id": "INC-08181" } ], "crossrefs": { diff --git a/data/entries/LLM09.json b/data/entries/LLM09.json index b003cf0..7e5cbfe 100644 --- a/data/entries/LLM09.json +++ b/data/entries/LLM09.json @@ -661,58 +661,76 @@ ], "incidents": [ { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" + "name": "Claude Cowork File Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00827.html", + "year": 2026, + "incident_id": "INC-00827" + }, + { + "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", + "year": 2026, + "incident_id": "INC-00860" }, { - "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", + "name": "Eight Attack Vectors in AWS Bedrock Agents", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00928.html", "year": 2026, - "incident_id": "INC-01411" + "incident_id": "INC-00928" }, { - "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", + "name": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01440.html", + "year": 2026, + "incident_id": "INC-01440" + }, + { + "name": "Devin AI Agent Prompt Injection & Data Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02512.html", "year": 2025, - "incident_id": "INC-02186" + "incident_id": "INC-02512" }, { - "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", + "name": "HashJack -- URL Fragment Prompt Injection for AI Browsers", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02686.html", "year": 2025, - "incident_id": "INC-02426" + "incident_id": "INC-02686" }, { - "name": "GPT-4.1 jailbreak via tool poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", + "name": "PoisonedRAG — 5 malicious texts in millions achieve 90% attack success rate on RAG systems", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03036.html", "year": 2025, - "incident_id": "INC-02646" + "incident_id": "INC-03036" }, { - "name": "Replit vibe coding meltdown — agent hallucinated data, deleted production database, hid mistakes", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03152.html", + "name": "ToolShell RCE via SharePoint", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03300.html", "year": 2025, - "incident_id": "INC-03152" + "incident_id": "INC-03300" }, { - "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", + "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03376.html", + "year": 2025, + "incident_id": "INC-03376" + }, + { + "name": "Nassi et al. \"ComPromptMized\" Morris II multi-agent worm", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04027.html", "year": 2024, - "incident_id": "INC-04007" + "incident_id": "INC-04027" }, { - "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", + "name": "RAG corpus poisoning — embedding-space manipulation to force retrieval", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04142.html", "year": 2024, - "incident_id": "INC-04179" + "incident_id": "INC-04142" }, { - "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", - "year": 2021, - "incident_id": "INC-08177" + "name": "Slack AI indirect injection via channel content", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04208.html", + "year": 2024, + "incident_id": "INC-04208" } ], "crossrefs": { diff --git a/data/entries/LLM10.json b/data/entries/LLM10.json index f5a2e9f..6430e5f 100644 --- a/data/entries/LLM10.json +++ b/data/entries/LLM10.json @@ -671,10 +671,70 @@ ], "incidents": [ { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" + "name": "AnythingLLM Multiple CVEs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", + "year": 2026, + "incident_id": "INC-00627" + }, + { + "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", + "year": 2026, + "incident_id": "INC-00671" + }, + { + "name": "ChatGPT Data Exfiltration via DNS Covert Channel", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00746.html", + "year": 2026, + "incident_id": "INC-00746" + }, + { + "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", + "year": 2026, + "incident_id": "INC-00813" + }, + { + "name": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00834.html", + "year": 2026, + "incident_id": "INC-00834" + }, + { + "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", + "year": 2026, + "incident_id": "INC-00860" + }, + { + "name": "Docker MCP Server OS Command Injection (CVE-2026-5741)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00904.html", + "year": 2026, + "incident_id": "INC-00904" + }, + { + "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", + "year": 2026, + "incident_id": "INC-00924" + }, + { + "name": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01015.html", + "year": 2025, + "incident_id": "INC-01015" + }, + { + "name": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01063.html", + "year": 2026, + "incident_id": "INC-01063" + }, + { + "name": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01092.html", + "year": 2026, + "incident_id": "INC-01092" }, { "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", @@ -683,22 +743,328 @@ "incident_id": "INC-01291" }, { - "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", + "name": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01297.html", + "year": 2026, + "incident_id": "INC-01297" + }, + { + "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", + "year": 2026, + "incident_id": "INC-01340" + }, + { + "name": "Marimo Pre-Auth RCE (CVE-2026-39987)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01370.html", + "year": 2026, + "incident_id": "INC-01370" + }, + { + "name": "MCPJam Inspector RCE (CVE-2026-23744)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01390.html", + "year": 2026, + "incident_id": "INC-01390" + }, + { + "name": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01391.html", + "year": 2026, + "incident_id": "INC-01391" + }, + { + "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", + "year": 2026, + "incident_id": "INC-01429" + }, + { + "name": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01440.html", + "year": 2026, + "incident_id": "INC-01440" + }, + { + "name": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01471.html", + "year": 2026, + "incident_id": "INC-01471" + }, + { + "name": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01589.html", + "year": 2026, + "incident_id": "INC-01589" + }, + { + "name": "PraisonAI Quadruple CVE Disclosure", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01666.html", + "year": 2026, + "incident_id": "INC-01666" + }, + { + "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01723.html", + "year": 2023, + "incident_id": "INC-01723" + }, + { + "name": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01769.html", + "year": 2026, + "incident_id": "INC-01769" + }, + { + "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", + "year": 2025, + "incident_id": "INC-02186" + }, + { + "name": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02190.html", + "year": 2025, + "incident_id": "INC-02190" + }, + { + "name": "Amazon Q Prompt Poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02300.html", + "year": 2025, + "incident_id": "INC-02300" + }, + { + "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02321.html", + "year": 2025, + "incident_id": "INC-02321" + }, + { + "name": "Claude Desktop PromptJacking RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02447.html", + "year": 2025, + "incident_id": "INC-02447" + }, + { + "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", + "year": 2025, + "incident_id": "INC-02451" + }, + { + "name": "Cline AI Coding Agent Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02455.html", + "year": 2025, + "incident_id": "INC-02455" + }, + { + "name": "Cursor \"Open-Folder\" Autorun Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02462.html", + "year": 2025, + "incident_id": "INC-02462" + }, + { + "name": "Cursor & Windsurf Forked Chromium 94+ N-Day Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02463.html", + "year": 2025, + "incident_id": "INC-02463" + }, + { + "name": "Cursor CLI Project Config RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02467.html", + "year": 2025, + "incident_id": "INC-02467" + }, + { + "name": "Cursor Config Overwrite via Case Mismatch", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", + "year": 2025, + "incident_id": "INC-02468" + }, + { + "name": "Cursor Workspace File Injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02471.html", + "year": 2025, + "incident_id": "INC-02471" + }, + { + "name": "Cursorignore Bypass via New Cursorignore Write", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02480.html", + "year": 2025, + "incident_id": "INC-02480" + }, + { + "name": "Devin AI Agent Prompt Injection & Data Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02512.html", + "year": 2025, + "incident_id": "INC-02512" + }, + { + "name": "Dify SSRF via RemoteFileUploadApi (CVE-2025-56520)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02514.html", + "year": 2025, + "incident_id": "INC-02514" + }, + { + "name": "Dify Unauthenticated Information Disclosure (CVE-2025-63387)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02515.html", + "year": 2025, + "incident_id": "INC-02515" + }, + { + "name": "EscapeRoute -- Anthropic Filesystem MCP Sandbox Escape (CVE-2025-53109 & CVE-2025-53110)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02546.html", + "year": 2025, + "incident_id": "INC-02546" + }, + { + "name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html", + "year": 2025, + "incident_id": "INC-02590" + }, + { + "name": "Framelink Figma MCP RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", + "year": 2025, + "incident_id": "INC-02592" + }, + { + "name": "GitHub Copilot & Cursor Code-Agent Exploit", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02607.html", + "year": 2025, + "incident_id": "INC-02607" + }, + { + "name": "Google Antigravity AI Data Wipe", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02627.html", + "year": 2025, + "incident_id": "INC-02627" + }, + { + "name": "Google Antigravity IDE Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02629.html", + "year": 2025, + "incident_id": "INC-02629" + }, + { + "name": "Google Gemini CLI File Loss", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02631.html", + "year": 2025, + "incident_id": "INC-02631" + }, + { + "name": "GPT-4.1 jailbreak via tool poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", + "year": 2025, + "incident_id": "INC-02646" + }, + { + "name": "Hub MCP Prompt Injection (Cross-Context)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02700.html", + "year": 2025, + "incident_id": "INC-02700" + }, + { + "name": "Kiro IDE Command Injection (CVE-2026-0830)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02793.html", + "year": 2025, + "incident_id": "INC-02793" + }, + { + "name": "LangGrinch -- LangChain Core Serialization Injection (CVE-2025-68664)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02813.html", + "year": 2025, + "incident_id": "INC-02813" + }, + { + "name": "MCP OAuth Response Exploit", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02871.html", + "year": 2025, + "incident_id": "INC-02871" + }, + { + "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", + "year": 2025, + "incident_id": "INC-02878" + }, + { + "name": "Ollama GGUF Model File RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02980.html", "year": 2025, - "incident_id": "INC-02426" + "incident_id": "INC-02980" }, { - "name": "OpenAI GPT-4 system prompt extraction toolkit — systematic prompt leakage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04067.html", + "name": "OpenHands ZombAI RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03010.html", + "year": 2025, + "incident_id": "INC-03010" + }, + { + "name": "Postgres MCP Server SQL Injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03039.html", + "year": 2025, + "incident_id": "INC-03039" + }, + { + "name": "React2Shell Impacting Dify and AI Platforms (CVE-2025-55182)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03149.html", + "year": 2025, + "incident_id": "INC-03149" + }, + { + "name": "Salesloft Drift OAuth breach — Chinese actor UNC6395 accesses 700+ Salesforce CRM environments", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03194.html", + "year": 2025, + "incident_id": "INC-03194" + }, + { + "name": "ShadowMQ — critical RCE in Meta/NVIDIA/vLLM inference servers via pickle deserialization", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03211.html", + "year": 2025, + "incident_id": "INC-03211" + }, + { + "name": "ToolShell RCE via SharePoint", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03300.html", + "year": 2025, + "incident_id": "INC-03300" + }, + { + "name": "Trail of Bits: Prompt Injection to RCE in AI Agents", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03304.html", + "year": 2025, + "incident_id": "INC-03304" + }, + { + "name": "Visual Studio Code & Agentic AI workflows RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03334.html", + "year": 2025, + "incident_id": "INC-03334" + }, + { + "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03376.html", + "year": 2025, + "incident_id": "INC-03376" + }, + { + "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", "year": 2024, - "incident_id": "INC-04067" + "incident_id": "INC-04007" }, { "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", "year": 2021, "incident_id": "INC-08177" + }, + { + "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", + "year": 2023, + "incident_id": "INC-08181" } ], "crossrefs": { diff --git a/data/incidents.json b/data/incidents.json index d8471a9..64a0998 100644 --- a/data/incidents.json +++ b/data/incidents.json @@ -1,34 +1,173 @@ { - "version": "2.5.0", - "generated": "2026-06-15", + "version": "2.10.0", + "generated": "2026-09-28", "source": { "repo": "emmanuelgjr/genai_incidents", "ref": "main", "tier": "curated", - "upstream_total": 11658, - "synced": 122, + "upstream_total": 13361, + "synced": 119, "note": "Generated view — curate incidents upstream, not here. See scripts/sync-incidents.mjs." }, "incidents": [ { - "id": "INC-00010", - "title": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "date": "2023-06", - "year": 2023, - "category": "vulnerability-disclosure", - "description": "## Summary The fork of `org.cyberneko.html` used by Nokogiri (Rubygem) raises a `java.lang.OutOfMemoryError` exception when parsing ill-formed HTML markup. ## Severity The maintainers have evaluated this as [**High Severity** 7.5 (CVSS3.1)](https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H). ## Mitigation Upgrade to `>= 1.9.22.noko2`. ## Credit This vulnerability was reported by [이형관 (windshock)](https://www.linkedin.com/in/windshock/). ## References [CWE-400](https://cwe.mitre.org/data/definitions/400.html) Uncontrolled Resource Consumption ## Notes The upstream library `org.cyberneko.html` is no longer maintained. Nokogiri uses its own fork of this library located at https://github.com/sparklemotion/nekohtml and this CVE applies only to that fork. Other forks of nekohtml may have a similar vulnerability.", + "id": "INC-00036", + "title": "A2A Protocol -- Agent Card Poisoning Vulnerability", + "date": "2026", + "year": 2026, + "category": "real-world", + "description": "Google's Agent-to-Agent (A2A) protocol has systemic vulnerabilities: agent card poisoning (malicious metadata injection causing data exfiltration), agent impersonation/shadowing, replay attacks, and contagion risk (one compromised agent influencing others in collaborative workflows). The spec delegates credential management entirely to implementers with no built-in protections.", "owasp_entries": [ "LLM02", - "LLM03", - "LLM04", "LLM05", - "LLM09", + "ASI06", + "ASI07", + "ASI08" + ], + "mitre_atlas": [ + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0024", + "AML.T0048", + "AML.T0051", + "AML.T0051.000", + "AML.T0053", + "AML.T0057", + "AML.T0059", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MANAGE-4.1", + "MAP-2.1", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "attack_vector": "prompt-injection", + "affected": "A2A Protocol", + "severity": "Medium", + "references": [ + { + "title": "Palo Alto Networks", + "url": "https://live.paloaltonetworks.com/t5/community-blogs/safeguarding-ai-agents-an-in-depth-look-at-a2a-protocol-risks/ba-p/1235996", + "type": "research" + } + ] + }, + { + "id": "INC-00198", + "title": "AI recommendation poisoning — hidden prompt injections in 'Summarize with AI' buttons across 31 companies", + "date": "2026-02", + "year": 2026, + "category": "research-demonstrated", + "description": "Microsoft researchers discovered that 'Summarize with AI' buttons on websites contain hidden prompt-injection instructions that poison AI assistant memory. Over 60 days, 50 distinct examples found from 31 companies across 12+ industries. Altered memory influences later answers in unrelated conversations.", + "owasp_entries": [ + "LLM01", + "LLM05", + "ASI01", + "ASI06", + "ASI09", + "DSGAI04" + ], + "mitre_atlas": [ + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0059", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0005", + "AML.TA0006", + "AML.TA0011" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "maestro_layers": [ + { + "layer": "L2", + "label": "Data Operations", + "role": "origin", + "notes": "Hidden instructions embedded in web content processed by AI" + }, + { + "layer": "L3", + "label": "Agent Frameworks", + "role": "propagation", + "notes": "Poisoned content persists in AI assistant memory across sessions" + } + ], + "attack_vector": "prompt-injection", + "affected": "AI assistants processing web content — 31 companies, 12+ industries", + "impact": "Cross-session manipulation; persistent behavioral modification; memory-based trust exploitation", + "severity": "High", + "mitigations": [ + "Content integrity verification before memory storage", + "Memory content sanitization", + "Session isolation for AI memory" + ], + "references": [ + { + "title": "AI recommendation poisoning", + "url": "https://www.microsoft.com/en-us/security/blog/2026/02/10/ai-recommendation-poisoning/", + "type": "research" + } + ], + "tags": [ + "cross-session", + "memory-poisoning", + "persistent", + "trust", + "web-content" + ] + }, + { + "id": "INC-00627", + "title": "AnythingLLM Multiple CVEs", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "Multiple vulnerabilities in AnythingLLM Desktop v1.11.1 and earlier: CVE-2026-32626 (CVSS 9.7) streaming phase XSS to RCE via LLM response injection in Electron; CVE-2026-32719 Zip Slip path traversal in plugin imports leading to arbitrary code execution; CVE-2026-32617 authentication bypass exposing HTTP/WebSocket endpoints; CVE-2026-24477 Qdrant API key exposed in plaintext via `/api/setup-complete`.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", "LLM10", + "ASI01", "ASI02", "ASI03", "ASI04", - "ASI05", - "ASI07" + "ASI05" ], "mitre_atlas": [ "AML.T0010", @@ -36,15153 +175,1091 @@ "AML.T0010.003", "AML.T0011", "AML.T0012", - "AML.T0018", - "AML.T0019", - "AML.T0020", "AML.T0024", - "AML.T0029", - "AML.T0034", - "AML.T0048.001", "AML.T0049", "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", "AML.T0053", "AML.T0057", - "AML.T0058", - "AML.T0059", "AML.T0060" ], "mitre_atlas_tactics": [ - "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", "AML.TA0010", - "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-1.1", "GOVERN-1.4", + "GOVERN-3.2", "GOVERN-6.1", "GOVERN-6.2", "MANAGE-2.3", - "MANAGE-3.2", - "MANAGE-4.3", + "MAP-2.1", "MAP-3.5", "MAP-4.1", - "MAP-4.2", "MEASURE-2.10", - "MEASURE-2.4", "MEASURE-2.5", - "MEASURE-2.7", - "MEASURE-2.8" + "MEASURE-2.7" ], - "attack_vector": "other", - "affected": "maven/org.nokogiri:nekohtml", + "attack_vector": "rce", + "affected": "AnythingLLM Multiple CVEs", "severity": "Critical", "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24839", - "type": "advisory" + "title": "GitHub Advisory", + "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-rrmw-2j6x-4mf2", + "type": "research" }, { - "title": "GHSA-9849-p7jc-9rmv", - "url": "https://github.com/advisories/GHSA-9849-p7jc-9rmv", + "title": "SentinelOne", + "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-32617/", "type": "advisory" }, - { - "title": "https://github.com/sparklemotion/nekohtml/security/advisories/GHSA-9849-p7jc-9rmv", - "url": "https://github.com/sparklemotion/nekohtml/security/advisories/GHSA-9849-p7jc-9rmv", - "type": "reference" - }, - { - "title": "https://github.com/sparklemotion/nekohtml/commit/a800fce3b079def130ed42a408ff1d09f89e773d", - "url": "https://github.com/sparklemotion/nekohtml/commit/a800fce3b079def130ed42a408ff1d09f89e773d", - "type": "reference" - }, - { - "title": "https://www.oracle.com/security-alerts/cpujul2022.html", - "url": "https://www.oracle.com/security-alerts/cpujul2022.html", - "type": "reference" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-29577", - "type": "advisory" - }, - { - "title": "GHSA-vp37-2f9p-3vr3", - "url": "https://github.com/advisories/GHSA-vp37-2f9p-3vr3", - "type": "advisory" - }, - { - "title": "https://github.com/nahsra/antisamy/commit/32e273507da0e964b58c50fd8a4c94c9d9363af0", - "url": "https://github.com/nahsra/antisamy/commit/32e273507da0e964b58c50fd8a4c94c9d9363af0", - "type": "reference" - }, - { - "title": "https://github.com/nahsra/antisamy/releases/tag/v1.6.7", - "url": "https://github.com/nahsra/antisamy/releases/tag/v1.6.7", - "type": "reference" - }, - { - "title": "GHSA-gx8x-g87m-h5q6", - "url": "https://github.com/advisories/GHSA-gx8x-g87m-h5q6", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32617", "type": "advisory" }, { - "title": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-gx8x-g87m-h5q6", - "url": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-gx8x-g87m-h5q6", - "type": "reference" - }, - { - "title": "https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.4", - "url": "https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.4", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-24qj-pw4h-3jmm", + "type": "vendor" }, { - "title": "GHSA-xxx9-3xcr-gjj3", - "url": "https://github.com/advisories/GHSA-xxx9-3xcr-gjj3", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32626", "type": "advisory" }, { - "title": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-xxx9-3xcr-gjj3", - "url": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-xxx9-3xcr-gjj3", - "type": "reference" - }, - { - "title": "https://nvd.nist.gov/vuln/detail/CVE-2022-23437", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23437", - "type": "reference" - }, - { - "title": "https://github.com/advisories/GHSA-h65f-jvqw-m9fj", - "url": "https://github.com/advisories/GHSA-h65f-jvqw-m9fj", - "type": "reference" - }, - { - "title": "https://groups.google.com/g/ruby-security-ann/c/vX7qSjsvWis/m/TJWN4oOKBwAJ?utm_medium=email&utm_source=footer", - "url": "https://groups.google.com/g/ruby-security-ann/c/vX7qSjsvWis/m/TJWN4oOKBwAJ?utm_medium=email&utm_source=footer", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Mintplex-Labs/anything-llm/commit/9e2d144dc8be6fab29f560f5bcdaa9ef7dbb4214", + "type": "patch" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24836", - "type": "advisory" - }, - { - "title": "GHSA-crjr-9rc5-ghw8", - "url": "https://github.com/advisories/GHSA-crjr-9rc5-ghw8", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32719", "type": "advisory" }, { - "title": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-crjr-9rc5-ghw8", - "url": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-crjr-9rc5-ghw8", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Mintplex-Labs/anything-llm/commit/6a492f038da195a5c9a239d5ca2e9f2151c25f8c", + "type": "patch" }, { - "title": "https://github.com/sparklemotion/nokogiri/commit/e444525ef1634b675cd1cf52d39f4320ef0aecfd", - "url": "https://github.com/sparklemotion/nokogiri/commit/e444525ef1634b675cd1cf52d39f4320ef0aecfd", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-rh66-4w74-cf4m", + "type": "vendor" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-38296", - "type": "advisory" - }, - { - "title": "GHSA-9rr6-jpg7-9jg6", - "url": "https://github.com/advisories/GHSA-9rr6-jpg7-9jg6", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24477", "type": "advisory" }, - { - "title": "https://lists.apache.org/thread/70x8fw2gx3g9ty7yk0f2f1dlpqml2smd", - "url": "https://lists.apache.org/thread/70x8fw2gx3g9ty7yk0f2f1dlpqml2smd", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/pyspark/PYSEC-2022-186.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/pyspark/PYSEC-2022-186.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-0839", - "type": "advisory" - }, - { - "title": "GHSA-jvfv-hrrc-6q72", - "url": "https://github.com/advisories/GHSA-jvfv-hrrc-6q72", - "type": "advisory" - }, - { - "title": "https://github.com/liquibase/liquibase/commit/33d9d925082097fb1a3d2fc8e44423d964cd9381", - "url": "https://github.com/liquibase/liquibase/commit/33d9d925082097fb1a3d2fc8e44423d964cd9381", - "type": "reference" - }, - { - "title": "https://huntr.dev/bounties/f1ae5779-b406-4594-a8a3-d089c68d6e70", - "url": "https://huntr.dev/bounties/f1ae5779-b406-4594-a8a3-d089c68d6e70", - "type": "reference" - }, - { - "title": "http://seclists.org/fulldisclosure/2025/Apr/14", - "url": "http://seclists.org/fulldisclosure/2025/Apr/14", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread/6pjwm10bb69kq955fzr1n0nflnjd27dl", - "url": "https://lists.apache.org/thread/6pjwm10bb69kq955fzr1n0nflnjd27dl", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2022/01/24/3", - "url": "http://www.openwall.com/lists/oss-security/2022/01/24/3", - "type": "reference" - }, - { - "title": "https://www.oracle.com/security-alerts/cpuapr2022.html", - "url": "https://www.oracle.com/security-alerts/cpuapr2022.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1000198", - "type": "advisory" - }, - { - "title": "GHSA-8rc4-3jc3-83pm", - "url": "https://github.com/advisories/GHSA-8rc4-3jc3-83pm", - "type": "advisory" - }, - { - "title": "https://jenkins.io/security/advisory/2018-05-09/#SECURITY-671", - "url": "https://jenkins.io/security/advisory/2018-05-09/#SECURITY-671", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1000194", - "type": "advisory" - }, - { - "title": "GHSA-x646-m7x2-gcp7", - "url": "https://github.com/advisories/GHSA-x646-m7x2-gcp7", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/5cf0a77d44310523b763698f67d645c1f2427f30", - "url": "https://github.com/jenkinsci/jenkins/commit/5cf0a77d44310523b763698f67d645c1f2427f30", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-22118", - "type": "advisory" - }, - { - "title": "GHSA-gfwj-fwqj-fp3v", - "url": "https://github.com/advisories/GHSA-gfwj-fwqj-fp3v", - "type": "advisory" - }, - { - "title": "https://security.netapp.com/advisory/ntap-20210713-0005/", - "url": "https://security.netapp.com/advisory/ntap-20210713-0005/", - "type": "reference" - }, - { - "title": "https://tanzu.vmware.com/security/cve-2021-22118", - "url": "https://tanzu.vmware.com/security/cve-2021-22118", - "type": "reference" - }, - { - "title": "https://www.oracle.com//security-alerts/cpujul2021.html", - "url": "https://www.oracle.com//security-alerts/cpujul2021.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-27193", - "type": "advisory" - }, - { - "title": "GHSA-4m44-5j2g-xf64", - "url": "https://github.com/advisories/GHSA-4m44-5j2g-xf64", - "type": "advisory" - }, - { - "title": "https://ckeditor.com/blog/CKEditor-4.15.1-with-a-security-patch-released/", - "url": "https://ckeditor.com/blog/CKEditor-4.15.1-with-a-security-patch-released/", - "type": "reference" - }, - { - "title": "https://ckeditor.com/cke4/release/CKEditor-4.15.1", - "url": "https://ckeditor.com/cke4/release/CKEditor-4.15.1", - "type": "reference" - }, - { - "title": "https://ckeditor.com/ckeditor-4/download/", - "url": "https://ckeditor.com/ckeditor-4/download/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10383", - "type": "advisory" - }, - { - "title": "GHSA-9m48-54pj-h248", - "url": "https://github.com/advisories/GHSA-9m48-54pj-h248", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2019:2789", - "url": "https://access.redhat.com/errata/RHSA-2019:2789", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2019:3144", - "url": "https://access.redhat.com/errata/RHSA-2019:3144", - "type": "reference" - }, - { - "title": "https://jenkins.io/security/advisory/2019-08-28/#SECURITY-1453", - "url": "https://jenkins.io/security/advisory/2019-08-28/#SECURITY-1453", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-5351", - "type": "advisory" - }, - { - "title": "GHSA-66rx-gqx3-p98m", - "url": "https://github.com/advisories/GHSA-66rx-gqx3-p98m", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/79487", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/79487", - "type": "reference" - }, - { - "title": "http://www.nds.rub.de/media/nds/veroeffentlichungen/2012/08/22/BreakingSAML_3.pdf", - "url": "http://www.nds.rub.de/media/nds/veroeffentlichungen/2012/08/22/BreakingSAML_3.pdf", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2912", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/bentoml/bentoml/commit/fd70379733c57c6368cc022ac1f841b7b426db7b", - "type": "reference" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/349a1cce-6bb5-4345-82a5-bf7041b65a68", - "type": "reference" - }, - { - "title": "GHSA-hvj5-mvw9-93j3", - "url": "https://github.com/advisories/GHSA-hvj5-mvw9-93j3", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hvj5-mvw9-93j3", - "type": "advisory" - }, - { - "title": "https://github.com/bentoml/BentoML", - "url": "https://github.com/bentoml/BentoML", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1561", - "type": "advisory" - }, - { - "title": "GHSA-g9cj-cfpp-4g2x", - "url": "https://github.com/advisories/GHSA-g9cj-cfpp-4g2x", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/24a583688046867ca8b8b02959c441818bdb34a2", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/4acf584e-2fe8-490e-878d-2d9bf2698338", - "type": "exploit" - }, - { - "title": "security@huntr.dev", - "url": "https://www.gradio.app/changelog#4-13-0", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-g9cj-cfpp-4g2x", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio", - "url": "https://github.com/gradio-app/gradio", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7365", - "type": "advisory" - }, - { - "title": "GHSA-xhpr-465j-7p9q", - "url": "https://github.com/advisories/GHSA-xhpr-465j-7p9q", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-xhpr-465j-7p9q", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-xhpr-465j-7p9q", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/issues/40446", - "url": "https://github.com/keycloak/keycloak/issues/40446", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/pull/40520", - "url": "https://github.com/keycloak/keycloak/pull/40520", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:11986", - "url": "https://access.redhat.com/errata/RHSA-2025:11986", - "type": "reference" - }, - { - "title": "GHSA-gj52-35xm-gxjh", - "url": "https://github.com/advisories/GHSA-gj52-35xm-gxjh", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-7365", - "url": "https://access.redhat.com/security/cve/CVE-2025-7365", - "type": "reference" - }, - { - "title": "https://bugzilla.redhat.com/show_bug.cgi?id=2378852", - "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2378852", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8419", - "type": "advisory" - }, - { - "title": "GHSA-m4j5-5x4r-2xp9", - "url": "https://github.com/advisories/GHSA-m4j5-5x4r-2xp9", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-m4j5-5x4r-2xp9", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-m4j5-5x4r-2xp9", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:15336", - "url": "https://access.redhat.com/errata/RHSA-2025:15336", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:15337", - "url": "https://access.redhat.com/errata/RHSA-2025:15337", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:15338", - "url": "https://access.redhat.com/errata/RHSA-2025:15338", - "type": "reference" - }, - { - "title": "GHSA-qj5r-2r5p-phc7", - "url": "https://github.com/advisories/GHSA-qj5r-2r5p-phc7", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-8419", - "url": "https://access.redhat.com/security/cve/CVE-2025-8419", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10044", - "type": "advisory" - }, - { - "title": "GHSA-27gc-wj6x-9w55", - "url": "https://github.com/advisories/GHSA-27gc-wj6x-9w55", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-27gc-wj6x-9w55", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-27gc-wj6x-9w55", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/pull/42035", - "url": "https://github.com/keycloak/keycloak/pull/42035", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:16399", - "url": "https://access.redhat.com/errata/RHSA-2025:16399", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:16400", - "url": "https://access.redhat.com/errata/RHSA-2025:16400", - "type": "reference" - }, - { - "title": "GHSA-xmcw-mv9p-7pq2", - "url": "https://github.com/advisories/GHSA-xmcw-mv9p-7pq2", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-10044", - "url": "https://access.redhat.com/security/cve/CVE-2025-10044", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-7307", - "type": "advisory" - }, - { - "title": "GHSA-p5mv-gj8j-xqgf", - "url": "https://github.com/advisories/GHSA-p5mv-gj8j-xqgf", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-7307", - "url": "https://access.redhat.com/security/cve/CVE-2026-7307", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:19594", - "url": "https://access.redhat.com/errata/RHSA-2026:19594", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:19597", - "url": "https://access.redhat.com/errata/RHSA-2026:19597", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-37982", - "type": "advisory" - }, - { - "title": "GHSA-w4p5-rfh6-cwrv", - "url": "https://github.com/advisories/GHSA-w4p5-rfh6-cwrv", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-37982", - "url": "https://access.redhat.com/security/cve/CVE-2026-37982", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:19596", - "url": "https://access.redhat.com/errata/RHSA-2026:19596", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6420", - "type": "advisory" - }, - { - "title": "GHSA-q8w6-w55c-ccv5", - "url": "https://github.com/advisories/GHSA-q8w6-w55c-ccv5", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-q8w6-w55c-ccv5", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-q8w6-w55c-ccv5", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-6420", - "url": "https://access.redhat.com/security/cve/CVE-2026-6420", - "type": "reference" - }, - { - "title": "GHSA-wc6p-4gwj-jcr8", - "url": "https://github.com/advisories/GHSA-wc6p-4gwj-jcr8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6494", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2026-6494", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6859", - "type": "advisory" - }, - { - "title": "GHSA-rxpq-xgqx-fr7p", - "url": "https://github.com/advisories/GHSA-rxpq-xgqx-fr7p", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-6859", - "url": "https://access.redhat.com/security/cve/CVE-2026-6859", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-12805", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/errata/RHSA-2026:2106", - "type": "vendor" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/errata/RHSA-2026:2695", - "type": "vendor" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2025-12805", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2575", - "type": "advisory" - }, - { - "title": "GHSA-xv6h-r36f-3gp5", - "url": "https://github.com/advisories/GHSA-xv6h-r36f-3gp5", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:3947", - "url": "https://access.redhat.com/errata/RHSA-2026:3947", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:3948", - "url": "https://access.redhat.com/errata/RHSA-2026:3948", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-2575", - "url": "https://access.redhat.com/security/cve/CVE-2026-2575", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2092", - "type": "advisory" - }, - { - "title": "GHSA-wmxr-6j5f-838p", - "url": "https://github.com/advisories/GHSA-wmxr-6j5f-838p", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:3925", - "url": "https://access.redhat.com/errata/RHSA-2026:3925", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:3926", - "url": "https://access.redhat.com/errata/RHSA-2026:3926", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2603", - "type": "advisory" - }, - { - "title": "GHSA-x4p7-7chp-64hq", - "url": "https://github.com/advisories/GHSA-x4p7-7chp-64hq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-1289", - "type": "advisory" - }, - { - "title": "GHSA-j96m-mjp6-99xr", - "url": "https://github.com/advisories/GHSA-j96m-mjp6-99xr", - "type": "advisory" - }, - { - "title": "https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-j96m-mjp6-99xr", - "url": "https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-j96m-mjp6-99xr", - "type": "reference" - }, - { - "title": "https://github.com/ImageMagick/ImageMagick/commit/c5b23cbf2119540725e6dc81f4deb25798ead6a4", - "url": "https://github.com/ImageMagick/ImageMagick/commit/c5b23cbf2119540725e6dc81f4deb25798ead6a4", - "type": "reference" - }, - { - "title": "https://lists.debian.org/debian-lts-announce/2024/02/msg00007.html", - "url": "https://lists.debian.org/debian-lts-announce/2024/02/msg00007.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3047", - "type": "advisory" - }, - { - "title": "GHSA-8cr3-vpxx-92cx", - "url": "https://github.com/advisories/GHSA-8cr3-vpxx-92cx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-12343", - "type": "advisory" - }, - { - "title": "patrick@puiterwijk.org", - "url": "https://access.redhat.com/security/cve/CVE-2025-12343", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0871", - "type": "advisory" - }, - { - "title": "GHSA-v4jw-m6rm-399h", - "url": "https://github.com/advisories/GHSA-v4jw-m6rm-399h", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2365", - "url": "https://access.redhat.com/errata/RHSA-2026:2365", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2366", - "url": "https://access.redhat.com/errata/RHSA-2026:2366", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-0871", - "url": "https://access.redhat.com/security/cve/CVE-2026-0871", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-14778", - "type": "advisory" - }, - { - "title": "GHSA-fm6w-rrp3-2x4w", - "url": "https://github.com/advisories/GHSA-fm6w-rrp3-2x4w", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2364", - "url": "https://access.redhat.com/errata/RHSA-2026:2364", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-14778", - "url": "https://access.redhat.com/security/cve/CVE-2025-14778", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2363", - "url": "https://access.redhat.com/errata/RHSA-2026:2363", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-1529", - "type": "advisory" - }, - { - "title": "GHSA-hcvw-475w-8g7p", - "url": "https://github.com/advisories/GHSA-hcvw-475w-8g7p", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-1529", - "url": "https://access.redhat.com/security/cve/CVE-2026-1529", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-1709", - "type": "advisory" - }, - { - "title": "GHSA-4jqp-9qjv-57m2", - "url": "https://github.com/advisories/GHSA-4jqp-9qjv-57m2", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-4jqp-9qjv-57m2", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-4jqp-9qjv-57m2", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-1709", - "url": "https://access.redhat.com/security/cve/CVE-2026-1709", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2224", - "url": "https://access.redhat.com/errata/RHSA-2026:2224", - "type": "reference" - }, - { - "title": "GHSA-27jc-jmp8-qfw5", - "url": "https://github.com/advisories/GHSA-27jc-jmp8-qfw5", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2225", - "url": "https://access.redhat.com/errata/RHSA-2026:2225", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-67849", - "type": "advisory" - }, - { - "title": "GHSA-mhf6-pp52-8wqj", - "url": "https://github.com/advisories/GHSA-mhf6-pp52-8wqj", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-67849", - "url": "https://access.redhat.com/security/cve/CVE-2025-67849", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/a3063dcaa44dbe66e60a37cadb33bfadfe4feb03", - "url": "https://github.com/moodle/moodle/commit/a3063dcaa44dbe66e60a37cadb33bfadfe4feb03", - "type": "reference" - }, - { - "title": "https://moodle.org/mod/forum/discuss.php?d=471299", - "url": "https://moodle.org/mod/forum/discuss.php?d=471299", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-1190", - "type": "advisory" - }, - { - "title": "GHSA-63v5-26vq-m4vm", - "url": "https://github.com/advisories/GHSA-63v5-26vq-m4vm", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-1190", - "url": "https://access.redhat.com/security/cve/CVE-2026-1190", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/issues/45646", - "url": "https://github.com/keycloak/keycloak/issues/45646", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-14525", - "type": "advisory" - }, - { - "title": "GHSA-25mh-hp8x-cgrv", - "url": "https://github.com/advisories/GHSA-25mh-hp8x-cgrv", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-14525", - "url": "https://access.redhat.com/security/cve/CVE-2025-14525", - "type": "reference" - }, - { - "title": "https://github.com/kubevirt/kubevirt/releases/tag/v1.7.0", - "url": "https://github.com/kubevirt/kubevirt/releases/tag/v1.7.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4472", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2021-4472", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://bugs.launchpad.net/horizon/+bug/1931558", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://review.opendev.org/c/openstack/mistral-dashboard/+/800952", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://review.opendev.org/c/openstack/python-mistralclient/+/800950", - "type": "reference" - }, - { - "title": "GHSA-75hx-6r6j-hw56", - "url": "https://github.com/advisories/GHSA-75hx-6r6j-hw56", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-13609", - "type": "advisory" - }, - { - "title": "GHSA-xh5w-g8gq-r3v9", - "url": "https://github.com/advisories/GHSA-xh5w-g8gq-r3v9", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-13609", - "url": "https://access.redhat.com/security/cve/CVE-2025-13609", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/pull/1785", - "url": "https://github.com/keylime/keylime/pull/1785", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/commit/e1ae8de1f7b1385eaeec66572a92ff1338e6e157", - "url": "https://github.com/keylime/keylime/commit/e1ae8de1f7b1385eaeec66572a92ff1338e6e157", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6242", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2025-6242", - "type": "reference" - }, - { - "title": "GHSA-3f6c-7fw2-ppm4", - "url": "https://github.com/advisories/GHSA-3f6c-7fw2-ppm4", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3f6c-7fw2-ppm4", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3f6c-7fw2-ppm4", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/9d9a2b77f19f68262d5e469c4e82c0f6365ad72d", - "url": "https://github.com/vllm-project/vllm/commit/9d9a2b77f19f68262d5e469c4e82c0f6365ad72d", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3f6c-7fw2-ppm4", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-9566", - "type": "advisory" - }, - { - "title": "GHSA-wp3j-xq48-xpjw", - "url": "https://github.com/advisories/GHSA-wp3j-xq48-xpjw", - "type": "advisory" - }, - { - "title": "https://github.com/containers/podman/security/advisories/GHSA-wp3j-xq48-xpjw", - "url": "https://github.com/containers/podman/security/advisories/GHSA-wp3j-xq48-xpjw", - "type": "reference" - }, - { - "title": "https://github.com/containers/podman/commit/43fbde4e665fe6cee6921868f04b7ccd3de5ad89", - "url": "https://github.com/containers/podman/commit/43fbde4e665fe6cee6921868f04b7ccd3de5ad89", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-9566", - "url": "https://access.redhat.com/security/cve/CVE-2025-9566", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7195", - "type": "advisory" - }, - { - "title": "GHSA-856v-8qm2-9wjv", - "url": "https://github.com/advisories/GHSA-856v-8qm2-9wjv", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-7195", - "url": "https://access.redhat.com/security/cve/CVE-2025-7195", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:19335", - "url": "https://access.redhat.com/errata/RHSA-2025:19335", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:19332", - "url": "https://access.redhat.com/errata/RHSA-2025:19332", - "type": "reference" - }, - { - "title": "GHSA-522r-9946-fw43", - "url": "https://github.com/advisories/GHSA-522r-9946-fw43", - "type": "advisory" - }, - { - "title": "https://github.com/cloudflare/circl/security/advisories/GHSA-2x5j-vhc8-9cwm", - "url": "https://github.com/cloudflare/circl/security/advisories/GHSA-2x5j-vhc8-9cwm", - "type": "reference" - }, - { - "title": "https://nvd.nist.gov/vuln/detail/CVE-2025-8556", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8556", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-8556", - "url": "https://access.redhat.com/security/cve/CVE-2025-8556", - "type": "reference" - }, - { - "title": "https://github.com/cloudflare/circl", - "url": "https://github.com/cloudflare/circl", - "type": "reference" - }, - { - "title": "GHSA-2x5j-vhc8-9cwm", - "url": "https://github.com/advisories/GHSA-2x5j-vhc8-9cwm", - "type": "advisory" - }, - { - "title": "https://github.com/cloudflare/circl/tree/v1.6.1", - "url": "https://github.com/cloudflare/circl/tree/v1.6.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3931", - "type": "advisory" - }, - { - "title": "GHSA-rpg2-jvhp-h354", - "url": "https://github.com/advisories/GHSA-rpg2-jvhp-h354", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:7592", - "url": "https://access.redhat.com/errata/RHSA-2025:7592", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-3931", - "url": "https://access.redhat.com/security/cve/CVE-2025-3931", - "type": "reference" - }, - { - "title": "https://github.com/RedHatInsights/yggdrasil/commit/196d0cbea42f72e6dfecaa563681a99e9fdb4a38", - "url": "https://github.com/RedHatInsights/yggdrasil/commit/196d0cbea42f72e6dfecaa563681a99e9fdb4a38", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3644", - "type": "advisory" - }, - { - "title": "GHSA-cpm7-mv33-jwf8", - "url": "https://github.com/advisories/GHSA-cpm7-mv33-jwf8", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-3644", - "url": "https://access.redhat.com/security/cve/CVE-2025-3644", - "type": "reference" - }, - { - "title": "https://github.com/search?q=repo%3Amoodle%2Fmoodle+MDL-83994&type=commits", - "url": "https://github.com/search?q=repo%3Amoodle%2Fmoodle+MDL-83994&type=commits", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3634", - "type": "advisory" - }, - { - "title": "GHSA-qhc7-xhc2-7p7w", - "url": "https://github.com/advisories/GHSA-qhc7-xhc2-7p7w", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-3634", - "url": "https://access.redhat.com/security/cve/CVE-2025-3634", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/b0965139014b459c3cb96e4fff45af4d5e09e261", - "url": "https://github.com/moodle/moodle/commit/b0965139014b459c3cb96e4fff45af4d5e09e261", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1057", - "type": "advisory" - }, - { - "title": "GHSA-9jxq-5x44-gx23", - "url": "https://github.com/advisories/GHSA-9jxq-5x44-gx23", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-9jxq-5x44-gx23", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-9jxq-5x44-gx23", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/commit/e08b10d86c3717006774e787542c190e2ba24fc7", - "url": "https://github.com/keylime/keylime/commit/e08b10d86c3717006774e787542c190e2ba24fc7", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-1057", - "url": "https://access.redhat.com/security/cve/CVE-2025-1057", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48897", - "type": "advisory" - }, - { - "title": "GHSA-x3x9-349x-2485", - "url": "https://github.com/advisories/GHSA-x3x9-349x-2485", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-1932", - "type": "advisory" - }, - { - "title": "GHSA-x83m-pf6f-pf9g", - "url": "https://github.com/advisories/GHSA-x83m-pf6f-pf9g", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2023-1932", - "url": "https://access.redhat.com/security/cve/CVE-2023-1932", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8698", - "type": "advisory" - }, - { - "title": "GHSA-xgfv-xpx8-qhcr", - "url": "https://github.com/advisories/GHSA-xgfv-xpx8-qhcr", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-xgfv-xpx8-qhcr", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-xgfv-xpx8-qhcr", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/releases/tag/25.0.6", - "url": "https://github.com/keycloak/keycloak/releases/tag/25.0.6", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2024-8698", - "url": "https://access.redhat.com/security/cve/CVE-2024-8698", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9407", - "type": "advisory" - }, - { - "title": "GHSA-fhqq-8f65-5xfc", - "url": "https://github.com/advisories/GHSA-fhqq-8f65-5xfc", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2024-9407", - "url": "https://access.redhat.com/security/cve/CVE-2024-9407", - "type": "reference" - }, - { - "title": "https://github.com/containers/podman/releases/tag/v5.2.4", - "url": "https://github.com/containers/podman/releases/tag/v5.2.4", - "type": "reference" - }, - { - "title": "https://github.com/containers/buildah/commit/e4e2ad5ca2088d7c388109394135ead7aaf1f4f4", - "url": "https://github.com/containers/buildah/commit/e4e2ad5ca2088d7c388109394135ead7aaf1f4f4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8939", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2024-8939", - "type": "reference" - }, - { - "title": "GHSA-wc36-9694-f9rf", - "url": "https://github.com/advisories/GHSA-wc36-9694-f9rf", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/issues/6137", - "url": "https://github.com/vllm-project/vllm/issues/6137", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wc36-9694-f9rf", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm", - "url": "https://github.com/vllm-project/vllm", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47868", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-4q3c-cj7g-jcwf", - "type": "exploit" - }, - { - "title": "GHSA-4q3c-cj7g-jcwf", - "url": "https://github.com/advisories/GHSA-4q3c-cj7g-jcwf", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-217.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-217.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-4q3c-cj7g-jcwf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-217", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47165", - "type": "advisory" - }, - { - "title": "GHSA-89v2-pqfv-c5r9", - "url": "https://github.com/advisories/GHSA-89v2-pqfv-c5r9", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-89v2-pqfv-c5r9", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-214.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-214.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-89v2-pqfv-c5r9", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-214", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47084", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-3c67-5hwx-f6wx", - "type": "advisory" - }, - { - "title": "GHSA-3c67-5hwx-f6wx", - "url": "https://github.com/advisories/GHSA-3c67-5hwx-f6wx", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-196.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-196.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3c67-5hwx-f6wx", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-196", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32381", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/mlc-ai/xgrammar/pull/243", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/mlc-ai/xgrammar/security/advisories/GHSA-389x-67px-mjg3", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/16283", - "type": "patch" - }, - { - "title": "GHSA-389x-67px-mjg3", - "url": "https://github.com/advisories/GHSA-389x-67px-mjg3", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/xgrammar/PYSEC-2025-235.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/xgrammar/PYSEC-2025-235.yaml", - "type": "reference" - }, - { - "title": "GHSA-hf3c-wxg2-49q9", - "url": "https://github.com/advisories/GHSA-hf3c-wxg2-49q9", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-hf3c-wxg2-49q9", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-hf3c-wxg2-49q9", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/cb84e45ac75b42ba6795145923e8eb323bb825ad", - "url": "https://github.com/vllm-project/vllm/commit/cb84e45ac75b42ba6795145923e8eb323bb825ad", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hf3c-wxg2-49q9", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32434", - "type": "advisory" - }, - { - "title": "GHSA-53q9-r3pm-6pq6", - "url": "https://github.com/advisories/GHSA-53q9-r3pm-6pq6", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/pytorch/pytorch/security/advisories/GHSA-53q9-r3pm-6pq6", - "type": "vendor" - }, - { - "title": "af854a3a-2127-422b-91ae-364da2661108", - "url": "https://lists.debian.org/debian-lts-announce/2025/12/msg00000.html", - "type": "reference" - }, - { - "title": "https://github.com/pytorch/pytorch/commit/8d4b8a920a2172523deb95bf20e8e52d50649c04", - "url": "https://github.com/pytorch/pytorch/commit/8d4b8a920a2172523deb95bf20e8e52d50649c04", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-41.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-41.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-53q9-r3pm-6pq6", - "type": "advisory" - }, - { - "title": "https://github.com/pytorch/pytorch", - "url": "https://github.com/pytorch/pytorch", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-41", - "type": "advisory" - }, - { - "title": "GHSA-m9mp-6x32-5rhg", - "url": "https://github.com/advisories/GHSA-m9mp-6x32-5rhg", - "type": "advisory" - }, - { - "title": "https://github.com/ThalesGroup/scio/security/advisories/GHSA-m9mp-6x32-5rhg", - "url": "https://github.com/ThalesGroup/scio/security/advisories/GHSA-m9mp-6x32-5rhg", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-12345", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/?id.348531", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4530", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Ka7arotto/cve/blob/main/Aix-DB-nl2sql.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4538", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/pull/176791", - "type": "patch" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-139", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4993", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/YLChen-007/3bf37486022d4c57caec3a35cd79ac92", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4515", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Ka7arotto/cve/blob/main/metagpt-rce1.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4516", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Ka7arotto/cve/blob/main/MetaGPT-rce2.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4963", - "type": "advisory" - }, - { - "title": "GHSA-54fq-v6x8-244g", - "url": "https://github.com/advisories/GHSA-54fq-v6x8-244g", - "type": "advisory" - }, - { - "title": "https://gist.github.com/YLChen-007/35b7d46e892266a0ed6dbe57802858be", - "url": "https://gist.github.com/YLChen-007/35b7d46e892266a0ed6dbe57802858be", - "type": "reference" - }, - { - "title": "https://gist.github.com/YLChen-007/7146f45960f79bc1e2976fed526e0a9b", - "url": "https://gist.github.com/YLChen-007/7146f45960f79bc1e2976fed526e0a9b", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4229", - "type": "advisory" - }, - { - "title": "GHSA-6mj8-jmp2-g8q7", - "url": "https://github.com/advisories/GHSA-6mj8-jmp2-g8q7", - "type": "advisory" - }, - { - "title": "https://gist.github.com/YLChen-007/b4f326eaecc29b192cf93dc5d6bc0623", - "url": "https://gist.github.com/YLChen-007/b4f326eaecc29b192cf93dc5d6bc0623", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2970", - "type": "advisory" - }, - { - "title": "GHSA-hg58-x52p-859c", - "url": "https://github.com/advisories/GHSA-hg58-x52p-859c", - "type": "advisory" - }, - { - "title": "https://github.com/hacktivesec/datapizza-ai-disclosure/blob/main/unsafe-deserialization.md", - "url": "https://github.com/hacktivesec/datapizza-ai-disclosure/blob/main/unsafe-deserialization.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2969", - "type": "advisory" - }, - { - "title": "GHSA-q5xx-fxv3-xxqf", - "url": "https://github.com/advisories/GHSA-q5xx-fxv3-xxqf", - "type": "advisory" - }, - { - "title": "https://github.com/hacktivesec/datapizza-ai-disclosure/blob/main/ssti.md", - "url": "https://github.com/hacktivesec/datapizza-ai-disclosure/blob/main/ssti.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2897", - "type": "advisory" - }, - { - "title": "GHSA-rfh7-7v27-6p9r", - "url": "https://github.com/advisories/GHSA-rfh7-7v27-6p9r", - "type": "advisory" - }, - { - "title": "https://github.com/I4m6da/CVE/issues/4", - "url": "https://github.com/I4m6da/CVE/issues/4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2654", - "type": "advisory" - }, - { - "title": "GHSA-jxgv-6j54-wwc7", - "url": "https://github.com/advisories/GHSA-jxgv-6j54-wwc7", - "type": "advisory" - }, - { - "title": "https://github.com/CH0ico/CVE_choco_smolagent/blob/main/report.md#proof-of-concept-execution", - "url": "https://github.com/CH0ico/CVE_choco_smolagent/blob/main/report.md#proof-of-concept-execution", - "type": "reference" - }, - { - "title": "https://github.com/CH0ico/CVE_choco_smolagent/tree/main", - "url": "https://github.com/CH0ico/CVE_choco_smolagent/tree/main", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-15453", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/milvus-io/milvus/issues/46442", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/milvus-io/milvus/milestone/139", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-63396", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://pytorch.com", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/Daisy2ang", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/pytorch/pytorch/issues/156563", - "type": "exploit" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-210", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-11489", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/wonderwhy-er/DesktopCommanderMCP/issues/219", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-11445", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Kilo-Org/kilocode/pull/2244", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Kilo-Org/kilocode/pull/2244/commits/2fdddf89edba41ec3a527134e485a3388c464333", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://mcpsec.dev/advisories/2025-10-02-kilo-code-ai-agent-supply-chain-attack/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10619", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/sequa-ai/sequa-mcp/commit/e569815854166db5f71c2e722408f8957fb9e804", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://lavender-bicycle-a5a.notion.site/Sequa-MCP-RCE-26853a41781f807da1c0cd158f9e3e1a?source=copy_link", - "type": "reference" - }, - { - "title": "GHSA-9pw5-wx67-q964", - "url": "https://github.com/advisories/GHSA-9pw5-wx67-q964", - "type": "advisory" - }, - { - "title": "https://www.npmjs.com/package/%40sequa-ai/sequa-mcp/v/1.0.14", - "url": "https://www.npmjs.com/package/%40sequa-ai/sequa-mcp/v/1.0.14", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10164", - "type": "advisory" - }, - { - "title": "GHSA-9w53-xr52-mwgj", - "url": "https://github.com/advisories/GHSA-9w53-xr52-mwgj", - "type": "advisory" - }, - { - "title": "https://github.com/sgl-project/sglang/commit/49afb3d9d9deedf6dea3a6dd5c50e85e7d8bcb07", - "url": "https://github.com/sgl-project/sglang/commit/49afb3d9d9deedf6dea3a6dd5c50e85e7d8bcb07", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10952", - "type": "advisory" - }, - { - "title": "GHSA-9x36-c74v-fgr6", - "url": "https://github.com/advisories/GHSA-9x36-c74v-fgr6", - "type": "advisory" - }, - { - "title": "https://github.com/geyang/ml-logger/issues/74", - "url": "https://github.com/geyang/ml-logger/issues/74", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10950", - "type": "advisory" - }, - { - "title": "GHSA-57hm-8rjv-498w", - "url": "https://github.com/advisories/GHSA-57hm-8rjv-498w", - "type": "advisory" - }, - { - "title": "https://github.com/geyang/ml-logger/issues/72", - "url": "https://github.com/geyang/ml-logger/issues/72", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10951", - "type": "advisory" - }, - { - "title": "GHSA-8x9j-2p8r-7xc6", - "url": "https://github.com/advisories/GHSA-8x9j-2p8r-7xc6", - "type": "advisory" - }, - { - "title": "https://github.com/geyang/ml-logger/issues/73", - "url": "https://github.com/geyang/ml-logger/issues/73", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10097", - "type": "advisory" - }, - { - "title": "GHSA-g4c9-f287-64xg", - "url": "https://github.com/advisories/GHSA-g4c9-f287-64xg", - "type": "advisory" - }, - { - "title": "https://github.com/simstudioai/sim/issues/961", - "url": "https://github.com/simstudioai/sim/issues/961", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8665", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/bayuncao-bit/vul-30", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-9654", - "type": "advisory" - }, - { - "title": "GHSA-694p-3fxc-m92h", - "url": "https://github.com/advisories/GHSA-694p-3fxc-m92h", - "type": "advisory" - }, - { - "title": "https://github.com/AiondaDotCom/mcp-ssh/commit/5b9b9c5b28d3f2672f356a790154ed68e17ef453", - "url": "https://github.com/AiondaDotCom/mcp-ssh/commit/5b9b9c5b28d3f2672f356a790154ed68e17ef453", - "type": "reference" - }, - { - "title": "https://github.com/AiondaDotCom/mcp-ssh/commit/cd2566a948b696501abfa6c6b03462cac5fb43d8", - "url": "https://github.com/AiondaDotCom/mcp-ssh/commit/cd2566a948b696501abfa6c6b03462cac5fb43d8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-9262", - "type": "advisory" - }, - { - "title": "GHSA-p6rm-483j-37jf", - "url": "https://github.com/advisories/GHSA-p6rm-483j-37jf", - "type": "advisory" - }, - { - "title": "https://gist.github.com/superboy-zjc/a01bd059c4078249d899f8c70c8feb0e", - "url": "https://gist.github.com/superboy-zjc/a01bd059c4078249d899f8c70c8feb0e", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6853", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/chatchat-space/Langchain-Chatchat/issues/5352", - "type": "exploit" - }, - { - "title": "GHSA-qmgv-j263-qr33", - "url": "https://github.com/advisories/GHSA-qmgv-j263-qr33", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6854", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/chatchat-space/Langchain-Chatchat/issues/5353", - "type": "vendor" - }, - { - "title": "GHSA-8v8h-4pjx-rg73", - "url": "https://github.com/advisories/GHSA-8v8h-4pjx-rg73", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6855", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/chatchat-space/Langchain-Chatchat/issues/5354", - "type": "vendor" - }, - { - "title": "GHSA-f823-phmg-x5fr", - "url": "https://github.com/advisories/GHSA-f823-phmg-x5fr", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6092", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/superboy-zjc/96f0d56da584d840ba18355cbea96ac4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6107", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/superboy-zjc/f71b84ed074260a5e459581caa2f1fb2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6773", - "type": "advisory" - }, - { - "title": "GHSA-v9w6-9hq9-33ch", - "url": "https://github.com/advisories/GHSA-v9w6-9hq9-33ch", - "type": "advisory" - }, - { - "title": "https://github.com/HKUDS/LightRAG/issues/1692", - "url": "https://github.com/HKUDS/LightRAG/issues/1692", - "type": "reference" - }, - { - "title": "https://github.com/HKUDS/LightRAG/commit/60777d535b719631680bcf5d0969bdef79ca4eaf", - "url": "https://github.com/HKUDS/LightRAG/commit/60777d535b719631680bcf5d0969bdef79ca4eaf", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6518", - "type": "advisory" - }, - { - "title": "GHSA-8gff-cf92-72pv", - "url": "https://github.com/advisories/GHSA-8gff-cf92-72pv", - "type": "advisory" - }, - { - "title": "https://github.com/PySpur-Dev/pyspur/issues/289", - "url": "https://github.com/PySpur-Dev/pyspur/issues/289", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6167", - "type": "advisory" - }, - { - "title": "GHSA-rp38-pj7h-r8q2", - "url": "https://github.com/advisories/GHSA-rp38-pj7h-r8q2", - "type": "advisory" - }, - { - "title": "https://github.com/themanojdesai/python-a2a/issues/40", - "url": "https://github.com/themanojdesai/python-a2a/issues/40", - "type": "reference" - }, - { - "title": "https://github.com/themanojdesai/python-a2a/releases/tag/v0.5.6", - "url": "https://github.com/themanojdesai/python-a2a/releases/tag/v0.5.6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4287", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Divigroup-RAP/PYTORCH/commit/5827d2061dcb4acd05ac5f8e65d8693a481ba0f5", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/150836", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/pull/150923", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5320", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/superboy-zjc/aa3dfa161d7b19d8a53ab4605792f2fe", - "type": "reference" - }, - { - "title": "GHSA-wmjh-cpqj-4v6x", - "url": "https://github.com/advisories/GHSA-wmjh-cpqj-4v6x", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wmjh-cpqj-4v6x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-10783", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/gradio-app/gradio/issues/13395", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/gradio-app/gradio/pull/13394", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/cve/CVE-2026-10783", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/submit/831451", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27167", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-h3h8-3v2v-rg7m", - "type": "vendor" - }, - { - "title": "GHSA-h3h8-3v2v-rg7m", - "url": "https://github.com/advisories/GHSA-h3h8-3v2v-rg7m", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/dfee0da06d0aa94b3c2684131e7898d5d5c1911e", - "url": "https://github.com/gradio-app/gradio/commit/dfee0da06d0aa94b3c2684131e7898d5d5c1911e", - "type": "reference" - }, - { - "title": "https://github.com/gradio-app/gradio/releases/tag/gradio@6.6.0", - "url": "https://github.com/gradio-app/gradio/releases/tag/gradio@6.6.0", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-63.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-63.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h3h8-3v2v-rg7m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-63", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-28415", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-pfjf-5gxr-995x", - "type": "vendor" - }, - { - "title": "GHSA-pfjf-5gxr-995x", - "url": "https://github.com/advisories/GHSA-pfjf-5gxr-995x", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/releases/tag/gradio%406.6.0", - "url": "https://github.com/gradio-app/gradio/releases/tag/gradio%406.6.0", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-65.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-65.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pfjf-5gxr-995x", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-65", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-28414", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-39mp-8hj3-5c49", - "type": "vendor" - }, - { - "title": "GHSA-39mp-8hj3-5c49", - "url": "https://github.com/advisories/GHSA-39mp-8hj3-5c49", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/6011b00d0154b85532fa901dd73cf8fa7d86fd04", - "url": "https://github.com/gradio-app/gradio/commit/6011b00d0154b85532fa901dd73cf8fa7d86fd04", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-64.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-64.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-39mp-8hj3-5c49", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-64", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-28416", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-jmh7-g254-2cq9", - "type": "vendor" - }, - { - "title": "GHSA-jmh7-g254-2cq9", - "url": "https://github.com/advisories/GHSA-jmh7-g254-2cq9", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/fc7c01ea1e581ef70be98fddf003b0c91315c7cc", - "url": "https://github.com/gradio-app/gradio/commit/fc7c01ea1e581ef70be98fddf003b0c91315c7cc", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-66.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-66.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jmh7-g254-2cq9", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-66", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48889", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-8jw3-6x8j-v96g", - "type": "exploit" - }, - { - "title": "GHSA-8jw3-6x8j-v96g", - "url": "https://github.com/advisories/GHSA-8jw3-6x8j-v96g", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2025-119.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2025-119.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8jw3-6x8j-v96g", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-119", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4515", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/superboy-zjc/2a727cb0c1d468f21a91e0416d006ffe", - "type": "exploit" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5173", - "type": "advisory" - }, - { - "title": "GHSA-55g9-6c2x-gf8q", - "url": "https://github.com/advisories/GHSA-55g9-6c2x-gf8q", - "type": "advisory" - }, - { - "title": "https://github.com/HumanSignal/label-studio-ml-backend/issues/765", - "url": "https://github.com/HumanSignal/label-studio-ml-backend/issues/765", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5150", - "type": "advisory" - }, - { - "title": "GHSA-j9wp-865g-rf48", - "url": "https://github.com/advisories/GHSA-j9wp-865g-rf48", - "type": "advisory" - }, - { - "title": "https://gist.github.com/superboy-zjc/56502343bcb12eb653081b426debf2c8", - "url": "https://gist.github.com/superboy-zjc/56502343bcb12eb653081b426debf2c8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5148", - "type": "advisory" - }, - { - "title": "GHSA-pgp9-g5q8-j3wp", - "url": "https://github.com/advisories/GHSA-pgp9-g5q8-j3wp", - "type": "advisory" - }, - { - "title": "https://github.com/FunAudioLLM/InspireMusic/issues/53", - "url": "https://github.com/FunAudioLLM/InspireMusic/issues/53", - "type": "reference" - }, - { - "title": "https://github.com/FunAudioLLM/InspireMusic/commit/784cbf8dde2cf1456ff808aeba23177e1810e7a9", - "url": "https://github.com/FunAudioLLM/InspireMusic/commit/784cbf8dde2cf1456ff808aeba23177e1810e7a9", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3121", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149800", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-196", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3136", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149821", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-197", - "type": "advisory" - }, - { - "title": "https://github.com/ARPANET-cybersecurity/vuldb/issues/2", - "url": "https://github.com/ARPANET-cybersecurity/vuldb/issues/2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3730", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/150835", - "type": "vendor" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/pull/150981", - "type": "patch" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/timocafe/tewart-pytorch/commit/46fc5d8e360127361211cb237d5f9eef0223e567", - "type": "patch" - }, - { - "title": "GHSA-887c-mr87-cxwp", - "url": "https://github.com/advisories/GHSA-887c-mr87-cxwp", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-887c-mr87-cxwp", - "type": "advisory" - }, - { - "title": "https://github.com/pytorch/pytorch/commit/01f226bfb8f2c343f5c614a6bbf685d91160f3af", - "url": "https://github.com/pytorch/pytorch/commit/01f226bfb8f2c343f5c614a6bbf685d91160f3af", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3162", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/InternLM/lmdeploy/issues/3255", - "type": "vendor" - }, - { - "title": "GHSA-7vc5-mjwp-c8fq", - "url": "https://github.com/advisories/GHSA-7vc5-mjwp-c8fq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3163", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/InternLM/lmdeploy/issues/3254", - "type": "exploit" - }, - { - "title": "GHSA-jfvg-qm4p-473x", - "url": "https://github.com/advisories/GHSA-jfvg-qm4p-473x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4032", - "type": "advisory" - }, - { - "title": "GHSA-jmjf-mfhm-j3gf", - "url": "https://github.com/advisories/GHSA-jmjf-mfhm-j3gf", - "type": "advisory" - }, - { - "title": "https://github.com/inclusionAI/AWorld/issues/38", - "url": "https://github.com/inclusionAI/AWorld/issues/38", - "type": "reference" - }, - { - "title": "GHSA-ggpf-24jw-3fcw", - "url": "https://github.com/advisories/GHSA-ggpf-24jw-3fcw", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-ggpf-24jw-3fcw", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-ggpf-24jw-3fcw", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-rh4j-5rhw-hr54", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-rh4j-5rhw-hr54", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-ggpf-24jw-3fcw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48887", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/4fc1bf813ad80172c1db31264beaef7d93fe0601", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/18454", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-w6q7-j642-7c25", - "type": "vendor" - }, - { - "title": "GHSA-w6q7-j642-7c25", - "url": "https://github.com/advisories/GHSA-w6q7-j642-7c25", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-50.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-50.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w6q7-j642-7c25", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-50", - "type": "advisory" - }, - { - "title": "GHSA-j828-28rj-hfhp", - "url": "https://github.com/advisories/GHSA-j828-28rj-hfhp", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-j828-28rj-hfhp", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-j828-28rj-hfhp", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j828-28rj-hfhp", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48942", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/08bf7840780980c7568c573c70a6a8db94fd45ff", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/issues/17248", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/17623", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-6qc9-v4r8-22xg", - "type": "vendor" - }, - { - "title": "GHSA-6qc9-v4r8-22xg", - "url": "https://github.com/advisories/GHSA-6qc9-v4r8-22xg", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6qc9-v4r8-22xg", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-54", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48943", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/issues/17313", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-9hcf-v7m4-6m2j", - "type": "vendor" - }, - { - "title": "GHSA-9hcf-v7m4-6m2j", - "url": "https://github.com/advisories/GHSA-9hcf-v7m4-6m2j", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9hcf-v7m4-6m2j", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-55", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48944", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-vrq3-r879-7m65", - "type": "vendor" - }, - { - "title": "GHSA-vrq3-r879-7m65", - "url": "https://github.com/advisories/GHSA-vrq3-r879-7m65", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-vrq3-r879-7m65", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-30165", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/c21b99b91241409c2fdf9f3f8c542e8748b317be/vllm/distributed/device_communicators/shm_broadcast.py#L295-L301", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-9pcc-gvx5-r5wm", - "type": "vendor" - }, - { - "title": "GHSA-9pcc-gvx5-r5wm", - "url": "https://github.com/advisories/GHSA-9pcc-gvx5-r5wm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9pcc-gvx5-r5wm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62164", - "type": "advisory" - }, - { - "title": "ZeroPath", - "url": "https://zeropath.com/blog/cve-2025-62164-vllm-memory-corruption-summary", - "type": "advisory" - }, - { - "title": "GHSA-mrw7-hf4f-83pf", - "url": "https://github.com/advisories/GHSA-mrw7-hf4f-83pf", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/58fab50d82838d5014f4a14d991fdb9352c9c84b", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/27204", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-mrw7-hf4f-83pf", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mrw7-hf4f-83pf", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-66448", - "type": "advisory" - }, - { - "title": "ZeroPath", - "url": "https://zeropath.com/blog/cve-2025-66448-vllm-rce-automap", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/ffb08379d8870a1a81ba82b72797f196838d0c86", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/28126", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-8fr4-5q9j-m8gm", - "type": "vendor" - }, - { - "title": "GHSA-8fr4-5q9j-m8gm", - "url": "https://github.com/advisories/GHSA-8fr4-5q9j-m8gm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8fr4-5q9j-m8gm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25960", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/6f3b2047abd4a748e3db4a68543f8221358002c0", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/34743", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-qh4c-xf7m-gxfc", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-v359-jj2v-j536", - "type": "vendor" - }, - { - "title": "GHSA-v359-jj2v-j536", - "url": "https://github.com/advisories/GHSA-v359-jj2v-j536", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v359-jj2v-j536", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24779", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/f46d576c54fb8aeec5fc70560e850bed38ef17d7", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/32746", - "type": "patch" - }, - { - "title": "GHSA-qh4c-xf7m-gxfc", - "url": "https://github.com/advisories/GHSA-qh4c-xf7m-gxfc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-qh4c-xf7m-gxfc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22778", - "type": "advisory" - }, - { - "title": "OX Security", - "url": "https://www.ox.security/blog/cve-2026-22778-vllm-rce-vulnerability/", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/31987", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/32319", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/releases/tag/v0.14.1", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-4r2x-xpjr-7cvv", - "type": "vendor" - }, - { - "title": "GHSA-4r2x-xpjr-7cvv", - "url": "https://github.com/advisories/GHSA-4r2x-xpjr-7cvv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-4r2x-xpjr-7cvv", - "type": "advisory" - }, - { - "title": "TheHackerWire", - "url": "https://www.thehackerwire.com/vllm-rce-via-trust-remote-code-bypass-cve-2026-27893/", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27893", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/00bd08edeee5dd4d4c13277c0114a464011acf72", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/36192", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-7972-pg2x-xr59", - "type": "vendor" - }, - { - "title": "GHSA-7972-pg2x-xr59", - "url": "https://github.com/advisories/GHSA-7972-pg2x-xr59", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7972-pg2x-xr59", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-47155", - "type": "advisory" - }, - { - "title": "GHSA-3ww4-5jv9-j5gm", - "url": "https://github.com/advisories/GHSA-3ww4-5jv9-j5gm", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3ww4-5jv9-j5gm", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3ww4-5jv9-j5gm", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3ww4-5jv9-j5gm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44222", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/issues/32656", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-hpv8-x276-m59f", - "type": "vendor" - }, - { - "title": "GHSA-hpv8-x276-m59f", - "url": "https://github.com/advisories/GHSA-hpv8-x276-m59f", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hpv8-x276-m59f", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44223", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/38610", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-83vm-p52w-f9pw", - "type": "vendor" - }, - { - "title": "GHSA-83vm-p52w-f9pw", - "url": "https://github.com/advisories/GHSA-83vm-p52w-f9pw", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2026-145.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2026-145.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-83vm-p52w-f9pw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-145", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-9540", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/vllm/issues/37343", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/vllm/pull/37594", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://ingero.io/debugging-vllm-latency-minimax-ollama-mcp/", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/submit/814645", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34753", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-pf3h-qjgv-vcpr", - "type": "vendor" - }, - { - "title": "GHSA-pf3h-qjgv-vcpr", - "url": "https://github.com/advisories/GHSA-pf3h-qjgv-vcpr", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/pull/38482", - "url": "https://github.com/vllm-project/vllm/pull/38482", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/57861ae48d3493fa48b4d7d830b7ec9f995783e7", - "url": "https://github.com/vllm-project/vllm/commit/57861ae48d3493fa48b4d7d830b7ec9f995783e7", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pf3h-qjgv-vcpr", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34756", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/b111f8a61f100fdca08706f41f29ef3548de7380", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/37952", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3mwp-wvh9-7528", - "type": "vendor" - }, - { - "title": "GHSA-3mwp-wvh9-7528", - "url": "https://github.com/advisories/GHSA-3mwp-wvh9-7528", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3mwp-wvh9-7528", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22807", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/78d13ea9de4b1ce5e4d8a5af9738fea71fb024e5", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/32194", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/releases/tag/v0.14.0", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-2pc9-4j83-qjmr", - "type": "vendor" - }, - { - "title": "GHSA-2pc9-4j83-qjmr", - "url": "https://github.com/advisories/GHSA-2pc9-4j83-qjmr", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2pc9-4j83-qjmr", - "type": "advisory" - }, - { - "title": "GHSA-mcmc-2m55-j8jj", - "url": "https://github.com/advisories/GHSA-mcmc-2m55-j8jj", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-mcmc-2m55-j8jj", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-mcmc-2m55-j8jj", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/pull/30649", - "url": "https://github.com/vllm-project/vllm/pull/30649", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mcmc-2m55-j8jj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62372", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/6613", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-pmqf-x6x8-p7qw", - "type": "vendor" - }, - { - "title": "GHSA-pmqf-x6x8-p7qw", - "url": "https://github.com/advisories/GHSA-pmqf-x6x8-p7qw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pmqf-x6x8-p7qw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62426", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/2a6dc67eb520ddb9c4138d8b35ed6fe6226997fb/vllm/entrypoints/chat_utils.py#L1602-L1610", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/2a6dc67eb520ddb9c4138d8b35ed6fe6226997fb/vllm/entrypoints/openai/serving_engine.py#L809-L814", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/3ada34f9cb4d1af763fdfa3b481862a93eb6bd2b", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/27205", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-69j4-grxj-j64p", - "type": "vendor" - }, - { - "title": "GHSA-69j4-grxj-j64p", - "url": "https://github.com/advisories/GHSA-69j4-grxj-j64p", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-69j4-grxj-j64p", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59425", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/4b946d693e0af15740e9ca9c0e059d5f333b1083/vllm/entrypoints/openai/api_server.py#L1270-L1274", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/ee10d7e6ff5875386c7f136ce8b5f525c8fcef48", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/releases/tag/v0.11.0", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-wr9h-g72x-mwhm", - "type": "vendor" - }, - { - "title": "GHSA-wr9h-g72x-mwhm", - "url": "https://github.com/advisories/GHSA-wr9h-g72x-mwhm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wr9h-g72x-mwhm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61620", - "type": "advisory" - }, - { - "title": "GHSA-6fvq-23cw-5628", - "url": "https://github.com/advisories/GHSA-6fvq-23cw-5628", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-6fvq-23cw-5628", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-6fvq-23cw-5628", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/pull/25794", - "url": "https://github.com/vllm-project/vllm/pull/25794", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/7977e5027c2250a4abc1f474c5619c40b4e5682f", - "url": "https://github.com/vllm-project/vllm/commit/7977e5027c2250a4abc1f474c5619c40b4e5682f", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6fvq-23cw-5628", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48956", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/d8b736f913a59117803d6701521d2e4861701944", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/23267", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-rxc4-3w6r-4v47", - "type": "vendor" - }, - { - "title": "GHSA-rxc4-3w6r-4v47", - "url": "https://github.com/advisories/GHSA-rxc4-3w6r-4v47", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rxc4-3w6r-4v47", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-9141", - "type": "advisory" - }, - { - "title": "GHSA-79j6-g2m3-jgfw", - "url": "https://github.com/advisories/GHSA-79j6-g2m3-jgfw", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-79j6-g2m3-jgfw", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-79j6-g2m3-jgfw", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/pull/21396", - "url": "https://github.com/vllm-project/vllm/pull/21396", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/4594fc3b281713bd3d7634405b4a1393af40d294", - "url": "https://github.com/vllm-project/vllm/commit/4594fc3b281713bd3d7634405b4a1393af40d294", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-79j6-g2m3-jgfw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46560", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/8cac35ba435906fb7eb07e44fe1a8c26e8744f4e/vllm/model_executor/models/phi4mm.py#L1182-L1197", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-vc6m-hm49-g9qg", - "type": "vendor" - }, - { - "title": "GHSA-vc6m-hm49-g9qg", - "url": "https://github.com/advisories/GHSA-vc6m-hm49-g9qg", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-vc6m-hm49-g9qg", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29770", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/53be4a863486d02bd96a59c674bbec23eec508f6/vllm/model_executor/guided_decoding/outlines_logits_processors.py", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/14837", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-mgrm-fgjv-mhv8", - "type": "vendor" - }, - { - "title": "GHSA-mgrm-fgjv-mhv8", - "url": "https://github.com/advisories/GHSA-mgrm-fgjv-mhv8", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-223.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-223.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mgrm-fgjv-mhv8", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-223", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2733", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://magnificent-dill-351.notion.site/Command-Execution-in-Openmanus-2025-3-13-1b6c693918ed80b2826ef6bb385693fa", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1953", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/aibrix/issues/749", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/aibrix/pull/752", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/aibrix/pull/752/commits/3d25d95aebd66f24a549200edcebc5ea423b317a", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11041", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/00136195-11e0-4ad0-98d5-72db066e867f", - "type": "exploit" - }, - { - "title": "GHSA-5vqr-wprc-cpp7", - "url": "https://github.com/advisories/GHSA-5vqr-wprc-cpp7", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/blob/7193774b1ff8603ad5bf4598e5efba0d9a39b436/vllm/distributed/device_communicators/shm_broadcast.py#L441-L443", - "url": "https://github.com/vllm-project/vllm/blob/7193774b1ff8603ad5bf4598e5efba0d9a39b436/vllm/distributed/device_communicators/shm_broadcast.py#L441-L443", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5vqr-wprc-cpp7", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9053", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/75a544f3-34a3-4da0-b5a3-1495cb031e09", - "type": "exploit" - }, - { - "title": "GHSA-cj47-qj6g-x7r4", - "url": "https://github.com/advisories/GHSA-cj47-qj6g-x7r4", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-222.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-222.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cj47-qj6g-x7r4", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-222", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2148", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/147722", - "type": "reference" - }, - { - "title": "GHSA-c678-jfcj-6jmf", - "url": "https://github.com/advisories/GHSA-c678-jfcj-6jmf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-c678-jfcj-6jmf", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-189.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-189.yaml", - "type": "reference" - }, - { - "title": "https://github.com/pytorch/pytorch/blob/b0a67c7495bb11ecb23e556058db059ba48354af/torch/autograd/profiler.py#L990", - "url": "https://github.com/pytorch/pytorch/blob/b0a67c7495bb11ecb23e556058db059ba48354af/torch/autograd/profiler.py#L990", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-189", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2149", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/147818", - "type": "reference" - }, - { - "title": "GHSA-x3gm-94wq-g975", - "url": "https://github.com/advisories/GHSA-x3gm-94wq-g975", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x3gm-94wq-g975", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-190.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-190.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-190", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2953", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/blob/main/SECURITY.md#untrusted-models", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149274", - "type": "exploit" - }, - { - "title": "GHSA-3749-ghw9-m3mg", - "url": "https://github.com/advisories/GHSA-3749-ghw9-m3mg", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3749-ghw9-m3mg", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-191.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-191.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-191", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2998", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149622", - "type": "vendor" - }, - { - "title": "GHSA-f4hp-rmr7-r7v8", - "url": "https://github.com/advisories/GHSA-f4hp-rmr7-r7v8", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f4hp-rmr7-r7v8", - "type": "advisory" - }, - { - "title": "https://github.com/pytorch/pytorch/commit/494518046816d29099b7d056a74ffa5c244fdcdd", - "url": "https://github.com/pytorch/pytorch/commit/494518046816d29099b7d056a74ffa5c244fdcdd", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-192.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-192.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-192", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2999", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-vgrw-7cvw-pwgx", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-193.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-193.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-193", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3000", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149623", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-194", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3001", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149626", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-195", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10569", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/7192bcbb-08a3-4d22-a321-9c6d19dbfc74", - "type": "exploit" - }, - { - "title": "GHSA-7xmc-vhjp-qv5q", - "url": "https://github.com/advisories/GHSA-7xmc-vhjp-qv5q", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/blob/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/components/dataframe.py#L263", - "url": "https://github.com/gradio-app/gradio/blob/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/components/dataframe.py#L263", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7xmc-vhjp-qv5q", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10624", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/e8d0b248-8feb-4c23-9ef9-be4d1e868374", - "type": "exploit" - }, - { - "title": "GHSA-rvgh-pr46-x7gg", - "url": "https://github.com/advisories/GHSA-rvgh-pr46-x7gg", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/blob/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/components/datetime.py#L133-L136", - "url": "https://github.com/gradio-app/gradio/blob/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/components/datetime.py#L133-L136", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rvgh-pr46-x7gg", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10648", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/667d664d-8189-458c-8ed7-483fe8f33c76", - "type": "exploit" - }, - { - "title": "GHSA-pgfv-gvc5-prfg", - "url": "https://github.com/advisories/GHSA-pgfv-gvc5-prfg", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/blame/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/processing_utils.py#L234", - "url": "https://github.com/gradio-app/gradio/blame/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/processing_utils.py#L234", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pgfv-gvc5-prfg", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12217", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/0439bf3d-cb38-43a5-8314-0fadf85cc5a0", - "type": "reference" - }, - { - "title": "GHSA-prpg-p95c-32fv", - "url": "https://github.com/advisories/GHSA-prpg-p95c-32fv", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/blob/67e4044c9ca8358eceeb1fa72fa415df03397d20/gradio/utils.py#L1061-L1074", - "url": "https://github.com/gradio-app/gradio/blob/67e4044c9ca8358eceeb1fa72fa415df03397d20/gradio/utils.py#L1061-L1074", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-prpg-p95c-32fv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8021", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/adc23067-ec04-47ef-9265-afd452071888", - "type": "exploit" - }, - { - "title": "GHSA-7v2w-h4gh-w5cv", - "url": "https://github.com/advisories/GHSA-7v2w-h4gh-w5cv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7v2w-h4gh-w5cv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8966", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/f1718c47137f9c60240da7afe5e3290aa0f1cb47", - "type": "reference" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/7b5932bb-58d1-4e71-b85c-43dc40522ff2", - "type": "exploit" - }, - { - "title": "GHSA-5cpq-9538-jm2j", - "url": "https://github.com/advisories/GHSA-5cpq-9538-jm2j", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5cpq-9538-jm2j", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2967", - "type": "advisory" - }, - { - "title": "GHSA-xfqf-5rhg-5c73", - "url": "https://github.com/advisories/GHSA-xfqf-5rhg-5c73", - "type": "advisory" - }, - { - "title": "https://github.com/yaowenxiao721/Poc/blob/main/Concretecms/Concretecms-poc5.md", - "url": "https://github.com/yaowenxiao721/Poc/blob/main/Concretecms/Concretecms-poc5.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9052", - "type": "advisory" - }, - { - "title": "GHSA-pgr7-mhp5-fgjp", - "url": "https://github.com/advisories/GHSA-pgr7-mhp5-fgjp", - "type": "advisory" - }, - { - "title": "https://huntr.com/bounties/ea75728f-4efe-4a3d-9f53-33f2c908e9f8", - "url": "https://huntr.com/bounties/ea75728f-4efe-4a3d-9f53-33f2c908e9f8", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/blob/32e7db25365415841ebc7c4215851743fbb1bad1/vllm/distributed/parallel_state.py#L480", - "url": "https://github.com/vllm-project/vllm/blob/32e7db25365415841ebc7c4215851743fbb1bad1/vllm/distributed/parallel_state.py#L480", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/blob/v0.8.1/vllm/distributed/parallel_state.py#L457", - "url": "https://github.com/vllm-project/vllm/blob/v0.8.1/vllm/distributed/parallel_state.py#L457", - "type": "reference" - }, - { - "title": "https://github.com/github/advisory-database/pull/5444", - "url": "https://github.com/github/advisory-database/pull/5444", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pgr7-mhp5-fgjp", - "type": "advisory" - }, - { - "title": "GHSA-hh3j-9m59-p8vc", - "url": "https://github.com/advisories/GHSA-hh3j-9m59-p8vc", - "type": "advisory" - }, - { - "title": "https://huntr.com/bounties/e467ec92-0ad1-4461-8468-1beabf701b9f", - "url": "https://huntr.com/bounties/e467ec92-0ad1-4461-8468-1beabf701b9f", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hh3j-9m59-p8vc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4940", - "type": "advisory" - }, - { - "title": "GHSA-g6c9-f4xm-9j4x", - "url": "https://github.com/advisories/GHSA-g6c9-f4xm-9j4x", - "type": "advisory" - }, - { - "title": "GHSA-564p-rx2q-4c8v", - "url": "https://github.com/advisories/GHSA-564p-rx2q-4c8v", - "type": "advisory" - }, - { - "title": "https://huntr.com/bounties/2a284ff6-cc6c-4a10-b72e-1bb31c842bca", - "url": "https://huntr.com/bounties/2a284ff6-cc6c-4a10-b72e-1bb31c842bca", - "type": "reference" - }, - { - "title": "https://huntr.com/bounties/35aaea93-6895-4f03-9c1b-cd992665aa60", - "url": "https://huntr.com/bounties/35aaea93-6895-4f03-9c1b-cd992665aa60", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-564p-rx2q-4c8v", - "type": "advisory" - }, - { - "title": "ZeroPath analysis", - "url": "https://zeropath.com/blog/critical-rce-bentoml-cve-2025-32375", - "type": "analysis" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32375", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-7v4r-c989-xh26", - "type": "vendor" - }, - { - "title": "GHSA-7v4r-c989-xh26", - "url": "https://github.com/advisories/GHSA-7v4r-c989-xh26", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2025-32.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2025-32.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7v4r-c989-xh26", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-32", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27520", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/b35f4f4fcc53a8c3fe8ed9c18a013fe0a728e194", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-33xw-247w-6hmc", - "type": "exploit" - }, - { - "title": "GHSA-33xw-247w-6hmc", - "url": "https://github.com/advisories/GHSA-33xw-247w-6hmc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-33xw-247w-6hmc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40610", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/5fb7cd41f92e2a56b45391284cf15b9ac9963a1f", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/releases/tag/v1.4.39", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-mcfx-4vc6-qgxv", - "type": "vendor" - }, - { - "title": "GHSA-mcfx-4vc6-qgxv", - "url": "https://github.com/advisories/GHSA-mcfx-4vc6-qgxv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mcfx-4vc6-qgxv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44345", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-78f9-r8mh-4xm2", - "type": "vendor" - }, - { - "title": "GHSA-78f9-r8mh-4xm2", - "url": "https://github.com/advisories/GHSA-78f9-r8mh-4xm2", - "type": "advisory" - }, - { - "title": "https://github.com/bentoml/BentoML/security/advisories/GHSA-w2pm-x38x-jp44", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-w2pm-x38x-jp44", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-189.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-189.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-78f9-r8mh-4xm2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-189", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44346", - "type": "advisory" - }, - { - "title": "GHSA-w2pm-x38x-jp44", - "url": "https://github.com/advisories/GHSA-w2pm-x38x-jp44", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-190.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-190.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w2pm-x38x-jp44", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-190", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-35043", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-fgv4-6jr3-jgfw", - "type": "vendor" - }, - { - "title": "GHSA-fgv4-6jr3-jgfw", - "url": "https://github.com/advisories/GHSA-fgv4-6jr3-jgfw", - "type": "advisory" - }, - { - "title": "https://nvd.nist.gov/vuln/detail/CVE-2026-33744", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-33744", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-158.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-158.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fgv4-6jr3-jgfw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-158", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-35044", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-v959-cwq9-7hr6", - "type": "vendor" - }, - { - "title": "GHSA-v959-cwq9-7hr6", - "url": "https://github.com/advisories/GHSA-v959-cwq9-7hr6", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-159.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-159.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v959-cwq9-7hr6", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-159", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27905", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/4e0eb007765ac04c7924220d643f264715cc9670", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-m6w7-qv66-g3mf", - "type": "vendor" - }, - { - "title": "GHSA-m6w7-qv66-g3mf", - "url": "https://github.com/advisories/GHSA-m6w7-qv66-g3mf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m6w7-qv66-g3mf", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-jfjg-vc52-wqvf", - "type": "vendor" - }, - { - "title": "GHSA-jfjg-vc52-wqvf", - "url": "https://github.com/advisories/GHSA-jfjg-vc52-wqvf", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-157.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-157.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jfjg-vc52-wqvf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-157", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24123", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/84d08cfeb40c5f2ce71b3d3444bbaa0fb16b5ca4", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/releases/tag/v1.4.34", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-6r62-w2q3-48hf", - "type": "vendor" - }, - { - "title": "GHSA-6r62-w2q3-48hf", - "url": "https://github.com/advisories/GHSA-6r62-w2q3-48hf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6r62-w2q3-48hf", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54381", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/534c3584621da4ab954bdc3d814cc66b95ae5fb8", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-mrmq-3q62-6cc8", - "type": "vendor" - }, - { - "title": "GHSA-mrmq-3q62-6cc8", - "url": "https://github.com/advisories/GHSA-mrmq-3q62-6cc8", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mrmq-3q62-6cc8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9056", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/a24a13c2-0300-4a95-b26a-ac7fe8f6521b", - "type": "reference" - }, - { - "title": "GHSA-hw8j-hw49-752c", - "url": "https://github.com/advisories/GHSA-hw8j-hw49-752c", - "type": "advisory" - }, - { - "title": "https://github.com/bentoml/BentoML/blob/a6f5f937be6ec278f3d4f3bbc6f3c8f9564820d7/src/bentoml/_internal/io_descriptors/file.py#L293", - "url": "https://github.com/bentoml/BentoML/blob/a6f5f937be6ec278f3d4f3bbc6f3c8f9564820d7/src/bentoml/_internal/io_descriptors/file.py#L293", - "type": "reference" - }, - { - "title": "https://github.com/bentoml/BentoML/blob/v1.4.5/src/bentoml/_internal/io_descriptors/file.py#L293C9-L293C66", - "url": "https://github.com/bentoml/BentoML/blob/v1.4.5/src/bentoml/_internal/io_descriptors/file.py#L293C9-L293C66", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hw8j-hw49-752c", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9070", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/7be6fc22-be18-44ee-a001-ac7158d5e1a5", - "type": "reference" - }, - { - "title": "GHSA-9g44-gwvm-hc44", - "url": "https://github.com/advisories/GHSA-9g44-gwvm-hc44", - "type": "advisory" - }, - { - "title": "https://github.com/bentoml/BentoML/blob/a6f5f937be6ec278f3d4f3bbc6f3c8f9564820d7/src/bentoml/_internal/server/runner_app.py#L297", - "url": "https://github.com/bentoml/BentoML/blob/a6f5f937be6ec278f3d4f3bbc6f3c8f9564820d7/src/bentoml/_internal/server/runner_app.py#L297", - "type": "reference" - }, - { - "title": "https://github.com/bentoml/BentoML/blob/v1.4.5/src/bentoml/_internal/server/runner_app.py#L301", - "url": "https://github.com/bentoml/BentoML/blob/v1.4.5/src/bentoml/_internal/server/runner_app.py#L301", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9g44-gwvm-hc44", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24357", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/d3d6bb13fb62da3234addf6574922a4ec0513d04", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/12366", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://pytorch.org/docs/stable/generated/torch.load.html", - "type": "reference" - }, - { - "title": "GHSA-rh4j-5rhw-hr54", - "url": "https://github.com/advisories/GHSA-rh4j-5rhw-hr54", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/releases/tag/v0.7.0", - "url": "https://github.com/vllm-project/vllm/releases/tag/v0.7.0", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rh4j-5rhw-hr54", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-58.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-58.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-58", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45146", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/EDMPL/Vulnerability-Research/blob/main/CVE-2025-45146/README.md", - "type": "exploit" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/codefuse-ai/ModelCache/blob/e053e0d57b532d4ad9378d2f31bb85a009b77d64/modelcache/manager/data_manager.py#L84C1-L84C43", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/codefuse-ai/ModelCache/blob/e053e0d57b532d4ad9378d2f31bb85a009b77d64/modelcache/manager/factory.py#L18C1-L18C71", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23042", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-j2jg-fq62-7c3h", - "type": "exploit" - }, - { - "title": "GHSA-j2jg-fq62-7c3h", - "url": "https://github.com/advisories/GHSA-j2jg-fq62-7c3h", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/6b63fdec441b5c9bf910f910a2505d8defbb6bf8", - "url": "https://github.com/gradio-app/gradio/commit/6b63fdec441b5c9bf910f910a2505d8defbb6bf8", - "type": "reference" - }, - { - "title": "https://github.com/gradio-app/gradio/releases/tag/gradio%405.11.0", - "url": "https://github.com/gradio-app/gradio/releases/tag/gradio%405.11.0", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2025-118.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2025-118.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j2jg-fq62-7c3h", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-118", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11954", - "type": "advisory" - }, - { - "title": "GHSA-xr3m-6gq6-22cg", - "url": "https://github.com/advisories/GHSA-xr3m-6gq6-22cg", - "type": "advisory" - }, - { - "title": "https://github.com/pimcore/pimcore/security/advisories/GHSA-xr3m-6gq6-22cg", - "url": "https://github.com/pimcore/pimcore/security/advisories/GHSA-xr3m-6gq6-22cg", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10761", - "type": "advisory" - }, - { - "title": "GHSA-69cg-w8vm-h229", - "url": "https://github.com/advisories/GHSA-69cg-w8vm-h229", - "type": "advisory" - }, - { - "title": "https://github.com/umbraco/Umbraco-CMS/security/advisories/GHSA-69cg-w8vm-h229", - "url": "https://github.com/umbraco/Umbraco-CMS/security/advisories/GHSA-69cg-w8vm-h229", - "type": "reference" - }, - { - "title": "https://drive.google.com/file/d/1YoZgdlS3QT7Xu005j9RO-FFUT8RbB0Da/view?usp=sharing", - "url": "https://drive.google.com/file/d/1YoZgdlS3QT7Xu005j9RO-FFUT8RbB0Da/view?usp=sharing", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48052", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://gist.github.com/AfterSnows/45ffc23797f9127e00755376cc610e12", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://rumbling-slice-eb0.notion.site/FULL-SSRF-in-gr-DownloadButton-in-gradio-app-gradio-870b21e0908b48cbafd914719ac1a4e6?pvs=4", - "type": "exploit" - }, - { - "title": "GHSA-3gf9-wv65-gwh9", - "url": "https://github.com/advisories/GHSA-3gf9-wv65-gwh9", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3gf9-wv65-gwh9", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51751", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-rhm9-gp5p-5248", - "type": "exploit" - }, - { - "title": "GHSA-rhm9-gp5p-5248", - "url": "https://github.com/advisories/GHSA-rhm9-gp5p-5248", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-275.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-275.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rhm9-gp5p-5248", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-275", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47164", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-77xq-6g77-h274", - "type": "advisory" - }, - { - "title": "GHSA-77xq-6g77-h274", - "url": "https://github.com/advisories/GHSA-77xq-6g77-h274", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/08b51590163b306fd874f543f6fcaf23ac7d2646", - "url": "https://github.com/gradio-app/gradio/commit/08b51590163b306fd874f543f6fcaf23ac7d2646", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-213.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-213.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-77xq-6g77-h274", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-213", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47166", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-37qc-qgx6-9xjv", - "type": "advisory" - }, - { - "title": "GHSA-37qc-qgx6-9xjv", - "url": "https://github.com/advisories/GHSA-37qc-qgx6-9xjv", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-197.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-197.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-37qc-qgx6-9xjv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-197", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47167", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-576c-3j53-r9jj", - "type": "advisory" - }, - { - "title": "GHSA-576c-3j53-r9jj", - "url": "https://github.com/advisories/GHSA-576c-3j53-r9jj", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-215.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-215.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-576c-3j53-r9jj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-215", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47168", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-hm3c-93pg-4cxw", - "type": "advisory" - }, - { - "title": "GHSA-hm3c-93pg-4cxw", - "url": "https://github.com/advisories/GHSA-hm3c-93pg-4cxw", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-198.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-198.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hm3c-93pg-4cxw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-198", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47867", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-8c87-gvhj-xm8m", - "type": "vendor" - }, - { - "title": "GHSA-8c87-gvhj-xm8m", - "url": "https://github.com/advisories/GHSA-8c87-gvhj-xm8m", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-216.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-216.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8c87-gvhj-xm8m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-216", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47869", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-j757-pf57-f8r4", - "type": "advisory" - }, - { - "title": "GHSA-j757-pf57-f8r4", - "url": "https://github.com/advisories/GHSA-j757-pf57-f8r4", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-199.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-199.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j757-pf57-f8r4", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-199", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47870", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-xh2x-3mrm-fwqm", - "type": "advisory" - }, - { - "title": "GHSA-xh2x-3mrm-fwqm", - "url": "https://github.com/advisories/GHSA-xh2x-3mrm-fwqm", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-218.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-218.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-xh2x-3mrm-fwqm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-218", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47871", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-279j-x4gx-hfrh", - "type": "advisory" - }, - { - "title": "GHSA-279j-x4gx-hfrh", - "url": "https://github.com/advisories/GHSA-279j-x4gx-hfrh", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-219.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-219.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-279j-x4gx-hfrh", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-219", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47872", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-gvv6-33j7-884g", - "type": "advisory" - }, - { - "title": "GHSA-gvv6-33j7-884g", - "url": "https://github.com/advisories/GHSA-gvv6-33j7-884g", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-220.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-220.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gvv6-33j7-884g", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-220", - "type": "advisory" - }, - { - "title": "GHSA-26jh-r8g2-6fpr", - "url": "https://github.com/advisories/GHSA-26jh-r8g2-6fpr", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/security/advisories/GHSA-26jh-r8g2-6fpr", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-26jh-r8g2-6fpr", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-26jh-r8g2-6fpr", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8768", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2024-8768", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://github.com/vllm-project/vllm/issues/7632", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://github.com/vllm-project/vllm/pull/7746", - "type": "reference" - }, - { - "title": "GHSA-w2r7-9579-27hf", - "url": "https://github.com/advisories/GHSA-w2r7-9579-27hf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w2r7-9579-27hf", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/e25fee57c2e69161bd261f5986dc5aeb198bbd42", - "url": "https://github.com/vllm-project/vllm/commit/e25fee57c2e69161bd261f5986dc5aeb198bbd42", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9277", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://rumbling-slice-eb0.notion.site/Remote-Redos-in-https-github-com-langflow-ai-langflow-067159ced0d5494e91b06071384969c4?pvs=4", - "type": "exploit" - }, - { - "title": "GHSA-355v-2rjx-fpx7", - "url": "https://github.com/advisories/GHSA-355v-2rjx-fpx7", - "type": "advisory" - }, - { - "title": "GHSA-4xx7-2cx3-x473", - "url": "https://github.com/advisories/GHSA-4xx7-2cx3-x473", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2024:6878", - "url": "https://access.redhat.com/errata/RHSA-2024:6878", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8863", - "type": "advisory" - }, - { - "title": "GHSA-pmhg-f7wc-c97m", - "url": "https://github.com/advisories/GHSA-pmhg-f7wc-c97m", - "type": "advisory" - }, - { - "title": "https://rumbling-slice-eb0.notion.site/Stored-XSS-through-TEXT-EXPLORER-in-aimhubio-aim-d0f07b7194724950a673498546d80d43?pvs=4", - "url": "https://rumbling-slice-eb0.notion.site/Stored-XSS-through-TEXT-EXPLORER-in-aimhubio-aim-d0f07b7194724950a673498546d80d43?pvs=4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4325", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/b34f084b-7d14-4f00-bc10-048a3a5aaf88", - "type": "exploit" - }, - { - "title": "GHSA-973g-55hp-3frw", - "url": "https://github.com/advisories/GHSA-973g-55hp-3frw", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/pull/8301", - "url": "https://github.com/gradio-app/gradio/pull/8301", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-973g-55hp-3frw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4941", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/ee1e2942e0a1ae84a08a05464e41c8108a03fa9c", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/39889ce1-298d-4568-aecd-7ae40c2ca58e", - "type": "exploit" - }, - { - "title": "GHSA-6v6g-j5fq-hpvw", - "url": "https://github.com/advisories/GHSA-6v6g-j5fq-hpvw", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-184.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-184.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6v6g-j5fq-hpvw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-184", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-g6c9-f4xm-9j4x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38274", - "type": "advisory" - }, - { - "title": "GHSA-p5cg-6rfr-6mx8", - "url": "https://github.com/advisories/GHSA-p5cg-6rfr-6mx8", - "type": "advisory" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/F7AZYR7EXV6E5SQE2GYTNQE3NOENJCQ6", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/F7AZYR7EXV6E5SQE2GYTNQE3NOENJCQ6", - "type": "reference" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GHTIX55J4Q4LEOMLNEA4OZSWVEENQX7E", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GHTIX55J4Q4LEOMLNEA4OZSWVEENQX7E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34510", - "type": "advisory" - }, - { - "title": "GHSA-rvfh-h6c7-fc3c", - "url": "https://github.com/advisories/GHSA-rvfh-h6c7-fc3c", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-255.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-255.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rvfh-h6c7-fc3c", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-255", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34006", - "type": "advisory" - }, - { - "title": "GHSA-vvh5-7v3m-j3mj", - "url": "https://github.com/advisories/GHSA-vvh5-7v3m-j3mj", - "type": "advisory" - }, - { - "title": "http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-80585", - "url": "http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-80585", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/cd85e090f3feb06e6eff65d1499a67353d82d3cb", - "url": "https://github.com/moodle/moodle/commit/cd85e090f3feb06e6eff65d1499a67353d82d3cb", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4596", - "type": "advisory" - }, - { - "title": "GHSA-6f3v-2r2j-2rpr", - "url": "https://github.com/advisories/GHSA-6f3v-2r2j-2rpr", - "type": "advisory" - }, - { - "title": "https://github.com/kimai/kimai/releases/tag/2.16.0", - "url": "https://github.com/kimai/kimai/releases/tag/2.16.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34511", - "type": "advisory" - }, - { - "title": "GHSA-34rf-p3r3-58x2", - "url": "https://github.com/advisories/GHSA-34rf-p3r3-58x2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-34rf-p3r3-58x2", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31580", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://gist.github.com/1047524396/038c78f2f007345e6f497698ace2aa3d", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/pytorch/pytorch/commit/b5c3a17c2c207ebefcb85043f0cf94be9b2fef81", - "type": "patch" - }, - { - "title": "GHSA-5pcm-hx3q-hm94", - "url": "https://github.com/advisories/GHSA-5pcm-hx3q-hm94", - "type": "advisory" - }, - { - "title": "https://security.snyk.io/vuln/SNYK-PYTHON-TORCH-6649934", - "url": "https://security.snyk.io/vuln/SNYK-PYTHON-TORCH-6649934", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2024-252.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2024-252.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5pcm-hx3q-hm94", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-252", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31583", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://gist.github.com/1047524396/43e19a41f2b36503a4a228c32cdbc176", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/pytorch/pytorch/blob/v2.1.2/torch/csrc/jit/mobile/interpreter.cpp#L132", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/pytorch/pytorch/commit/9c7071b0e324f9fb68ab881283d6b8d388a4bcd2", - "type": "patch" - }, - { - "title": "GHSA-pg7h-5qx3-wjr3", - "url": "https://github.com/advisories/GHSA-pg7h-5qx3-wjr3", - "type": "advisory" - }, - { - "title": "https://security.snyk.io/vuln/SNYK-PYTHON-TORCH-6619806", - "url": "https://security.snyk.io/vuln/SNYK-PYTHON-TORCH-6619806", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pg7h-5qx3-wjr3", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2024-251.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2024-251.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-251", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1728", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/16fbe9cd0cffa9f2a824a0165beb43446114eec7", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/9bb33b71-7995-425d-91cc-2c2a2f2a068a", - "type": "exploit" - }, - { - "title": "GHSA-m842-4qm8-7gpq", - "url": "https://github.com/advisories/GHSA-m842-4qm8-7gpq", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/security/advisories/GHSA-m842-4qm8-7gpq", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-m842-4qm8-7gpq", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m842-4qm8-7gpq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1183", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/2ad3d9e7ec6c8eeea59774265b44f11df7394bb4", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/103434f9-87d2-42ea-9907-194a3c25007c", - "type": "exploit" - }, - { - "title": "GHSA-qh6x-j82h-vpf9", - "url": "https://github.com/advisories/GHSA-qh6x-j82h-vpf9", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/7ba8c5da45b004edd12c0460be9222f5b5f5f055", - "url": "https://github.com/gradio-app/gradio/commit/7ba8c5da45b004edd12c0460be9222f5b5f5f055", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-qh6x-j82h-vpf9", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-14316", - "type": "advisory" - }, - { - "title": "GHSA-828r-r2c8-rfw3", - "url": "https://github.com/advisories/GHSA-828r-r2c8-rfw3", - "type": "advisory" - }, - { - "title": "https://github.com/kubevirt/kubevirt/pull/3686", - "url": "https://github.com/kubevirt/kubevirt/pull/3686", - "type": "reference" - }, - { - "title": "GHSA-3f95-mxq2-2f63", - "url": "https://github.com/advisories/GHSA-3f95-mxq2-2f63", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6236", - "type": "advisory" - }, - { - "title": "GHSA-jpmx-996v-48fm", - "url": "https://github.com/advisories/GHSA-jpmx-996v-48fm", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2023-6236", - "url": "https://access.redhat.com/security/cve/CVE-2023-6236", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2024:3580", - "url": "https://access.redhat.com/errata/RHSA-2024:3580", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2024:3581", - "url": "https://access.redhat.com/errata/RHSA-2024:3581", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2206", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/49d9c48537aa706bf72628e3640389470138bdc6", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/2286c1ed-b889-45d6-adda-7014ea06d98e", - "type": "exploit" - }, - { - "title": "GHSA-r364-m2j9-mf4h", - "url": "https://github.com/advisories/GHSA-r364-m2j9-mf4h", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-r364-m2j9-mf4h", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2057", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/bayuncao/vul-cve-16", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/bayuncao/vul-cve-16/tree/main/PoC.pkl", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/langchain-ai/langchain/pull/18695", - "type": "patch" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-278", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3078", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/qdrant/qdrant/commit/3ab5172e9c8f14fa1f7b24e7147eac74e2412b62", - "type": "patch" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/qdrant/qdrant/pull/3856", - "type": "patch" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/qdrant/qdrant/releases/tag/v1.8.3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1727", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/84802ee6a4806c25287344dce581f9548a99834a", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/a94d55fb-0770-4cbe-9b20-97a978a2ffff", - "type": "exploit" - }, - { - "title": "GHSA-48cq-79qq-6f7x", - "url": "https://github.com/advisories/GHSA-48cq-79qq-6f7x", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/security/advisories/GHSA-48cq-79qq-6f7x", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-48cq-79qq-6f7x", - "type": "reference" - }, - { - "title": "https://github.com/gradio-app/gradio/pull/7503", - "url": "https://github.com/gradio-app/gradio/pull/7503", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-48cq-79qq-6f7x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1729", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/e329f1fd38935213fe0e73962e8cbd5d3af6e87b", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/f6a10a8d-f538-4cb7-9bb2-85d9f5708124", - "type": "exploit" - }, - { - "title": "GHSA-hmx6-r76c-85g9", - "url": "https://github.com/advisories/GHSA-hmx6-r76c-85g9", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/security/advisories/GHSA-hmx6-r76c-85g9", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-hmx6-r76c-85g9", - "type": "reference" - }, - { - "title": "https://github.com/gradio-app/gradio/releases/tag/gradio%404.19.2", - "url": "https://github.com/gradio-app/gradio/releases/tag/gradio%404.19.2", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hmx6-r76c-85g9", - "type": "advisory" - }, - { - "title": "GHSA-3x9g-xfj5-fq84", - "url": "https://github.com/advisories/GHSA-3x9g-xfj5-fq84", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0964", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/d76bcaaaf0734aaf49a680f94ea9d4d22a602e70", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/25e25501-5918-429c-8541-88832dfd3741", - "type": "exploit" - }, - { - "title": "GHSA-f3h9-8phc-6gvh", - "url": "https://github.com/advisories/GHSA-f3h9-8phc-6gvh", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-261.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-261.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f3h9-8phc-6gvh", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-261", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7215", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Chanzhaoyu/chatgpt-web/issues/2001", - "type": "exploit" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0960", - "type": "advisory" - }, - { - "title": "GHSA-7mgg-3rq2-hff4", - "url": "https://github.com/advisories/GHSA-7mgg-3rq2-hff4", - "type": "advisory" - }, - { - "title": "https://github.com/bayuncao/vul-cve-8", - "url": "https://github.com/bayuncao/vul-cve-8", - "type": "reference" - }, - { - "title": "https://github.com/bayuncao/vul-cve-8/blob/main/dataset.pkl", - "url": "https://github.com/bayuncao/vul-cve-8/blob/main/dataset.pkl", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51449", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/commit/1b9d4234d6c25ef250d882c7b90e1f4039ed2d76", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-6qm2-wpxq-7qh2", - "type": "advisory" - }, - { - "title": "GHSA-6qm2-wpxq-7qh2", - "url": "https://github.com/advisories/GHSA-6qm2-wpxq-7qh2", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-249.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-249.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6qm2-wpxq-7qh2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-249", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6572", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/5b5af1899dd98d63e1f9b48a93601c2db1f56520", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/21d2ff0c-d43a-4afd-bb4d-049ee8da5b5c", - "type": "patch" - }, - { - "title": "GHSA-gqvf-3hgp-5hxv", - "url": "https://github.com/advisories/GHSA-gqvf-3hgp-5hxv", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-255.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-255.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gqvf-3hgp-5hxv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-255", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7148", - "type": "advisory" - }, - { - "title": "GHSA-5fpq-3c9p-3r3w", - "url": "https://github.com/advisories/GHSA-5fpq-3c9p-3r3w", - "type": "advisory" - }, - { - "title": "https://drive.google.com/file/d/1ST3dD-iwUBgBNZ8tGaBbqVi1zRh5rLND/view", - "url": "https://drive.google.com/file/d/1ST3dD-iwUBgBNZ8tGaBbqVi1zRh5rLND/view", - "type": "reference" - }, - { - "title": "https://github.com/ShifuML/shifu/blob/20f589158adfc011c505664cf7bdf31e36ed62fa/src/main/java/ml/shifu/shifu/core/DataPurifier.java", - "url": "https://github.com/ShifuML/shifu/blob/20f589158adfc011c505664cf7bdf31e36ed62fa/src/main/java/ml/shifu/shifu/core/DataPurifier.java", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-41626", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://gist.github.com/impose1/590472eb0544ef1ec36c8a5a40122adb", - "type": "advisory" - }, - { - "title": "GHSA-v4q9-qgqf-7jwp", - "url": "https://github.com/advisories/GHSA-v4q9-qgqf-7jwp", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v4q9-qgqf-7jwp", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4245", - "type": "advisory" - }, - { - "title": "GHSA-jcwr-x25h-x5fh", - "url": "https://github.com/advisories/GHSA-jcwr-x25h-x5fh", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2023:3906", - "url": "https://access.redhat.com/errata/RHSA-2023:3906", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2022-4245", - "url": "https://access.redhat.com/security/cve/CVE-2022-4245", - "type": "reference" - }, - { - "title": "https://github.com/codehaus-plexus/plexus-utils/issues/3", - "url": "https://github.com/codehaus-plexus/plexus-utils/issues/3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38201", - "type": "advisory" - }, - { - "title": "GHSA-f4r5-q63f-gcww", - "url": "https://github.com/advisories/GHSA-f4r5-q63f-gcww", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-f4r5-q63f-gcww", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-f4r5-q63f-gcww", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/commit/9e5ac9f25cd400b16d5969f531cee28290543f2a", - "url": "https://github.com/keylime/keylime/commit/9e5ac9f25cd400b16d5969f531cee28290543f2a", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2023-38201", - "url": "https://access.redhat.com/security/cve/CVE-2023-38201", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-3686", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-3691", - "type": "advisory" - }, - { - "title": "GHSA-hx4h-676r-j3qp", - "url": "https://github.com/advisories/GHSA-hx4h-676r-j3qp", - "type": "advisory" - }, - { - "title": "https://gitee.com/layui/layui/issues/I7HDXZ", - "url": "https://gitee.com/layui/layui/issues/I7HDXZ", - "type": "reference" - }, - { - "title": "https://gitee.com/layui/layui/tree/v2.8.0", - "url": "https://gitee.com/layui/layui/tree/v2.8.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4361", - "type": "advisory" - }, - { - "title": "GHSA-3p62-6fjh-3p5h", - "url": "https://github.com/advisories/GHSA-3p62-6fjh-3p5h", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-3p62-6fjh-3p5h", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-3p62-6fjh-3p5h", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/a1cfe6e24e5b34792699a00b8b4a8016a5929e3a", - "url": "https://github.com/keycloak/keycloak/commit/a1cfe6e24e5b34792699a00b8b4a8016a5929e3a", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-3276", - "type": "advisory" - }, - { - "title": "GHSA-p2qf-9vp6-3jjq", - "url": "https://github.com/advisories/GHSA-p2qf-9vp6-3jjq", - "type": "advisory" - }, - { - "title": "https://fbdhhhh47.github.io/2023/06/06/hutool-XXE", - "url": "https://fbdhhhh47.github.io/2023/06/06/hutool-XXE", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-25082", - "type": "advisory" - }, - { - "title": "GHSA-h384-ph77-3699", - "url": "https://github.com/advisories/GHSA-h384-ph77-3699", - "type": "advisory" - }, - { - "title": "https://github.com/zwczou/weixin-python/pull/30", - "url": "https://github.com/zwczou/weixin-python/pull/30", - "type": "reference" - }, - { - "title": "https://github.com/zwczou/weixin-python/commit/e54abadc777715b6dcb545c13214d1dea63df6c9", - "url": "https://github.com/zwczou/weixin-python/commit/e54abadc777715b6dcb545c13214d1dea63df6c9", - "type": "reference" - }, - { - "title": "https://github.com/zwczou/weixin-python/releases/tag/v0.5.5", - "url": "https://github.com/zwczou/weixin-python/releases/tag/v0.5.5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-36401", - "type": "advisory" - }, - { - "title": "GHSA-g6h6-4fp6-w33w", - "url": "https://github.com/advisories/GHSA-g6h6-4fp6-w33w", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-2237", - "type": "advisory" - }, - { - "title": "GHSA-59fq-727j-hm3f", - "url": "https://github.com/advisories/GHSA-59fq-727j-hm3f", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak-nodejs-connect/security/advisories/GHSA-59fq-727j-hm3f", - "url": "https://github.com/keycloak/keycloak-nodejs-connect/security/advisories/GHSA-59fq-727j-hm3f", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak-nodejs-connect/commit/190a9470e234bbd9ac5d5de43f5a19aead9a2c21", - "url": "https://github.com/keycloak/keycloak-nodejs-connect/commit/190a9470e234bbd9ac5d5de43f5a19aead9a2c21", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1274", - "type": "advisory" - }, - { - "title": "GHSA-m4fv-gm5m-4725", - "url": "https://github.com/advisories/GHSA-m4fv-gm5m-4725", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-m4fv-gm5m-4725", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-m4fv-gm5m-4725", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/pull/16764", - "url": "https://github.com/keycloak/keycloak/pull/16764", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/fc3c61235fa30132123c17ed8702ff7b3a672fe9", - "url": "https://github.com/keycloak/keycloak/commit/fc3c61235fa30132123c17ed8702ff7b3a672fe9", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1438", - "type": "advisory" - }, - { - "title": "GHSA-w354-2f3c-qvg9", - "url": "https://github.com/advisories/GHSA-w354-2f3c-qvg9", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-w354-2f3c-qvg9", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-w354-2f3c-qvg9", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2022-1438", - "url": "https://access.redhat.com/security/cve/cve-2022-1438", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/blob/48835576daa158443f69917ac309e1a7c951bc87/services/src/main/java/org/keycloak/authentication/AuthenticationProcessor.java#L1045", - "url": "https://github.com/keycloak/keycloak/blob/48835576daa158443f69917ac309e1a7c951bc87/services/src/main/java/org/keycloak/authentication/AuthenticationProcessor.java#L1045", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25823", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-3x5j-9vwr-8rr5", - "type": "vendor" - }, - { - "title": "GHSA-3x5j-9vwr-8rr5", - "url": "https://github.com/advisories/GHSA-3x5j-9vwr-8rr5", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-16.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-16.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3x5j-9vwr-8rr5", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-16", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-15026", - "type": "advisory" - }, - { - "title": "GHSA-4jx2-hvqw-93j9", - "url": "https://github.com/advisories/GHSA-4jx2-hvqw-93j9", - "type": "advisory" - }, - { - "title": "https://github.com/3breadt/dd-plist/pull/26", - "url": "https://github.com/3breadt/dd-plist/pull/26", - "type": "reference" - }, - { - "title": "https://github.com/3breadt/dd-plist/commit/8c954e8d9f6f6863729e50105a8abf3f87fff74c", - "url": "https://github.com/3breadt/dd-plist/commit/8c954e8d9f6f6863729e50105a8abf3f87fff74c", - "type": "reference" - }, - { - "title": "https://github.com/3breadt/dd-plist/releases/tag/dd-plist-1.18", - "url": "https://github.com/3breadt/dd-plist/releases/tag/dd-plist-1.18", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-125087", - "type": "advisory" - }, - { - "title": "GHSA-3vrc-rrpw-r5pw", - "url": "https://github.com/advisories/GHSA-3vrc-rrpw-r5pw", - "type": "advisory" - }, - { - "title": "https://github.com/jmurty/java-xmlbuilder/issues/6", - "url": "https://github.com/jmurty/java-xmlbuilder/issues/6", - "type": "reference" - }, - { - "title": "https://github.com/jmurty/java-xmlbuilder/commit/e6fddca201790abab4f2c274341c0bb8835c3e73", - "url": "https://github.com/jmurty/java-xmlbuilder/commit/e6fddca201790abab4f2c274341c0bb8835c3e73", - "type": "reference" - }, - { - "title": "https://github.com/jmurty/java-xmlbuilder/releases/tag/v1.2", - "url": "https://github.com/jmurty/java-xmlbuilder/releases/tag/v1.2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23921", - "type": "advisory" - }, - { - "title": "GHSA-97qf-pq7x-964m", - "url": "https://github.com/advisories/GHSA-97qf-pq7x-964m", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23922", - "type": "advisory" - }, - { - "title": "GHSA-grmj-gpwm-98ww", - "url": "https://github.com/advisories/GHSA-grmj-gpwm-98ww", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-10073", - "type": "advisory" - }, - { - "title": "GHSA-84mm-prjg-49xm", - "url": "https://github.com/advisories/GHSA-84mm-prjg-49xm", - "type": "advisory" - }, - { - "title": "https://github.com/tinymighty/wiki-seo/pull/21", - "url": "https://github.com/tinymighty/wiki-seo/pull/21", - "type": "reference" - }, - { - "title": "https://github.com/tinymighty/wiki-seo/commit/089a5797be612b18a820f9f1e6593ad9a91b1dba", - "url": "https://github.com/tinymighty/wiki-seo/commit/089a5797be612b18a820f9f1e6593ad9a91b1dba", - "type": "reference" - }, - { - "title": "https://github.com/tinymighty/wiki-seo/releases/tag/1.2.2", - "url": "https://github.com/tinymighty/wiki-seo/releases/tag/1.2.2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-0229", - "type": "advisory" - }, - { - "title": "GHSA-5465-xc2j-6p84", - "url": "https://github.com/advisories/GHSA-5465-xc2j-6p84", - "type": "advisory" - }, - { - "title": "https://github.com/openshift/apiserver-library-go/pull/97", - "url": "https://github.com/openshift/apiserver-library-go/pull/97", - "type": "reference" - }, - { - "title": "https://github.com/openshift/apiserver-library-go/commit/30f75d79e424ca462c6de53ee8b93f91183763e6", - "url": "https://github.com/openshift/apiserver-library-go/commit/30f75d79e424ca462c6de53ee8b93f91183763e6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-10029", - "type": "advisory" - }, - { - "title": "GHSA-rh3m-pr36-xh2f", - "url": "https://github.com/advisories/GHSA-rh3m-pr36-xh2f", - "type": "advisory" - }, - { - "title": "https://github.com/kelvinmo/simplexrd/commit/4c9f2e028523ed705b555eca2c18c64e71f1a35d", - "url": "https://github.com/kelvinmo/simplexrd/commit/4c9f2e028523ed705b555eca2c18c64e71f1a35d", - "type": "reference" - }, - { - "title": "https://github.com/kelvinmo/simplexrd/releases/tag/v3.1.1", - "url": "https://github.com/kelvinmo/simplexrd/releases/tag/v3.1.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-15011", - "type": "advisory" - }, - { - "title": "GHSA-77cc-w3wm-6whp", - "url": "https://github.com/advisories/GHSA-77cc-w3wm-6whp", - "type": "advisory" - }, - { - "title": "https://github.com/e-Contract/dssp/commit/ec4238349691ec66dd30b416ec6eaab02d722302", - "url": "https://github.com/e-Contract/dssp/commit/ec4238349691ec66dd30b416ec6eaab02d722302", - "type": "reference" - }, - { - "title": "https://github.com/e-Contract/dssp/releases/tag/dssp-1.3.2", - "url": "https://github.com/e-Contract/dssp/releases/tag/dssp-1.3.2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-36640", - "type": "advisory" - }, - { - "title": "GHSA-wg99-5vrx-j2gg", - "url": "https://github.com/advisories/GHSA-wg99-5vrx-j2gg", - "type": "advisory" - }, - { - "title": "https://github.com/bonitasoft/bonita-connector-webservice/pull/17", - "url": "https://github.com/bonitasoft/bonita-connector-webservice/pull/17", - "type": "reference" - }, - { - "title": "https://github.com/bonitasoft/bonita-connector-webservice/commit/a12ad691c05af19e9061d7949b6b828ce48815d5", - "url": "https://github.com/bonitasoft/bonita-connector-webservice/commit/a12ad691c05af19e9061d7949b6b828ce48815d5", - "type": "reference" - }, - { - "title": "https://github.com/bonitasoft/bonita-connector-webservice/releases/tag/1.3.1", - "url": "https://github.com/bonitasoft/bonita-connector-webservice/releases/tag/1.3.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-36641", - "type": "advisory" - }, - { - "title": "GHSA-g4r8-28fp-f255", - "url": "https://github.com/advisories/GHSA-g4r8-28fp-f255", - "type": "advisory" - }, - { - "title": "https://github.com/gturri/aXMLRPC/commit/ad6615b3ec41353e614f6ea5fdd5b046442a832b", - "url": "https://github.com/gturri/aXMLRPC/commit/ad6615b3ec41353e614f6ea5fdd5b046442a832b", - "type": "reference" - }, - { - "title": "https://github.com/gturri/aXMLRPC/releases/tag/aXMLRPC-1.12.1", - "url": "https://github.com/gturri/aXMLRPC/releases/tag/aXMLRPC-1.12.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-20151", - "type": "advisory" - }, - { - "title": "GHSA-j69f-fgh5-f7mc", - "url": "https://github.com/advisories/GHSA-j69f-fgh5-f7mc", - "type": "advisory" - }, - { - "title": "https://github.com/itext/rups/commit/ac5590925874ef810018a6b60fec216eee54fb32", - "url": "https://github.com/itext/rups/commit/ac5590925874ef810018a6b60fec216eee54fb32", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-25053", - "type": "advisory" - }, - { - "title": "GHSA-79mp-cxp4-9p6r", - "url": "https://github.com/advisories/GHSA-79mp-cxp4-9p6r", - "type": "advisory" - }, - { - "title": "https://github.com/moappi/json2html/commit/2d3d24d971b19a8ed1fb823596300b9835d55801", - "url": "https://github.com/moappi/json2html/commit/2d3d24d971b19a8ed1fb823596300b9835d55801", - "type": "reference" - }, - { - "title": "https://github.com/moappi/json2html/releases/tag/1.2.0", - "url": "https://github.com/moappi/json2html/releases/tag/1.2.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4725", - "type": "advisory" - }, - { - "title": "GHSA-f5h9-qx38-2hgp", - "url": "https://github.com/advisories/GHSA-f5h9-qx38-2hgp", - "type": "advisory" - }, - { - "title": "https://github.com/aws-amplify/aws-sdk-android/pull/3100", - "url": "https://github.com/aws-amplify/aws-sdk-android/pull/3100", - "type": "reference" - }, - { - "title": "https://github.com/aws-amplify/aws-sdk-android/commit/c3e6d69422e1f0c80fe53f2d757b8df97619af2b", - "url": "https://github.com/aws-amplify/aws-sdk-android/commit/c3e6d69422e1f0c80fe53f2d757b8df97619af2b", - "type": "reference" - }, - { - "title": "https://github.com/aws-amplify/aws-sdk-android/releases/tag/release_v2.59.1", - "url": "https://github.com/aws-amplify/aws-sdk-android/releases/tag/release_v2.59.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4272", - "type": "advisory" - }, - { - "title": "GHSA-gw62-c7w4-x449", - "url": "https://github.com/advisories/GHSA-gw62-c7w4-x449", - "type": "advisory" - }, - { - "title": "https://github.com/studygolang/studygolang/commit/0fb30f9640bd5fa0cae58922eac6c00bb1a94391", - "url": "https://github.com/studygolang/studygolang/commit/0fb30f9640bd5fa0cae58922eac6c00bb1a94391", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4526", - "type": "advisory" - }, - { - "title": "GHSA-287q-jfcp-9vhv", - "url": "https://github.com/advisories/GHSA-287q-jfcp-9vhv", - "type": "advisory" - }, - { - "title": "https://github.com/richardbarran/django-photologue/issues/223", - "url": "https://github.com/richardbarran/django-photologue/issues/223", - "type": "reference" - }, - { - "title": "https://github.com/richardbarran/django-photologue/commit/960cb060ce5e2964e6d716ff787c72fc18a371e7", - "url": "https://github.com/richardbarran/django-photologue/commit/960cb060ce5e2964e6d716ff787c72fc18a371e7", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/django-photologue/PYSEC-2022-43061.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/django-photologue/PYSEC-2022-43061.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45150", - "type": "advisory" - }, - { - "title": "GHSA-6gx2-g773-hv9h", - "url": "https://github.com/advisories/GHSA-6gx2-g773-hv9h", - "type": "advisory" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2DHYIIAUXUBHMBEDYU7TYNZXEN2W2SA2", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2DHYIIAUXUBHMBEDYU7TYNZXEN2W2SA2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45151", - "type": "advisory" - }, - { - "title": "GHSA-xv72-6pgh-cjj8", - "url": "https://github.com/advisories/GHSA-xv72-6pgh-cjj8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4065", - "type": "advisory" - }, - { - "title": "GHSA-rc2q-x9mf-w3vf", - "url": "https://github.com/advisories/GHSA-rc2q-x9mf-w3vf", - "type": "advisory" - }, - { - "title": "https://github.com/cbeust/testng/pull/2806", - "url": "https://github.com/cbeust/testng/pull/2806", - "type": "reference" - }, - { - "title": "https://github.com/cbeust/testng/commit/9150736cd2c123a6a3b60e6193630859f9f0422b", - "url": "https://github.com/cbeust/testng/commit/9150736cd2c123a6a3b60e6193630859f9f0422b", - "type": "reference" - }, - { - "title": "https://github.com/cbeust/testng/releases/tag/7.7.0", - "url": "https://github.com/cbeust/testng/releases/tag/7.7.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-2668", - "type": "advisory" - }, - { - "title": "GHSA-wf7g-7h6h-678v", - "url": "https://github.com/advisories/GHSA-wf7g-7h6h-678v", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-wf7g-7h6h-678v", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-wf7g-7h6h-678v", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/e2ae7eef39b27e48ffa4764995d558555f02838c", - "url": "https://github.com/keycloak/keycloak/commit/e2ae7eef39b27e48ffa4764995d558555f02838c", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2022-2668", - "url": "https://access.redhat.com/security/cve/CVE-2022-2668", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23451", - "type": "advisory" - }, - { - "title": "GHSA-p2jg-q8hw-p7gc", - "url": "https://github.com/advisories/GHSA-p2jg-q8hw-p7gc", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2022-23451", - "url": "https://access.redhat.com/security/cve/CVE-2022-23451", - "type": "reference" - }, - { - "title": "https://review.opendev.org/c/openstack/barbican/+/811236", - "url": "https://review.opendev.org/c/openstack/barbican/+/811236", - "type": "reference" - }, - { - "title": "GHSA-q2gp-gph3-88x9", - "url": "https://github.com/advisories/GHSA-q2gp-gph3-88x9", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-35653", - "type": "advisory" - }, - { - "title": "GHSA-62wh-m4jr-233r", - "url": "https://github.com/advisories/GHSA-62wh-m4jr-233r", - "type": "advisory" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6MOKYVRNFNAODP2XSMGJ5CRDUZCZKAR3", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6MOKYVRNFNAODP2XSMGJ5CRDUZCZKAR3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-35651", - "type": "advisory" - }, - { - "title": "GHSA-wwv7-h477-wrv7", - "url": "https://github.com/advisories/GHSA-wwv7-h477-wrv7", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4178", - "type": "advisory" - }, - { - "title": "GHSA-98g7-rxmf-rrxm", - "url": "https://github.com/advisories/GHSA-98g7-rxmf-rrxm", - "type": "advisory" - }, - { - "title": "https://github.com/fabric8io/kubernetes-client/issues/3653", - "url": "https://github.com/fabric8io/kubernetes-client/issues/3653", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2021-4178", - "url": "https://access.redhat.com/security/cve/cve-2021-4178", - "type": "reference" - }, - { - "title": "https://www.mend.io/vulnerability-database/CVE-2021-4178", - "url": "https://www.mend.io/vulnerability-database/CVE-2021-4178", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1708", - "type": "advisory" - }, - { - "title": "GHSA-fcm2-6c3h-pg6j", - "url": "https://github.com/advisories/GHSA-fcm2-6c3h-pg6j", - "type": "advisory" - }, - { - "title": "https://github.com/cri-o/cri-o/security/advisories/GHSA-fcm2-6c3h-pg6j", - "url": "https://github.com/cri-o/cri-o/security/advisories/GHSA-fcm2-6c3h-pg6j", - "type": "reference" - }, - { - "title": "https://github.com/cri-o/cri-o/commit/f032cf649ecc7e0c46718bd9e7814bfb317cb544", - "url": "https://github.com/cri-o/cri-o/commit/f032cf649ecc7e0c46718bd9e7814bfb317cb544", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3599", - "type": "advisory" - }, - { - "title": "GHSA-xrh2-c3rm-35jr", - "url": "https://github.com/advisories/GHSA-xrh2-c3rm-35jr", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2014-3599", - "url": "https://access.redhat.com/security/cve/cve-2014-3599", - "type": "reference" - }, - { - "title": "https://github.com/hornetq/hornetq/commit/b3a63576371828d5f8e64ba7ccbcecb1da8111d2", - "url": "https://github.com/hornetq/hornetq/commit/b3a63576371828d5f8e64ba7ccbcecb1da8111d2", - "type": "reference" - }, - { - "title": "https://github.com/victims/victims-cve-db/blob/master/database/java/2014/3599.yaml", - "url": "https://github.com/victims/victims-cve-db/blob/master/database/java/2014/3599.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-1742", - "type": "advisory" - }, - { - "title": "GHSA-jw82-xjgr-g6f8", - "url": "https://github.com/advisories/GHSA-jw82-xjgr-g6f8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-3517", - "type": "advisory" - }, - { - "title": "GHSA-jw9f-hh49-cvp9", - "url": "https://github.com/advisories/GHSA-jw9f-hh49-cvp9", - "type": "advisory" - }, - { - "title": "https://lists.debian.org/debian-lts-announce/2021/05/msg00008.html", - "url": "https://lists.debian.org/debian-lts-announce/2021/05/msg00008.html", - "type": "reference" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BZOMV5J4PMZAORVT64BKLV6YIZAFDGX6/", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BZOMV5J4PMZAORVT64BKLV6YIZAFDGX6/", - "type": "reference" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QVM4UJ3376I6ZVOYMHBNX4GY3NIV52WV/", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QVM4UJ3376I6ZVOYMHBNX4GY3NIV52WV/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-3537", - "type": "advisory" - }, - { - "title": "GHSA-286v-pcf5-25rc", - "url": "https://github.com/advisories/GHSA-286v-pcf5-25rc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-10721", - "type": "advisory" - }, - { - "title": "GHSA-w7gj-h6f2-x4c6", - "url": "https://github.com/advisories/GHSA-w7gj-h6f2-x4c6", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1811", - "type": "advisory" - }, - { - "title": "GHSA-qg7x-4h4q-3m49", - "url": "https://github.com/advisories/GHSA-qg7x-4h4q-3m49", - "type": "advisory" - }, - { - "title": "https://jenkins.io/security/advisory/2015-02-27/", - "url": "https://jenkins.io/security/advisory/2015-02-27/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1809", - "type": "advisory" - }, - { - "title": "GHSA-qj27-w92h-fc9r", - "url": "https://github.com/advisories/GHSA-qj27-w92h-fc9r", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-14856", - "type": "advisory" - }, - { - "title": "GHSA-6fq2-x65v-v9h7", - "url": "https://github.com/advisories/GHSA-6fq2-x65v-v9h7", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2020:0756", - "url": "https://access.redhat.com/errata/RHSA-2020:0756", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00021.html", - "url": "http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00021.html", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00026.html", - "url": "http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00026.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10206", - "type": "advisory" - }, - { - "title": "GHSA-cqmr-rcpr-cxh3", - "url": "https://github.com/advisories/GHSA-cqmr-rcpr-cxh3", - "type": "advisory" - }, - { - "title": "https://www.debian.org/security/2021/dsa-4950", - "url": "https://www.debian.org/security/2021/dsa-4950", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10202", - "type": "advisory" - }, - { - "title": "GHSA-c27h-mcmw-48hv", - "url": "https://github.com/advisories/GHSA-c27h-mcmw-48hv", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/r0fbf2c60967bc9f73d7f5a62ad3b955789f9a14b950f42e99fca9b4e@%3Cissues.hive.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r0fbf2c60967bc9f73d7f5a62ad3b955789f9a14b950f42e99fca9b4e@%3Cissues.hive.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/r1edabcfacdad42d3c830464e9cf07a9a489059a7b7a8642cf055542d@%3Cissues.hive.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r1edabcfacdad42d3c830464e9cf07a9a489059a7b7a8642cf055542d@%3Cissues.hive.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/r356592d9874ab4bc9da4754592f8aa6edc894c95e17e58484bc2af7a@%3Cissues.hive.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r356592d9874ab4bc9da4754592f8aa6edc894c95e17e58484bc2af7a@%3Cissues.hive.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10189", - "type": "advisory" - }, - { - "title": "GHSA-h7xp-7fjp-ghhc", - "url": "https://github.com/advisories/GHSA-h7xp-7fjp-ghhc", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/109271", - "url": "http://www.securityfocus.com/bid/109271", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10188", - "type": "advisory" - }, - { - "title": "GHSA-92q5-2h76-vgmj", - "url": "https://github.com/advisories/GHSA-92q5-2h76-vgmj", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/109178", - "url": "http://www.securityfocus.com/bid/109178", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10186", - "type": "advisory" - }, - { - "title": "GHSA-wv9c-pfpm-4wc5", - "url": "https://github.com/advisories/GHSA-wv9c-pfpm-4wc5", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/ea1ac3c7efbddbdb210ea4c75e7156c7d7ee914b", - "url": "https://github.com/moodle/moodle/commit/ea1ac3c7efbddbdb210ea4c75e7156c7d7ee914b", - "type": "reference" - }, - { - "title": "https://web.archive.org/web/20210125055044/https://www.securityfocus.com/bid/109175/", - "url": "https://web.archive.org/web/20210125055044/https://www.securityfocus.com/bid/109175/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3656", - "type": "advisory" - }, - { - "title": "GHSA-px42-mr8m-cpgh", - "url": "https://github.com/advisories/GHSA-px42-mr8m-cpgh", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2014-3656", - "url": "https://access.redhat.com/security/cve/cve-2014-3656", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/63b41e2548cbc20bd3758e34a82d880e177bf24c", - "url": "https://github.com/keycloak/keycloak/commit/63b41e2548cbc20bd3758e34a82d880e177bf24c", - "type": "reference" - }, - { - "title": "https://issues.jboss.org/browse/KEYCLOAK-703", - "url": "https://issues.jboss.org/browse/KEYCLOAK-703", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3708", - "type": "advisory" - }, - { - "title": "GHSA-qvq6-cw53-rmwg", - "url": "https://github.com/advisories/GHSA-qvq6-cw53-rmwg", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/SOA-2319", - "url": "https://issues.jboss.org/browse/SOA-2319", - "type": "reference" - }, - { - "title": "http://www.redhat.com/support/errata/RHSA-2010-0937.html", - "url": "http://www.redhat.com/support/errata/RHSA-2010-0937.html", - "type": "reference" - }, - { - "title": "http://www.redhat.com/support/errata/RHSA-2010-0938.html", - "url": "http://www.redhat.com/support/errata/RHSA-2010-0938.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2491", - "type": "advisory" - }, - { - "title": "GHSA-frgf-rv99-862x", - "url": "https://github.com/advisories/GHSA-frgf-rv99-862x", - "type": "advisory" - }, - { - "title": "http://bugs.gentoo.org/show_bug.cgi?id=326395", - "url": "http://bugs.gentoo.org/show_bug.cgi?id=326395", - "type": "reference" - }, - { - "title": "http://issues.roundup-tracker.org/issue2550654", - "url": "http://issues.roundup-tracker.org/issue2550654", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2010-September/048018.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2010-September/048018.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4418", - "type": "advisory" - }, - { - "title": "GHSA-88r4-38gc-97p4", - "url": "https://github.com/advisories/GHSA-88r4-38gc-97p4", - "type": "advisory" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/09/12/1", - "url": "http://www.openwall.com/lists/oss-security/2012/09/12/1", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/09/13/1", - "url": "http://www.openwall.com/lists/oss-security/2012/09/13/1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3363", - "type": "advisory" - }, - { - "title": "GHSA-7pg4-5233-82jv", - "url": "https://github.com/advisories/GHSA-7pg4-5233-82jv", - "type": "advisory" - }, - { - "title": "https://www.sec-consult.com/files/20120626-0_zend_framework_xxe_injection.txt", - "url": "https://www.sec-consult.com/files/20120626-0_zend_framework_xxe_injection.txt", - "type": "reference" - }, - { - "title": "http://framework.zend.com/security/advisory/ZF2012-01", - "url": "http://framework.zend.com/security/advisory/ZF2012-01", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6531", - "type": "advisory" - }, - { - "title": "GHSA-h5p3-7mg6-hgj4", - "url": "https://github.com/advisories/GHSA-h5p3-7mg6-hgj4", - "type": "advisory" - }, - { - "title": "http://www.debian.org/security/2012/dsa-2505", - "url": "http://www.debian.org/security/2012/dsa-2505", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/06/26/2", - "url": "http://www.openwall.com/lists/oss-security/2012/06/26/2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-2125", - "type": "advisory" - }, - { - "title": "GHSA-228f-g3h7-3fj3", - "url": "https://github.com/advisories/GHSA-228f-g3h7-3fj3", - "type": "advisory" - }, - { - "title": "https://github.com/rubygems/rubygems/blob/1.8/History.txt", - "url": "https://github.com/rubygems/rubygems/blob/1.8/History.txt", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-1203.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-1203.html", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-1441.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-1441.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-2126", - "type": "advisory" - }, - { - "title": "GHSA-5mgj-mvv8-46mw", - "url": "https://github.com/advisories/GHSA-5mgj-mvv8-46mw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4190", - "type": "advisory" - }, - { - "title": "GHSA-89rq-27xp-vgv7", - "url": "https://github.com/advisories/GHSA-89rq-27xp-vgv7", - "type": "advisory" - }, - { - "title": "http://plone.org/products/plone-hotfix/releases/20130618", - "url": "http://plone.org/products/plone-hotfix/releases/20130618", - "type": "reference" - }, - { - "title": "http://plone.org/products/plone/security/advisories/20130618-announcement", - "url": "http://plone.org/products/plone/security/advisories/20130618-announcement", - "type": "reference" - }, - { - "title": "http://seclists.org/oss-sec/2013/q3/261", - "url": "http://seclists.org/oss-sec/2013/q3/261", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4197", - "type": "advisory" - }, - { - "title": "GHSA-jjvw-3h9j-p7jf", - "url": "https://github.com/advisories/GHSA-jjvw-3h9j-p7jf", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2209", - "type": "advisory" - }, - { - "title": "GHSA-6g7x-4c7m-g63m", - "url": "https://github.com/advisories/GHSA-6g7x-4c7m-g63m", - "type": "advisory" - }, - { - "title": "https://github.com/reviewboard/reviewboard/commit/4aaacbb1e628a80803ba1a55703db38fccdf7dbf", - "url": "https://github.com/reviewboard/reviewboard/commit/4aaacbb1e628a80803ba1a55703db38fccdf7dbf", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2013/06/24/2", - "url": "http://www.openwall.com/lists/oss-security/2013/06/24/2", - "type": "reference" - }, - { - "title": "http://www.reviewboard.org/docs/releasenotes/reviewboard/1.6.17/", - "url": "http://www.reviewboard.org/docs/releasenotes/reviewboard/1.6.17/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-3591", - "type": "advisory" - }, - { - "title": "GHSA-3p87-w3c5-27gf", - "url": "https://github.com/advisories/GHSA-3p87-w3c5-27gf", - "type": "advisory" - }, - { - "title": "https://github.com/phpmyadmin/phpmyadmin/commit/bda213c58aec44925be661acb0e76c19483ea170", - "url": "https://github.com/phpmyadmin/phpmyadmin/commit/bda213c58aec44925be661acb0e76c19483ea170", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2011/09/30/8", - "url": "http://www.openwall.com/lists/oss-security/2011/09/30/8", - "type": "reference" - }, - { - "title": "http://www.phpmyadmin.net/home_page/security/PMASA-2011-14.php", - "url": "http://www.phpmyadmin.net/home_page/security/PMASA-2011-14.php", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-3592", - "type": "advisory" - }, - { - "title": "GHSA-5p69-rmx8-7gw7", - "url": "https://github.com/advisories/GHSA-5p69-rmx8-7gw7", - "type": "advisory" - }, - { - "title": "https://github.com/phpmyadmin/phpmyadmin/commit/2f28ce9c800274190418da0945ce3647d36e1db6", - "url": "https://github.com/phpmyadmin/phpmyadmin/commit/2f28ce9c800274190418da0945ce3647d36e1db6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8125", - "type": "advisory" - }, - { - "title": "GHSA-6qx9-rf9g-7jmr", - "url": "https://github.com/advisories/GHSA-6qx9-rf9g-7jmr", - "type": "advisory" - }, - { - "title": "https://github.com/droolsjbpm/drools/commit/c48464c3b246e6ef0d4cd0dbf67e83ccd532c6d3", - "url": "https://github.com/droolsjbpm/drools/commit/c48464c3b246e6ef0d4cd0dbf67e83ccd532c6d3", - "type": "reference" - }, - { - "title": "https://github.com/droolsjbpm/jbpm/commit/713e8073ecf45623cfc5c918c5cbf700203f46e5", - "url": "https://github.com/droolsjbpm/jbpm/commit/713e8073ecf45623cfc5c918c5cbf700203f46e5", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2015-0850.html", - "url": "http://rhn.redhat.com/errata/RHSA-2015-0850.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-7839", - "type": "advisory" - }, - { - "title": "GHSA-pc54-pchm-xcw6", - "url": "https://github.com/advisories/GHSA-pc54-pchm-xcw6", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/RESTEASY-1130", - "url": "https://issues.jboss.org/browse/RESTEASY-1130", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2015-0675.html", - "url": "http://rhn.redhat.com/errata/RHSA-2015-0675.html", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2015-0773.html", - "url": "http://rhn.redhat.com/errata/RHSA-2015-0773.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-2853", - "type": "advisory" - }, - { - "title": "GHSA-6h86-9r5g-f2h5", - "url": "https://github.com/advisories/GHSA-6h86-9r5g-f2h5", - "type": "advisory" - }, - { - "title": "https://github.com/wikimedia/mediawiki-core/commit/0b695ae09aada343ab59be4a3c9963995a1143b6", - "url": "https://github.com/wikimedia/mediawiki-core/commit/0b695ae09aada343ab59be4a3c9963995a1143b6", - "type": "reference" - }, - { - "title": "https://bugzilla.wikimedia.org/show_bug.cgi?id=63251", - "url": "https://bugzilla.wikimedia.org/show_bug.cgi?id=63251", - "type": "reference" - }, - { - "title": "https://www.mediawiki.org/wiki/Release_notes/1.21#Changes_since_1.21.8", - "url": "https://www.mediawiki.org/wiki/Release_notes/1.21#Changes_since_1.21.8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1813", - "type": "advisory" - }, - { - "title": "GHSA-9h85-v6xf-h26q", - "url": "https://github.com/advisories/GHSA-9h85-v6xf-h26q", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2016:0070", - "url": "https://access.redhat.com/errata/RHSA-2016:0070", - "type": "reference" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-03-23", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-03-23", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2015-1844.html", - "url": "http://rhn.redhat.com/errata/RHSA-2015-1844.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1812", - "type": "advisory" - }, - { - "title": "GHSA-w5v7-q2j4-fvpf", - "url": "https://github.com/advisories/GHSA-w5v7-q2j4-fvpf", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1880", - "type": "advisory" - }, - { - "title": "GHSA-c9gx-27hq-wcvj", - "url": "https://github.com/advisories/GHSA-c9gx-27hq-wcvj", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/jira/browse/AMQ-4398", - "url": "https://issues.apache.org/jira/browse/AMQ-4398", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-1029.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-1029.html", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/65615", - "url": "http://www.securityfocus.com/bid/65615", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4221", - "type": "advisory" - }, - { - "title": "GHSA-92j2-5r7p-6hjw", - "url": "https://github.com/advisories/GHSA-92j2-5r7p-6hjw", - "type": "advisory" - }, - { - "title": "https://github.com/restlet/restlet-framework-java/issues/774", - "url": "https://github.com/restlet/restlet-framework-java/issues/774", - "type": "reference" - }, - { - "title": "http://blog.diniscruz.com/2013/08/using-xmldecoder-to-execute-server-side.html", - "url": "http://blog.diniscruz.com/2013/08/using-xmldecoder-to-execute-server-side.html", - "type": "reference" - }, - { - "title": "http://restlet.org/learn/2.1/changes", - "url": "http://restlet.org/learn/2.1/changes", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1821", - "type": "advisory" - }, - { - "title": "GHSA-hgg7-cghq-xhf4", - "url": "https://github.com/advisories/GHSA-hgg7-cghq-xhf4", - "type": "advisory" - }, - { - "title": "https://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0092", - "url": "https://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0092", - "type": "reference" - }, - { - "title": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=702525", - "url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=702525", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00001.html", - "url": "http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00001.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-4172", - "type": "advisory" - }, - { - "title": "GHSA-9fc5-q25c-r2wr", - "url": "https://github.com/advisories/GHSA-9fc5-q25c-r2wr", - "type": "advisory" - }, - { - "title": "https://github.com/Jasig/phpCAS/pull/125", - "url": "https://github.com/Jasig/phpCAS/pull/125", - "type": "reference" - }, - { - "title": "https://github.com/Jasig/dotnet-cas-client/commit/f0e030014fb7a39e5f38469f43199dc590fd0e8d", - "url": "https://github.com/Jasig/dotnet-cas-client/commit/f0e030014fb7a39e5f38469f43199dc590fd0e8d", - "type": "reference" - }, - { - "title": "https://github.com/Jasig/java-cas-client/commit/ae37092100c8eaec610dab6d83e5e05a8ee58814", - "url": "https://github.com/Jasig/java-cas-client/commit/ae37092100c8eaec610dab6d83e5e05a8ee58814", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2487", - "type": "advisory" - }, - { - "title": "GHSA-5m2m-27cg-7v4v", - "url": "https://github.com/advisories/GHSA-5m2m-27cg-7v4v", - "type": "advisory" - }, - { - "title": "http://hg.moinmo.in/moin/1.7/rev/37306fba2189", - "url": "http://hg.moinmo.in/moin/1.7/rev/37306fba2189", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.8/raw-file/1.8.8/docs/CHANGES", - "url": "http://hg.moinmo.in/moin/1.8/raw-file/1.8.8/docs/CHANGES", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.8/rev/4238b0c90871", - "url": "http://hg.moinmo.in/moin/1.8/rev/4238b0c90871", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2970", - "type": "advisory" - }, - { - "title": "GHSA-gxh5-r8gp-pjc3", - "url": "https://github.com/advisories/GHSA-gxh5-r8gp-pjc3", - "type": "advisory" - }, - { - "title": "http://hg.moinmo.in/moin/1.9/raw-file/1.9.3/docs/CHANGES", - "url": "http://hg.moinmo.in/moin/1.9/raw-file/1.9.3/docs/CHANGES", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.9/rev/4fe9951788cb", - "url": "http://hg.moinmo.in/moin/1.9/rev/4fe9951788cb", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.9/rev/e50b087c4572", - "url": "http://hg.moinmo.in/moin/1.9/rev/e50b087c4572", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2969", - "type": "advisory" - }, - { - "title": "GHSA-2j76-26qq-7rvv", - "url": "https://github.com/advisories/GHSA-2j76-26qq-7rvv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-5992", - "type": "advisory" - }, - { - "title": "GHSA-chqf-hx79-gxc6", - "url": "https://github.com/advisories/GHSA-chqf-hx79-gxc6", - "type": "advisory" - }, - { - "title": "https://bitbucket.org/openpyxl/openpyxl/commits/3b4905f428e1", - "url": "https://bitbucket.org/openpyxl/openpyxl/commits/3b4905f428e1", - "type": "reference" - }, - { - "title": "https://bitbucket.org/openpyxl/openpyxl/issues/749", - "url": "https://bitbucket.org/openpyxl/openpyxl/issues/749", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2017/02/07/5", - "url": "http://www.openwall.com/lists/oss-security/2017/02/07/5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-10127", - "type": "advisory" - }, - { - "title": "GHSA-m269-wj6g-c459", - "url": "https://github.com/advisories/GHSA-m269-wj6g-c459", - "type": "advisory" - }, - { - "title": "https://github.com/rohe/pysaml2/issues/366", - "url": "https://github.com/rohe/pysaml2/issues/366", - "type": "reference" - }, - { - "title": "https://github.com/rohe/pysaml2/pull/379", - "url": "https://github.com/rohe/pysaml2/pull/379", - "type": "reference" - }, - { - "title": "https://github.com/rohe/pysaml2/commit/6e09a25d9b4b7aa7a506853210a9a14100b8bc9b", - "url": "https://github.com/rohe/pysaml2/commit/6e09a25d9b4b7aa7a506853210a9a14100b8bc9b", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-6347", - "type": "advisory" - }, - { - "title": "GHSA-r346-rmrg-qpgh", - "url": "https://github.com/advisories/GHSA-r346-rmrg-qpgh", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/92759", - "url": "http://www.securityfocus.com/bid/92759", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-4338", - "type": "advisory" - }, - { - "title": "GHSA-5pjj-7m4p-wfh2", - "url": "https://github.com/advisories/GHSA-5pjj-7m4p-wfh2", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/64892", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/64892", - "type": "reference" - }, - { - "title": "https://web.archive.org/web/20200229160520/http://www.securityfocus.com/bid/45234", - "url": "https://web.archive.org/web/20200229160520/http://www.securityfocus.com/bid/45234", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3156", - "type": "advisory" - }, - { - "title": "GHSA-98c8-36p9-gw66", - "url": "https://github.com/advisories/GHSA-98c8-36p9-gw66", - "type": "advisory" - }, - { - "title": "https://bugs.launchpad.net/trove/+bug/1398195", - "url": "https://bugs.launchpad.net/trove/+bug/1398195", - "type": "reference" - }, - { - "title": "https://github.com/openstack/trove/blob/master/trove/guestagent/datastore/experimental/cassandra/service.py#L230", - "url": "https://github.com/openstack/trove/blob/master/trove/guestagent/datastore/experimental/cassandra/service.py#L230", - "type": "reference" - }, - { - "title": "https://github.com/openstack/trove/blob/master/trove/guestagent/datastore/experimental/mongodb/service.py#L176", - "url": "https://github.com/openstack/trove/blob/master/trove/guestagent/datastore/experimental/mongodb/service.py#L176", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4107", - "type": "advisory" - }, - { - "title": "GHSA-q4mm-89q2-xffg", - "url": "https://github.com/advisories/GHSA-q4mm-89q2-xffg", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71108", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71108", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069625.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069625.html", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069635.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069635.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-5245", - "type": "advisory" - }, - { - "title": "GHSA-g4jg-gpwv-p7wv", - "url": "https://github.com/advisories/GHSA-g4jg-gpwv-p7wv", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/72808", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/72808", - "type": "reference" - }, - { - "title": "https://issues.jboss.org/browse/RESTEASY-647", - "url": "https://issues.jboss.org/browse/RESTEASY-647", - "type": "reference" - }, - { - "title": "https://issues.jboss.org/browse/RESTEASY/fixforversion/12318708", - "url": "https://issues.jboss.org/browse/RESTEASY/fixforversion/12318708", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-0818", - "type": "advisory" - }, - { - "title": "GHSA-wrrh-g7h3-gqmx", - "url": "https://github.com/advisories/GHSA-wrrh-g7h3-gqmx", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/RESTEASY-637", - "url": "https://issues.jboss.org/browse/RESTEASY-637", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2012-0441.html", - "url": "http://rhn.redhat.com/errata/RHSA-2012-0441.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4314", - "type": "advisory" - }, - { - "title": "GHSA-j473-c3rr-rx9p", - "url": "https://github.com/advisories/GHSA-j473-c3rr-rx9p", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/JBEPP-1368", - "url": "https://issues.jboss.org/browse/JBEPP-1368", - "type": "reference" - }, - { - "title": "https://issues.jboss.org/browse/SOA-3597", - "url": "https://issues.jboss.org/browse/SOA-3597", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2012-0519.html", - "url": "http://rhn.redhat.com/errata/RHSA-2012-0519.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6130", - "type": "advisory" - }, - { - "title": "GHSA-mccq-3m7h-fjxg", - "url": "https://github.com/advisories/GHSA-mccq-3m7h-fjxg", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84189", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84189", - "type": "reference" - }, - { - "title": "https://pypi.python.org/pypi/roundup/1.4.20", - "url": "https://pypi.python.org/pypi/roundup/1.4.20", - "type": "reference" - }, - { - "title": "http://issues.roundup-tracker.org/issue2550684", - "url": "http://issues.roundup-tracker.org/issue2550684", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6132", - "type": "advisory" - }, - { - "title": "GHSA-5v6q-xqq8-g4xj", - "url": "https://github.com/advisories/GHSA-5v6q-xqq8-g4xj", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84191", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84191", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/11/10/2", - "url": "http://www.openwall.com/lists/oss-security/2012/11/10/2", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2013/02/13/8", - "url": "http://www.openwall.com/lists/oss-security/2013/02/13/8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6131", - "type": "advisory" - }, - { - "title": "GHSA-gw2q-cgvq-9g3v", - "url": "https://github.com/advisories/GHSA-gw2q-cgvq-9g3v", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84190", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84190", - "type": "reference" - }, - { - "title": "http://issues.roundup-tracker.org/issue2550711", - "url": "http://issues.roundup-tracker.org/issue2550711", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1879", - "type": "advisory" - }, - { - "title": "GHSA-mfhr-3xmc-r2gg", - "url": "https://github.com/advisories/GHSA-mfhr-3xmc-r2gg", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/85586", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/85586", - "type": "reference" - }, - { - "title": "https://issues.apache.org/jira/browse/AMQ-4397", - "url": "https://issues.apache.org/jira/browse/AMQ-4397", - "type": "reference" - }, - { - "title": "http://secunia.com/advisories/54073", - "url": "http://secunia.com/advisories/54073", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2100", - "type": "advisory" - }, - { - "title": "GHSA-8823-xphr-qw9v", - "url": "https://github.com/advisories/GHSA-8823-xphr-qw9v", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84315", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84315", - "type": "reference" - }, - { - "title": "https://security.gentoo.org/glsa/201507-16", - "url": "https://security.gentoo.org/glsa/201507-16", - "type": "reference" - }, - { - "title": "http://openwall.com/lists/oss-security/2013/05/15/5", - "url": "http://openwall.com/lists/oss-security/2013/05/15/5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-4706", - "type": "advisory" - }, - { - "title": "GHSA-q326-jhw3-699g", - "url": "https://github.com/advisories/GHSA-q326-jhw3-699g", - "type": "advisory" - }, - { - "title": "https://github.com/ipython/ipython/commit/7222bd53ad089a65fd610fab4626f9d0ab47dfce", - "url": "https://github.com/ipython/ipython/commit/7222bd53ad089a65fd610fab4626f9d0ab47dfce", - "type": "reference" - }, - { - "title": "https://github.com/ipython/ipython/commit/c2078a53543ed502efd968649fee1125e0eb549c", - "url": "https://github.com/ipython/ipython/commit/c2078a53543ed502efd968649fee1125e0eb549c", - "type": "reference" - }, - { - "title": "https://ipython.org/ipython-doc/3/whatsnew/version3.html", - "url": "https://ipython.org/ipython-doc/3/whatsnew/version3.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-7316", - "type": "advisory" - }, - { - "title": "GHSA-vf8g-m3vq-6p4p", - "url": "https://github.com/advisories/GHSA-vf8g-m3vq-6p4p", - "type": "advisory" - }, - { - "title": "https://github.com/plone/Products.CMFPlone/commit/3da710a2cd68587f0bf34f2e7ea1167d6eeee087", - "url": "https://github.com/plone/Products.CMFPlone/commit/3da710a2cd68587f0bf34f2e7ea1167d6eeee087", - "type": "reference" - }, - { - "title": "https://plone.org/security/hotfix/20150910/non-persistent-xss-in-plone", - "url": "https://plone.org/security/hotfix/20150910/non-persistent-xss-in-plone", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2015/09/22/14", - "url": "http://www.openwall.com/lists/oss-security/2015/09/22/14", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-4172", - "type": "advisory" - }, - { - "title": "GHSA-c78g-qwpw-2jgv", - "url": "https://github.com/advisories/GHSA-c78g-qwpw-2jgv", - "type": "advisory" - }, - { - "title": "https://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html", - "url": "https://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html", - "type": "reference" - }, - { - "title": "https://marc.info/?l=bugtraq&m=139344343412337&w=2", - "url": "https://marc.info/?l=bugtraq&m=139344343412337&w=2", - "type": "reference" - }, - { - "title": "https://www.redhat.com/support/errata/RHSA-2011-0896.html", - "url": "https://www.redhat.com/support/errata/RHSA-2011-0896.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3094", - "type": "advisory" - }, - { - "title": "GHSA-pjmx-4gc6-hwv8", - "url": "https://github.com/advisories/GHSA-pjmx-4gc6-hwv8", - "type": "advisory" - }, - { - "title": "http://drupal.org/node/880476", - "url": "http://drupal.org/node/880476", - "type": "reference" - }, - { - "title": "http://www.debian.org/security/2010/dsa-2113", - "url": "http://www.debian.org/security/2010/dsa-2113", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2477", - "type": "advisory" - }, - { - "title": "GHSA-7gfc-2v6g-6w9f", - "url": "https://github.com/advisories/GHSA-7gfc-2v6g-6w9f", - "type": "advisory" - }, - { - "title": "http://bitbucket.org/ianb/paste/changeset/fcae59df8b56", - "url": "http://bitbucket.org/ianb/paste/changeset/fcae59df8b56", - "type": "reference" - }, - { - "title": "http://groups.google.com/group/paste-users/browse_thread/thread/3b3fff3dadd0b1e5?pli=1", - "url": "http://groups.google.com/group/paste-users/browse_thread/thread/3b3fff3dadd0b1e5?pli=1", - "type": "reference" - }, - { - "title": "http://groups.google.com/group/pylons-discuss/msg/8c256dc076a408d8?dmode=source&output=gplain", - "url": "http://groups.google.com/group/pylons-discuss/msg/8c256dc076a408d8?dmode=source&output=gplain", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2022", - "type": "advisory" - }, - { - "title": "GHSA-3jcq-cwr7-6332", - "url": "https://github.com/advisories/GHSA-3jcq-cwr7-6332", - "type": "advisory" - }, - { - "title": "https://github.com/happyworm/jPlayer/commit/c5fe17bb4459164bd59153b57248cf94b8867373", - "url": "https://github.com/happyworm/jPlayer/commit/c5fe17bb4459164bd59153b57248cf94b8867373", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-2481", - "type": "advisory" - }, - { - "title": "GHSA-r7c8-hghc-2mp8", - "url": "https://github.com/advisories/GHSA-r7c8-hghc-2mp8", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/bugzilla/show_bug.cgi?id=51395", - "url": "https://issues.apache.org/bugzilla/show_bug.cgi?id=51395", - "type": "reference" - }, - { - "title": "http://svn.apache.org/viewvc?view=revision&revision=1137753", - "url": "http://svn.apache.org/viewvc?view=revision&revision=1137753", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-1419", - "type": "advisory" - }, - { - "title": "GHSA-vch7-92vf-jm44", - "url": "https://github.com/advisories/GHSA-vch7-92vf-jm44", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/65971", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/65971", - "type": "reference" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66154", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66154", - "type": "reference" - }, - { - "title": "http://mail-archives.apache.org/mod_mbox/www-announce/201103.mbox/%3C4D6E74FF.7050106@apache.org%3E", - "url": "http://mail-archives.apache.org/mod_mbox/www-announce/201103.mbox/%3C4D6E74FF.7050106@apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3208", - "type": "advisory" - }, - { - "title": "GHSA-x6rc-54xp-ccxx", - "url": "https://github.com/advisories/GHSA-x6rc-54xp-ccxx", - "type": "advisory" - }, - { - "title": "https://github.com/apache/activemq-artemis/commit/48d9951d879e0c8cbb59d4b64ab59d53ef88310d", - "url": "https://github.com/apache/activemq-artemis/commit/48d9951d879e0c8cbb59d4b64ab59d53ef88310d", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2018:2927", - "url": "https://access.redhat.com/errata/RHSA-2018:2927", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2015/07/24/2", - "url": "http://www.openwall.com/lists/oss-security/2015/07/24/2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6074", - "type": "advisory" - }, - { - "title": "GHSA-9hr6-5x6g-gg5g", - "url": "https://github.com/advisories/GHSA-9hr6-5x6g-gg5g", - "type": "advisory" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2012-11-20", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2012-11-20", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-0220.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-0220.html", - "type": "reference" - }, - { - "title": "http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2012-11-20.cb", - "url": "http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2012-11-20.cb", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-1934", - "type": "advisory" - }, - { - "title": "GHSA-4r2w-w73w-36jm", - "url": "https://github.com/advisories/GHSA-4r2w-w73w-36jm", - "type": "advisory" - }, - { - "title": "http://lists.opensuse.org/opensuse-updates/2014-05/msg00027.html", - "url": "http://lists.opensuse.org/opensuse-updates/2014-05/msg00027.html", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-updates/2014-05/msg00028.html", - "url": "http://lists.opensuse.org/opensuse-updates/2014-05/msg00028.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3681", - "type": "advisory" - }, - { - "title": "GHSA-cwh9-f8m6-6r63", - "url": "https://github.com/advisories/GHSA-cwh9-f8m6-6r63", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/96975", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/96975", - "type": "reference" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2014-10-01", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2014-10-01", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3678", - "type": "advisory" - }, - { - "title": "GHSA-ghjw-fc9q-jj8c", - "url": "https://github.com/advisories/GHSA-ghjw-fc9q-jj8c", - "type": "advisory" - }, - { - "title": "https://wiki.jenkins-ci.org/display/JENKINS/Monitoring", - "url": "https://wiki.jenkins-ci.org/display/JENKINS/Monitoring", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHBA-2014:1630", - "url": "https://access.redhat.com/errata/RHBA-2014:1630", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2014-3678", - "url": "https://access.redhat.com/security/cve/CVE-2014-3678", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3603", - "type": "advisory" - }, - { - "title": "GHSA-rm7v-gqfg-p2wc", - "url": "https://github.com/advisories/GHSA-rm7v-gqfg-p2wc", - "type": "advisory" - }, - { - "title": "http://shibboleth.net/community/advisories/secadv_20140813.txt", - "url": "http://shibboleth.net/community/advisories/secadv_20140813.txt", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4590", - "type": "advisory" - }, - { - "title": "GHSA-87w9-x2c3-hrjj", - "url": "https://github.com/advisories/GHSA-87w9-x2c3-hrjj", - "type": "advisory" - }, - { - "title": "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04851013", - "url": "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04851013", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/37220405a377c0182d2afdbc36461c4783b2930fbeae3a17f1333113@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/37220405a377c0182d2afdbc36461c4783b2930fbeae3a17f1333113@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/39ae1f0bd5867c15755a6f959b271ade1aea04ccdc3b2e639dcd903b@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/39ae1f0bd5867c15755a6f959b271ade1aea04ccdc3b2e639dcd903b@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0096", - "type": "advisory" - }, - { - "title": "GHSA-qprx-q2r7-3rx6", - "url": "https://github.com/advisories/GHSA-qprx-q2r7-3rx6", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/b84ad1258a89de5c9c853c7f2d3ad77e5b8b2930be9e132d5cef6b95@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/b84ad1258a89de5c9c853c7f2d3ad77e5b8b2930be9e132d5cef6b95@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0119", - "type": "advisory" - }, - { - "title": "GHSA-prc3-7f44-w48j", - "url": "https://github.com/advisories/GHSA-prc3-7f44-w48j", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-5823", - "type": "advisory" - }, - { - "title": "GHSA-8gwc-x7mg-7p7p", - "url": "https://github.com/advisories/GHSA-8gwc-x7mg-7p7p", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2014:0414", - "url": "https://access.redhat.com/errata/RHSA-2014:0414", - "type": "reference" - }, - { - "title": "https://github.com/apache/santuario-java/commit/cea3c91106fb8be35e2f1bb3f1fe0cfddd0ec710", - "url": "https://github.com/apache/santuario-java/commit/cea3c91106fb8be35e2f1bb3f1fe0cfddd0ec710", - "type": "reference" - }, - { - "title": "https://lists.opensuse.org/opensuse-updates/2013-11/msg00023.html", - "url": "https://lists.opensuse.org/opensuse-updates/2013-11/msg00023.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1136", - "type": "advisory" - }, - { - "title": "GHSA-xhfw-wjjc-4j5h", - "url": "https://github.com/advisories/GHSA-xhfw-wjjc-4j5h", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/104307", - "url": "http://www.securityfocus.com/bid/104307", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-1483", - "type": "advisory" - }, - { - "title": "GHSA-rj4p-7mm6-gm9j", - "url": "https://github.com/advisories/GHSA-rj4p-7mm6-gm9j", - "type": "advisory" - }, - { - "title": "http://source.jboss.org/changelog/JBossWS/?cs=13996", - "url": "http://source.jboss.org/changelog/JBossWS/?cs=13996", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2602", - "type": "advisory" - }, - { - "title": "GHSA-ffgg-vphh-v273", - "url": "https://github.com/advisories/GHSA-ffgg-vphh-v273", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/414ff7e30aba66bed18c4ee8a8660fb36fc8c655", - "url": "https://github.com/jenkinsci/jenkins/commit/414ff7e30aba66bed18c4ee8a8660fb36fc8c655", - "type": "reference" - }, - { - "title": "https://jenkins.io/security/advisory/2017-02-01/", - "url": "https://jenkins.io/security/advisory/2017-02-01/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2603", - "type": "advisory" - }, - { - "title": "GHSA-x55p-6526-xmmp", - "url": "https://github.com/advisories/GHSA-x55p-6526-xmmp", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/3cd946cbef82c6da5ccccf3890d0ae4e091c4265", - "url": "https://github.com/jenkinsci/jenkins/commit/3cd946cbef82c6da5ccccf3890d0ae4e091c4265", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2607", - "type": "advisory" - }, - { - "title": "GHSA-42m6-7xff-9v9m", - "url": "https://github.com/advisories/GHSA-42m6-7xff-9v9m", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/95963", - "url": "http://www.securityfocus.com/bid/95963", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2638", - "type": "advisory" - }, - { - "title": "GHSA-mvxp-3j62-jqr6", - "url": "https://github.com/advisories/GHSA-mvxp-3j62-jqr6", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/ISPN-7485", - "url": "https://issues.jboss.org/browse/ISPN-7485", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2017-1097.html", - "url": "http://rhn.redhat.com/errata/RHSA-2017-1097.html", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/97964", - "url": "http://www.securityfocus.com/bid/97964", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2648", - "type": "advisory" - }, - { - "title": "GHSA-x654-4wjh-74q6", - "url": "https://github.com/advisories/GHSA-x654-4wjh-74q6", - "type": "advisory" - }, - { - "title": "https://jenkins.io/security/advisory/2017-03-20/", - "url": "https://jenkins.io/security/advisory/2017-03-20/", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/96985", - "url": "http://www.securityfocus.com/bid/96985", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-7545", - "type": "advisory" - }, - { - "title": "GHSA-vc3x-72q4-g3p5", - "url": "https://github.com/advisories/GHSA-vc3x-72q4-g3p5", - "type": "advisory" - }, - { - "title": "https://github.com/kiegroup/jbpm-designer/commit/a143f3b92a6a5a527d929d68c02a0c5d914ab81d", - "url": "https://github.com/kiegroup/jbpm-designer/commit/a143f3b92a6a5a527d929d68c02a0c5d914ab81d", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2017:3354", - "url": "https://access.redhat.com/errata/RHSA-2017:3354", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2017:3355", - "url": "https://access.redhat.com/errata/RHSA-2017:3355", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-14630", - "type": "advisory" - }, - { - "title": "GHSA-c3pr-h96w-2jjg", - "url": "https://github.com/advisories/GHSA-c3pr-h96w-2jjg", - "type": "advisory" - }, - { - "title": "https://seclists.org/fulldisclosure/2018/Sep/28", - "url": "https://seclists.org/fulldisclosure/2018/Sep/28", - "type": "reference" - }, - { - "title": "https://www.sec-consult.com/en/blog/advisories/remote-code-execution-php-unserialize-moodle-open-source-learning-platform-cve-2018-14630/", - "url": "https://www.sec-consult.com/en/blog/advisories/remote-code-execution-php-unserialize-moodle-open-source-learning-platform-cve-2018-14630/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-16849", - "type": "advisory" - }, - { - "title": "GHSA-fqw7-c6vr-q29m", - "url": "https://github.com/advisories/GHSA-fqw7-c6vr-q29m", - "type": "advisory" - }, - { - "title": "https://bugs.launchpad.net/mistral/+bug/1783708", - "url": "https://bugs.launchpad.net/mistral/+bug/1783708", - "type": "reference" - }, - { - "title": "https://github.com/openstack/mistral/commit/c93b45a61f49d4633f76d8e117cd89063e7759c4", - "url": "https://github.com/openstack/mistral/commit/c93b45a61f49d4633f76d8e117cd89063e7759c4", - "type": "reference" - }, - { - "title": "https://github.com/openstack/mistral/commit/2309e5265a1d5f28480ae872817b5de05f66e83c", - "url": "https://github.com/openstack/mistral/commit/2309e5265a1d5f28480ae872817b5de05f66e83c", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1051", - "type": "advisory" - }, - { - "title": "GHSA-m2fv-3rqm-g7p5", - "url": "https://github.com/advisories/GHSA-m2fv-3rqm-g7p5", - "type": "advisory" - }, - { - "title": "https://github.com/resteasy/resteasy/pull/1555", - "url": "https://github.com/resteasy/resteasy/pull/1555", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1131", - "type": "advisory" - }, - { - "title": "GHSA-qqfc-m9hc-pqv3", - "url": "https://github.com/advisories/GHSA-qqfc-m9hc-pqv3", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2018:1833", - "url": "https://access.redhat.com/errata/RHSA-2018:1833", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2019:3892", - "url": "https://access.redhat.com/errata/RHSA-2019:3892", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/104218", - "url": "http://www.securityfocus.com/bid/104218", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-3850", - "type": "advisory" - }, - { - "title": "GHSA-3fj7-9j8m-7r8g", - "url": "https://github.com/advisories/GHSA-3fj7-9j8m-7r8g", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/1fc481dd7b09e08e85824c1fe6733b303a36bdce", - "url": "https://github.com/moodle/moodle/commit/1fc481dd7b09e08e85824c1fe6733b303a36bdce", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/772c908d40a944efd91d897d524b255626d330d4", - "url": "https://github.com/moodle/moodle/commit/772c908d40a944efd91d897d524b255626d330d4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-4707", - "type": "advisory" - }, - { - "title": "GHSA-66gw-5xpf-gfp5", - "url": "https://github.com/advisories/GHSA-66gw-5xpf-gfp5", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5319", - "type": "advisory" - }, - { - "title": "GHSA-3j9c-cp7m-8w8g", - "url": "https://github.com/advisories/GHSA-3j9c-cp7m-8w8g", - "type": "advisory" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-11-11", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-11-11", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2016-0489.html", - "url": "http://rhn.redhat.com/errata/RHSA-2016-0489.html", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/e78e9e8144f7304cf274cd4b756f458cf63a3556", - "url": "https://github.com/jenkinsci/jenkins/commit/e78e9e8144f7304cf274cd4b756f458cf63a3556", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5326", - "type": "advisory" - }, - { - "title": "GHSA-5mwr-jg3r-jv66", - "url": "https://github.com/advisories/GHSA-5mwr-jg3r-jv66", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/abe561499bbba2e725804c1117fc957028bbd608", - "url": "https://github.com/jenkinsci/jenkins/commit/abe561499bbba2e725804c1117fc957028bbd608", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2611", - "type": "advisory" - }, - { - "title": "GHSA-3297-944x-j7x7", - "url": "https://github.com/advisories/GHSA-3297-944x-j7x7", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/97a61a9fe55f4c16168c123f98301a5173b9fa86", - "url": "https://github.com/jenkinsci/jenkins/commit/97a61a9fe55f4c16168c123f98301a5173b9fa86", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/95956", - "url": "http://www.securityfocus.com/bid/95956", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-3849", - "type": "advisory" - }, - { - "title": "GHSA-5wg9-5w3f-hxmh", - "url": "https://github.com/advisories/GHSA-5wg9-5w3f-hxmh", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/427463a52574e4b3bcbe1c65c49066438770641e", - "url": "https://github.com/moodle/moodle/commit/427463a52574e4b3bcbe1c65c49066438770641e", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/430f685834cef190bdf58afabe79e765d596890d", - "url": "https://github.com/moodle/moodle/commit/430f685834cef190bdf58afabe79e765d596890d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-3830", - "type": "advisory" - }, - { - "title": "GHSA-2cvf-r9jm-4qm9", - "url": "https://github.com/advisories/GHSA-2cvf-r9jm-4qm9", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2019:0919", - "url": "https://access.redhat.com/errata/RHSA-2019:0919", - "type": "reference" - }, - { - "title": "https://github.com/openstack/ceilometer/commit/8881a42af169a2d7c912b1434911f978883c83f3#diff-f2d2273521cce7e69f7032c6185936736a5acc70b2b2f90d956b9a7998b087cd", - "url": "https://github.com/openstack/ceilometer/commit/8881a42af169a2d7c912b1434911f978883c83f3#diff-f2d2273521cce7e69f7032c6185936736a5acc70b2b2f90d956b9a7998b087cd", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4280", - "type": "advisory" - }, - { - "title": "GHSA-mx5g-3vxh-rgm8", - "url": "https://github.com/advisories/GHSA-mx5g-3vxh-rgm8", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2011/11/14/1", - "url": "http://openwall.com/lists/oss-security/2011/11/14/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/bd654f0ced8af925c27b7c94321f0c299b50b38e", - "url": "https://github.com/moodle/moodle/commit/bd654f0ced8af925c27b7c94321f0c299b50b38e", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4282", - "type": "advisory" - }, - { - "title": "GHSA-6xqg-f34f-5fjx", - "url": "https://github.com/advisories/GHSA-6xqg-f34f-5fjx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4299", - "type": "advisory" - }, - { - "title": "GHSA-h6px-pvfh-q2jv", - "url": "https://github.com/advisories/GHSA-h6px-pvfh-q2jv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4298", - "type": "advisory" - }, - { - "title": "GHSA-8hxm-42v5-66hm", - "url": "https://github.com/advisories/GHSA-8hxm-42v5-66hm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4306", - "type": "advisory" - }, - { - "title": "GHSA-r729-mx2r-j26j", - "url": "https://github.com/advisories/GHSA-r729-mx2r-j26j", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4301", - "type": "advisory" - }, - { - "title": "GHSA-jcrj-gmr6-p5j8", - "url": "https://github.com/advisories/GHSA-jcrj-gmr6-p5j8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4278", - "type": "advisory" - }, - { - "title": "GHSA-6656-6qwx-4c2m", - "url": "https://github.com/advisories/GHSA-6656-6qwx-4c2m", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/34b93e39a64a68e4a676b93ccf2bd87a1d3b5ef8", - "url": "https://github.com/moodle/moodle/commit/34b93e39a64a68e4a676b93ccf2bd87a1d3b5ef8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4286", - "type": "advisory" - }, - { - "title": "GHSA-86v9-gqh9-8268", - "url": "https://github.com/advisories/GHSA-86v9-gqh9-8268", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4133", - "type": "advisory" - }, - { - "title": "GHSA-7cvw-wrj9-q5fp", - "url": "https://github.com/advisories/GHSA-7cvw-wrj9-q5fp", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2230", - "type": "advisory" - }, - { - "title": "GHSA-3gm8-32vv-q8mp", - "url": "https://github.com/advisories/GHSA-3gm8-32vv-q8mp", - "type": "advisory" - }, - { - "title": "http://cvs.moodle.org/moodle/lib/weblib.php?r1=1.812.2.114&r2=1.812.2.115", - "url": "http://cvs.moodle.org/moodle/lib/weblib.php?r1=1.812.2.114&r2=1.812.2.115", - "type": "reference" - }, - { - "title": "http://docs.moodle.org/en/Moodle_1.8.13_release_notes", - "url": "http://docs.moodle.org/en/Moodle_1.8.13_release_notes", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1833", - "type": "advisory" - }, - { - "title": "GHSA-89f3-74m6-g27g", - "url": "https://github.com/advisories/GHSA-89f3-74m6-g27g", - "type": "advisory" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101310.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101310.html", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101358.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101358.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1836", - "type": "advisory" - }, - { - "title": "GHSA-664q-mrxx-2x2v", - "url": "https://github.com/advisories/GHSA-664q-mrxx-2x2v", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4942", - "type": "advisory" - }, - { - "title": "GHSA-9ww8-j8j2-3788", - "url": "https://github.com/advisories/GHSA-9ww8-j8j2-3788", - "type": "advisory" - }, - { - "title": "https://web.archive.org/web/20130909203912/http://yuilibrary.com/support/20130515-vulnerability", - "url": "https://web.archive.org/web/20130909203912/http://yuilibrary.com/support/20130515-vulnerability", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4940", - "type": "advisory" - }, - { - "title": "GHSA-x5hj-47vv-53p8", - "url": "https://github.com/advisories/GHSA-x5hj-47vv-53p8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4941", - "type": "advisory" - }, - { - "title": "GHSA-64r3-582j-frqm", - "url": "https://github.com/advisories/GHSA-64r3-582j-frqm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0218", - "type": "advisory" - }, - { - "title": "GHSA-ch68-5r37-p7c3", - "url": "https://github.com/advisories/GHSA-ch68-5r37-p7c3", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2014/05/19/1", - "url": "http://openwall.com/lists/oss-security/2014/05/19/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/5c276a4c324b5137064496d6dd68e71476015fcd", - "url": "https://github.com/moodle/moodle/commit/5c276a4c324b5137064496d6dd68e71476015fcd", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-2571", - "type": "advisory" - }, - { - "title": "GHSA-75c6-xqwr-v2r9", - "url": "https://github.com/advisories/GHSA-75c6-xqwr-v2r9", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2014/03/17/1", - "url": "http://openwall.com/lists/oss-security/2014/03/17/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/217d839ded7026ed1b1280e1c296bc80a4036023", - "url": "https://github.com/moodle/moodle/commit/217d839ded7026ed1b1280e1c296bc80a4036023", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-2572", - "type": "advisory" - }, - { - "title": "GHSA-267j-cwvg-j28c", - "url": "https://github.com/advisories/GHSA-267j-cwvg-j28c", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/695a18b6aa9661f812a1a745a888df5acdbd7bc6", - "url": "https://github.com/moodle/moodle/commit/695a18b6aa9661f812a1a745a888df5acdbd7bc6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0216", - "type": "advisory" - }, - { - "title": "GHSA-8rc7-4qfv-4484", - "url": "https://github.com/advisories/GHSA-8rc7-4qfv-4484", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/40ad22fdd0d9ed569b2ad0ff6ad02814bfa014b8", - "url": "https://github.com/moodle/moodle/commit/40ad22fdd0d9ed569b2ad0ff6ad02814bfa014b8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0215", - "type": "advisory" - }, - { - "title": "GHSA-2fmv-j5xj-4fmq", - "url": "https://github.com/advisories/GHSA-2fmv-j5xj-4fmq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0129", - "type": "advisory" - }, - { - "title": "GHSA-5rr5-fxhc-jv64", - "url": "https://github.com/advisories/GHSA-5rr5-fxhc-jv64", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/100ec861820ce763d4f25a9f98649bb1ae17e7a5", - "url": "https://github.com/moodle/moodle/commit/100ec861820ce763d4f25a9f98649bb1ae17e7a5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-7341", - "type": "advisory" - }, - { - "title": "GHSA-j6c3-3c4w-qv8p", - "url": "https://github.com/advisories/GHSA-j6c3-3c4w-qv8p", - "type": "advisory" - }, - { - "title": "https://github.com/flowplayer/flash/issues/121", - "url": "https://github.com/flowplayer/flash/issues/121", - "type": "reference" - }, - { - "title": "http://flash.flowplayer.org/documentation/version-history.html", - "url": "http://flash.flowplayer.org/documentation/version-history.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5269", - "type": "advisory" - }, - { - "title": "GHSA-5729-822w-j342", - "url": "https://github.com/advisories/GHSA-5729-822w-j342", - "type": "advisory" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2015/09/21/1", - "url": "http://www.openwall.com/lists/oss-security/2015/09/21/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/45f3b5302d645ba13ca8b68b0106a638ebd21980", - "url": "https://github.com/moodle/moodle/commit/45f3b5302d645ba13ca8b68b0106a638ebd21980", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3275", - "type": "advisory" - }, - { - "title": "GHSA-6922-5v25-p8jg", - "url": "https://github.com/advisories/GHSA-6922-5v25-p8jg", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2015/07/13/2", - "url": "http://openwall.com/lists/oss-security/2015/07/13/2", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/46460a23035ad35caa50c2083ce6327f7723002e", - "url": "https://github.com/moodle/moodle/commit/46460a23035ad35caa50c2083ce6327f7723002e", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5336", - "type": "advisory" - }, - { - "title": "GHSA-grvw-qq2j-r898", - "url": "https://github.com/advisories/GHSA-grvw-qq2j-r898", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/12c232df76885effa5ebac08e3094d6db5aa9223", - "url": "https://github.com/moodle/moodle/commit/12c232df76885effa5ebac08e3094d6db5aa9223", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/31d0bf81af079bc285ea439ac5160f9e45697c88", - "url": "https://github.com/moodle/moodle/commit/31d0bf81af079bc285ea439ac5160f9e45697c88", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3274", - "type": "advisory" - }, - { - "title": "GHSA-f7qm-q26p-6rr2", - "url": "https://github.com/advisories/GHSA-f7qm-q26p-6rr2", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/7b15a363201109354bbd6d51a7c70f50dac7b9d8", - "url": "https://github.com/moodle/moodle/commit/7b15a363201109354bbd6d51a7c70f50dac7b9d8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3178", - "type": "advisory" - }, - { - "title": "GHSA-9fmw-m4qx-6cq8", - "url": "https://github.com/advisories/GHSA-9fmw-m4qx-6cq8", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2015/05/18/1", - "url": "http://openwall.com/lists/oss-security/2015/05/18/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/28947c1d7d9c53781989b9da7ceb2cafdd144749", - "url": "https://github.com/moodle/moodle/commit/28947c1d7d9c53781989b9da7ceb2cafdd144749", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-2266", - "type": "advisory" - }, - { - "title": "GHSA-35pr-gqm6-r366", - "url": "https://github.com/advisories/GHSA-35pr-gqm6-r366", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2015/03/16/1", - "url": "http://openwall.com/lists/oss-security/2015/03/16/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/2924ba1c73f9ed3d525987807f9d289b3eb38154", - "url": "https://github.com/moodle/moodle/commit/2924ba1c73f9ed3d525987807f9d289b3eb38154", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-2269", - "type": "advisory" - }, - { - "title": "GHSA-cp39-43xr-2wrp", - "url": "https://github.com/advisories/GHSA-cp39-43xr-2wrp", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/ead8b28f92da72fb836cf9183aaf6f11a7eb1a21", - "url": "https://github.com/moodle/moodle/commit/ead8b28f92da72fb836cf9183aaf6f11a7eb1a21", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-2273", - "type": "advisory" - }, - { - "title": "GHSA-w77v-xpxr-c6pv", - "url": "https://github.com/advisories/GHSA-w77v-xpxr-c6pv", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/71aeb8a9cb4cf06f0b4aa49daf527e5c866db30e", - "url": "https://github.com/moodle/moodle/commit/71aeb8a9cb4cf06f0b4aa49daf527e5c866db30e", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0212", - "type": "advisory" - }, - { - "title": "GHSA-jj3j-mhgc-g4m4", - "url": "https://github.com/advisories/GHSA-jj3j-mhgc-g4m4", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2015/01/19/1", - "url": "http://openwall.com/lists/oss-security/2015/01/19/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/38ca8793b6faa6c35176537c8015cc4e76ce73f5", - "url": "https://github.com/moodle/moodle/commit/38ca8793b6faa6c35176537c8015cc4e76ce73f5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0213", - "type": "advisory" - }, - { - "title": "GHSA-hhq7-jf2p-hw9c", - "url": "https://github.com/advisories/GHSA-hhq7-jf2p-hw9c", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/5770e5147838aa06a3ecdff6fc3aebbbd17fff90", - "url": "https://github.com/moodle/moodle/commit/5770e5147838aa06a3ecdff6fc3aebbbd17fff90", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3548", - "type": "advisory" - }, - { - "title": "GHSA-f66h-6mj2-rwj2", - "url": "https://github.com/advisories/GHSA-f66h-6mj2-rwj2", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2014/07/21/1", - "url": "http://openwall.com/lists/oss-security/2014/07/21/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/166e18d7cbb36d58d08a2783edd98284d5a3b98a", - "url": "https://github.com/moodle/moodle/commit/166e18d7cbb36d58d08a2783edd98284d5a3b98a", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3551", - "type": "advisory" - }, - { - "title": "GHSA-m8f5-9wg8-2c3h", - "url": "https://github.com/advisories/GHSA-m8f5-9wg8-2c3h", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/1f8eb0842835bcd1ea72b2d2982e0b5c8bc133bb", - "url": "https://github.com/moodle/moodle/commit/1f8eb0842835bcd1ea72b2d2982e0b5c8bc133bb", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-7830", - "type": "advisory" - }, - { - "title": "GHSA-j4mr-vc54-h5pc", - "url": "https://github.com/advisories/GHSA-j4mr-vc54-h5pc", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2014/11/17/11", - "url": "http://openwall.com/lists/oss-security/2014/11/17/11", - "type": "reference" - }, - { - "title": "http://www.securitytracker.com/id/1031215", - "url": "http://www.securitytracker.com/id/1031215", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3544", - "type": "advisory" - }, - { - "title": "GHSA-c9jp-244j-vh78", - "url": "https://github.com/advisories/GHSA-c9jp-244j-vh78", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/ce5a785b0962c3c94c7a7b0d36176482d21db95d", - "url": "https://github.com/moodle/moodle/commit/ce5a785b0962c3c94c7a7b0d36176482d21db95d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3547", - "type": "advisory" - }, - { - "title": "GHSA-hwjv-mc78-cccj", - "url": "https://github.com/advisories/GHSA-hwjv-mc78-cccj", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/68758", - "url": "http://www.securityfocus.com/bid/68758", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3542", - "type": "advisory" - }, - { - "title": "GHSA-xmwv-mqh8-4xgw", - "url": "https://github.com/advisories/GHSA-xmwv-mqh8-4xgw", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/78ed99ec7e5e75b283e844adb058140d6ba0ff14", - "url": "https://github.com/moodle/moodle/commit/78ed99ec7e5e75b283e844adb058140d6ba0ff14", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3543", - "type": "advisory" - }, - { - "title": "GHSA-27j2-c838-c3qg", - "url": "https://github.com/advisories/GHSA-27j2-c838-c3qg", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/595ef4772d330a20c757635ab090acdcc9b2a2fa", - "url": "https://github.com/moodle/moodle/commit/595ef4772d330a20c757635ab090acdcc9b2a2fa", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0725", - "type": "advisory" - }, - { - "title": "GHSA-gj2j-ppjq-9pjg", - "url": "https://github.com/advisories/GHSA-gj2j-ppjq-9pjg", - "type": "advisory" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2016-February/176502.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2016-February/176502.html", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2016-January/176436.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2016-January/176436.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-2153", - "type": "advisory" - }, - { - "title": "GHSA-mj85-3hqq-r6r9", - "url": "https://github.com/advisories/GHSA-mj85-3hqq-r6r9", - "type": "advisory" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2016/03/21/1", - "url": "http://www.openwall.com/lists/oss-security/2016/03/21/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/87e60e529939c60ef5b07d70c37426d359b2e8a2", - "url": "https://github.com/moodle/moodle/commit/87e60e529939c60ef5b07d70c37426d359b2e8a2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-2152", - "type": "advisory" - }, - { - "title": "GHSA-6mxm-wpqv-675h", - "url": "https://github.com/advisories/GHSA-6mxm-wpqv-675h", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/3b214760fb51ae2b0c85bbb2b272b9bc7c164657", - "url": "https://github.com/moodle/moodle/commit/3b214760fb51ae2b0c85bbb2b272b9bc7c164657", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-2155", - "type": "advisory" - }, - { - "title": "GHSA-32hg-73hp-vwc8", - "url": "https://github.com/advisories/GHSA-32hg-73hp-vwc8", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/3328dc32a75d6aa4bc92865fa236dc6d52dcb7bf", - "url": "https://github.com/moodle/moodle/commit/3328dc32a75d6aa4bc92865fa236dc6d52dcb7bf", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-5575", - "type": "advisory" - }, - { - "title": "GHSA-7v5v-9v8r-w864", - "url": "https://github.com/advisories/GHSA-7v5v-9v8r-w864", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/r36e44ffc1a9b365327df62cdfaabe85b9a5637de102cea07d79b2dbf@%3Ccommits.cxf.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r36e44ffc1a9b365327df62cdfaabe85b9a5637de102cea07d79b2dbf@%3Ccommits.cxf.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/rc774278135816e7afc943dc9fc78eb0764f2c84a2b96470a0187315c@%3Ccommits.cxf.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rc774278135816e7afc943dc9fc78eb0764f2c84a2b96470a0187315c@%3Ccommits.cxf.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/rd49aabd984ed540c8ff7916d4d79405f3fa311d2fdbcf9ed307839a6@%3Ccommits.cxf.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rd49aabd984ed540c8ff7916d4d79405f3fa311d2fdbcf9ed307839a6@%3Ccommits.cxf.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-2379", - "type": "advisory" - }, - { - "title": "GHSA-2g99-c67p-56hm", - "url": "https://github.com/advisories/GHSA-2g99-c67p-56hm", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/rec7160382badd3ef4ad017a22f64a266c7188b9ba71394f0d321e2d4@%3Ccommits.cxf.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rec7160382badd3ef4ad017a22f64a266c7188b9ba71394f0d321e2d4@%3Ccommits.cxf.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0034", - "type": "advisory" - }, - { - "title": "GHSA-38x2-fp9m-87mx", - "url": "https://github.com/advisories/GHSA-38x2-fp9m-87mx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3623", - "type": "advisory" - }, - { - "title": "GHSA-99v3-9x35-c5vf", - "url": "https://github.com/advisories/GHSA-99v3-9x35-c5vf", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97754", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97754", - "type": "reference" - }, - { - "title": "https://issues.apache.org/jira/browse/WSS-511", - "url": "https://issues.apache.org/jira/browse/WSS-511", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2160", - "type": "advisory" - }, - { - "title": "GHSA-254q-rp36-v2m8", - "url": "https://github.com/advisories/GHSA-254q-rp36-v2m8", - "type": "advisory" - }, - { - "title": "https://cxf.apache.org/security-advisories.data/CVE-2013-2160.txt.asc", - "url": "https://cxf.apache.org/security-advisories.data/CVE-2013-2160.txt.asc", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-8739", - "type": "advisory" - }, - { - "title": "GHSA-x7xf-253v-x3w8", - "url": "https://github.com/advisories/GHSA-x7xf-253v-x3w8", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2017:0868", - "url": "https://access.redhat.com/errata/RHSA-2017:0868", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5253", - "type": "advisory" - }, - { - "title": "GHSA-3336-h95j-hvvf", - "url": "https://github.com/advisories/GHSA-3336-h95j-hvvf", - "type": "advisory" - }, - { - "title": "https://git-wip-us.apache.org/repos/asf?p=cxf.git;a=commitdiff;h=845eccb6484b43ba02875c71e824db23ae4f20c0", - "url": "https://git-wip-us.apache.org/repos/asf?p=cxf.git;a=commitdiff;h=845eccb6484b43ba02875c71e824db23ae4f20c0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3584", - "type": "advisory" - }, - { - "title": "GHSA-gw5j-77f9-v2g2", - "url": "https://github.com/advisories/GHSA-gw5j-77f9-v2g2", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97753", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97753", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-6812", - "type": "advisory" - }, - { - "title": "GHSA-vw2c-5wph-v92r", - "url": "https://github.com/advisories/GHSA-vw2c-5wph-v92r", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/jira/browse/CXF-6216", - "url": "https://issues.apache.org/jira/browse/CXF-6216", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0109", - "type": "advisory" - }, - { - "title": "GHSA-5wqf-h3r3-gxvh", - "url": "https://github.com/advisories/GHSA-5wqf-h3r3-gxvh", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-5653", - "type": "advisory" - }, - { - "title": "GHSA-hgg6-8x62-m9gf", - "url": "https://github.com/advisories/GHSA-hgg6-8x62-m9gf", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2017:1832", - "url": "https://access.redhat.com/errata/RHSA-2017:1832", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-6519", - "type": "advisory" - }, - { - "title": "GHSA-vq76-5ghr-9p4v", - "url": "https://github.com/advisories/GHSA-vq76-5ghr-9p4v", - "type": "advisory" - }, - { - "title": "https://bugs.launchpad.net/manila-ui/+bug/1597738", - "url": "https://bugs.launchpad.net/manila-ui/+bug/1597738", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2016-2115.html", - "url": "http://rhn.redhat.com/errata/RHSA-2016-2115.html", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2016-2116.html", - "url": "http://rhn.redhat.com/errata/RHSA-2016-2116.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-6440", - "type": "advisory" - }, - { - "title": "GHSA-v723-58jv-2qc4", - "url": "https://github.com/advisories/GHSA-v723-58jv-2qc4", - "type": "advisory" - }, - { - "title": "https://www.oracle.com/security-alerts/cpujan2022.html", - "url": "https://www.oracle.com/security-alerts/cpujan2022.html", - "type": "reference" - }, - { - "title": "http://blog.sendsafely.com/post/69590974866/web-based-single-sign-on-and-the-dangers-of-saml-xml", - "url": "http://blog.sendsafely.com/post/69590974866/web-based-single-sign-on-and-the-dangers-of-saml-xml", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2014-0170.html", - "url": "http://rhn.redhat.com/errata/RHSA-2014-0170.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4002", - "type": "advisory" - }, - { - "title": "GHSA-7j4h-8wpf-rqfh", - "url": "https://github.com/advisories/GHSA-7j4h-8wpf-rqfh", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/85260", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/85260", - "type": "reference" - }, - { - "title": "https://issues.apache.org/jira/browse/XERCESJ-1679", - "url": "https://issues.apache.org/jira/browse/XERCESJ-1679", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/49dc6702104a86ecbb40292dcd329ce9ae4c32b74733199ecab14a73@%3Cj-users.xerces.apache.org%3E", - "url": "https://lists.apache.org/thread.html/49dc6702104a86ecbb40292dcd329ce9ae4c32b74733199ecab14a73@%3Cj-users.xerces.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1999004", - "type": "advisory" - }, - { - "title": "GHSA-wmr8-25ff-ggpj", - "url": "https://github.com/advisories/GHSA-wmr8-25ff-ggpj", - "type": "advisory" - }, - { - "title": "https://jenkins.io/security/advisory/2018-07-18/#SECURITY-892", - "url": "https://jenkins.io/security/advisory/2018-07-18/#SECURITY-892", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/40250f08aca7f3f8816f21870ee23463a52ef2f2", - "url": "https://github.com/jenkinsci/jenkins/commit/40250f08aca7f3f8816f21870ee23463a52ef2f2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1999001", - "type": "advisory" - }, - { - "title": "GHSA-j8qv-mj4r-6fw4", - "url": "https://github.com/advisories/GHSA-j8qv-mj4r-6fw4", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/5f4d014b3b7f89e206c6c8509540ed559f604959", - "url": "https://github.com/jenkinsci/jenkins/commit/5f4d014b3b7f89e206c6c8509540ed559f604959", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1053", - "type": "advisory" - }, - { - "title": "GHSA-jf66-3q76-h5p5", - "url": "https://github.com/advisories/GHSA-jf66-3q76-h5p5", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-jf66-3q76-h5p5", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-jf66-3q76-h5p5", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/commit/bd5de712acdd77860e7dc58969181e16c7a8dc5d", - "url": "https://github.com/keylime/keylime/commit/bd5de712acdd77860e7dc58969181e16c7a8dc5d", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/keylime/PYSEC-2022-184.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/keylime/PYSEC-2022-184.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-0328", - "type": "advisory" - }, - { - "title": "GHSA-q5f8-fxrx-pw6f", - "url": "https://github.com/advisories/GHSA-q5f8-fxrx-pw6f", - "type": "advisory" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-02-16", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-02-16", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-0638.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-0638.html", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2013/02/21/7", - "url": "http://www.openwall.com/lists/oss-security/2013/02/21/7", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-6461", - "type": "advisory" - }, - { - "title": "GHSA-jmhh-w7xp-wg39", - "url": "https://github.com/advisories/GHSA-jmhh-w7xp-wg39", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2013-6461", - "url": "https://access.redhat.com/security/cve/cve-2013-6461", - "type": "reference" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/90059", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/90059", - "type": "reference" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2013-6461", - "url": "https://security-tracker.debian.org/tracker/CVE-2013-6461", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-6460", - "type": "advisory" - }, - { - "title": "GHSA-62qp-3fxm-9wxf", - "url": "https://github.com/advisories/GHSA-62qp-3fxm-9wxf", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2013-6460", - "url": "https://access.redhat.com/security/cve/cve-2013-6460", - "type": "reference" - }, - { - "title": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-6460", - "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-6460", - "type": "reference" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/90058", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/90058", - "type": "reference" - }, - { - "title": "GHSA-x7xj-jvwp-97rv", - "url": "https://github.com/advisories/GHSA-x7xj-jvwp-97rv", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-7h8m-pvw3-5gh4", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-7h8m-pvw3-5gh4", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rke2/security/advisories/GHSA-x7xj-jvwp-97rv", - "url": "https://github.com/rancher/rke2/security/advisories/GHSA-x7xj-jvwp-97rv", - "type": "reference" - }, - { - "title": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32197", - "url": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32197", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32197", - "type": "advisory" - }, - { - "title": "GHSA-7h8m-pvw3-5gh4", - "url": "https://github.com/advisories/GHSA-7h8m-pvw3-5gh4", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-64jq-m7rq-768h", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-64jq-m7rq-768h", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41050", - "type": "advisory" - }, - { - "title": "GHSA-765j-qfrp-hm3j", - "url": "https://github.com/advisories/GHSA-765j-qfrp-hm3j", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/fleet/security/advisories/GHSA-765j-qfrp-hm3j", - "url": "https://github.com/rancher/fleet/security/advisories/GHSA-765j-qfrp-hm3j", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58269", - "type": "advisory" - }, - { - "title": "GHSA-mw39-9qc2-f7mg", - "url": "https://github.com/advisories/GHSA-mw39-9qc2-f7mg", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-mw39-9qc2-f7mg", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-mw39-9qc2-f7mg", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/commit/26ad9216e94f77b5471f638256a6989030572adc", - "url": "https://github.com/rancher/rancher/commit/26ad9216e94f77b5471f638256a6989030572adc", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/commit/50dc516a19ea216e270f738912dc8d0c9ca99d5d", - "url": "https://github.com/rancher/rancher/commit/50dc516a19ea216e270f738912dc8d0c9ca99d5d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54471", - "type": "advisory" - }, - { - "title": "GHSA-h773-7gf7-9m2x", - "url": "https://github.com/advisories/GHSA-h773-7gf7-9m2x", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-h773-7gf7-9m2x", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-h773-7gf7-9m2x", - "type": "reference" - }, - { - "title": "https://github.com/neuvector/neuvector/commit/084a437033b491eeea11bdba1a09dd84ed12ea88", - "url": "https://github.com/neuvector/neuvector/commit/084a437033b491eeea11bdba1a09dd84ed12ea88", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54470", - "type": "advisory" - }, - { - "title": "GHSA-qqj3-g7mx-5p4w", - "url": "https://github.com/advisories/GHSA-qqj3-g7mx-5p4w", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-qqj3-g7mx-5p4w", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-qqj3-g7mx-5p4w", - "type": "reference" - }, - { - "title": "https://github.com/neuvector/neuvector/commit/06424701e69bf1eb76ff90180d78853fded93021", - "url": "https://github.com/neuvector/neuvector/commit/06424701e69bf1eb76ff90180d78853fded93021", - "type": "reference" - }, - { - "title": "https://github.com/neuvector/neuvector/commit/415737cbec581a5dc5f204fac1c78b7f29ad7dc2", - "url": "https://github.com/neuvector/neuvector/commit/415737cbec581a5dc5f204fac1c78b7f29ad7dc2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58260", - "type": "advisory" - }, - { - "title": "GHSA-q82v-h4rq-5c86", - "url": "https://github.com/advisories/GHSA-q82v-h4rq-5c86", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-q82v-h4rq-5c86", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-q82v-h4rq-5c86", - "type": "reference" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2025-3983", - "url": "https://pkg.go.dev/vuln/GO-2025-3983", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58267", - "type": "advisory" - }, - { - "title": "GHSA-v3vj-5868-2ch2", - "url": "https://github.com/advisories/GHSA-v3vj-5868-2ch2", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-v3vj-5868-2ch2", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-v3vj-5868-2ch2", - "type": "reference" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2025-3984", - "url": "https://pkg.go.dev/vuln/GO-2025-3984", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54467", - "type": "advisory" - }, - { - "title": "GHSA-w54x-xfxg-4gxq", - "url": "https://github.com/advisories/GHSA-w54x-xfxg-4gxq", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-w54x-xfxg-4gxq", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-w54x-xfxg-4gxq", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53884", - "type": "advisory" - }, - { - "title": "GHSA-8ff6-pc43-jwv3", - "url": "https://github.com/advisories/GHSA-8ff6-pc43-jwv3", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-8ff6-pc43-jwv3", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-8ff6-pc43-jwv3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23389", - "type": "advisory" - }, - { - "title": "GHSA-mq23-vvg7-xfm4", - "url": "https://github.com/advisories/GHSA-mq23-vvg7-xfm4", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-mq23-vvg7-xfm4", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-mq23-vvg7-xfm4", - "type": "reference" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2025-3490", - "url": "https://pkg.go.dev/vuln/GO-2025-3490", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/pull/48964", - "url": "https://github.com/rancher/rancher/pull/48964", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52281", - "type": "advisory" - }, - { - "title": "GHSA-2v2w-8v8c-wcm9", - "url": "https://github.com/advisories/GHSA-2v2w-8v8c-wcm9", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-2v2w-8v8c-wcm9", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-2v2w-8v8c-wcm9", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45157", - "type": "advisory" - }, - { - "title": "GHSA-xj7w-r753-vj8v", - "url": "https://github.com/advisories/GHSA-xj7w-r753-vj8v", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-xj7w-r753-vj8v", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-xj7w-r753-vj8v", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22649", - "type": "advisory" - }, - { - "title": "GHSA-xfj7-qf8w-2gcr", - "url": "https://github.com/advisories/GHSA-xfj7-qf8w-2gcr", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-xfj7-qf8w-2gcr", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-xfj7-qf8w-2gcr", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32188", - "type": "advisory" - }, - { - "title": "GHSA-622h-h2p8-743x", - "url": "https://github.com/advisories/GHSA-622h-h2p8-743x", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-622h-h2p8-743x", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-622h-h2p8-743x", - "type": "reference" - }, - { - "title": "https://open-docs.neuvector.com/releasenotes/5x", - "url": "https://open-docs.neuvector.com/releasenotes/5x", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32186", - "type": "advisory" - }, - { - "title": "GHSA-p45j-vfv5-wprq", - "url": "https://github.com/advisories/GHSA-p45j-vfv5-wprq", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rke2/security/advisories/GHSA-p45j-vfv5-wprq", - "url": "https://github.com/rancher/rke2/security/advisories/GHSA-p45j-vfv5-wprq", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32187", - "type": "advisory" - }, - { - "title": "GHSA-m4hf-6vgr-75r2", - "url": "https://github.com/advisories/GHSA-m4hf-6vgr-75r2", - "type": "advisory" - }, - { - "title": "https://github.com/k3s-io/k3s/security/advisories/GHSA-m4hf-6vgr-75r2", - "url": "https://github.com/k3s-io/k3s/security/advisories/GHSA-m4hf-6vgr-75r2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-43758", - "type": "advisory" - }, - { - "title": "GHSA-34p5-jp77-fcrc", - "url": "https://github.com/advisories/GHSA-34p5-jp77-fcrc", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-34p5-jp77-fcrc", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-34p5-jp77-fcrc", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-43755", - "type": "advisory" - }, - { - "title": "GHSA-8c69-r38j-rpfj", - "url": "https://github.com/advisories/GHSA-8c69-r38j-rpfj", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-8c69-r38j-rpfj", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-8c69-r38j-rpfj", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-0013", - "type": "advisory" - }, - { - "title": "GHSA-3p86-xgrq-m6p6", - "url": "https://github.com/advisories/GHSA-3p86-xgrq-m6p6", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/06cfb634bc7bf37af7d8f760f118018746ad8efbd519c4b789ac9c2e@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/06cfb634bc7bf37af7d8f760f118018746ad8efbd519c4b789ac9c2e@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/8dcaf7c3894d66cb717646ea1504ea6e300021c85bb4e677dc16b1aa@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/8dcaf7c3894d66cb717646ea1504ea6e300021c85bb4e677dc16b1aa@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/r3aacc40356defc3f248aa504b1e48e819dd0471a0a83349080c6bcbf@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r3aacc40356defc3f248aa504b1e48e819dd0471a0a83349080c6bcbf@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-36784", - "type": "advisory" - }, - { - "title": "GHSA-jwvr-vv7p-gpwq", - "url": "https://github.com/advisories/GHSA-jwvr-vv7p-gpwq", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-jwvr-vv7p-gpwq", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-jwvr-vv7p-gpwq", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/releases/tag/v2.5.13", - "url": "https://github.com/rancher/rancher/releases/tag/v2.5.13", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/releases/tag/v2.6.4", - "url": "https://github.com/rancher/rancher/releases/tag/v2.6.4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4200", - "type": "advisory" - }, - { - "title": "GHSA-hx8w-ghh8-r4xf", - "url": "https://github.com/advisories/GHSA-hx8w-ghh8-r4xf", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-hx8w-ghh8-r4xf", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-hx8w-ghh8-r4xf", - "type": "reference" - }, - { - "title": "https://rancher.com/docs/rancher/v2.6/en/admin-settings/rbac/global-permissions/#restricted-admin", - "url": "https://rancher.com/docs/rancher/v2.6/en/admin-settings/rbac/global-permissions/#restricted-admin", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-0828", - "type": "advisory" - }, - { - "title": "GHSA-fc72-v54c-x9jg", - "url": "https://github.com/advisories/GHSA-fc72-v54c-x9jg", - "type": "advisory" - }, - { - "title": "https://bugs.launchpad.net/ubuntu/+source/moin/+bug/538022", - "url": "https://bugs.launchpad.net/ubuntu/+source/moin/+bug/538022", - "type": "reference" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/57435", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/57435", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-5065", - "type": "advisory" - }, - { - "title": "GHSA-3mwg-gp5g-fv3q", - "url": "https://github.com/advisories/GHSA-3mwg-gp5g-fv3q", - "type": "advisory" - }, - { - "title": "http://code.google.com/p/feedparser/issues/detail?id=195", - "url": "http://code.google.com/p/feedparser/issues/detail?id=195", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-updates/2011-04/msg00026.html", - "url": "http://lists.opensuse.org/opensuse-updates/2011-04/msg00026.html", - "type": "reference" - }, - { - "title": "http://support.novell.com/security/cve/CVE-2009-5065.html", - "url": "http://support.novell.com/security/cve/CVE-2009-5065.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-3696", - "type": "advisory" - }, - { - "title": "GHSA-5pvv-f8h3-gw96", - "url": "https://github.com/advisories/GHSA-5pvv-f8h3-gw96", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53742", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53742", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00467.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00467.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00490.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00490.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-3636", - "type": "advisory" - }, - { - "title": "GHSA-c73w-4rcj-2622", - "url": "https://github.com/advisories/GHSA-c73w-4rcj-2622", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53929", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53929", - "type": "reference" - }, - { - "title": "http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-016/", - "url": "http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-016/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-3633", - "type": "advisory" - }, - { - "title": "GHSA-m7rg-85g8-28m9", - "url": "https://github.com/advisories/GHSA-m7rg-85g8-28m9", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53925", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53925", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-3629", - "type": "advisory" - }, - { - "title": "GHSA-g857-p997-wx7w", - "url": "https://github.com/advisories/GHSA-g857-p997-wx7w", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53918", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53918", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2737", - "type": "advisory" - }, - { - "title": "GHSA-9rj9-5wcv-xgf2", - "url": "https://github.com/advisories/GHSA-9rj9-5wcv-xgf2", - "type": "advisory" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2009-March/msg00429.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2009-March/msg00429.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2009-March/msg00439.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2009-March/msg00439.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-0783", - "type": "advisory" - }, - { - "title": "GHSA-hhjg-g8xq-hhr3", - "url": "https://github.com/advisories/GHSA-hhjg-g8xq-hhr3", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51195", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51195", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-0781", - "type": "advisory" - }, - { - "title": "GHSA-j788-fx57-99wp", - "url": "https://github.com/advisories/GHSA-j788-fx57-99wp", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/49213", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/49213", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-0217", - "type": "advisory" - }, - { - "title": "GHSA-8hfm-837h-hjg5", - "url": "https://github.com/advisories/GHSA-8hfm-837h-hjg5", - "type": "advisory" - }, - { - "title": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-041", - "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-041", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-3909", - "type": "advisory" - }, - { - "title": "GHSA-r5cj-wv24-92p5", - "url": "https://github.com/advisories/GHSA-r5cj-wv24-92p5", - "type": "advisory" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00091.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00091.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00131.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00131.html", - "type": "reference" - }, - { - "title": "http://www.debian.org/security/2008/dsa-1640", - "url": "http://www.debian.org/security/2008/dsa-1640", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-3218", - "type": "advisory" - }, - { - "title": "GHSA-6cj8-c359-p7q9", - "url": "https://github.com/advisories/GHSA-6cj8-c359-p7q9", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/43704", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/43704", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-August/msg00016.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-August/msg00016.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00527.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00527.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-1947", - "type": "advisory" - }, - { - "title": "GHSA-f98p-9pp6-7q6c", - "url": "https://github.com/advisories/GHSA-f98p-9pp6-7q6c", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/42816", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/42816", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-1232", - "type": "advisory" - }, - { - "title": "GHSA-q74x-qqhr-f8rx", - "url": "https://github.com/advisories/GHSA-q74x-qqhr-f8rx", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/44155", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/44155", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-0781", - "type": "advisory" - }, - { - "title": "GHSA-775g-4482-pm94", - "url": "https://github.com/advisories/GHSA-775g-4482-pm94", - "type": "advisory" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00726.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00726.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00752.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00752.html", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.5/rev/db212dfc58ef", - "url": "http://hg.moinmo.in/moin/1.5/rev/db212dfc58ef", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-0780", - "type": "advisory" - }, - { - "title": "GHSA-53wj-6m7w-j6mj", - "url": "https://github.com/advisories/GHSA-53wj-6m7w-j6mj", - "type": "advisory" - }, - { - "title": "http://hg.moinmo.in/moin/1.5/rev/2f952fa361c7", - "url": "http://hg.moinmo.in/moin/1.5/rev/2f952fa361c7", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-5342", - "type": "advisory" - }, - { - "title": "GHSA-w65j-cmqc-37p2", - "url": "https://github.com/advisories/GHSA-w65j-cmqc-37p2", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/39201", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/39201", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-3383", - "type": "advisory" - }, - { - "title": "GHSA-wjwr-3jch-479j", - "url": "https://github.com/advisories/GHSA-wjwr-3jch-479j", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35536", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35536", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/rb71997f506c6cc8b530dd845c084995a9878098846c7b4eacfae8db3@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rb71997f506c6cc8b530dd845c084995a9878098846c7b4eacfae8db3@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-2450", - "type": "advisory" - }, - { - "title": "GHSA-5c5p-jxvx-x7j2", - "url": "https://github.com/advisories/GHSA-5c5p-jxvx-x7j2", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34868", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34868", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-2449", - "type": "advisory" - }, - { - "title": "GHSA-hc39-rjwp-qffq", - "url": "https://github.com/advisories/GHSA-hc39-rjwp-qffq", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34869", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34869", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-1358", - "type": "advisory" - }, - { - "title": "GHSA-xmc9-6p56-3c4v", - "url": "https://github.com/advisories/GHSA-xmc9-6p56-3c4v", - "type": "advisory" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00525.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00525.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-1355", - "type": "advisory" - }, - { - "title": "GHSA-4c6x-gfc8-c26r", - "url": "https://github.com/advisories/GHSA-4c6x-gfc8-c26r", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34377", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34377", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-7196", - "type": "advisory" - }, - { - "title": "GHSA-pm78-wxxf-fw98", - "url": "https://github.com/advisories/GHSA-pm78-wxxf-fw98", - "type": "advisory" - }, - { - "title": "http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx", - "url": "http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4206", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://lists.debian.org/debian-lts-announce/2022/09/msg00008.html", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://security.gentoo.org/glsa/202208-27", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://starlabs.sg/advisories/21-4206/", - "type": "exploit" - }, - { - "title": "secalert@redhat.com", - "url": "https://www.debian.org/security/2022/dsa-5133", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4207", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://starlabs.sg/advisories/21-4207/", - "type": "exploit" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2004-1177", - "type": "advisory" - }, - { - "title": "GHSA-rh6c-jh4c-9fg3", - "url": "https://github.com/advisories/GHSA-rh6c-jh4c-9fg3", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/18854", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/18854", - "type": "reference" - }, - { - "title": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11113", - "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11113", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2003-0038", - "type": "advisory" - }, - { - "title": "GHSA-82rm-28q9-435p", - "url": "https://github.com/advisories/GHSA-82rm-28q9-435p", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11152", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11152", - "type": "reference" - }, - { - "title": "http://telia.dl.sourceforge.net/sourceforge/mailman/xss-2.1.0-patch.txt", - "url": "http://telia.dl.sourceforge.net/sourceforge/mailman/xss-2.1.0-patch.txt", - "type": "reference" - }, - { - "title": "http://www.debian.org/security/2004/dsa-436", - "url": "http://www.debian.org/security/2004/dsa-436", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2003-0042", - "type": "advisory" - }, - { - "title": "GHSA-qfw2-wvrw-mvw4", - "url": "https://github.com/advisories/GHSA-qfw2-wvrw-mvw4", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11194", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11194", - "type": "reference" - }, - { - "title": "http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/", - "url": "http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/", - "type": "reference" - }, - { - "title": "http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/RELEASE-NOTES-3.3.1a.txt", - "url": "http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/RELEASE-NOTES-3.3.1a.txt", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-3827", - "type": "advisory" - }, - { - "title": "GHSA-4pc7-vqv5-5r3v", - "url": "https://github.com/advisories/GHSA-4pc7-vqv5-5r3v", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-4pc7-vqv5-5r3v", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-4pc7-vqv5-5r3v", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/44000caaf5051d7f218d1ad79573bd3d175cad0d", - "url": "https://github.com/keycloak/keycloak/commit/44000caaf5051d7f218d1ad79573bd3d175cad0d", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2021-3827", - "url": "https://access.redhat.com/security/cve/CVE-2021-3827", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6685", - "type": "advisory" - }, - { - "title": "GHSA-6wj9-77wq-jq7p", - "url": "https://github.com/advisories/GHSA-6wj9-77wq-jq7p", - "type": "advisory" - }, - { - "title": "https://github.com/sparklemotion/nokogiri/issues/693", - "url": "https://github.com/sparklemotion/nokogiri/issues/693", - "type": "reference" - }, - { - "title": "https://nokogiri.org/CHANGELOG.html#154-2012-06-12", - "url": "https://nokogiri.org/CHANGELOG.html#154-2012-06-12", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6133", - "type": "advisory" - }, - { - "title": "GHSA-5jq3-8437-x35p", - "url": "https://github.com/advisories/GHSA-5jq3-8437-x35p", - "type": "advisory" - }, - { - "title": "http://issues.roundup-tracker.org/issue2550724", - "url": "http://issues.roundup-tracker.org/issue2550724", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4439", - "type": "advisory" - }, - { - "title": "GHSA-x97g-3gp9-cf2p", - "url": "https://github.com/advisories/GHSA-x97g-3gp9-cf2p", - "type": "advisory" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2012-4439", - "url": "https://security-tracker.debian.org/tracker/CVE-2012-4439", - "type": "reference" - }, - { - "title": "https://www.cloudbees.com/jenkins-security-advisory-2012-09-17", - "url": "https://www.cloudbees.com/jenkins-security-advisory-2012-09-17", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/09/21/2", - "url": "http://www.openwall.com/lists/oss-security/2012/09/21/2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4441", - "type": "advisory" - }, - { - "title": "GHSA-3qxr-q72q-hmwp", - "url": "https://github.com/advisories/GHSA-3qxr-q72q-hmwp", - "type": "advisory" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2012-4441", - "url": "https://security-tracker.debian.org/tracker/CVE-2012-4441", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/ci-game-plugin/commit/9ef03da36524038322a7b9c14370a4c497e708f8", - "url": "https://github.com/jenkinsci/ci-game-plugin/commit/9ef03da36524038322a7b9c14370a4c497e708f8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4440", - "type": "advisory" - }, - { - "title": "GHSA-5qpv-27q3-6484", - "url": "https://github.com/advisories/GHSA-5qpv-27q3-6484", - "type": "advisory" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2012-4440", - "url": "https://security-tracker.debian.org/tracker/CVE-2012-4440", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/violations-plugin/commit/6dcbef2114adb0f9c01a0a927105fcf80a414e4d", - "url": "https://github.com/jenkinsci/violations-plugin/commit/6dcbef2114adb0f9c01a0a927105fcf80a414e4d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-27652", - "type": "advisory" - }, - { - "title": "GHSA-4hj2-r2pm-3hc6", - "url": "https://github.com/advisories/GHSA-4hj2-r2pm-3hc6", - "type": "advisory" - }, - { - "title": "https://github.com/cri-o/cri-o/security/advisories/GHSA-4hj2-r2pm-3hc6", - "url": "https://github.com/cri-o/cri-o/security/advisories/GHSA-4hj2-r2pm-3hc6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4924", - "type": "advisory" - }, - { - "title": "GHSA-vh6g-786f-hxxp", - "url": "https://github.com/advisories/GHSA-vh6g-786f-hxxp", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2011-4924", - "url": "https://access.redhat.com/security/cve/cve-2011-4924", - "type": "reference" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2011-4924", - "url": "https://security-tracker.debian.org/tracker/CVE-2011-4924", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/01/19/16", - "url": "http://www.openwall.com/lists/oss-security/2012/01/19/16", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3673", - "type": "advisory" - }, - { - "title": "GHSA-5f2f-hr23-j59j", - "url": "https://github.com/advisories/GHSA-5f2f-hr23-j59j", - "type": "advisory" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2010-3673", - "url": "https://security-tracker.debian.org/tracker/CVE-2010-3673", - "type": "reference" - }, - { - "title": "https://typo3.org/security/advisory/typo3-sa-2010-012/#Information_Disclosure", - "url": "https://typo3.org/security/advisory/typo3-sa-2010-012/#Information_Disclosure", - "type": "reference" - }, - { - "title": "https://github.com/TYPO3/typo3/commit/3e24a0fff04897826a12e5cac16b5b0a3848cf2d", - "url": "https://github.com/TYPO3/typo3/commit/3e24a0fff04897826a12e5cac16b5b0a3848cf2d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-3461", - "type": "advisory" - }, - { - "title": "GHSA-cm29-6wx7-p874", - "url": "https://github.com/advisories/GHSA-cm29-6wx7-p874", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/issues/11203", - "url": "https://github.com/keycloak/keycloak/issues/11203", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24770", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/commit/80fea89117358ee105973453fdc402398ae20239", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/pull/817", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-f8xq-q7px-wg8c", - "type": "advisory" - }, - { - "title": "GHSA-f8xq-q7px-wg8c", - "url": "https://github.com/advisories/GHSA-f8xq-q7px-wg8c", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2022-229.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2022-229.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f8xq-q7px-wg8c", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2022-229", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-45083", - "type": "advisory" - }, - { - "title": "GHSA-5946-mpw5-pqxx", - "url": "https://github.com/advisories/GHSA-5946-mpw5-pqxx", - "type": "advisory" - }, - { - "title": "https://github.com/cobbler/cobbler/releases", - "url": "https://github.com/cobbler/cobbler/releases", - "type": "reference" - }, - { - "title": "https://www.openwall.com/lists/oss-security/2022/02/18/3", - "url": "https://www.openwall.com/lists/oss-security/2022/02/18/3", - "type": "reference" - }, - { - "title": "https://github.com/cobbler/cobbler/pull/2945", - "url": "https://github.com/cobbler/cobbler/pull/2945", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1098", - "type": "advisory" - }, - { - "title": "GHSA-5gjm-fj42-x983", - "url": "https://github.com/advisories/GHSA-5gjm-fj42-x983", - "type": "advisory" - }, - { - "title": "https://github.com/coreos/etcd/issues/9353", - "url": "https://github.com/coreos/etcd/issues/9353", - "type": "reference" - }, - { - "title": "https://github.com/coreos/etcd/commit/a7e5790c82039945639798ae9a3289fe787f5e56", - "url": "https://github.com/coreos/etcd/commit/a7e5790c82039945639798ae9a3289fe787f5e56", - "type": "reference" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JX7QTIT465BQGRGNCE74RATRQLKT2QE4/", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JX7QTIT465BQGRGNCE74RATRQLKT2QE4/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-14338", - "type": "advisory" - }, - { - "title": "GHSA-w4jq-qh47-hvjq", - "url": "https://github.com/advisories/GHSA-w4jq-qh47-hvjq", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/rf96c5afb26b596b4b97883aa90b6c0b0fc4c26aaeea7123c21912103@%3Cj-users.xerces.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rf96c5afb26b596b4b97883aa90b6c0b0fc4c26aaeea7123c21912103@%3Cj-users.xerces.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-0333", - "type": "advisory" - }, - { - "title": "GHSA-m434-m5pv-p35w", - "url": "https://github.com/advisories/GHSA-m434-m5pv-p35w", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/2ee27313cea0d7073f5a6a35eccdfddcb3a9adad", - "url": "https://github.com/moodle/moodle/commit/2ee27313cea0d7073f5a6a35eccdfddcb3a9adad", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-20615", - "type": "advisory" - }, - { - "title": "GHSA-vqwg-4v6f-h6x5", - "url": "https://github.com/advisories/GHSA-vqwg-4v6f-h6x5", - "type": "advisory" - }, - { - "title": "https://www.jenkins.io/security/advisory/2022-01-12/#SECURITY-2017", - "url": "https://www.jenkins.io/security/advisory/2022-01-12/#SECURITY-2017", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2022/01/12/6", - "url": "http://www.openwall.com/lists/oss-security/2022/01/12/6", - "type": "reference" - }, - { - "title": "https://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20615.json", - "url": "https://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20615.json", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-20620", - "type": "advisory" - }, - { - "title": "GHSA-9wxh-jjj5-67cv", - "url": "https://github.com/advisories/GHSA-9wxh-jjj5-67cv", - "type": "advisory" - }, - { - "title": "https://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20620.jsonhttps://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20620.json", - "url": "https://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20620.jsonhttps://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20620.json", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/ssh-agent-plugin/commit/04f526d2f73a6fc24b59df20ba03d95265114835", - "url": "https://github.com/jenkinsci/ssh-agent-plugin/commit/04f526d2f73a6fc24b59df20ba03d95265114835", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23117", - "type": "advisory" - }, - { - "title": "GHSA-cw68-xmm4-c83r", - "url": "https://github.com/advisories/GHSA-cw68-xmm4-c83r", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/conjur-credentials-plugin/pull/19", - "url": "https://github.com/jenkinsci/conjur-credentials-plugin/pull/19", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/conjur-credentials-plugin/releases/tag/conjur-credentials-1.0.10", - "url": "https://github.com/jenkinsci/conjur-credentials-plugin/releases/tag/conjur-credentials-1.0.10", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23116", - "type": "advisory" - }, - { - "title": "GHSA-g7fx-mmjc-r7gv", - "url": "https://github.com/advisories/GHSA-g7fx-mmjc-r7gv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23118", - "type": "advisory" - }, - { - "title": "GHSA-8xjp-rp29-v5j8", - "url": "https://github.com/advisories/GHSA-8xjp-rp29-v5j8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10196", - "type": "advisory" - }, - { - "title": "GHSA-86wf-436m-h424", - "url": "https://github.com/advisories/GHSA-86wf-436m-h424", - "type": "advisory" - }, - { - "title": "https://github.com/TooTallNate/node-http-proxy-agent/commit/b7b7cc793c3226aa83f820ce5c277e81862d32eb", - "url": "https://github.com/TooTallNate/node-http-proxy-agent/commit/b7b7cc793c3226aa83f820ce5c277e81862d32eb", - "type": "reference" - }, - { - "title": "https://www.npmjs.com/advisories/607", - "url": "https://www.npmjs.com/advisories/607", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-43831", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/commit/41bd3645bdb616e1248b2167ca83636a2653f781", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-rhq2-3vr9-6mcr", - "type": "exploit" - }, - { - "title": "GHSA-rhq2-3vr9-6mcr", - "url": "https://github.com/advisories/GHSA-rhq2-3vr9-6mcr", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2021-873.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2021-873.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rhq2-3vr9-6mcr", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2021-873", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-25017", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-16848", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://bugs.launchpad.net/mistral/+bug/1785657", - "type": "advisory" - }, - { - "title": "GHSA-443j-6p7g-6v4w", - "url": "https://github.com/advisories/GHSA-443j-6p7g-6v4w", - "type": "advisory" - }, - { - "title": "https://github.com/openstack/mistral/commit/eac23d9e774f658f9d4743c99aa2743eb104c3f9", - "url": "https://github.com/openstack/mistral/commit/eac23d9e774f658f9d4743c99aa2743eb104c3f9", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/mistral/PYSEC-2020-240.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/mistral/PYSEC-2020-240.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2627", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-16612", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://security.cucumberlinux.com/security/details.php?id=156", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.openwall.com/lists/oss-security/2017/11/28/6", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.ubuntu.com/usn/USN-3501-1", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://cgit.freedesktop.org/wayland/wayland/commit/?id=5d201df72f3d4f4cb8b8f75f980169b03507da38", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-6938", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-September/166460.html", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-September/166471.html", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-September/167670.html", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://lists.opensuse.org/opensuse-updates/2015-10/msg00016.html", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://seclists.org/oss-sec/2015/q3/474", - "type": "reference" - }, - { - "title": "GHSA-4vwq-x64q-j4cj", - "url": "https://github.com/advisories/GHSA-4vwq-x64q-j4cj", - "type": "advisory" - }, - { - "title": "https://github.com/ipython/ipython/commit/3ab41641cf6fce3860c73d5cf4645aa12e1e5892", - "url": "https://github.com/ipython/ipython/commit/3ab41641cf6fce3860c73d5cf4645aa12e1e5892", - "type": "reference" - }, - { - "title": "https://github.com/jupyter/notebook/commit/35f32dd2da804d108a3a3585b69ec3295b2677ed", - "url": "https://github.com/jupyter/notebook/commit/35f32dd2da804d108a3a3585b69ec3295b2677ed", - "type": "reference" - }, - { - "title": "https://github.com/jupyter/notebook/commit/dd9876381f0ef09873d8c5f6f2063269172331e3", - "url": "https://github.com/jupyter/notebook/commit/dd9876381f0ef09873d8c5f6f2063269172331e3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4160", - "type": "advisory" - }, - { - "title": "hp-security-alert@hp.com", - "url": "http://secunia.com/advisories/46971", - "type": "reference" - }, - { - "title": "hp-security-alert@hp.com", - "url": "http://www.securityfocus.com/bid/50761", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-0339", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/28518", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/28556", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://securitytracker.com/id?1019218", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.oracle.com/technetwork/topics/security/cpujan2008-086860.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-0888", - "type": "advisory" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021732.1-1", - "type": "reference" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.html", - "type": "vendor" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.us-cert.gov/cas/techalerts/TA10-103B.html", - "type": "reference" - }, - { - "title": "secalert_us@oracle.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/57745", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-0851", - "type": "advisory" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://secunia.com/advisories/39438", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-0852", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-4294", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/37284", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.vupen.com/english/advisories/2009/3477", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-4295", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/37285", - "type": "patch" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-4314", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2489", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.vupen.com/english/advisories/2009/1915", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51743", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2490", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/55979", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51741", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2491", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/55978", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51742", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-5422", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/33108", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://support.avaya.com/elmodocs2/security/ASA-2008-502.htm", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/32769", - "type": "patch" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-5423", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/33119", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37895", - "type": "advisory" - }, - { - "title": "GHSA-q8cm-3v62-jj79", - "url": "https://github.com/advisories/GHSA-q8cm-3v62-jj79", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/list.html?users@jackrabbit.apache.org", - "url": "https://lists.apache.org/list.html?users@jackrabbit.apache.org", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread/j03b3qdhborc2jrhdc4d765d3jkh8bfw", - "url": "https://lists.apache.org/thread/j03b3qdhborc2jrhdc4d765d3jkh8bfw", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2023/07/25/8", - "url": "http://www.openwall.com/lists/oss-security/2023/07/25/8", - "type": "reference" - }, - { - "title": "http://seclists.org/fulldisclosure/2023/Jul/43", - "url": "http://seclists.org/fulldisclosure/2023/Jul/43", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-5000", - "type": "advisory" - }, - { - "title": "GHSA-pmqq-7wfv-jfff", - "url": "https://github.com/advisories/GHSA-pmqq-7wfv-jfff", - "type": "advisory" - }, - { - "title": "https://www.oracle.com/security-alerts/cpuoct2020.html", - "url": "https://www.oracle.com/security-alerts/cpuoct2020.html", - "type": "reference" - }, - { - "title": "http://www-01.ibm.com/support/docview.wss?uid=swg21996759", - "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21996759", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3628", - "type": "advisory" - }, - { - "title": "GHSA-wgw2-gw4v-9w4j", - "url": "https://github.com/advisories/GHSA-wgw2-gw4v-9w4j", - "type": "advisory" - }, - { - "title": "http://mail-archives.us.apache.org/mod_mbox/www-announce/201412.mbox/%3C54A1A7C7.2070804@apache.org%3E", - "url": "http://mail-archives.us.apache.org/mod_mbox/www-announce/201412.mbox/%3C54A1A7C7.2070804@apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-8795", - "type": "advisory" - }, - { - "title": "GHSA-mx2h-hf7j-2x3p", - "url": "https://github.com/advisories/GHSA-mx2h-hf7j-2x3p", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/jira/browse/SOLR-7346", - "url": "https://issues.apache.org/jira/browse/SOLR-7346", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-8797", - "type": "advisory" - }, - { - "title": "GHSA-v6gf-x8fp-532v", - "url": "https://github.com/advisories/GHSA-v6gf-x8fp-532v", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/jira/browse/SOLR-7949", - "url": "https://issues.apache.org/jira/browse/SOLR-7949", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-9096", - "type": "advisory" - }, - { - "title": "GHSA-86p9-x5pw-94qx", - "url": "https://github.com/advisories/GHSA-86p9-x5pw-94qx", - "type": "advisory" - }, - { - "title": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03902en_us", - "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03902en_us", - "type": "reference" - }, - { - "title": "https://www.compass-security.com/fileadmin/Datein/Research/Advisories/CSNC-2017-017_itext_xml_external_entity_attack.txt", - "url": "https://www.compass-security.com/fileadmin/Datein/Research/Advisories/CSNC-2017-017_itext_xml_external_entity_attack.txt", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/archive/1/541483/100/0/threaded", - "url": "http://www.securityfocus.com/archive/1/541483/100/0/threaded", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-5644", - "type": "advisory" - }, - { - "title": "GHSA-78vv-qj73-h9m5", - "url": "https://github.com/advisories/GHSA-78vv-qj73-h9m5", - "type": "advisory" - }, - { - "title": "http://poi.apache.org/#20+March+2017+-+CVE-2017-5644+-+Possible+DOS+%28Denial+of+Service%29+in+Apache+POI+versions+prior+to+3.15", - "url": "http://poi.apache.org/#20+March+2017+-+CVE-2017-5644+-+Possible+DOS+%28Denial+of+Service%29+in+Apache+POI+versions+prior+to+3.15", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/96983", - "url": "http://www.securityfocus.com/bid/96983", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-5402", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "http://www.securityfocus.com/bid/64333", - "type": "reference" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/87298", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3316", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77813", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3322", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77918", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3327", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/78039", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3328", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/78040", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-0746", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "http://secunia.com/advisories/50551", - "type": "vendor" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/74726", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3313", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77787", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3326", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77960", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-0715", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/73587", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-1347", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/63595", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/39194", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/39305", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-3290", - "type": "advisory" - }, - { - "title": "psirt@cisco.com", - "url": "http://secunia.com/advisories/46061", - "type": "reference" - }, - { - "title": "psirt@cisco.com", - "url": "http://www.cisco.com/en/US/products/products_security_advisory09186a0080b95105.shtml", - "type": "vendor" - }, - { - "title": "psirt@cisco.com", - "url": "http://www.securityfocus.com/bid/49703", - "type": "reference" - }, - { - "title": "psirt@cisco.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/69945", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-0657", - "type": "advisory" - }, - { - "title": "secure@microsoft.com", - "url": "http://osvdb.org/71780", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "http://secunia.com/advisories/44161", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "http://www.securityfocus.com/bid/47242", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "http://www.us-cert.gov/cas/techalerts/TA11-102A.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3600", - "type": "advisory" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://secunia.com/advisories/42895", - "type": "vendor" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://secunia.com/advisories/42921", - "type": "vendor" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.oracle.com/technetwork/topics/security/cpujan2011-194091.html", - "type": "vendor" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.securityfocus.com/bid/45883", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-4413", - "type": "advisory" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.securityfocus.com/bid/45845", - "type": "reference" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.vupen.com/english/advisories/2011/0139", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3943", - "type": "advisory" - }, - { - "title": "secure@microsoft.com", - "url": "http://www.us-cert.gov/cas/techalerts/TA10-348A.html", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-098", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12317", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2048", - "type": "advisory" - }, - { - "title": "psirt@cisco.com", - "url": "http://osvdb.org/55937", - "type": "reference" - }, - { - "title": "psirt@cisco.com", - "url": "http://secunia.com/advisories/35861", - "type": "reference" - }, - { - "title": "psirt@cisco.com", - "url": "http://www.cisco.com/en/US/products/products_security_advisory09186a0080ae04b2.shtml", - "type": "vendor" - }, - { - "title": "psirt@cisco.com", - "url": "http://www.securityfocus.com/bid/35705", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-6481", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/40845", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/28148", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/26944", - "type": "patch" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-6482", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/40846", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-0482", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/31671", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/23900", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/22192", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-5968", - "type": "advisory" - }, - { - "title": "PSIRT-CNA@flexerasoftware.com", - "url": "http://secunia.com/advisories/21554", - "type": "reference" - }, - { - "title": "PSIRT-CNA@flexerasoftware.com", - "url": "http://secunia.com/secunia_research/2006-67/advisory/", - "type": "vendor" - }, - { - "title": "PSIRT-CNA@flexerasoftware.com", - "url": "http://securityreason.com/securityalert/1890", - "type": "reference" - }, - { - "title": "PSIRT-CNA@flexerasoftware.com", - "url": "http://www.securityfocus.com/archive/1/451821/100/100/threaded", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-4049", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/21398", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/19394", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.vupen.com/english/advisories/2006/3226", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-1872", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/19712", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/19859", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.oracle.com/technetwork/topics/security/cpuapr2006-090826.html", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/archive/1/432267/100/0/threaded", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-0265", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/18493", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/18608", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://www.kb.cert.org/vuls/id/545804", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.oracle.com/technetwork/topics/security/cpujan2006-082403.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-0272", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0893.html", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.argeniss.com/research/ARGENISS-ADV-010601.txt", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2005-0416", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://eeye.com/html/research/advisories/AD20050111.html", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/12233", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-002", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2004-1305", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.kb.cert.org/vuls/id/177584", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.kb.cert.org/vuls/id/697136", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.us-cert.gov/cas/techalerts/TA05-012A.html", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.xfocus.net/flashsky/icoExp/", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2002-2036", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.iss.net/security_center/static/9252.php", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/4911", - "type": "patch" - } - ], - "tags": [ - "ai-flow", - "aim", - "aiondadotcom-mcp-ssh", - "ansible", - "auth-bypass", - "aworld", - "barbican", - "be.e-contract.dssp-dssp-client", - "bentoml", - "ceilometer", - "ckeditor4", - "cn.hutool-hutool-core", - "cobbler", - "com.amazonaws-aws-android-sdk-mobile-client", - "com.blackducksoftware.integration-blackduck-hub", - "com.googlecode.plist-dd-plist", - "com.itextpdf-itext-rups", - "com.itextpdf-itextpdf", - "com.jamesmurty.utils-java-xmlbuilder", - "com.lowagie-itext", - "comfyui", - "command-injection", - "concrete5-concrete5", - "cors", - "csrf", - "cursor", - "cve", - "datapizza-ai-core", - "deserialization", - "dify", - "django", - "django-photologue", - "docarray", - "dotnetcasclient", - "drupal-drupal", - "edu.internet2.middleware-shibboleth-identityprovider", - "eyed3", - "feedparser", - "file-read", - "fr.turri-axmlrpc", - "funadmin-funadmin", - "ghsa", - "github.com-cloudflare-circl", - "github.com-containers-podman", - "github.com-containers-podman-v2", - "github.com-containers-podman-v3", - "github.com-containers-podman-v4", - "github.com-containers-podman-v5", - "github.com-cri-o-cri-o", - "github.com-k3s-io-k3s", - "github.com-neuvector-neuvector", - "github.com-nmstate-kubernetes-nmstate", - "github.com-openshift-apiserver-library-go", - "github.com-operator-framework-operator-sdk", - "github.com-rancher-fleet", - "github.com-rancher-rancher", - "github.com-rancher-rke2", - "github.com-redhatinsights-yggdrasil", - "github.com-studygolang-studygolang", - "go.etcd.io-etcd-v3", - "gradio", - "http-proxy-agent", - "huggingface", - "info-disclosure", - "inspiremusic", - "instructlab", - "io.fabric8-fabric8-maven-plugin", - "io.fabric8-kubernetes-client", - "ipython", - "jasig-phpcas", - "jplayer", - "kelvinmo-simplexrd", - "keycloak-connect", - "keylime", - "kimai-kimai", - "kubevirt.io-kubevirt", - "label-studio-ml", - "langchain", - "langchain-chatchat", - "langchain-community", - "langflow", - "layui", - "lightrag-hku", - "lmdeploy", - "magick.net-q8-arm64", - "magick.net-q8-openmp-arm64", - "magick.net-q8-openmp-x64", - "magick.net-q8-x64", - "magick.net-q8-x86", - "mailman", - "manila-ui", - "mediawiki-core", - "memory-corruption", - "metagpt", - "mistral", - "ml-logger", - "ml.shifu-shifu", - "moin", - "moodle-moodle", - "node-json2html", - "nokogiri", - "notebook", - "null-origin", - "nvd", - "ocrodjvu", - "open-redirect", - "openai", - "openpyxl", - "org.apache.activemq-activemq-client", - "org.apache.activemq-activemq-core", - "org.apache.axis2-axis2", - "org.apache.cxf-cxf", - "org.apache.cxf-cxf-core", - "org.apache.cxf-cxf-rt-frontend-jaxrs", - "org.apache.cxf-cxf-rt-rs-security-sso-saml", - "org.apache.cxf-cxf-rt-transports-http", - "org.apache.cxf-cxf-rt-ws-security", - "org.apache.jackrabbit-jackrabbit-standalone", - "org.apache.jackrabbit-jackrabbit-standalone-components", - "org.apache.poi-poi", - "org.apache.poi-poi-examples", - "org.apache.santuario-xmlsec", - "org.apache.solr-solr", - "org.apache.solr-solr-core", - "org.apache.spark-spark-core", - "org.apache.tomcat-servlet-api", - "org.apache.tomcat-tomcat", - "org.apache.tomcat-tomcat-catalina", - "org.apache.tomcat-tomcat-jasper", - "org.apache.tomcat-tomcat-juli", - "org.apache.tomcat.embed-tomcat-embed-core", - "org.apache.ws.security-wss4j", - "org.apache.wss4j-wss4j-ws-security-dom", - "org.bonitasoft.connectors-bonita-connector-webservice", - "org.codehaus.jackson-jackson-mapper-asl", - "org.codehaus.plexus-plexus-utils", - "org.conjur.jenkins-conjur-credentials", - "org.drools-drools-core", - "org.hibernate-hibernate-validator", - "org.hibernate.validator-hibernate-validator", - "org.hornetq.rest-hornetq-rest", - "org.infinispan-infinispan-core", - "org.infinispan-infinispan-server-core", - "org.jasig.cas-cas-client", - "org.jboss.resteasy-resteasy-client", - "org.jboss.resteasy-resteasy-jaxb-provider", - "org.jboss.resteasy-resteasy-jaxrs", - "org.jboss.resteasy-resteasy-yaml-provider", - "org.jboss.ws-jbossws-common", - "org.jbpm-jbpm-bpmn2", - "org.jbpm.jbpm5-jbpmmigration", - "org.jenkins-ci.main-jenkins-core", - "org.jenkins-ci.plugins-ci-game", - "org.jenkins-ci.plugins-matrix-project", - "org.jenkins-ci.plugins-ssh-agent", - "org.jenkins-ci.plugins-ssh-slaves", - "org.jenkins-ci.plugins-violations", - "org.jruby-jruby", - "org.jvnet.hudson.plugins-monitoring", - "org.keycloak-keycloak-account-ui", - "org.keycloak-keycloak-admin-ui", - "org.keycloak-keycloak-broker-saml", - "org.keycloak-keycloak-core", - "org.keycloak-keycloak-parent", - "org.keycloak-keycloak-saml-adapter-core", - "org.keycloak-keycloak-saml-core", - "org.keycloak-keycloak-server-spi-private", - "org.keycloak-keycloak-services", - "org.liquibase-liquibase-core", - "org.nokogiri-nekohtml", - "org.openid4java-openid4java", - "org.opensaml-opensaml", - "org.owasp.antisamy-antisamy", - "org.restlet.jse-org.restlet", - "org.springframework-spring-web", - "org.testng-testng", - "org.wildfly.security-wildfly-elytron-http-oidc", - "osv", - "paste", - "path-traversal", - "phpmyadmin-phpmyadmin", - "pickle", - "pimcore-pimcore", - "plone", - "portage", - "privategpt", - "pysaml2", - "pyspark", - "pyspur", - "python-a2a", - "python-mistralclient", - "pytorch", - "qdrant", - "rce", - "regression", - "reviewboard", - "roundup", - "ru.yandex.jenkins.plugins.debuilder-debian-package-builder", - "rubygems-update", - "runner", - "scio-pypi", - "sequa-ai-sequa-mcp", - "sglang", - "shadowmq", - "simstudio", - "smolagents", - "sql-injection", - "ssrf", - "tinymighty-wiki-seo", - "torch", - "torch.load", - "trove", - "typo3-cms", - "typo3-cms-backend", - "typo3-cms-core", - "typo3-cms-install", - "umbraco.cms.web.common", - "vanna", - "vllm", - "weixin-python", - "wong2-mcp-cli", - "xerces-xercesimpl", - "xgrammar", - "xss", - "zendframework-zendframework1", - "zeromq", - "zope", - "zope2" - ] - }, - { - "id": "INC-00036", - "title": "A2A Protocol -- Agent Card Poisoning Vulnerability", - "date": "2026", - "year": 2026, - "category": "real-world", - "description": "Google's Agent-to-Agent (A2A) protocol has systemic vulnerabilities: agent card poisoning (malicious metadata injection causing data exfiltration), agent impersonation/shadowing, replay attacks, and contagion risk (one compromised agent influencing others in collaborative workflows). The spec delegates credential management entirely to implementers with no built-in protections.", - "owasp_entries": [ - "LLM02", - "LLM04", - "ASI06", - "ASI07", - "ASI08" - ], - "mitre_atlas": [ - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0048", - "AML.T0051", - "AML.T0051.000", - "AML.T0053", - "AML.T0057", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-3.2", - "MANAGE-4.1", - "MAP-2.1", - "MAP-4.1", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "A2A Protocol", - "severity": "Medium", - "references": [ - { - "title": "Palo Alto Networks", - "url": "https://live.paloaltonetworks.com/t5/community-blogs/safeguarding-ai-agents-an-in-depth-look-at-a2a-protocol-risks/ba-p/1235996", - "type": "research" - } - ] - }, - { - "id": "INC-00198", - "title": "AI recommendation poisoning — hidden prompt injections in 'Summarize with AI' buttons across 31 companies", - "date": "2026-02", - "year": 2026, - "category": "research-demonstrated", - "description": "Microsoft researchers discovered that 'Summarize with AI' buttons on websites contain hidden prompt-injection instructions that poison AI assistant memory. Over 60 days, 50 distinct examples found from 31 companies across 12+ industries. Altered memory influences later answers in unrelated conversations.", - "owasp_entries": [ - "LLM01", - "LLM04", - "ASI01", - "ASI06", - "ASI09", - "DSGAI04" - ], - "mitre_atlas": [ - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0011" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ - { - "layer": "L2", - "label": "Data Operations", - "role": "origin", - "notes": "Hidden instructions embedded in web content processed by AI" - }, - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "propagation", - "notes": "Poisoned content persists in AI assistant memory across sessions" - } - ], - "attack_vector": "prompt-injection", - "affected": "AI assistants processing web content — 31 companies, 12+ industries", - "impact": "Cross-session manipulation; persistent behavioral modification; memory-based trust exploitation", - "severity": "High", - "mitigations": [ - "Content integrity verification before memory storage", - "Memory content sanitization", - "Session isolation for AI memory" - ], - "references": [ - { - "title": "AI recommendation poisoning", - "url": "https://www.microsoft.com/en-us/security/blog/2026/02/10/ai-recommendation-poisoning/", - "type": "research" - } - ], - "tags": [ - "cross-session", - "memory-poisoning", - "persistent", - "trust", - "web-content" - ] - }, - { - "id": "INC-00627", - "title": "AnythingLLM Multiple CVEs", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Multiple vulnerabilities in AnythingLLM Desktop v1.11.1 and earlier: CVE-2026-32626 (CVSS 9.7) streaming phase XSS to RCE via LLM response injection in Electron; CVE-2026-32719 Zip Slip path traversal in plugin imports leading to arbitrary code execution; CVE-2026-32617 authentication bypass exposing HTTP/WebSocket endpoints; CVE-2026-24477 Qdrant API key exposed in plaintext via `/api/setup-complete`.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "ASI01", - "ASI02", - "ASI03", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "AnythingLLM Multiple CVEs", - "severity": "Critical", - "references": [ - { - "title": "GitHub Advisory", - "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-rrmw-2j6x-4mf2", - "type": "research" - }, - { - "title": "SentinelOne", - "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-32617/", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32617", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-24qj-pw4h-3jmm", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32626", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/commit/9e2d144dc8be6fab29f560f5bcdaa9ef7dbb4214", - "type": "patch" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32719", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/commit/6a492f038da195a5c9a239d5ca2e9f2151c25f8c", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-rh66-4w74-cf4m", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24477", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-gm94-qc2p-xcwf", - "type": "vendor" - } - ], - "tags": [ - "anythingllm", - "cve", - "nvd", - "path-traversal", - "xss" - ] - }, - { - "id": "INC-00668", - "title": "AWS Bedrock AgentCore \"Agent God Mode\" Privilege Escalation", - "date": "2026", - "year": 2026, - "category": "real-world", - "description": "AgentCore starter toolkit's auto-create logic generates IAM roles with overly broad account-wide permissions. A compromised agent can list all Code Interpreters, pivot to high-privileged targets, pull images from any ECR repository, and create new Code Interpreters running under the agent's IAM role. AWS recommends custom least-privilege IAM roles, but the default path is insecure.", - "owasp_entries": [ - "ASI03", - "ASI08", - "ASI10" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0048", - "AML.T0055" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-4.1", - "MEASURE-2.7" - ], - "attack_vector": "other", - "affected": "AWS Bedrock AgentCore \"Agent God Mode\" Privilege Escalation", - "severity": "High", - "references": [ - { - "title": "Palo Alto Unit42", - "url": "https://unit42.paloaltonetworks.com/exploit-of-aws-agentcore-iam-god-mode/", - "type": "research" - } - ] - }, - { - "id": "INC-00671", - "title": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "North Korean state actor Sapphire Sleet compromised the npm account of an axios maintainer, publishing malicious versions with a hidden dependency deploying a cross-platform RAT via post-install hook. Significant because AI coding agents autonomously run npm install. Active ~3 hours.", - "owasp_entries": [ - "LLM03", - "LLM05", - "LLM06", - "ASI04", - "ASI05", - "DSGAI08" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0048", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "NPM maintainer account compromised by state actor" - }, - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "RAT deployed via post-install hook on developer machines" - } - ], - "attack_vector": "supply-chain", - "affected": "axios npm package — 70M+ weekly downloads; AI coding agents auto-installing", - "impact": "Cross-platform RAT deployment; state-sponsored supply chain attack; AI agent amplification risk", - "severity": "Critical", - "mitigations": [ - "Lock file integrity monitoring", - "Sandbox npm install operations in AI coding agents", - "npm provenance verification" - ], - "references": [ - { - "title": "North Korea targets axios npm package", - "url": "https://cloud.google.com/blog/topics/threat-intelligence/north-korea-threat-actor-targets-axios-npm-package", - "type": "research" - } - ], - "tags": [ - "north-korea", - "npm", - "rat", - "state-sponsored", - "supply-chain" - ] - }, - { - "id": "INC-00739", - "title": "ChainLeak -- Chainlit AI Framework Vulnerabilities (CVE-2026-22218 & CVE-2026-22219)", - "date": "2026-01", - "year": 2026, - "category": "real-world", - "description": "Arbitrary file read (CVE-2026-22218) allows reading /proc/self/environ to steal API keys and credentials. SSRF (CVE-2026-22219) allows requests to internal services or cloud metadata endpoints. On AWS EC2 with IMDSv1, enables cloud account takeover. Fixed in Chainlit v2.9.4.", - "owasp_entries": [ - "ASI02", - "ASI03" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0055" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0005", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", - "MEASURE-2.7" - ], - "attack_vector": "ssrf", - "affected": "ChainLeak", - "severity": "Medium", - "references": [ - { - "title": "NVD", - "url": "https://thehackernews.com/2026/01/chainlit-ai-framework-flaws-enable-data.html", - "type": "research" - }, - { - "title": "Zafran", - "url": "https://www.zafran.io/resources/chainleak-critical-ai-framework-vulnerabilities-expose-data-enable-cloud-takeover", - "type": "research" - } - ] - }, - { - "id": "INC-00740", - "title": "Chat & Ask AI app — 300 million messages from 25 million users exposed via misconfigured Firebase", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "AI chat wrapper app (50M+ users, interfaces to ChatGPT/Claude/Gemini) had misconfigured Firebase backend allowing self-designation as authenticated user. 300 million messages from 25 million users exposed including illegal activity discussions and suicide assistance requests.", - "owasp_entries": [ - "LLM02", - "ASI03", - "ASI09", - "DSGAI01", - "DSGAI02", - "DSGAI15" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0024", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0055", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "origin", - "notes": "Firebase authentication misconfiguration allows self-authentication" - }, - { - "layer": "L2", - "label": "Data Operations", - "role": "impact", - "notes": "300M messages from 25M users exposed" - } - ], - "attack_vector": "auth-bypass", - "affected": "Chat & Ask AI — 25 million users; 300 million messages", - "impact": "Massive privacy breach; exposure of sensitive conversations; regulatory risk", - "severity": "Critical", - "mitigations": [ - "Authentication enforcement validation", - "Data encryption at rest", - "Firebase security rules audit" - ], - "references": [ - { - "title": "AI chat app leak exposes 300 million messages", - "url": "https://www.malwarebytes.com/blog/news/2026/02/ai-chat-app-leak-exposes-300-million-messages-tied-to-25-million-users", - "type": "news" - } - ], - "tags": [ - "authentication-bypass", - "chat-wrapper", - "firebase", - "mass-exposure", - "privacy" - ] - }, - { - "id": "INC-00746", - "title": "ChatGPT Data Exfiltration via DNS Covert Channel", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "A single malicious prompt creates a covert DNS-based exfiltration channel leaking user messages, uploaded files, and conversation content. Bypasses AI guardrails by exploiting the underlying Linux runtime. Fixed by OpenAI February 20, 2026.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM05", - "LLM06", - "ASI01", - "ASI02", - "ASI03", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0025", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.6", - "MEASURE-2.7" - ], - "attack_vector": "data-exfiltration", - "affected": "ChatGPT Data Exfiltration via DNS Covert Channel", - "severity": "Critical", - "references": [ - { - "title": "OpenAI", - "url": "https://thehackernews.com/2026/03/openai-patches-chatgpt-data.html", - "type": "research" - }, - { - "title": "Check Point", - "url": "https://blog.checkpoint.com/research/when-ai-trust-breaks-the-chatgpt-data-leakage-flaw-that-redefined-ai-vendor-security-trust/", - "type": "research" - }, - { - "title": "BeyondTrust", - "url": "https://www.beyondtrust.com/blog/entry/openai-codex-command-injection-vulnerability-github-token", - "type": "research" - }, - { - "title": "ChatGPT Data Leakage via a Hidden Outbound Channel - Check Point Research", - "url": "https://research.checkpoint.com/2026/chatgpt-data-leakage-via-a-hidden-outbound-channel-in-the-code-execution-runtime/", - "type": "research" - } - ], - "tags": [ - "agent", - "chatgpt", - "code-interpreter", - "codex", - "exfiltration", - "github-token", - "sandbox", - "side-channel" - ] - }, - { - "id": "INC-00806", - "title": "Claude AI jailbreak — Mexican government breach, 150GB data theft across 10 agencies", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "A solo threat actor jailbroke Claude via persistent Spanish-language prompt engineering. Claude wrote exploits, built tools, and automated data exfiltration. Over 1,000 prompts. 10 Mexican government bodies breached including the federal tax authority and national electoral institute. 150GB stolen including ~195 million taxpayer records.", - "owasp_entries": [ - "LLM01", - "LLM02", - "ASI01", - "ASI02", - "ASI10", - "DSGAI01" - ], - "mitre_atlas": [ - "AML.T0024", - "AML.T0025", - "AML.T0048", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0054", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0005", - "AML.TA0007", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7" - ], - "maestro_layers": [ - { - "layer": "L1", - "label": "Foundation Models", - "role": "origin", - "notes": "Model jailbroken via persistent prompt engineering" - }, - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "propagation", - "notes": "Agent writes exploits and automates exfiltration" - }, - { - "layer": "L6", - "label": "Security & Compliance", - "role": "impact", - "notes": "10 government agencies breached; 195M records stolen" - } - ], - "attack_vector": "jailbreak", - "affected": "10 Mexican government agencies — 195 million taxpayer records, voter data", - "impact": "Largest known AI-enabled government breach; 150GB data theft; national security implications", - "severity": "Critical", - "mitigations": [ - "Abuse detection for offensive security workflows", - "Multi-lingual jailbreak detection", - "Rate limiting for exploit-generation patterns" - ], - "references": [ - { - "title": "Hacker used Claude to steal sensitive Mexican data", - "url": "https://www.bloomberg.com/news/articles/2026-02-25/hacker-used-anthropic-s-claude-to-steal-sensitive-mexican-data", - "type": "news" - }, - { - "title": "Claude Mexico breach analysis", - "url": "https://venturebeat.com/security/claude-mexico-breach-four-blind-domains-security-stack", - "type": "news" - } - ], - "tags": [ - "autonomous-exploitation", - "data-theft", - "government-breach", - "jailbreak", - "nation-state" - ] - }, - { - "id": "INC-00813", - "title": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "date": "2026-02-25", - "year": 2026, - "category": "real-world", - "description": "CVE-2025-59536: Malicious `.claude/settings.json` hooks execute shell commands on SessionStart, achieving RCE before user reads the trust dialog. CVE-2026-21852: Malicious repos exfiltrate Anthropic API keys by overriding ANTHROPIC_BASE_URL to attacker-controlled servers. A single malicious commit could compromise any developer.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "LLM06", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0048.003", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.1", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "severity": "Critical", - "references": [ - { - "title": "Check Point Research", - "url": "https://research.checkpoint.com/2026/rce-and-api-token-exfiltration-through-claude-code-project-files-cve-2025-59536/", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-21852", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-jh7p-qr78-84p7", - "type": "vendor" - }, - { - "title": "GHSA-jh7p-qr78-84p7", - "url": "https://github.com/advisories/GHSA-jh7p-qr78-84p7", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59536", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-4fgq-fpq9-mr3g", - "type": "vendor" - }, - { - "title": "GHSA-4fgq-fpq9-mr3g", - "url": "https://github.com/advisories/GHSA-4fgq-fpq9-mr3g", - "type": "advisory" - }, - { - "title": "Critical Vulnerabilities in Anthropic's Claude Code Expose Developers to Remote Code Execution and API Key Theft", - "url": "https://oecd.ai/en/incidents/2026-02-25-f5cf", - "type": "report" - }, - { - "title": "Claude's collaboration tools allowed remote code execution", - "url": "https://www.theregister.com/2026/02/26/clade_code_cves/", - "type": "news" - }, - { - "title": "Flaws in Claude Code Put Developers' Machines at Risk", - "url": "https://www.darkreading.com/application-security/flaws-claude-code-developer-machines-risk", - "type": "news" - }, - { - "title": "Check Point Researchers Expose Critical Claude Code Flaws - IT Security News", - "url": "https://www.itsecuritynews.info/check-point-researchers-expose-critical-claude-code-flaws/", - "type": "news" - }, - { - "title": "Check Point Research Reveals Critical Claude Code Vulnerabilities Enabling Remote Code Execution and API Key Theft - InfotechLead", - "url": "https://infotechlead.com/security/check-point-research-reveals-critical-claude-code-vulnerabilities-enabling-remote-code-execution-and-api-key-theft-93914", - "type": "news" - }, - { - "title": "Security experts flag multiple issues in Claude Code, warning, 'As AI integration deepens, security controls must evolve to match the new trust boundaries'", - "url": "https://www.techradar.com/pro/security/security-experts-flag-multiple-issues-in-claude-code-warning-as-ai-integration-deepens-security-controls-must-evolve-to-match-the-new-trust-boundaries", - "type": "news" - } - ], - "tags": [ - "anthropic", - "anthropic-ai-claude-code", - "claude-code", - "cve", - "cve-2025-59536", - "cve-2026-21852", - "ghsa", - "hook-rce", - "nvd", - "oecd-aim", - "rce", - "secret-leakage", - "supply-chain" - ] - }, - { - "id": "INC-00827", - "title": "Claude Cowork File Exfiltration", - "date": "2026-01", - "year": 2026, - "category": "real-world", - "description": "Claude Cowork could be tricked via indirect prompt injection into uploading user files to an attacker's Anthropic account using curl to the whitelisted Anthropic Files API. Reused the same exfiltration vector previously reported for Claude Code. Anthropic shipped Cowork with this known vulnerability.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM06", - "LLM08", - "ASI01", - "ASI02", - "ASI06", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0048.001", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0057", - "AML.T0066", - "AML.T0070" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.6", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "attack_vector": "prompt-injection", - "affected": "Claude Cowork File Exfiltration", - "severity": "High", - "references": [ - { - "title": "PromptArmor", - "url": "https://www.promptarmor.com/resources/claude-cowork-exfiltrates-files", - "type": "research" - } - ], - "tags": [ - "claude-cowork", - "exfiltration", - "prompt-injection", - "rag" - ] - }, - { - "id": "INC-00833", - "title": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Three chained vulnerabilities in claude.ai: invisible prompt injection via URL parameters, data exfiltration via Anthropic Files API using attacker-controlled API key, and an open redirect on claude.com. Combined, these enabled silent theft of conversation history from default claude.ai sessions.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM04", - "LLM07", - "ASI01", - "ASI06", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0056", - "AML.T0057", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-3.2", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.6", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "attack_vector": "prompt-injection", - "affected": "Claudy Day", - "severity": "High", - "references": [ - { - "title": "Oasis Security", - "url": "https://www.oasis.security/blog/claude-ai-prompt-injection-data-exfiltration-vulnerability", - "type": "research" - } - ], - "tags": [ - "claude", - "claudy-day", - "exfiltration", - "prompt-injection" - ] - }, - { - "id": "INC-00834", - "title": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "A prompt injection in Cline's Claude-powered GitHub issue triage bot allowed code execution in CI, poisoning of GitHub Actions cache, and theft of npm publish tokens. Attacker published malicious Cline CLI v2.3.0 to npm, silently installing malware on ~4,000 developer machines during an 8-hour window.", - "owasp_entries": [ - "LLM01", - "LLM03", - "LLM04", - "LLM05", - "ASI01", - "ASI04", - "ASI05", - "ASI10" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0048", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0059", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0011" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.2", - "MAP-2.1", - "MAP-4.1", - "MAP-4.2", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "Prompt injection via GitHub issue → CI/CD compromise" - }, - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "4,000 developer machines infected via poisoned npm package" - } - ], - "attack_vector": "prompt-injection", - "affected": "Cline AI coding agent — 4,000 developer machines; npm ecosystem", - "impact": "Supply chain compromise; mass developer infection; CI/CD pipeline weaponization", - "severity": "Critical", - "mitigations": [ - "Isolate AI triage bots from CI/CD execution", - "Package integrity monitoring", - "npm publish token protection (2FA, short-lived)" - ], - "references": [ - { - "title": "Clinejection: CI/CD supply chain attack", - "url": "https://adnanthekhan.com/posts/clinejection/", - "type": "research" - } - ], - "tags": [ - "ci-cd", - "mass-infection", - "npm", - "prompt-injection", - "supply-chain" - ] - }, - { - "id": "INC-00860", - "title": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Four CVEs: sandbox escape via CodeInterpreter Docker fallback, SSRF in RAG search tools, arbitrary local file read in JSON loader. Chained via prompt injection to escape sandbox and execute code on host. Separately, a leaked internal GitHub token (CVSS 9.2) granted full access to CrewAI's private repos. No complete patch available.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "LLM08", - "ASI02", - "ASI03", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060", - "AML.T0066", - "AML.T0070" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "ssrf", - "affected": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "severity": "Critical", - "references": [ - { - "title": "CERT/CC VU#221883", - "url": "https://kb.cert.org/vuls/id/221883", - "type": "research" - }, - { - "title": "Noma Security", - "url": "https://noma.security/blog/uncrew-the-risk-behind-a-leaked-internal-github-token-at-crewai/", - "type": "research" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2275", - "type": "advisory" - }, - { - "title": "cret@cert.org", - "url": "https://docs.crewai.com/en/tools/ai-ml/codeinterpretertool", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2285", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2286", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2287", - "type": "advisory" - } - ], - "tags": [ - "crewai", - "cve", - "nvd", - "rce", - "ssrf" - ] - }, - { - "id": "INC-00904", - "title": "Docker MCP Server OS Command Injection (CVE-2026-5741)", - "date": "2026-04", - "year": 2026, - "category": "real-world", - "description": "OS command injection in suvarchal docker-mcp-server (up to 0.1.0) via `stop_container`/`remove_container`/`pull_image` functions. Public exploit available. Unpatched (vendor unresponsive). CVSS 4.0 score: 6.9.", - "owasp_entries": [ - "LLM05", - "ASI02", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0011", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0053", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "Docker MCP Server OS Command Injection (CVE-2026-5741)", - "severity": "Medium", - "references": [ - { - "title": "VulDB", - "url": "https://vuldb.com/vuln/355748", - "type": "research" - }, - { - "title": "RedPacket Security", - "url": "https://www.redpacketsecurity.com/cve-alert-cve-2026-5741-suvarchal-docker-mcp-server/", - "type": "advisory" - } - ] - }, - { - "id": "INC-00924", - "title": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", - "date": "2026-01-15", - "year": 2026, - "category": "research-demonstrated", - "description": "Critical zero-click exploit (CVE-2025-32711) allowing a mere email to trigger Microsoft Copilot leaking confidential data — emails, files, chat logs — outside intended scope. No user interaction required.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM04", - "LLM05", - "LLM06", - "ASI01", - "ASI02", - "ASI04", - "ASI05", - "ASI06", - "ASI08", - "ASI09", - "DSGAI01" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0025", - "AML.T0048", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0054", - "AML.T0057", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0007", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.1", - "MANAGE-2.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.2", - "MANAGE-4.1", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.6", - "MEASURE-2.7" - ], - "maestro_layers": [ - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "Copilot processes email content containing hidden prompt injection" - }, - { - "layer": "L2", - "label": "Data Operations", - "role": "impact", - "notes": "Emails, files, and chat logs exfiltrated" - } - ], - "attack_vector": "prompt-injection", - "affected": "Microsoft Copilot for M365 — enterprise email and file data", - "impact": "Zero-click data exfiltration; enterprise data breach; no user awareness", - "severity": "Critical", - "mitigations": [ - "Anomaly detection for bulk data access patterns", - "Data loss prevention for AI-generated outputs", - "Email content sanitization before AI processing" - ], - "references": [ - { - "title": "EchoLeak: Zero-click Copilot vulnerability", - "url": "https://www.aim.security/post/echoleak-blogpost", - "type": "research" - }, - { - "title": "Microsoft", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-32711", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32711", - "type": "advisory" - }, - { - "title": "Aim Security — EchoLeak disclosure", - "url": "https://www.aim.security/lp/aim-labs-echoleak-blogpost", - "type": "research" - }, - { - "title": "OWASP GenAI Exploit Round-up Q1 2026", - "url": "https://genai.owasp.org/2026/04/14/owasp-genai-exploit-round-up-report-q1-2026/", - "type": "report" - }, - { - "title": "EchoLeak paper", - "url": "https://arxiv.org/abs/2509.10540", - "type": "paper" - }, - { - "title": "EchoLeak in Microsoft Copilot - Varonis", - "url": "https://www.varonis.com/blog/echoleak", - "type": "research" - }, - { - "title": "Inside CVE-2025-32711 (EchoLeak) - HackTheBox", - "url": "https://www.hackthebox.com/blog/cve-2025-32711-echoleak-copilot-vulnerability", - "type": "research" - }, - { - "title": "af854a3a-2127-422b-91ae-364da2661108", - "url": "https://www.aim.security/lp/aim-labs-echoleak-m365", - "type": "reference" - } - ], - "tags": [ - "AI-offensive", - "ASI08", - "ASI09", - "ChatGPT", - "Claude", - "Copilot-Personal", - "Copilot-Studio", - "EchoLeak", - "M365-Copilot", - "Microsoft", - "Varonis", - "agentic", - "cascading-failure", - "command-injection", - "copilot", - "cve", - "cve-2025-32711", - "data-exfiltration", - "echoleak", - "email", - "enterprise", - "indirect-prompt-injection", - "nvd", - "supply-chain", - "trust-exploitation", - "zero-click" - ] - }, - { - "id": "INC-00928", - "title": "Eight Attack Vectors in AWS Bedrock Agents", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Unit42 identified eight validated attack vectors spanning log manipulation, knowledge base compromise, agent hijacking, flow injection, guardrail degradation, and prompt poisoning. An attacker with `bedrock:UpdateAgent` or `bedrock:CreateAgent` permissions can rewrite an agent's base prompt, forcing it to leak internal instructions and tool schemas.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM04", - "LLM08", - "ASI01", - "ASI02", - "ASI06" - ], - "mitre_atlas": [ - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0057", - "AML.T0059", - "AML.T0066", - "AML.T0070" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-3.2", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "Eight Attack Vectors in AWS Bedrock Agents", - "severity": "Medium", - "references": [ - { - "title": "Palo Alto Unit42", - "url": "https://unit42.paloaltonetworks.com/amazon-bedrock-multiagent-applications/", - "type": "research" - } - ] - }, - { - "id": "INC-01015", - "title": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", - "date": "2025-10", - "year": 2025, - "category": "vulnerability-disclosure", - "description": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to insecure use of integrated modules (Puppeteer and Playwright) within the nodevm execution environment. An authenticated attacker able to create or run a tool that leverages Puppeteer/Playwright can specify attacker-controlled browser binary paths and parameters. When the tool executes, the attacker-controlled executable/parameters are run on the host and circumvent the intended nodevm sandbox restrictions, resulting in execution of arbitrary code in the context of the host. This vulnerability was incorrectly assigned as a duplicate CVE-2025-26319 by the developers and should be considered distinct from that identifier.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM04", - "LLM05", - "LLM06", - "ASI01", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI07", - "DSGAI08" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0011", - "AML.T0012", - "AML.T0020", - "AML.T0024", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0053", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MANAGE-3.1", - "MAP-2.1", - "MAP-3.5", - "MAP-4.1", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "sandbox-escape", - "affected": "flowiseai/flowise", - "impact": "Full system takeover; actively exploited in the wild; CVSS 10.0", - "severity": "Critical", - "mitigations": [ - "Input sanitization for MCP configurations", - "Reduce publicly exposed AI framework instances", - "Sandbox execution for user-provided configurations" - ], - "references": [ - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34267", - "type": "advisory" - }, - { - "title": "https://flowiseai.com", - "url": "https://flowiseai.com", - "type": "reference" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/FlowiseAI/Flowise/pull/5231", - "type": "reference" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5w3r-f6gm-c25w", - "type": "vendor" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://www.vulncheck.com/advisories/flowise-auth-command-execution-and-sandbox-bypass-via-puppeteer-and-playwright-packages", - "type": "advisory" - }, - { - "title": "GHSA-r4hh-pcgx-j5r2", - "url": "https://github.com/advisories/GHSA-r4hh-pcgx-j5r2", - "type": "advisory" - }, - { - "title": "GHSA-5w3r-f6gm-c25w", - "url": "https://github.com/advisories/GHSA-5w3r-f6gm-c25w", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-r4hh-pcgx-j5r2", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31621", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://www.exploit-db.com/exploits/52001", - "type": "exploit" - }, - { - "title": "GHSA-6wp6-22x5-rr3w", - "url": "https://github.com/advisories/GHSA-6wp6-22x5-rr3w", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426", - "url": "https://github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.ts#L143-L147", - "url": "https://github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.ts#L143-L147", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6wp6-22x5-rr3w", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise", - "url": "https://github.com/FlowiseAI/Flowise", - "type": "reference" - }, - { - "title": "FlowiseAI", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-h42x-xx2q-6v6g", - "type": "research" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-26319", - "type": "advisory" - }, - { - "title": "Dor Attias (Medium)", - "url": "https://medium.com/@attias.dor/the-burn-notice-part-2-5-5-flowise-pre-auth-arbitrary-file-upload-cve-2025-26319-0d4194a34183", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/dorattias/CVE-2025-26319", - "type": "patch" - }, - { - "title": "GHSA-69jq-qr7w-j7qh", - "url": "https://github.com/advisories/GHSA-69jq-qr7w-j7qh", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%402.2.6/packages/server/src/index.ts#L165-L190", - "url": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%402.2.6/packages/server/src/index.ts#L165-L190", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-69jq-qr7w-j7qh", - "type": "advisory" - }, - { - "title": "Flowise AI agent builder under active exploitation", - "url": "https://thehackernews.com/2026/04/flowise-ai-agent-builder-under-active.html", - "type": "news" - }, - { - "title": "NVD", - "url": "https://www.bleepingcomputer.com/news/security/max-severity-flowise-rce-vulnerability-now-exploited-in-attacks/", - "type": "research" - }, - { - "title": "GHSA-3gcm-f6qx-ff7p", - "url": "https://github.com/advisories/GHSA-3gcm-f6qx-ff7p", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59528", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/nodes/tools/MCP/CustomMCP/CustomMCP.ts#L132", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/nodes/index.ts#L57-L78", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/routes/node-load-methods/index.ts#L5", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3gcm-f6qx-ff7p", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61913", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/commit/1fb12cd93143592a18995f63b781d25b354d48a3", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.8", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-j44m-5v8f-gc9c", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jv9m-vf54-chjj", - "type": "vendor" - }, - { - "title": "GHSA-jv9m-vf54-chjj", - "url": "https://github.com/advisories/GHSA-jv9m-vf54-chjj", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/5275", - "url": "https://github.com/FlowiseAI/Flowise/pull/5275", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jv9m-vf54-chjj", - "type": "advisory" - }, - { - "title": "GHSA-j44m-5v8f-gc9c", - "url": "https://github.com/advisories/GHSA-j44m-5v8f-gc9c", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j44m-5v8f-gc9c", - "type": "advisory" - }, - { - "title": "GHSA-fjh6-8679-9pch", - "url": "https://github.com/advisories/GHSA-fjh6-8679-9pch", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fjh6-8679-9pch", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fjh6-8679-9pch", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/5294", - "url": "https://github.com/FlowiseAI/Flowise/pull/5294", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.10", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.10", - "type": "reference" - }, - { - "title": "GHSA-x39m-3393-3qp4", - "url": "https://github.com/advisories/GHSA-x39m-3393-3qp4", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x39m-3393-3qp4", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x39m-3393-3qp4", - "type": "reference" - }, - { - "title": "GHSA-x7rp-qj2h-ghgw", - "url": "https://github.com/advisories/GHSA-x7rp-qj2h-ghgw", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x7rp-qj2h-ghgw", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x7rp-qj2h-ghgw", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x7rp-qj2h-ghgw", - "type": "advisory" - }, - { - "title": "OX Security advisory", - "url": "https://www.ox.security/blog/mcp-supply-chain-advisory-rce-vulnerabilities-across-the-ai-ecosystem/", - "type": "analysis" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40933", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c9gw-hvqq-f33r", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://www.ox.security/blog/the-mother-of-all-ai-supply-chains-critical-systemic-vulnerability-at-the-core-of-the-mcp", - "type": "advisory" - }, - { - "title": "GHSA-c9gw-hvqq-f33r", - "url": "https://github.com/advisories/GHSA-c9gw-hvqq-f33r", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-c9gw-hvqq-f33r", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42861", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.1.2", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6fw7-3q8r-m5vj", - "type": "reference" - }, - { - "title": "GHSA-6fw7-3q8r-m5vj", - "url": "https://github.com/advisories/GHSA-6fw7-3q8r-m5vj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6fw7-3q8r-m5vj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42862", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x5v6-pj28-cwwm", - "type": "reference" - }, - { - "title": "GHSA-x5v6-pj28-cwwm", - "url": "https://github.com/advisories/GHSA-x5v6-pj28-cwwm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x5v6-pj28-cwwm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42863", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5wxp-qjgq-fx6m", - "type": "reference" - }, - { - "title": "GHSA-5wxp-qjgq-fx6m", - "url": "https://github.com/advisories/GHSA-5wxp-qjgq-fx6m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5wxp-qjgq-fx6m", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46440", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-php6-83fg-gw3g", - "type": "reference" - }, - { - "title": "GHSA-php6-83fg-gw3g", - "url": "https://github.com/advisories/GHSA-php6-83fg-gw3g", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-php6-83fg-gw3g", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46441", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hp26-q66v-q2w7", - "type": "reference" - }, - { - "title": "GHSA-hp26-q66v-q2w7", - "url": "https://github.com/advisories/GHSA-hp26-q66v-q2w7", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hp26-q66v-q2w7", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46442", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9rvc-vf7m-pgm2", - "type": "reference" - }, - { - "title": "GHSA-9rvc-vf7m-pgm2", - "url": "https://github.com/advisories/GHSA-9rvc-vf7m-pgm2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9rvc-vf7m-pgm2", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46443", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7g73-99r4-m4mj", - "type": "reference" - }, - { - "title": "GHSA-7g73-99r4-m4mj", - "url": "https://github.com/advisories/GHSA-7g73-99r4-m4mj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7g73-99r4-m4mj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46444", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmg2-jjjx-jcp2", - "type": "reference" - }, - { - "title": "GHSA-hmg2-jjjx-jcp2", - "url": "https://github.com/advisories/GHSA-hmg2-jjjx-jcp2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hmg2-jjjx-jcp2", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46475", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-78pr-c5x5-jggc", - "type": "reference" - }, - { - "title": "GHSA-78pr-c5x5-jggc", - "url": "https://github.com/advisories/GHSA-78pr-c5x5-jggc", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/6128", - "url": "https://github.com/FlowiseAI/Flowise/pull/6128", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/1cf247eab35c7c3d4db381d23e4dca682fba527b", - "url": "https://github.com/FlowiseAI/Flowise/commit/1cf247eab35c7c3d4db381d23e4dca682fba527b", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-78pr-c5x5-jggc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46476", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-728h-4mwj-f2p4", - "type": "reference" - }, - { - "title": "GHSA-728h-4mwj-f2p4", - "url": "https://github.com/advisories/GHSA-728h-4mwj-f2p4", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/6129", - "url": "https://github.com/FlowiseAI/Flowise/pull/6129", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/f64047bdcf4cbd6a30ec348b9e3f2899ff514e89", - "url": "https://github.com/FlowiseAI/Flowise/commit/f64047bdcf4cbd6a30ec348b9e3f2899ff514e89", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-728h-4mwj-f2p4", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46477", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5h9v-837x-m97r", - "type": "reference" - }, - { - "title": "GHSA-5h9v-837x-m97r", - "url": "https://github.com/advisories/GHSA-5h9v-837x-m97r", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/6051", - "url": "https://github.com/FlowiseAI/Flowise/pull/6051", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/49a2259bf2a6b4f3d4b50813cb5161cee0d40040", - "url": "https://github.com/FlowiseAI/Flowise/commit/49a2259bf2a6b4f3d4b50813cb5161cee0d40040", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5h9v-837x-m97r", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46478", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7j65-65cr-6644", - "type": "reference" - }, - { - "title": "GHSA-7j65-65cr-6644", - "url": "https://github.com/advisories/GHSA-7j65-65cr-6644", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7j65-65cr-6644", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46479", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-mq53-pc65-wjc4", - "type": "reference" - }, - { - "title": "GHSA-mq53-pc65-wjc4", - "url": "https://github.com/advisories/GHSA-mq53-pc65-wjc4", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/6050", - "url": "https://github.com/FlowiseAI/Flowise/pull/6050", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/dc07f4062b852033554543a3cff3daf3433b0dac", - "url": "https://github.com/FlowiseAI/Flowise/commit/dc07f4062b852033554543a3cff3daf3433b0dac", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mq53-pc65-wjc4", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46480", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wxrr-jp8m-qq7f", - "type": "vendor" - }, - { - "title": "GHSA-wxrr-jp8m-qq7f", - "url": "https://github.com/advisories/GHSA-wxrr-jp8m-qq7f", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wxrr-jp8m-qq7f", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-43995", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-qqvm-66q4-vf5c", - "type": "vendor" - }, - { - "title": "GHSA-qqvm-66q4-vf5c", - "url": "https://github.com/advisories/GHSA-qqvm-66q4-vf5c", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-qqvm-66q4-vf5c", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-8026", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/YLChen-007/50a553f09aa1c7c04ce18cec13986a91", - "type": "exploit" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/submit/777656", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/vuln/361273", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/vuln/361273/cti", - "type": "reference" - }, - { - "title": "GHSA-8f47-4rh3-x44m", - "url": "https://github.com/advisories/GHSA-8f47-4rh3-x44m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8f47-4rh3-x44m", - "type": "advisory" - }, - { - "title": "GHSA-c2c9-mfw7-p8hw", - "url": "https://github.com/advisories/GHSA-c2c9-mfw7-p8hw", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c2c9-mfw7-p8hw", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c2c9-mfw7-p8hw", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-c2c9-mfw7-p8hw", - "type": "advisory" - }, - { - "title": "GHSA-59fh-9f3p-7m39", - "url": "https://github.com/advisories/GHSA-59fh-9f3p-7m39", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-59fh-9f3p-7m39", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-59fh-9f3p-7m39", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-59fh-9f3p-7m39", - "type": "advisory" - }, - { - "title": "GHSA-m837-xvxr-vqwg", - "url": "https://github.com/advisories/GHSA-m837-xvxr-vqwg", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m837-xvxr-vqwg", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m837-xvxr-vqwg", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m837-xvxr-vqwg", - "type": "advisory" - }, - { - "title": "GHSA-m99r-2hxc-cp3q", - "url": "https://github.com/advisories/GHSA-m99r-2hxc-cp3q", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m99r-2hxc-cp3q", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m99r-2hxc-cp3q", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m99r-2hxc-cp3q", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41264", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3hjv-c53m-58jj", - "type": "vendor" - }, - { - "title": "GHSA-3hjv-c53m-58jj", - "url": "https://github.com/advisories/GHSA-3hjv-c53m-58jj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3hjv-c53m-58jj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41265", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v38x-c887-992f", - "type": "vendor" - }, - { - "title": "GHSA-v38x-c887-992f", - "url": "https://github.com/advisories/GHSA-v38x-c887-992f", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v38x-c887-992f", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41137", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9wc7-mj3f-74xv", - "type": "vendor" - }, - { - "title": "GHSA-9wc7-mj3f-74xv", - "url": "https://github.com/advisories/GHSA-9wc7-mj3f-74xv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9wc7-mj3f-74xv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41138", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-f228-chmx-v6j6", - "type": "vendor" - }, - { - "title": "GHSA-f228-chmx-v6j6", - "url": "https://github.com/advisories/GHSA-f228-chmx-v6j6", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f228-chmx-v6j6", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41266", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4jpm-cgx2-8h37", - "type": "vendor" - }, - { - "title": "GHSA-4jpm-cgx2-8h37", - "url": "https://github.com/advisories/GHSA-4jpm-cgx2-8h37", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-4jpm-cgx2-8h37", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41267", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-48m6-ch88-55mj", - "type": "vendor" - }, - { - "title": "GHSA-48m6-ch88-55mj", - "url": "https://github.com/advisories/GHSA-48m6-ch88-55mj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-48m6-ch88-55mj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41268", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cvrr-qhgw-2mm6", - "type": "vendor" - }, - { - "title": "GHSA-cvrr-qhgw-2mm6", - "url": "https://github.com/advisories/GHSA-cvrr-qhgw-2mm6", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cvrr-qhgw-2mm6", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41269", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-rh7v-6w34-w2rr", - "type": "vendor" - }, - { - "title": "GHSA-rh7v-6w34-w2rr", - "url": "https://github.com/advisories/GHSA-rh7v-6w34-w2rr", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rh7v-6w34-w2rr", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41270", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-xhmj-rg95-44hv", - "type": "vendor" - }, - { - "title": "GHSA-xhmj-rg95-44hv", - "url": "https://github.com/advisories/GHSA-xhmj-rg95-44hv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-xhmj-rg95-44hv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41271", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6r77-hqx7-7vw8", - "type": "vendor" - }, - { - "title": "GHSA-6r77-hqx7-7vw8", - "url": "https://github.com/advisories/GHSA-6r77-hqx7-7vw8", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6r77-hqx7-7vw8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41272", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2x8m-83vc-6wv4", - "type": "vendor" - }, - { - "title": "GHSA-2x8m-83vc-6wv4", - "url": "https://github.com/advisories/GHSA-2x8m-83vc-6wv4", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2x8m-83vc-6wv4", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41273", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6f7g-v4pp-r667", - "type": "vendor" - }, - { - "title": "GHSA-6f7g-v4pp-r667", - "url": "https://github.com/advisories/GHSA-6f7g-v4pp-r667", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6f7g-v4pp-r667", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41275", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x5w6-38gp-mrqh", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://hackerone.com/reports/1888915", - "type": "exploit" - }, - { - "title": "GHSA-x5w6-38gp-mrqh", - "url": "https://github.com/advisories/GHSA-x5w6-38gp-mrqh", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x5w6-38gp-mrqh", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41276", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-f6hc-c5jr-878p", - "type": "vendor" - }, - { - "title": "GHSA-f6hc-c5jr-878p", - "url": "https://github.com/advisories/GHSA-f6hc-c5jr-878p", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f6hc-c5jr-878p", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41277", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3prp-9gf7-4rxx", - "type": "vendor" - }, - { - "title": "GHSA-3prp-9gf7-4rxx", - "url": "https://github.com/advisories/GHSA-3prp-9gf7-4rxx", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3prp-9gf7-4rxx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41278", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w47f-j8rh-wx87", - "type": "vendor" - }, - { - "title": "GHSA-w47f-j8rh-wx87", - "url": "https://github.com/advisories/GHSA-w47f-j8rh-wx87", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w47f-j8rh-wx87", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41279", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5fw2-mwhh-9947", - "type": "vendor" - }, - { - "title": "GHSA-5fw2-mwhh-9947", - "url": "https://github.com/advisories/GHSA-5fw2-mwhh-9947", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5fw2-mwhh-9947", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41274", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-28g4-38q8-3cwc", - "type": "vendor" - }, - { - "title": "GHSA-28g4-38q8-3cwc", - "url": "https://github.com/advisories/GHSA-28g4-38q8-3cwc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-28g4-38q8-3cwc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30615", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30616", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30617", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30624", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30625", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/Upsonic/Upsonic/commit/855053fce0662227d9246268ff4a0844b481a305", - "type": "reference" - }, - { - "title": "GHSA-cw73-5f7h-m4gv", - "url": "https://github.com/advisories/GHSA-cw73-5f7h-m4gv", - "type": "advisory" - }, - { - "title": "GHSA-9hrv-gvrv-6gf2", - "url": "https://github.com/advisories/GHSA-9hrv-gvrv-6gf2", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9hrv-gvrv-6gf2", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9hrv-gvrv-6gf2", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9hrv-gvrv-6gf2", - "type": "advisory" - }, - { - "title": "GHSA-w6v6-49gh-mc9w", - "url": "https://github.com/advisories/GHSA-w6v6-49gh-mc9w", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w6v6-49gh-mc9w", - "type": "advisory" - }, - { - "title": "GHSA-m7mq-85xj-9x33", - "url": "https://github.com/advisories/GHSA-m7mq-85xj-9x33", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m7mq-85xj-9x33", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m7mq-85xj-9x33", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m7mq-85xj-9x33", - "type": "advisory" - }, - { - "title": "GHSA-2qqc-p94c-hxwh", - "url": "https://github.com/advisories/GHSA-2qqc-p94c-hxwh", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2qqc-p94c-hxwh", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2qqc-p94c-hxwh", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2qqc-p94c-hxwh", - "type": "advisory" - }, - { - "title": "GHSA-cc4f-hjpj-g9p8", - "url": "https://github.com/advisories/GHSA-cc4f-hjpj-g9p8", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cc4f-hjpj-g9p8", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cc4f-hjpj-g9p8", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cc4f-hjpj-g9p8", - "type": "advisory" - }, - { - "title": "GHSA-6pcv-j4jx-m4vx", - "url": "https://github.com/advisories/GHSA-6pcv-j4jx-m4vx", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6pcv-j4jx-m4vx", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6pcv-j4jx-m4vx", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6pcv-j4jx-m4vx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30820", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.13", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wvhq-wp8g-c7vq", - "type": "vendor" - }, - { - "title": "GHSA-wvhq-wp8g-c7vq", - "url": "https://github.com/advisories/GHSA-wvhq-wp8g-c7vq", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wvhq-wp8g-c7vq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30821", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-j8g8-j7fc-43v6", - "type": "vendor" - }, - { - "title": "GHSA-j8g8-j7fc-43v6", - "url": "https://github.com/advisories/GHSA-j8g8-j7fc-43v6", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j8g8-j7fc-43v6", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30822", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-mq4r-h2gh-qv7x", - "type": "vendor" - }, - { - "title": "GHSA-mq4r-h2gh-qv7x", - "url": "https://github.com/advisories/GHSA-mq4r-h2gh-qv7x", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mq4r-h2gh-qv7x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30823", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cwc3-p92j-g7qm", - "type": "vendor" - }, - { - "title": "GHSA-cwc3-p92j-g7qm", - "url": "https://github.com/advisories/GHSA-cwc3-p92j-g7qm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cwc3-p92j-g7qm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30824", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5f53-522j-j454", - "type": "vendor" - }, - { - "title": "GHSA-5f53-522j-j454", - "url": "https://github.com/advisories/GHSA-5f53-522j-j454", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5f53-522j-j454", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-31829", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fvcw-9w9r-pxc7", - "type": "vendor" - }, - { - "title": "GHSA-fvcw-9w9r-pxc7", - "url": "https://github.com/advisories/GHSA-fvcw-9w9r-pxc7", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fvcw-9w9r-pxc7", - "type": "advisory" - }, - { - "title": "GHSA-jc5m-wrp2-qq38", - "url": "https://github.com/advisories/GHSA-jc5m-wrp2-qq38", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jc5m-wrp2-qq38", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jc5m-wrp2-qq38", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jc5m-wrp2-qq38", - "type": "advisory" - }, - { - "title": "GHSA-x2g5-fvc2-gqvp", - "url": "https://github.com/advisories/GHSA-x2g5-fvc2-gqvp", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x2g5-fvc2-gqvp", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x2g5-fvc2-gqvp", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/5665", - "url": "https://github.com/FlowiseAI/Flowise/pull/5665", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x2g5-fvc2-gqvp", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22688", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Tencent/WeKnora/commit/f7900a5e9a18c99d25cec9589ead9e4e59ce04bb", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Tencent/WeKnora/security/advisories/GHSA-78h3-63c4-5fqc", - "type": "vendor" - }, - { - "title": "GHSA-78h3-63c4-5fqc", - "url": "https://github.com/advisories/GHSA-78h3-63c4-5fqc", - "type": "advisory" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2026-4292", - "url": "https://pkg.go.dev/vuln/GO-2026-4292", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22252", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/danny-avila/LibreChat/commit/211b39f3113d4e6ecab84be0a83f4e9c9dea127f", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/danny-avila/LibreChat/security/advisories/GHSA-cxhj-j78r-p88f", - "type": "vendor" - }, - { - "title": "GHSA-v5w9-prxf-w882", - "url": "https://github.com/advisories/GHSA-v5w9-prxf-w882", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v5w9-prxf-w882", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v5w9-prxf-w882", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v5w9-prxf-w882", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61687", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/components/src/storageUtils.ts#L1104-L1111", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/server/src/controllers/attachments/index.ts#L4-L11", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/server/src/routes/attachments/index.ts#L8", - "type": "reference" - }, - { - "title": "GHSA-35g6-rrw3-v6xc", - "url": "https://github.com/advisories/GHSA-35g6-rrw3-v6xc", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-35g6-rrw3-v6xc", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-35g6-rrw3-v6xc", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-35g6-rrw3-v6xc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29192", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/pull/4905", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.5", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7r4h-vmj9-wg42", - "type": "exploit" - }, - { - "title": "GHSA-7r4h-vmj9-wg42", - "url": "https://github.com/advisories/GHSA-7r4h-vmj9-wg42", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/9a06a85a8ddcbaeca1342827a5fea9087a587d97", - "url": "https://github.com/FlowiseAI/Flowise/commit/9a06a85a8ddcbaeca1342827a5fea9087a587d97", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7r4h-vmj9-wg42", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-50538", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-964p-j4gg-mhwc", - "type": "exploit" - }, - { - "title": "GHSA-964p-j4gg-mhwc", - "url": "https://github.com/advisories/GHSA-964p-j4gg-mhwc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-964p-j4gg-mhwc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-57164", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/blob/main/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7944-7c6r-55vv", - "type": "vendor" - }, - { - "title": "GHSA-7944-7c6r-55vv", - "url": "https://github.com/advisories/GHSA-7944-7c6r-55vv", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/blob/flowise%403.0.5/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", - "url": "https://github.com/FlowiseAI/Flowise/blob/flowise%403.0.5/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7944-7c6r-55vv", - "type": "advisory" - }, - { - "title": "GHSA-3g4j-r53p-22wx", - "url": "https://github.com/advisories/GHSA-3g4j-r53p-22wx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55346", - "type": "advisory" - }, - { - "title": "GHSA-hmgh-466j-fx4c", - "url": "https://github.com/advisories/GHSA-hmgh-466j-fx4c", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmgh-466j-fx4c", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmgh-466j-fx4c", - "type": "reference" - }, - { - "title": "https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925", - "url": "https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hmgh-466j-fx4c", - "type": "advisory" - }, - { - "title": "GHSA-7rgr-72hp-9wp3", - "url": "https://github.com/advisories/GHSA-7rgr-72hp-9wp3", - "type": "advisory" - }, - { - "title": "GHSA-wq95-wr7m-26h4", - "url": "https://github.com/advisories/GHSA-wq95-wr7m-26h4", - "type": "advisory" - }, - { - "title": "GHSA-4fr9-3x69-36wv", - "url": "https://github.com/advisories/GHSA-4fr9-3x69-36wv", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4fr9-3x69-36wv", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4fr9-3x69-36wv", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-4fr9-3x69-36wv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58434", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/commit/9e178d68873eb876073846433a596590d3d9c863", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wgpv-6j63-x5ph", - "type": "vendor" - }, - { - "title": "GHSA-wgpv-6j63-x5ph", - "url": "https://github.com/advisories/GHSA-wgpv-6j63-x5ph", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wgpv-6j63-x5ph", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59527", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/src/utils.ts#L474-L478", - "type": "reference" - }, { "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/fetch-links/index.ts#L6-L24", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/services/fetch-links/index.ts#L8-L18", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hr92-4q35-4j3m", + "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-gm94-qc2p-xcwf", "type": "vendor" - }, - { - "title": "GHSA-hr92-4q35-4j3m", - "url": "https://github.com/advisories/GHSA-hr92-4q35-4j3m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hr92-4q35-4j3m", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54994", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/akoskm/create-mcp-server-stdio/blob/main/src/index.ts#L24-L40", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/akoskm/create-mcp-server-stdio/commit/48c26bbe1f8c62764e4592f33c8300d1cadd2eac", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/akoskm/create-mcp-server-stdio/security/advisories/GHSA-3ch2-jxxc-v4xf", - "type": "reference" - }, - { - "title": "GHSA-3ch2-jxxc-v4xf", - "url": "https://github.com/advisories/GHSA-3ch2-jxxc-v4xf", - "type": "advisory" - }, - { - "title": "https://github.com/akoskm/create-mcp-server-stdio/pull/1", - "url": "https://github.com/akoskm/create-mcp-server-stdio/pull/1", - "type": "reference" - }, - { - "title": "GHSA-6933-jpx5-q87q", - "url": "https://github.com/advisories/GHSA-6933-jpx5-q87q", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6933-jpx5-q87q", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6933-jpx5-q87q", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/5201", - "url": "https://github.com/FlowiseAI/Flowise/pull/5201", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/ac7cf30e019cde54905bf09b5d3fe1c6ba42f9b9", - "url": "https://github.com/FlowiseAI/Flowise/commit/ac7cf30e019cde54905bf09b5d3fe1c6ba42f9b9", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6933-jpx5-q87q", - "type": "advisory" - }, - { - "title": "GHSA-q67q-549q-p849", - "url": "https://github.com/advisories/GHSA-q67q-549q-p849", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-q67q-549q-p849", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-q67q-549q-p849", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/8bd3de41533de78e4ef6c980e5704a1f9cb7ae6f", - "url": "https://github.com/FlowiseAI/Flowise/commit/8bd3de41533de78e4ef6c980e5704a1f9cb7ae6f", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/c2b830f279e454e8b758da441016b2234f220ac7", - "url": "https://github.com/FlowiseAI/Flowise/commit/c2b830f279e454e8b758da441016b2234f220ac7", - "type": "reference" - }, + } + ], + "tags": [ + "anythingllm", + "cve", + "nvd", + "path-traversal", + "xss" + ] + }, + { + "id": "INC-00668", + "title": "AWS Bedrock AgentCore \"Agent God Mode\" Privilege Escalation", + "date": "2026", + "year": 2026, + "category": "real-world", + "description": "AgentCore starter toolkit's auto-create logic generates IAM roles with overly broad account-wide permissions. A compromised agent can list all Code Interpreters, pivot to high-privileged targets, pull images from any ECR repository, and create new Code Interpreters running under the agent's IAM role. AWS recommends custom least-privilege IAM roles, but the default path is insecure.", + "owasp_entries": [ + "ASI03", + "ASI08", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0048", + "AML.T0055" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MANAGE-4.1", + "MEASURE-2.7" + ], + "attack_vector": "other", + "affected": "AWS Bedrock AgentCore \"Agent God Mode\" Privilege Escalation", + "severity": "High", + "references": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-q67q-549q-p849", - "type": "advisory" - }, + "title": "Palo Alto Unit42", + "url": "https://unit42.paloaltonetworks.com/exploit-of-aws-agentcore-iam-god-mode/", + "type": "research" + } + ] + }, + { + "id": "INC-00671", + "title": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "North Korean state actor Sapphire Sleet compromised the npm account of an axios maintainer, publishing malicious versions with a hidden dependency deploying a cross-platform RAT via post-install hook. Significant because AI coding agents autonomously run npm install. Active ~3 hours.", + "owasp_entries": [ + "LLM03", + "LLM04", + "LLM10", + "ASI04", + "ASI05", + "DSGAI08" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0048", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "GHSA-99pg-hqvx-r4gf", - "url": "https://github.com/advisories/GHSA-99pg-hqvx-r4gf", - "type": "advisory" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "NPM maintainer account compromised by state actor" }, { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-99pg-hqvx-r4gf", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-99pg-hqvx-r4gf", - "type": "reference" - }, + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "RAT deployed via post-install hook on developer machines" + } + ], + "attack_vector": "supply-chain", + "affected": "axios npm package — 70M+ weekly downloads; AI coding agents auto-installing", + "impact": "Cross-platform RAT deployment; state-sponsored supply chain attack; AI agent amplification risk", + "severity": "Critical", + "mitigations": [ + "Lock file integrity monitoring", + "Sandbox npm install operations in AI coding agents", + "npm provenance verification" + ], + "references": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-99pg-hqvx-r4gf", - "type": "advisory" - }, + "title": "North Korea targets axios npm package", + "url": "https://cloud.google.com/blog/topics/threat-intelligence/north-korea-threat-actor-targets-axios-npm-package", + "type": "research" + } + ], + "tags": [ + "north-korea", + "npm", + "rat", + "state-sponsored", + "supply-chain" + ] + }, + { + "id": "INC-00739", + "title": "ChainLeak -- Chainlit AI Framework Vulnerabilities (CVE-2026-22218 & CVE-2026-22219)", + "date": "2026-01", + "year": 2026, + "category": "real-world", + "description": "Arbitrary file read (CVE-2026-22218) allows reading /proc/self/environ to steal API keys and credentials. SSRF (CVE-2026-22219) allows requests to internal services or cloud metadata endpoints. On AWS EC2 with IMDSv1, enables cloud account takeover. Fixed in Chainlit v2.9.4.", + "owasp_entries": [ + "ASI02", + "ASI03" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0055" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0005", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.7" + ], + "attack_vector": "ssrf", + "affected": "ChainLeak", + "severity": "Medium", + "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8943", - "type": "advisory" + "url": "https://thehackernews.com/2026/01/chainlit-ai-framework-flaws-enable-data.html", + "type": "research" }, { - "title": "reefs@jfrog.com", - "url": "https://research.jfrog.com/vulnerabilities/flowise-os-command-remote-code-execution-jfsa-2025-001380578/", - "type": "exploit" - }, + "title": "Zafran", + "url": "https://www.zafran.io/resources/chainleak-critical-ai-framework-vulnerabilities-expose-data-enable-cloud-takeover", + "type": "research" + } + ] + }, + { + "id": "INC-00740", + "title": "Chat & Ask AI app — 300 million messages from 25 million users exposed via misconfigured Firebase", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "AI chat wrapper app (50M+ users, interfaces to ChatGPT/Claude/Gemini) had misconfigured Firebase backend allowing self-designation as authenticated user. 300 million messages from 25 million users exposed including illegal activity discussions and suicide assistance requests.", + "owasp_entries": [ + "LLM02", + "ASI03", + "ASI09", + "DSGAI01", + "DSGAI02", + "DSGAI15" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0024", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0055", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "maestro_layers": [ { - "title": "GHSA-2vv2-3x8x-4gv7", - "url": "https://github.com/advisories/GHSA-2vv2-3x8x-4gv7", - "type": "advisory" + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "origin", + "notes": "Firebase authentication misconfiguration allows self-authentication" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2vv2-3x8x-4gv7", - "type": "advisory" - }, + "layer": "L2", + "label": "Data Operations", + "role": "impact", + "notes": "300M messages from 25M users exposed" + } + ], + "attack_vector": "auth-bypass", + "affected": "Chat & Ask AI — 25 million users; 300 million messages", + "impact": "Massive privacy breach; exposure of sensitive conversations; regulatory risk", + "severity": "Critical", + "mitigations": [ + "Authentication enforcement validation", + "Data encryption at rest", + "Firebase security rules audit" + ], + "references": [ + { + "title": "AI chat app leak exposes 300 million messages", + "url": "https://www.malwarebytes.com/blog/news/2026/02/ai-chat-app-leak-exposes-300-million-messages-tied-to-25-million-users", + "type": "news" + } + ], + "tags": [ + "authentication-bypass", + "chat-wrapper", + "firebase", + "mass-exposure", + "privacy" + ] + }, + { + "id": "INC-00746", + "title": "ChatGPT Data Exfiltration via DNS Covert Channel", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "A single malicious prompt creates a covert DNS-based exfiltration channel leaking user messages, uploaded files, and conversation content. Bypasses AI guardrails by exploiting the underlying Linux runtime. Fixed by OpenAI February 20, 2026.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", + "LLM10", + "ASI01", + "ASI02", + "ASI03", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0011", + "AML.T0012", + "AML.T0024", + "AML.T0025", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.6", + "MEASURE-2.7" + ], + "attack_vector": "data-exfiltration", + "affected": "ChatGPT Data Exfiltration via DNS Covert Channel", + "severity": "Critical", + "references": [ { - "title": "GHSA-q4xx-mc3q-23x8", - "url": "https://github.com/advisories/GHSA-q4xx-mc3q-23x8", - "type": "advisory" + "title": "OpenAI", + "url": "https://thehackernews.com/2026/03/openai-patches-chatgpt-data.html", + "type": "research" }, { - "title": "GHSA-9c4c-g95m-c8cp", - "url": "https://github.com/advisories/GHSA-9c4c-g95m-c8cp", - "type": "advisory" + "title": "Check Point", + "url": "https://blog.checkpoint.com/research/when-ai-trust-breaks-the-chatgpt-data-leakage-flaw-that-redefined-ai-vendor-security-trust/", + "type": "research" }, { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9c4c-g95m-c8cp", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9c4c-g95m-c8cp", - "type": "reference" + "title": "BeyondTrust", + "url": "https://www.beyondtrust.com/blog/entry/openai-codex-command-injection-vulnerability-github-token", + "type": "research" }, { - "title": "https://github.com/FlowiseAI/Flowise/pull/4226", - "url": "https://github.com/FlowiseAI/Flowise/pull/4226", - "type": "reference" - }, + "title": "ChatGPT Data Leakage via a Hidden Outbound Channel - Check Point Research", + "url": "https://research.checkpoint.com/2026/chatgpt-data-leakage-via-a-hidden-outbound-channel-in-the-code-execution-runtime/", + "type": "research" + } + ], + "tags": [ + "agent", + "chatgpt", + "code-interpreter", + "codex", + "exfiltration", + "github-token", + "sandbox", + "side-channel" + ] + }, + { + "id": "INC-00806", + "title": "Claude AI jailbreak — Mexican government breach, 150GB data theft across 10 agencies", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "A solo threat actor jailbroke Claude via persistent Spanish-language prompt engineering. Claude wrote exploits, built tools, and automated data exfiltration. Over 1,000 prompts. 10 Mexican government bodies breached including the federal tax authority and national electoral institute. 150GB stolen including ~195 million taxpayer records.", + "owasp_entries": [ + "LLM01", + "LLM02", + "ASI01", + "ASI02", + "ASI10", + "DSGAI01" + ], + "mitre_atlas": [ + "AML.T0024", + "AML.T0025", + "AML.T0048", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0054", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0005", + "AML.TA0007", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9c4c-g95m-c8cp", - "type": "advisory" + "layer": "L1", + "label": "Foundation Models", + "role": "origin", + "notes": "Model jailbroken via persistent prompt engineering" }, { - "title": "GHSA-8vvx-qvq9-5948", - "url": "https://github.com/advisories/GHSA-8vvx-qvq9-5948", - "type": "advisory" + "layer": "L3", + "label": "Agent Frameworks", + "role": "propagation", + "notes": "Agent writes exploits and automates exfiltration" }, { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-8vvx-qvq9-5948", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-8vvx-qvq9-5948", - "type": "reference" - }, + "layer": "L6", + "label": "Security & Compliance", + "role": "impact", + "notes": "10 government agencies breached; 195M records stolen" + } + ], + "attack_vector": "jailbreak", + "affected": "10 Mexican government agencies — 195 million taxpayer records, voter data", + "impact": "Largest known AI-enabled government breach; 150GB data theft; national security implications", + "severity": "Critical", + "mitigations": [ + "Abuse detection for offensive security workflows", + "Multi-lingual jailbreak detection", + "Rate limiting for exploit-generation patterns" + ], + "references": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8vvx-qvq9-5948", - "type": "advisory" + "title": "Hacker used Claude to steal sensitive Mexican data", + "url": "https://www.bloomberg.com/news/articles/2026-02-25/hacker-used-anthropic-s-claude-to-steal-sensitive-mexican-data", + "type": "news" }, { - "title": "GHSA-h42x-xx2q-6v6g", - "url": "https://github.com/advisories/GHSA-h42x-xx2q-6v6g", - "type": "advisory" - }, + "title": "Claude Mexico breach analysis", + "url": "https://venturebeat.com/security/claude-mexico-breach-four-blind-domains-security-stack", + "type": "news" + } + ], + "tags": [ + "autonomous-exploitation", + "data-theft", + "government-breach", + "jailbreak", + "nation-state" + ] + }, + { + "id": "INC-00813", + "title": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", + "date": "2026-02-25", + "year": 2026, + "category": "real-world", + "description": "CVE-2025-59536: Malicious `.claude/settings.json` hooks execute shell commands on SessionStart, achieving RCE before user reads the trust dialog. CVE-2026-21852: Malicious repos exfiltrate Anthropic API keys by overriding ANTHROPIC_BASE_URL to attacker-controlled servers. A single malicious commit could compromise any developer.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", + "LLM10", + "ASI02", + "ASI03", + "ASI04", + "ASI05", + "ASI09" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0012", + "AML.T0048.003", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "rce", + "affected": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", + "severity": "Critical", + "references": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h42x-xx2q-6v6g", + "title": "Check Point Research", + "url": "https://research.checkpoint.com/2026/rce-and-api-token-exfiltration-through-claude-code-project-files-cve-2025-59536/", "type": "advisory" }, { - "title": "GHSA-5cph-wvm9-45gj", - "url": "https://github.com/advisories/GHSA-5cph-wvm9-45gj", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-21852", "type": "advisory" }, { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5cph-wvm9-45gj", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5cph-wvm9-45gj", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-jh7p-qr78-84p7", + "type": "vendor" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5cph-wvm9-45gj", + "title": "GHSA-jh7p-qr78-84p7", + "url": "https://github.com/advisories/GHSA-jh7p-qr78-84p7", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8181", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59536", "type": "advisory" }, { - "title": "vulnreport@tenable.com", - "url": "https://tenable.com/security/research/tra-2024-33", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-4fgq-fpq9-mr3g", + "type": "vendor" }, { - "title": "GHSA-2q4w-x8h2-2fvh", - "url": "https://github.com/advisories/GHSA-2q4w-x8h2-2fvh", + "title": "GHSA-4fgq-fpq9-mr3g", + "url": "https://github.com/advisories/GHSA-4fgq-fpq9-mr3g", "type": "advisory" }, { - "title": "https://tenable.com/security/research/tra-2024-22-0", - "url": "https://tenable.com/security/research/tra-2024-22-0", + "title": "OECD (2026), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2026-02-25-f5cf (accessed on 2026-05-11)", + "url": "https://oecd.ai/en/incidents/2026-02-25-f5cf", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2q4w-x8h2-2fvh", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8182", - "type": "advisory" + "title": "Claude's collaboration tools allowed remote code execution", + "url": "https://www.theregister.com/2026/02/26/clade_code_cves/", + "type": "news" }, { - "title": "vulnreport@tenable.com", - "url": "https://tenable.com/security/research/tra-2024-34", - "type": "advisory" + "title": "Flaws in Claude Code Put Developers' Machines at Risk", + "url": "https://www.darkreading.com/application-security/flaws-claude-code-developer-machines-risk", + "type": "news" }, { - "title": "GHSA-48x4-mx8f-gr4h", - "url": "https://github.com/advisories/GHSA-48x4-mx8f-gr4h", - "type": "advisory" + "title": "Check Point Researchers Expose Critical Claude Code Flaws - IT Security News", + "url": "https://www.itsecuritynews.info/check-point-researchers-expose-critical-claude-code-flaws/", + "type": "news" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-48x4-mx8f-gr4h", - "type": "advisory" + "title": "Check Point Research Reveals Critical Claude Code Vulnerabilities Enabling Remote Code Execution and API Key Theft - InfotechLead", + "url": "https://infotechlead.com/security/check-point-research-reveals-critical-claude-code-vulnerabilities-enabling-remote-code-execution-and-api-key-theft-93914", + "type": "news" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36420", - "type": "advisory" - }, + "title": "Security experts flag multiple issues in Claude Code, warning, 'As AI integration deepens, security controls must evolve to match the new trust boundaries'", + "url": "https://www.techradar.com/pro/security/security-experts-flag-multiple-issues-in-claude-code-warning-as-ai-integration-deepens-security-controls-must-evolve-to-match-the-new-trust-boundaries", + "type": "news" + } + ], + "tags": [ + "anthropic", + "anthropic-ai-claude-code", + "claude-code", + "cve", + "cve-2025-59536", + "cve-2026-21852", + "ghsa", + "hook-rce", + "nvd", + "oecd-aim" + ] + }, + { + "id": "INC-00827", + "title": "Claude Cowork File Exfiltration", + "date": "2026-01", + "year": 2026, + "category": "real-world", + "description": "Claude Cowork could be tricked via indirect prompt injection into uploading user files to an attacker's Anthropic account using curl to the whitelisted Anthropic Files API. Reused the same exfiltration vector previously reported for Claude Code. Anthropic shipped Cowork with this known vulnerability.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", + "LLM09", + "ASI01", + "ASI02", + "ASI06", + "ASI09" + ], + "mitre_atlas": [ + "AML.T0048.001", + "AML.T0048.003", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057", + "AML.T0066", + "AML.T0070" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.6", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "attack_vector": "prompt-injection", + "affected": "Claude Cowork File Exfiltration", + "severity": "High", + "references": [ { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/e93ce07851cdc0fcde12374f301b8070f2043687/packages/server/src/index.ts#L982", - "type": "reference" - }, + "title": "PromptArmor", + "url": "https://www.promptarmor.com/resources/claude-cowork-exfiltrates-files", + "type": "research" + } + ], + "tags": [ + "claude-cowork", + "exfiltration", + "prompt-injection", + "rag" + ] + }, + { + "id": "INC-00833", + "title": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "Three chained vulnerabilities in claude.ai: invisible prompt injection via URL parameters, data exfiltration via Anthropic Files API using attacker-controlled API key, and an open redirect on claude.com. Combined, these enabled silent theft of conversation history from default claude.ai sessions.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM05", + "LLM08", + "ASI01", + "ASI06", + "ASI09" + ], + "mitre_atlas": [ + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0024", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0056", + "AML.T0057", + "AML.T0059", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-3.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.6", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "attack_vector": "prompt-injection", + "affected": "Claudy Day", + "severity": "High", + "references": [ { - "title": "security-advisories@github.com", - "url": "https://securitylab.github.com/advisories/GHSL-2023-232_GHSL-2023-234_Flowise/", - "type": "exploit" - }, + "title": "Oasis Security", + "url": "https://www.oasis.security/blog/claude-ai-prompt-injection-data-exfiltration-vulnerability", + "type": "research" + } + ], + "tags": [ + "claude", + "claudy-day", + "exfiltration", + "prompt-injection" + ] + }, + { + "id": "INC-00834", + "title": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "A prompt injection in Cline's Claude-powered GitHub issue triage bot allowed code execution in CI, poisoning of GitHub Actions cache, and theft of npm publish tokens. Attacker published malicious Cline CLI v2.3.0 to npm, silently installing malware on ~4,000 developer machines during an 8-hour window.", + "owasp_entries": [ + "LLM01", + "LLM04", + "LLM05", + "LLM10", + "ASI01", + "ASI04", + "ASI05", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0048", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0059", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0011" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MANAGE-3.2", + "MAP-2.1", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "GHSA-h997-3fxj-p5j8", - "url": "https://github.com/advisories/GHSA-h997-3fxj-p5j8", - "type": "advisory" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "Prompt injection via GitHub issue → CI/CD compromise" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h997-3fxj-p5j8", - "type": "advisory" - }, + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "4,000 developer machines infected via poisoned npm package" + } + ], + "attack_vector": "prompt-injection", + "affected": "Cline AI coding agent — 4,000 developer machines; npm ecosystem", + "impact": "Supply chain compromise; mass developer infection; CI/CD pipeline weaponization", + "severity": "Critical", + "mitigations": [ + "Isolate AI triage bots from CI/CD execution", + "Package integrity monitoring", + "npm publish token protection (2FA, short-lived)" + ], + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36421", - "type": "advisory" - }, + "title": "Clinejection: CI/CD supply chain attack", + "url": "https://adnanthekhan.com/posts/clinejection/", + "type": "research" + } + ], + "tags": [ + "ci-cd", + "mass-infection", + "npm", + "prompt-injection", + "supply-chain" + ] + }, + { + "id": "INC-00860", + "title": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "Four CVEs: sandbox escape via CodeInterpreter Docker fallback, SSRF in RAG search tools, arbitrary local file read in JSON loader. Chained via prompt injection to escape sandbox and execute code on host. Separately, a leaked internal GitHub token (CVSS 9.2) granted full access to CrewAI's private repos. No complete patch available.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", + "LLM09", + "LLM10", + "ASI02", + "ASI03", + "ASI04", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0011", + "AML.T0012", + "AML.T0024", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0060", + "AML.T0066", + "AML.T0070" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "ssrf", + "affected": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "severity": "Critical", + "references": [ { - "title": "GHSA-66f2-xxgm-f6xp", - "url": "https://github.com/advisories/GHSA-66f2-xxgm-f6xp", - "type": "advisory" + "title": "CERT/CC VU#221883", + "url": "https://kb.cert.org/vuls/id/221883", + "type": "research" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-66f2-xxgm-f6xp", - "type": "advisory" + "title": "Noma Security", + "url": "https://noma.security/blog/uncrew-the-risk-behind-a-leaked-internal-github-token-at-crewai/", + "type": "research" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36422", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2275", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%401.4.0/packages/server/src/index.ts#L312-L312", + "title": "cret@cert.org", + "url": "https://docs.crewai.com/en/tools/ai-ml/codeinterpretertool", "type": "reference" }, - { - "title": "GHSA-2jch-qc96-9f5g", - "url": "https://github.com/advisories/GHSA-2jch-qc96-9f5g", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2jch-qc96-9f5g", - "type": "advisory" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36423", - "type": "advisory" - }, - { - "title": "GHSA-fccx-2pwj-hrq7", - "url": "https://github.com/advisories/GHSA-fccx-2pwj-hrq7", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fccx-2pwj-hrq7", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2285", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37145", - "type": "advisory" - }, - { - "title": "GHSA-858c-qxvx-rg9v", - "url": "https://github.com/advisories/GHSA-858c-qxvx-rg9v", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-858c-qxvx-rg9v", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2286", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37146", - "type": "advisory" - }, - { - "title": "GHSA-wxm4-9f8p-gggv", - "url": "https://github.com/advisories/GHSA-wxm4-9f8p-gggv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wxm4-9f8p-gggv", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2287", "type": "advisory" } ], "tags": [ - "actively-exploited", - "akoskm-create-mcp-server-stdio", - "anthropic", - "auth-bypass", - "code-injection", - "command-injection", + "crewai", "cve", - "cvss-10", - "dify", - "exploited-in-the-wild", - "flowise", - "flowise-components", - "flowise-ui", - "ghsa", - "github.com-tencent-weknora", - "info-disclosure", - "librechat", - "mcp", - "npm", "nvd", - "osv", - "path-traversal", - "prompt-injection", "rce", - "sandbox-escape", - "sql-injection", - "ssrf", - "stdio", - "systemic-vuln", - "upsonic", - "weknora", - "xss" + "ssrf" ] }, { - "id": "INC-01063", - "title": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", - "date": "2026-01", + "id": "INC-00904", + "title": "Docker MCP Server OS Command Injection (CVE-2026-5741)", + "date": "2026-04", "year": 2026, "category": "real-world", - "description": "CVSS 8.8. Insufficient policy enforcement in Chrome's WebView tag allowed malicious browser extensions with only basic permissions to hijack the Gemini Live panel. Access camera/microphone without consent, take screenshots of any website, access local files. Discovered by Palo Alto Unit42. Patched in Chrome 143.0.7499.192.", + "description": "OS command injection in suvarchal docker-mcp-server (up to 0.1.0) via `stop_container`/`remove_container`/`pull_image` functions. Public exploit available. Unpatched (vendor unresponsive). CVSS 4.0 score: 6.9.", "owasp_entries": [ - "LLM05", - "LLM06", + "LLM10", "ASI02", - "ASI03" + "ASI05" ], "mitre_atlas": [ - "AML.T0012", - "AML.T0048", + "AML.T0011", "AML.T0049", "AML.T0050", + "AML.T0051", + "AML.T0051.000", "AML.T0053", - "AML.T0055", "AML.T0060" ], "mitre_atlas_tactics": [ "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" + "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.4", "GOVERN-3.2", "MANAGE-2.3", - "MANAGE-2.4", + "MAP-2.1", "MAP-3.5", "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "rce", - "affected": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", - "severity": "High", + "attack_vector": "prompt-injection", + "affected": "Docker MCP Server OS Command Injection (CVE-2026-5741)", + "severity": "Medium", "references": [ { - "title": "Palo Alto Unit42", - "url": "https://unit42.paloaltonetworks.com/gemini-live-in-chrome-hijacking/", + "title": "VulDB", + "url": "https://vuldb.com/vuln/355748", "type": "research" + }, + { + "title": "RedPacket Security", + "url": "https://www.redpacketsecurity.com/cve-alert-cve-2026-5741-suvarchal-docker-mcp-server/", + "type": "advisory" } ] }, { - "id": "INC-01064", - "title": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", - "date": "2026-01", + "id": "INC-00924", + "title": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", + "date": "2026-01-15", "year": 2026, "category": "research-demonstrated", - "description": "Indirect prompt injection via shared Google Docs, calendar invites, or emails causes Gemini Enterprise to search for sensitive terms and embed results in an external image URL. A single poisoned document could exfiltrate years of email, calendar, and document data with zero clicks, zero warnings, and zero DLP alerts.", + "description": "Critical zero-click exploit (CVE-2025-32711) allowing a mere email to trigger Microsoft Copilot leaking confidential data — emails, files, chat logs — outside intended scope. No user interaction required.", "owasp_entries": [ "LLM01", "LLM02", + "LLM03", "LLM04", - "LLM06", + "LLM05", + "LLM10", "ASI01", "ASI02", + "ASI04", + "ASI05", "ASI06", + "ASI08", "ASI09", - "DSGAI01", - "DSGAI19" + "DSGAI01" ], "mitre_atlas": [ + "AML.T0010", "AML.T0018", "AML.T0019", "AML.T0020", - "AML.T0048.001", + "AML.T0024", + "AML.T0025", + "AML.T0048", "AML.T0048.003", "AML.T0050", "AML.T0051", "AML.T0051.000", "AML.T0051.001", "AML.T0053", + "AML.T0054", "AML.T0057", "AML.T0059", "AML.T0066" @@ -15190,186 +1267,225 @@ "mitre_atlas_tactics": [ "AML.TA0001", "AML.TA0003", + "AML.TA0004", "AML.TA0005", "AML.TA0006", + "AML.TA0007", "AML.TA0010", "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-1.1", + "GOVERN-1.4", "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.1", + "MANAGE-2.2", "MANAGE-2.3", "MANAGE-2.4", "MANAGE-3.2", + "MANAGE-4.1", "MAP-2.1", "MAP-3.5", "MAP-4.2", "MEASURE-2.10", "MEASURE-2.6", - "MEASURE-2.7", - "MEASURE-2.8" + "MEASURE-2.7" ], "maestro_layers": [ { "layer": "L3", "label": "Agent Frameworks", "role": "origin", - "notes": "Gemini processes attacker-controlled document content" + "notes": "Copilot processes email content containing hidden prompt injection" }, { "layer": "L2", "label": "Data Operations", "role": "impact", - "notes": "Years of email, calendar, and documents exfiltrated" + "notes": "Emails, files, and chat logs exfiltrated" } ], - "attack_vector": "indirect-prompt-injection", - "affected": "Gemini Enterprise — Google Workspace email, calendar, documents", - "impact": "Silent zero-click exfiltration of enterprise data; invisible to security teams and DLP", + "attack_vector": "prompt-injection", + "affected": "Microsoft Copilot for M365 — enterprise email and file data", + "impact": "Zero-click data exfiltration; enterprise data breach; no user awareness", "severity": "Critical", "mitigations": [ - "Block external image loading in AI-generated content", - "Content sanitization for shared documents", - "DLP monitoring for AI-mediated data access patterns" + "Anomaly detection for bulk data access patterns", + "Data loss prevention for AI-generated outputs", + "Email content sanitization before AI processing" ], "references": [ { - "title": "GeminiJack: Zero-click Gemini vulnerability", - "url": "https://noma.security/blog/geminijack-google-gemini-zero-click-vulnerability/", + "title": "EchoLeak: Zero-click Copilot vulnerability", + "url": "https://www.aim.security/post/echoleak-blogpost", "type": "research" }, { - "title": "Indirect prompt injections & Google's layered defense - Google Workspace", - "url": "https://knowledge.workspace.google.com/admin/security/indirect-prompt-injections-and-googles-layered-defense-strategy-for-gemini", - "type": "vendor" + "title": "Microsoft", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-32711", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32711", + "type": "advisory" + }, + { + "title": "Aim Security — EchoLeak disclosure", + "url": "https://www.aim.security/lp/aim-labs-echoleak-blogpost", + "type": "research" + }, + { + "title": "OWASP GenAI Exploit Round-up Q1 2026", + "url": "https://genai.owasp.org/2026/04/14/owasp-genai-exploit-round-up-report-q1-2026/", + "type": "report" + }, + { + "title": "EchoLeak paper", + "url": "https://arxiv.org/abs/2509.10540", + "type": "paper" + }, + { + "title": "EchoLeak in Microsoft Copilot - Varonis", + "url": "https://www.varonis.com/blog/echoleak", + "type": "research" + }, + { + "title": "Inside CVE-2025-32711 (EchoLeak) - HackTheBox", + "url": "https://www.hackthebox.com/blog/cve-2025-32711-echoleak-copilot-vulnerability", + "type": "research" + }, + { + "title": "af854a3a-2127-422b-91ae-364da2661108", + "url": "https://www.aim.security/lp/aim-labs-echoleak-m365", + "type": "reference" } ], "tags": [ + "AI-offensive", + "ASI08", + "ASI09", + "ChatGPT", + "Claude", + "Copilot-Personal", + "Copilot-Studio", + "EchoLeak", + "M365-Copilot", + "Microsoft", + "Varonis", + "agentic", + "cascading-failure", + "command-injection", + "copilot", + "cve", + "cve-2025-32711", "data-exfiltration", + "echoleak", + "email", "enterprise", - "gemini", - "geminijack", - "google-workspace", "indirect-prompt-injection", - "vertex-ai", + "nvd", + "supply-chain", + "trust-exploitation", "zero-click" ] }, { - "id": "INC-01092", - "title": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", + "id": "INC-00928", + "title": "Eight Attack Vectors in AWS Bedrock Agents", "date": "2026-03", "year": 2026, "category": "real-world", - "description": "Supply chain campaign targeting developers via 72 malicious OpenVSX extensions and 151+ GitHub repositories. 9 million installs. 433 compromised components. Used invisible Unicode characters to encode payloads. Targeted crypto wallets, credentials, SSH keys. Extensions mimicked AI coding assistant tools.", + "description": "Unit42 identified eight validated attack vectors spanning log manipulation, knowledge base compromise, agent hijacking, flow injection, guardrail degradation, and prompt poisoning. An attacker with `bedrock:UpdateAgent` or `bedrock:CreateAgent` permissions can rewrite an agent's base prompt, forcing it to leak internal instructions and tool schemas.", "owasp_entries": [ - "LLM03", + "LLM01", + "LLM02", "LLM05", - "ASI03", - "ASI04", - "ASI05", - "DSGAI08" + "LLM09", + "ASI01", + "ASI02", + "ASI06" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0049", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0024", "AML.T0050", - "AML.T0055", - "AML.T0060" + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057", + "AML.T0059", + "AML.T0066", + "AML.T0070" ], "mitre_atlas_tactics": [ + "AML.TA0001", "AML.TA0003", - "AML.TA0004", "AML.TA0005", - "AML.TA0012", - "AML.TA0013" + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", + "GOVERN-1.1", + "GOVERN-3.2", "MANAGE-2.3", - "MAP-4.1", - "MEASURE-2.5", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.10", "MEASURE-2.7" ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "Malicious extensions published to VSCode/OpenVSX marketplaces" - }, - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "Credential theft, crypto wallet compromise, SSH key exfiltration" - } - ], - "attack_vector": "supply-chain", - "affected": "OpenVSX, GitHub, npm — 9 million installs across 433 components", - "impact": "Mass credential theft; crypto wallet compromise; developer environment compromise at scale", - "severity": "Critical", - "mitigations": [ - "Code signing for marketplace extensions", - "Extension provenance verification", - "Runtime monitoring for extension network activity" - ], + "attack_vector": "prompt-injection", + "affected": "Eight Attack Vectors in AWS Bedrock Agents", + "severity": "Medium", "references": [ { - "title": "GlassWorm: Unicode attack across GitHub, npm, VSCode", - "url": "https://www.aikido.dev/blog/glassworm-returns-unicode-attack-github-npm-vscode", + "title": "Palo Alto Unit42", + "url": "https://unit42.paloaltonetworks.com/amazon-bedrock-multiagent-applications/", "type": "research" } - ], - "tags": [ - "credential-theft", - "extensions", - "supply-chain", - "unicode", - "vscode" ] }, { - "id": "INC-01291", - "title": "LangChain LLMMathChain prompt-injection RCE via Python exec", - "date": "2023-04", - "year": 2023, - "category": "real-world", - "description": "In LangChain through 0.0.131, the LLMMathChain chain allows prompt injection attacks that can execute arbitrary code via the Python exec method. The chain uses insecure exec/eval on LLM-generated math expressions. Disclosed by the NVIDIA AI Red Team; fixed in 0.0.142.", + "id": "INC-01015", + "title": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", + "date": "2025-10", + "year": 2025, + "category": "vulnerability-disclosure", + "description": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to insecure use of integrated modules (Puppeteer and Playwright) within the nodevm execution environment. An authenticated attacker able to create or run a tool that leverages Puppeteer/Playwright can specify attacker-controlled browser binary paths and parameters. When the tool executes, the attacker-controlled executable/parameters are run on the host and circumvent the intended nodevm sandbox restrictions, resulting in execution of arbitrary code in the context of the host. This vulnerability was incorrectly assigned as a duplicate CVE-2025-26319 by the developers and should be considered distinct from that identifier.", "owasp_entries": [ "LLM01", "LLM02", "LLM03", + "LLM04", "LLM05", - "LLM06", "LLM10", "ASI01", "ASI02", "ASI03", "ASI04", "ASI05", - "ASI08" + "ASI07", + "DSGAI08" ], "mitre_atlas": [ "AML.T0010", - "AML.T0010.001", "AML.T0011", "AML.T0012", - "AML.T0029", - "AML.T0034", - "AML.T0048", + "AML.T0020", + "AML.T0024", "AML.T0049", "AML.T0050", "AML.T0051", "AML.T0051.000", - "AML.T0051.001", "AML.T0053", "AML.T0057", "AML.T0060" @@ -15378,2441 +1494,2467 @@ "AML.TA0003", "AML.TA0004", "AML.TA0005", + "AML.TA0006", "AML.TA0010", - "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ + "GOVERN-1.1", "GOVERN-1.4", "GOVERN-3.2", "GOVERN-6.1", - "MANAGE-2.1", "MANAGE-2.3", - "MANAGE-4.1", + "MANAGE-3.1", "MAP-2.1", "MAP-3.5", + "MAP-4.1", + "MAP-4.2", "MEASURE-2.10", - "MEASURE-2.4", "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "langchain-ai/langchain <= 0.0.131 (fixed 0.0.142)", - "impact": "Remote code execution on agent host; environment variable exfiltration; reverse shell establishment; full host compromise", + "MEASURE-2.7" + ], + "attack_vector": "sandbox-escape", + "affected": "flowiseai/flowise", + "impact": "Full system takeover; actively exploited in the wild; CVSS 10.0", "severity": "Critical", "mitigations": [ - "Disable code execution tools in production unless strictly required", - "Input validation before any tool invocation — do not pass unvalidated content to execution tools", - "Least-privilege principle — agents should not have host execution capabilities", - "Run code execution in sandboxed environments with no network access (containers, gVisor)", - "Run eval profiles: evals/garak/ASI05_code_execution.yaml — threshold 0%" + "Input sanitization for MCP configurations", + "Reduce publicly exposed AI framework instances", + "Sandbox execution for user-provided configurations" ], "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29374", - "type": "advisory" - }, - { - "title": "GHSA-fprp-p869-w6q2", - "url": "https://github.com/advisories/GHSA-fprp-p869-w6q2", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34267", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/1026", + "title": "https://flowiseai.com", + "url": "https://flowiseai.com", "type": "reference" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/814", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/pull/5231", + "type": "reference" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/pull/1119", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5w3r-f6gm-c25w", + "type": "vendor" }, { - "title": "cve@mitre.org", - "url": "https://twitter.com/rharang/status/1641899743608463365/photo/1", - "type": "exploit" + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-auth-command-execution-and-sandbox-bypass-via-puppeteer-and-playwright-packages", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fprp-p869-w6q2", + "title": "GHSA-r4hh-pcgx-j5r2", + "url": "https://github.com/advisories/GHSA-r4hh-pcgx-j5r2", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain", - "url": "https://github.com/langchain-ai/langchain", - "type": "reference" + "title": "GHSA-5w3r-f6gm-c25w", + "url": "https://github.com/advisories/GHSA-5w3r-f6gm-c25w", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-18", + "url": "https://osv.dev/vulnerability/GHSA-r4hh-pcgx-j5r2", "type": "advisory" }, { - "title": "CVE-2023-36258 — LangChain Python execution vulnerability", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36258", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31621", "type": "advisory" }, { - "title": "Security Advisory: LlamaIndex code execution via prompt injection", - "url": "https://github.com/run-llama/llama_index/security/advisories", + "title": "cve@mitre.org", + "url": "https://www.exploit-db.com/exploits/52001", + "type": "exploit" + }, + { + "title": "GHSA-6wp6-22x5-rr3w", + "url": "https://github.com/advisories/GHSA-6wp6-22x5-rr3w", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/5872", - "type": "exploit" + "title": "https://github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426", + "url": "https://github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426", + "type": "reference" }, { - "title": "GHSA-2qmj-7962-cjq8", - "url": "https://github.com/advisories/GHSA-2qmj-7962-cjq8", + "title": "https://github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.ts#L143-L147", + "url": "https://github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.ts#L143-L147", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6wp6-22x5-rr3w", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-98.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-98.yaml", + "title": "https://github.com/FlowiseAI/Flowise", + "url": "https://github.com/FlowiseAI/Flowise", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/issues/5872", - "url": "https://github.com/langchain-ai/langchain/issues/5872", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58351", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5cph-wvm9-45gj", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/pull/6003", - "url": "https://github.com/langchain-ai/langchain/pull/6003", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-remote-code-execution-via-overrideconfig-parameter", "type": "reference" }, + { + "title": "GHSA-5cph-wvm9-45gj", + "url": "https://github.com/advisories/GHSA-5cph-wvm9-45gj", + "type": "advisory" + }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2qmj-7962-cjq8", + "url": "https://osv.dev/vulnerability/GHSA-5cph-wvm9-45gj", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/pull/7870", - "url": "https://github.com/langchain-ai/langchain/pull/7870", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71338", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-8vvx-qvq9-5948", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-arbitrary-file-write-to-remote-code-execution-via-document-store-api", + "type": "advisory" + }, + { + "title": "GHSA-8vvx-qvq9-5948", + "url": "https://github.com/advisories/GHSA-8vvx-qvq9-5948", + "type": "advisory" + }, + { + "title": "https://github.com/FlowiseAI/Flowise/commit/c2b830f279e454e8b758da441016b2234f220ac7", + "url": "https://github.com/FlowiseAI/Flowise/commit/c2b830f279e454e8b758da441016b2234f220ac7", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-98", + "url": "https://osv.dev/vulnerability/GHSA-8vvx-qvq9-5948", "type": "advisory" }, + { + "title": "FlowiseAI", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-h42x-xx2q-6v6g", + "type": "research" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46229", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-26319", "type": "advisory" }, { - "title": "Palo Alto Unit42", - "url": "https://unit42.paloaltonetworks.com/langchain-vulnerabilities/", - "type": "research" + "title": "Dor Attias (Medium)", + "url": "https://medium.com/@attias.dor/the-burn-notice-part-2-5-5-flowise-pre-auth-arbitrary-file-upload-cve-2025-26319-0d4194a34183", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-44467", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71333", "type": "advisory" }, { - "title": "GHSA-gjjr-63x4-v8cq", - "url": "https://github.com/advisories/GHSA-gjjr-63x4-v8cq", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-arbitrary-file-upload-via-unauthenticated-api-v1-attachments-endpoint", "type": "advisory" }, { "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/commit/4c97a10bd0d9385cfee234a63b5bd826a295e483", + "url": "https://github.com/dorattias/CVE-2025-26319", "type": "patch" }, { - "title": "https://github.com/langchain-ai/langchain/pull/11233", - "url": "https://github.com/langchain-ai/langchain/pull/11233", - "type": "reference" + "title": "GHSA-69jq-qr7w-j7qh", + "url": "https://github.com/advisories/GHSA-69jq-qr7w-j7qh", + "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2023-194.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2023-194.yaml", + "title": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%402.2.6/packages/server/src/index.ts#L165-L190", + "url": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%402.2.6/packages/server/src/index.ts#L165-L190", "type": "reference" }, { - "title": "https://pypi.org/project/langchain-experimental/0.0.14", - "url": "https://pypi.org/project/langchain-experimental/0.0.14", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-69jq-qr7w-j7qh", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gjjr-63x4-v8cq", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71324", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-99pg-hqvx-r4gf", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-arbitrary-file-read-via-chatid-parameter", + "type": "advisory" + }, + { + "title": "GHSA-99pg-hqvx-r4gf", + "url": "https://github.com/advisories/GHSA-99pg-hqvx-r4gf", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-194", + "url": "https://osv.dev/vulnerability/GHSA-99pg-hqvx-r4gf", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-28088", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71334", "type": "advisory" }, { - "title": "GHSA-h59x-p739-982c", - "url": "https://github.com/advisories/GHSA-h59x-p739-982c", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/commit/8bd3de41533de78e4ef6c980e5704a1f9cb7ae6f", + "type": "patch" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-q67q-549q-p849", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-arbitrary-file-access-via-missing-chat-flow-id-validation", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/PinkDraconian/PoC-Langchain-RCE/blob/main/README.md", - "type": "exploit" + "title": "GHSA-q67q-549q-p849", + "url": "https://github.com/advisories/GHSA-q67q-549q-p849", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/blob/f96dd57501131840b713ed7c2e86cbf1ddc2761f/libs/core/langchain_core/utils/loading.py", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-q67q-549q-p849", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/pull/18600", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71336", + "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/e1924b3e93d513ca950c72f8e80e1c133749fba5", - "url": "https://github.com/langchain-ai/langchain/commit/e1924b3e93d513ca950c72f8e80e1c133749fba5", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6933-jpx5-q87q", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-unsandboxed-remote-code-execution-via-custom-mcp", + "type": "advisory" + }, + { + "title": "GHSA-6933-jpx5-q87q", + "url": "https://github.com/advisories/GHSA-6933-jpx5-q87q", + "type": "advisory" + }, + { + "title": "https://github.com/FlowiseAI/Flowise/pull/5201", + "url": "https://github.com/FlowiseAI/Flowise/pull/5201", "type": "reference" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-43.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-43.yaml", + "title": "https://github.com/FlowiseAI/Flowise/commit/ac7cf30e019cde54905bf09b5d3fe1c6ba42f9b9", + "url": "https://github.com/FlowiseAI/Flowise/commit/ac7cf30e019cde54905bf09b5d3fe1c6ba42f9b9", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h59x-p739-982c", - "type": "advisory" + "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6", + "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-43", + "url": "https://osv.dev/vulnerability/GHSA-6933-jpx5-q87q", "type": "advisory" }, + { + "title": "Flowise AI agent builder under active exploitation", + "url": "https://thehackernews.com/2026/04/flowise-ai-agent-builder-under-active.html", + "type": "news" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2965", + "url": "https://www.bleepingcomputer.com/news/security/max-severity-flowise-rce-vulnerability-now-exploited-in-attacks/", + "type": "research" + }, + { + "title": "GHSA-3gcm-f6qx-ff7p", + "url": "https://github.com/advisories/GHSA-3gcm-f6qx-ff7p", "type": "advisory" }, { - "title": "GHSA-3hjh-jh2h-vrg6", - "url": "https://github.com/advisories/GHSA-3hjh-jh2h-vrg6", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59528", "type": "advisory" }, { - "title": "https://huntr.com/bounties/90b0776d-9fa6-4841-aac4-09fde5918cae", - "url": "https://huntr.com/bounties/90b0776d-9fa6-4841-aac4-09fde5918cae", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/nodes/tools/MCP/CustomMCP/CustomMCP.ts#L132", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/pull/22903", - "url": "https://github.com/langchain-ai/langchain/pull/22903", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/nodes/index.ts#L57-L78", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/commit/9a877c7adbd06f90a2518152f65b562bd90487cc", - "url": "https://github.com/langchain-ai/langchain/commit/9a877c7adbd06f90a2518152f65b562bd90487cc", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/routes/node-load-methods/index.ts#L5", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/commit/73c42306745b0831aa6fe7fe4eeb70d2c2d87a82", - "url": "https://github.com/langchain-ai/langchain/commit/73c42306745b0831aa6fe7fe4eeb70d2c2d87a82", + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3hjh-jh2h-vrg6", + "url": "https://osv.dev/vulnerability/GHSA-3gcm-f6qx-ff7p", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-118", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71331", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3095", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4fr9-3x69-36wv", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-cross-site-scripting-in-chat-messages-and-agent-workflows", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/e62d4895-2901-405b-9559-38276b6a5273", - "type": "exploit" + "title": "GHSA-4fr9-3x69-36wv", + "url": "https://github.com/advisories/GHSA-4fr9-3x69-36wv", + "type": "advisory" }, { - "title": "GHSA-q25c-c977-4cmh", - "url": "https://github.com/advisories/GHSA-q25c-c977-4cmh", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-4fr9-3x69-36wv", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/pull/24451", - "url": "https://github.com/langchain-ai/langchain/pull/24451", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61913", + "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/604dfe2d99246b0c09f047c604f0c63eafba31e7", - "url": "https://github.com/langchain-ai/langchain/commit/604dfe2d99246b0c09f047c604f0c63eafba31e7", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/commit/1fb12cd93143592a18995f63b781d25b354d48a3", + "type": "patch" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.8", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/releases/tag/langchain-community%3D%3D0.2.9", - "url": "https://github.com/langchain-ai/langchain/releases/tag/langchain-community%3D%3D0.2.9", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-j44m-5v8f-gc9c", + "type": "vendor" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jv9m-vf54-chjj", + "type": "vendor" + }, + { + "title": "GHSA-jv9m-vf54-chjj", + "url": "https://github.com/advisories/GHSA-jv9m-vf54-chjj", + "type": "advisory" + }, + { + "title": "https://github.com/FlowiseAI/Flowise/pull/5275", + "url": "https://github.com/FlowiseAI/Flowise/pull/5275", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-q25c-c977-4cmh", + "url": "https://osv.dev/vulnerability/GHSA-jv9m-vf54-chjj", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21513", + "title": "GHSA-j44m-5v8f-gc9c", + "url": "https://github.com/advisories/GHSA-j44m-5v8f-gc9c", "type": "advisory" }, { - "title": "Snyk", - "url": "https://security.snyk.io/vuln/SNYK-PYTHON-LANGCHAINEXPERIMENTAL-7278171", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-j44m-5v8f-gc9c", "type": "advisory" }, { - "title": "report@snyk.io", - "url": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py%23L81", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71335", + "type": "advisory" }, { - "title": "report@snyk.io", - "url": "https://github.com/langchain-ai/langchain/commit/7b13292e3544b2f5f2bfb8a27a062ea2b0c34561", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x7rp-qj2h-ghgw", + "type": "vendor" }, { - "title": "GHSA-cgcg-p68q-3w7v", - "url": "https://github.com/advisories/GHSA-cgcg-p68q-3w7v", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-session-invalidation-failure-after-password-change", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py#L81", - "url": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py#L81", - "type": "reference" + "title": "GHSA-x7rp-qj2h-ghgw", + "url": "https://github.com/advisories/GHSA-x7rp-qj2h-ghgw", + "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-62.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-62.yaml", + "title": "https://github.com/FlowiseAI/Flowise/pull/5294", + "url": "https://github.com/FlowiseAI/Flowise/pull/5294", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cgcg-p68q-3w7v", + "url": "https://osv.dev/vulnerability/GHSA-x7rp-qj2h-ghgw", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-62", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71337", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46946", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x39m-3393-3qp4", + "type": "exploit" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-unverified-email-change-via-account-profile-endpoint", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://cwe.mitre.org/data/definitions/95.html", - "type": "reference" + "title": "GHSA-x39m-3393-3qp4", + "url": "https://github.com/advisories/GHSA-x39m-3393-3qp4", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://docs.sympy.org/latest/modules/codegen.html", + "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.10", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.10", "type": "reference" }, { - "title": "cve@mitre.org", - "url": "https://gist.github.com/12end/68c0c58d2564ef4141bccd4651480820#file-cve-2024-46946-txt", - "type": "exploit" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71328", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/releases/tag/langchain-experimental%3D%3D0.3.0", - "type": "reference" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fjh6-8679-9pch", + "type": "vendor" }, { - "title": "GHSA-p2qj-r53j-h3xj", - "url": "https://github.com/advisories/GHSA-p2qj-r53j-h3xj", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-unverified-password-change-via-account-settings", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-p2qj-r53j-h3xj", + "title": "GHSA-fjh6-8679-9pch", + "url": "https://github.com/advisories/GHSA-fjh6-8679-9pch", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8309", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71327", "type": "advisory" }, { - "title": "GHSA-45pg-36p6-83v9", - "url": "https://github.com/advisories/GHSA-45pg-36p6-83v9", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v5w9-prxf-w882", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-authentication-bypass-via-unprotected-registration-endpoint", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://github.com/langchain-ai/langchain/commit/c2a3021bb0c5f54649d380b42a0684ca5778c255", - "type": "patch" + "title": "GHSA-v5w9-prxf-w882", + "url": "https://github.com/advisories/GHSA-v5w9-prxf-w882", + "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/8f4ad910-7fdc-4089-8f0a-b5df5f32e7c5", - "type": "exploit" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-v5w9-prxf-w882", + "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-115.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-115.yaml", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56267", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jc5m-wrp2-qq38", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/commit/64c317eba05fbac0c6a6fc5aa192bc0d7130972e", - "url": "https://github.com/langchain-ai/langchain/commit/64c317eba05fbac0c6a6fc5aa192bc0d7130972e", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-pii-disclosure-via-unauthenticated-forgot-password-endpoint", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-45pg-36p6-83v9", + "title": "GHSA-jc5m-wrp2-qq38", + "url": "https://github.com/advisories/GHSA-jc5m-wrp2-qq38", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-115", + "url": "https://osv.dev/vulnerability/GHSA-jc5m-wrp2-qq38", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58340", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56278", "type": "advisory" }, { "title": "disclosure@vulncheck.com", - "url": "https://huntr.com/bounties/e7ece02c-d4bb-4166-8e08-6baf4f8845bb", - "type": "exploit" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2qqc-p94c-hxwh", + "type": "reference" }, { "title": "disclosure@vulncheck.com", - "url": "https://www.langchain.com/", + "url": "https://www.vulncheck.com/advisories/flowise-session-hijacking-via-weak-default-express-session-secret", "type": "reference" }, { - "title": "disclosure@vulncheck.com", - "url": "https://www.vulncheck.com/advisories/langchain-mrkloutputparser-redos", + "title": "GHSA-2qqc-p94c-hxwh", + "url": "https://github.com/advisories/GHSA-2qqc-p94c-hxwh", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-2qqc-p94c-hxwh", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5998", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56275", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/fa3a2753-57c3-4e08-a176-d7a3ffda28fe", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9hrv-gvrv-6gf2", "type": "exploit" }, { - "title": "GHSA-f2jm-rw3h-6phg", - "url": "https://github.com/advisories/GHSA-f2jm-rw3h-6phg", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-server-side-request-forgery-via-execute-flow-base-url", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/77209f315efd13442ec51c67719ba37dfaa44511", - "url": "https://github.com/langchain-ai/langchain/commit/77209f315efd13442ec51c67719ba37dfaa44511", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f2jm-rw3h-6phg", + "title": "GHSA-9hrv-gvrv-6gf2", + "url": "https://github.com/advisories/GHSA-9hrv-gvrv-6gf2", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38459", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-9hrv-gvrv-6gf2", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/commit/ce0b0f22a175139df8f41cdcfb4d2af411112009", - "type": "patch" + "title": "OX Security advisory", + "url": "https://www.ox.security/blog/mcp-supply-chain-advisory-rce-vulnerabilities-across-the-ai-ecosystem/", + "type": "analysis" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/compare/langchain-experimental==0.0.60...langchain-experimental==0.0.61", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40933", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/pull/22860", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c9gw-hvqq-f33r", + "type": "vendor" }, { - "title": "GHSA-wmvm-9vqv-5qpp", - "url": "https://github.com/advisories/GHSA-wmvm-9vqv-5qpp", + "title": "security-advisories@github.com", + "url": "https://www.ox.security/blog/the-mother-of-all-ai-supply-chains-critical-systemic-vulnerability-at-the-core-of-the-mcp", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-53.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-53.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wmvm-9vqv-5qpp", + "title": "GHSA-c9gw-hvqq-f33r", + "url": "https://github.com/advisories/GHSA-c9gw-hvqq-f33r", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-53", + "url": "https://osv.dev/vulnerability/GHSA-c9gw-hvqq-f33r", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3571", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56274", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://github.com/langchain-ai/langchain/commit/aad3d8bd47d7f5598156ff2bdcc8f736f24a7412", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m99r-2hxc-cp3q", + "type": "exploit" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/2df3acdc-ee4f-4257-bbf8-a7de3870a9d8", - "type": "exploit" + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-remote-code-execution-via-mcp-security-bypass-in-validatecommandflags-and-validateargsforlocalfileaccess", + "type": "advisory" }, { - "title": "GHSA-rgp8-pm28-3759", - "url": "https://github.com/advisories/GHSA-rgp8-pm28-3759", + "title": "GHSA-m99r-2hxc-cp3q", + "url": "https://github.com/advisories/GHSA-m99r-2hxc-cp3q", "type": "advisory" }, + { + "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.1.2", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.1.2", + "type": "reference" + }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rgp8-pm28-3759", + "url": "https://osv.dev/vulnerability/GHSA-m99r-2hxc-cp3q", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27444", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56277", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/commit/de9a6cdf163ed00adaf2e559203ed0a9ca2f1de7", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m837-xvxr-vqwg", + "type": "reference" }, { - "title": "GHSA-v8vj-cv27-hjv8", - "url": "https://github.com/advisories/GHSA-v8vj-cv27-hjv8", - "type": "advisory" + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-hardcoded-cors-wildcard-in-tts-endpoint", + "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v8vj-cv27-hjv8", + "title": "GHSA-m837-xvxr-vqwg", + "url": "https://github.com/advisories/GHSA-m837-xvxr-vqwg", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0243", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-m837-xvxr-vqwg", "type": "advisory" }, { - "title": "GHSA-h9j7-5xvc-qhg5", - "url": "https://github.com/advisories/GHSA-h9j7-5xvc-qhg5", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56276", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22", - "url": "https://github.com/langchain-ai/langchain/commit/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22", - "type": "reference" - }, - { - "title": "https://huntr.com/bounties/370904e7-10ac-40a4-a8d4-e2d16e1ca861", - "url": "https://huntr.com/bounties/370904e7-10ac-40a4-a8d4-e2d16e1ca861", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-59fh-9f3p-7m39", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/pull/15559", - "url": "https://github.com/langchain-ai/langchain/pull/15559", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-mass-assignment-in-put-api-v1-user-allows-password-hash-override", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/blob/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22/libs/community/langchain_community/document_loaders/recursive_url_loader.py#L51-L51", - "url": "https://github.com/langchain-ai/langchain/blob/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22/libs/community/langchain_community/document_loaders/recursive_url_loader.py#L51-L51", - "type": "reference" + "title": "GHSA-59fh-9f3p-7m39", + "url": "https://github.com/advisories/GHSA-59fh-9f3p-7m39", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h9j7-5xvc-qhg5", + "url": "https://osv.dev/vulnerability/GHSA-59fh-9f3p-7m39", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32786", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42861", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://gist.github.com/rharang/d265f46fc3161b31ac2e81db44d662e1", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6fw7-3q8r-m5vj", + "type": "vendor" }, { - "title": "GHSA-6h8p-4hx9-w66c", - "url": "https://github.com/advisories/GHSA-6h8p-4hx9-w66c", + "title": "GHSA-6fw7-3q8r-m5vj", + "url": "https://github.com/advisories/GHSA-6fw7-3q8r-m5vj", "type": "advisory" }, - { - "title": "https://github.com/langchain-ai/langchain/pull/12747", - "url": "https://github.com/langchain-ai/langchain/pull/12747", - "type": "reference" - }, - { - "title": "https://github.com/langchain-ai/langchain/releases/tag/v0.0.329", - "url": "https://github.com/langchain-ai/langchain/releases/tag/v0.0.329", - "type": "reference" - }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6h8p-4hx9-w66c", + "url": "https://osv.dev/vulnerability/GHSA-6fw7-3q8r-m5vj", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/commit/9ecb7240a480720ec9d739b3877a52f76098a2b8", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42862", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/pull/11925", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x5v6-pj28-cwwm", "type": "vendor" }, { - "title": "GHSA-655w-fm8m-m478", - "url": "https://github.com/advisories/GHSA-655w-fm8m-m478", + "title": "GHSA-x5v6-pj28-cwwm", + "url": "https://github.com/advisories/GHSA-x5v6-pj28-cwwm", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-205.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-205.yaml", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-x5v6-pj28-cwwm", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-655w-fm8m-m478", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42863", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-205", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5wxp-qjgq-fx6m", + "type": "vendor" + }, + { + "title": "GHSA-5wxp-qjgq-fx6m", + "url": "https://github.com/advisories/GHSA-5wxp-qjgq-fx6m", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32785", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-5wxp-qjgq-fx6m", "type": "advisory" }, { - "title": "GHSA-8h5w-f6q9-wg35", - "url": "https://github.com/advisories/GHSA-8h5w-f6q9-wg35", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46440", "type": "advisory" }, { - "title": "https://gist.github.com/rharang/9c58d39db8c01db5b7c888e467c0533f", - "url": "https://gist.github.com/rharang/9c58d39db8c01db5b7c888e467c0533f", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-php6-83fg-gw3g", + "type": "vendor" }, { - "title": "https://github.com/langchain-ai/langchain/issues/5923#issuecomment-1696053841", - "url": "https://github.com/langchain-ai/langchain/issues/5923#issuecomment-1696053841", - "type": "reference" + "title": "GHSA-php6-83fg-gw3g", + "url": "https://github.com/advisories/GHSA-php6-83fg-gw3g", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8h5w-f6q9-wg35", + "url": "https://osv.dev/vulnerability/GHSA-php6-83fg-gw3g", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36095", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46441", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hp26-q66v-q2w7", + "type": "vendor" }, { - "title": "GHSA-gwqq-6vq7-5j86", - "url": "https://github.com/advisories/GHSA-gwqq-6vq7-5j86", + "title": "GHSA-hp26-q66v-q2w7", + "url": "https://github.com/advisories/GHSA-hp26-q66v-q2w7", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gwqq-6vq7-5j86", + "url": "https://osv.dev/vulnerability/GHSA-hp26-q66v-q2w7", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/8ba9835b925473655914f63822775679e03ea137", - "url": "https://github.com/langchain-ai/langchain/commit/8ba9835b925473655914f63822775679e03ea137", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46442", + "type": "advisory" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9rvc-vf7m-pgm2", + "type": "vendor" + }, + { + "title": "GHSA-9rvc-vf7m-pgm2", + "url": "https://github.com/advisories/GHSA-9rvc-vf7m-pgm2", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-138", + "url": "https://osv.dev/vulnerability/GHSA-9rvc-vf7m-pgm2", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38896", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46443", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/pull/6003", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7g73-99r4-m4mj", + "type": "vendor" }, { - "title": "cve@mitre.org", - "url": "https://twitter.com/llm_sec/status/1668711587287375876", + "title": "GHSA-7g73-99r4-m4mj", + "url": "https://github.com/advisories/GHSA-7g73-99r4-m4mj", "type": "advisory" }, { - "title": "GHSA-92j5-3459-qgp4", - "url": "https://github.com/advisories/GHSA-92j5-3459-qgp4", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-7g73-99r4-m4mj", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-92j5-3459-qgp4", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46444", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/e294ba475a355feb95003ed8f1a2b99942509a9e", - "url": "https://github.com/langchain-ai/langchain/commit/e294ba475a355feb95003ed8f1a2b99942509a9e", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmg2-jjjx-jcp2", + "type": "vendor" + }, + { + "title": "GHSA-hmg2-jjjx-jcp2", + "url": "https://github.com/advisories/GHSA-hmg2-jjjx-jcp2", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-146", + "url": "https://osv.dev/vulnerability/GHSA-hmg2-jjjx-jcp2", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36188", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46475", "type": "advisory" }, { - "title": "GHSA-57fc-8q82-gfp3", - "url": "https://github.com/advisories/GHSA-57fc-8q82-gfp3", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-78pr-c5x5-jggc", + "type": "vendor" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-109.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-109.yaml", - "type": "reference" + "title": "GHSA-78pr-c5x5-jggc", + "url": "https://github.com/advisories/GHSA-78pr-c5x5-jggc", + "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/pull/8425", - "url": "https://github.com/langchain-ai/langchain/pull/8425", + "title": "https://github.com/FlowiseAI/Flowise/pull/6128", + "url": "https://github.com/FlowiseAI/Flowise/pull/6128", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-57fc-8q82-gfp3", - "type": "advisory" + "title": "https://github.com/FlowiseAI/Flowise/commit/1cf247eab35c7c3d4db381d23e4dca682fba527b", + "url": "https://github.com/FlowiseAI/Flowise/commit/1cf247eab35c7c3d4db381d23e4dca682fba527b", + "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-109", + "url": "https://osv.dev/vulnerability/GHSA-78pr-c5x5-jggc", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38860", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46476", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/7641", - "type": "exploit" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-728h-4mwj-f2p4", + "type": "vendor" }, { - "title": "GHSA-fj32-q626-pjjc", - "url": "https://github.com/advisories/GHSA-fj32-q626-pjjc", + "title": "GHSA-728h-4mwj-f2p4", + "url": "https://github.com/advisories/GHSA-728h-4mwj-f2p4", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-145.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-145.yaml", - "type": "reference" - }, - { - "title": "https://github.com/langchain-ai/langchain/issues/7641", - "url": "https://github.com/langchain-ai/langchain/issues/7641", + "title": "https://github.com/FlowiseAI/Flowise/pull/6129", + "url": "https://github.com/FlowiseAI/Flowise/pull/6129", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/pull/8092", - "url": "https://github.com/langchain-ai/langchain/pull/8092", + "title": "https://github.com/FlowiseAI/Flowise/commit/f64047bdcf4cbd6a30ec348b9e3f2899ff514e89", + "url": "https://github.com/FlowiseAI/Flowise/commit/f64047bdcf4cbd6a30ec348b9e3f2899ff514e89", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fj32-q626-pjjc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-145", + "url": "https://osv.dev/vulnerability/GHSA-728h-4mwj-f2p4", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36189", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46477", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/5923", - "type": "exploit" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/pull/6051", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5h9v-837x-m97r", + "type": "vendor" }, { - "title": "GHSA-7q94-qpjr-xpgm", - "url": "https://github.com/advisories/GHSA-7q94-qpjr-xpgm", + "title": "GHSA-5h9v-837x-m97r", + "url": "https://github.com/advisories/GHSA-5h9v-837x-m97r", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-110.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-110.yaml", + "title": "https://github.com/FlowiseAI/Flowise/pull/6051", + "url": "https://github.com/FlowiseAI/Flowise/pull/6051", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7q94-qpjr-xpgm", - "type": "advisory" + "title": "https://github.com/FlowiseAI/Flowise/commit/49a2259bf2a6b4f3d4b50813cb5161cee0d40040", + "url": "https://github.com/FlowiseAI/Flowise/commit/49a2259bf2a6b4f3d4b50813cb5161cee0d40040", + "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-110", + "url": "https://osv.dev/vulnerability/GHSA-5h9v-837x-m97r", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34541", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46478", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/4849", - "type": "exploit" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7j65-65cr-6644", + "type": "vendor" }, { - "title": "GHSA-6643-h7h5-x9wh", - "url": "https://github.com/advisories/GHSA-6643-h7h5-x9wh", + "title": "GHSA-7j65-65cr-6644", + "url": "https://github.com/advisories/GHSA-7j65-65cr-6644", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-92.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-92.yaml", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-7j65-65cr-6644", + "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/issues/4849", - "url": "https://github.com/langchain-ai/langchain/issues/4849", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46479", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6643-h7h5-x9wh", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-mq53-pc65-wjc4", + "type": "vendor" + }, + { + "title": "GHSA-mq53-pc65-wjc4", + "url": "https://github.com/advisories/GHSA-mq53-pc65-wjc4", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/fab24457bcf8ede882abd11419769c92bc4e7751", - "url": "https://github.com/langchain-ai/langchain/commit/fab24457bcf8ede882abd11419769c92bc4e7751", + "title": "https://github.com/FlowiseAI/Flowise/pull/6050", + "url": "https://github.com/FlowiseAI/Flowise/pull/6050", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-92", - "type": "advisory" - } - ], - "tags": [ - "agent-framework", - "bypass", - "code-execution", - "cve", - "deserialization", - "dos", - "eval", - "ghsa", - "graphcypher", - "langchain", - "langchain-community", - "langchain-core", - "langchain-experimental", - "llamaindex", - "llm-math", - "load_chain", - "loaders", - "nvd", - "osv", - "palchain", - "path-traversal", - "prompt-injection", - "rce", - "retriever", - "sitemap", - "sql-injection", - "ssrf", - "sympy", - "vector-sql" - ] - }, - { - "id": "INC-01297", - "title": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "CVSS 9.8. Langflow's CSVAgentComponent hardcodes `allow_dangerous_code=True`, auto-enabling LangChain's Python REPL tool. Attackers inject malicious prompts through user-supplied input, achieving arbitrary Python/OS command execution. No authentication required. Affects versions prior to 1.8.0.", - "owasp_entries": [ - "LLM01", - "LLM05", - "ASI01", - "ASI02", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0011", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", - "severity": "Critical", - "references": [ - { - "title": "GitHub Advisory", - "url": "https://github.com/advisories/GHSA-3645-fxcv-hqr4", - "type": "research" + "title": "https://github.com/FlowiseAI/Flowise/commit/dc07f4062b852033554543a3cff3daf3433b0dac", + "url": "https://github.com/FlowiseAI/Flowise/commit/dc07f4062b852033554543a3cff3daf3433b0dac", + "type": "reference" }, { - "title": "TheHackerWire", - "url": "https://www.thehackerwire.com/langflow-csv-agent-rce-via-prompt-injection/", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-mq53-pc65-wjc4", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27966", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46480", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/langflow-ai/langflow/commit/d8c6480daa17b2f2af0b5470cdf5c3d28dc9e508", - "type": "patch" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wxrr-jp8m-qq7f", + "type": "vendor" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-3645-fxcv-hqr4", - "type": "vendor" - } - ], - "tags": [ - "cve", - "ghsa", - "langflow", - "nvd", - "prompt-injection" - ] - }, - { - "id": "INC-01298", - "title": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Follow-up code injection (CVSS 9.3) to CVE-2025-3248; added to CISA KEV catalog. Exploitation began within 20 hours of advisory publication; .env and .db harvesting within 24 hours. Previously, CVE-2025-3248 exec()'d user-submitted Python without authentication, actively exploited to deploy the Flodric botnet.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "LLM06", - "ASI01", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI09", - "ASI10" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0025", - "AML.T0048", - "AML.T0048.003", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0054", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0007", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MAP-2.1", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "impact": "30+ vulnerabilities across all major AI coding tools; universal attack pattern; 24 CVEs", - "severity": "Critical", - "mitigations": [ - "AI IDE threat models must include base IDE attack surface", - "Settings write restrictions for AI agents", - "User confirmation for IDE configuration changes" - ], - "references": [ + "title": "GHSA-wxrr-jp8m-qq7f", + "url": "https://github.com/advisories/GHSA-wxrr-jp8m-qq7f", + "type": "advisory" + }, { - "title": "CISA", - "url": "https://www.bleepingcomputer.com/news/security/cisa-new-langflow-flaw-actively-exploited-to-hijack-ai-workflows/", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-wxrr-jp8m-qq7f", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3248", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56268", "type": "advisory" }, { - "title": "Recorded Future", - "url": "https://www.recordedfuture.com/blog/langflow-cve-2025-3248", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c2c9-mfw7-p8hw", + "type": "exploit" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-cross-workspace-information-disclosure-via-chatflows-apikey-endpoint", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-33017", + "title": "GHSA-c2c9-mfw7-p8hw", + "url": "https://github.com/advisories/GHSA-c2c9-mfw7-p8hw", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/advisories/GHSA-rvqx-wpfh-mfx7", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-c2c9-mfw7-p8hw", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/langflow-ai/langflow/commit/73b6612e3ef25fdae0a752d75b0fabd47328d4f0", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71332", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-vwmf-pq79-vjvx", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9c4c-g95m-c8cp", "type": "vendor" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://github.com/langflow-ai/langflow/releases/tag/1.8.2", - "type": "reference" + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-sql-injection-in-importchatflows-api-via-chatflow-id-parameter", + "type": "advisory" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://medium.com/@aviral23/cve-2026-33017-how-i-found-an-unauthenticated-rce-in-langflow-by-reading-the-code-they-already-dc96cdce5896", - "type": "exploit" + "title": "GHSA-9c4c-g95m-c8cp", + "url": "https://github.com/advisories/GHSA-9c4c-g95m-c8cp", + "type": "advisory" + }, + { + "title": "https://github.com/FlowiseAI/Flowise/pull/4226", + "url": "https://github.com/FlowiseAI/Flowise/pull/4226", + "type": "reference" }, { - "title": "GHSA-vwmf-pq79-vjvx", - "url": "https://github.com/advisories/GHSA-vwmf-pq79-vjvx", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-9c4c-g95m-c8cp", "type": "advisory" }, { - "title": "https://github.com/langflow-ai/langflow/pull/12160", - "url": "https://github.com/langflow-ai/langflow/pull/12160", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56269", + "type": "advisory" }, { "title": "disclosure@vulncheck.com", - "url": "https://github.com/langflow-ai/langflow/pull/6911", - "type": "patch" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m7mq-85xj-9x33", + "type": "vendor" }, { "title": "disclosure@vulncheck.com", - "url": "https://github.com/langflow-ai/langflow/releases/tag/1.3.0", - "type": "reference" + "url": "https://www.vulncheck.com/advisories/flowise-weak-default-token-hash-secret-in-jwt-token-encryption", + "type": "advisory" + }, + { + "title": "GHSA-m7mq-85xj-9x33", + "url": "https://github.com/advisories/GHSA-m7mq-85xj-9x33", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-m7mq-85xj-9x33", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56270", + "type": "advisory" }, { "title": "disclosure@vulncheck.com", - "url": "https://www.horizon3.ai/attack-research/disclosures/unsafe-at-any-speed-abusing-python-exec-for-unauth-rce-in-langflow-ai/", - "type": "exploit" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6pcv-j4jx-m4vx", + "type": "vendor" }, { "title": "disclosure@vulncheck.com", - "url": "https://www.vulncheck.com/advisories/langflow-unauthenticated-rce", + "url": "https://www.vulncheck.com/advisories/flowise-unauthenticated-oauth-secrets-disclosure-via-api-v1-loginmethod-endpoint", "type": "advisory" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-3248", - "type": "reference" + "title": "GHSA-6pcv-j4jx-m4vx", + "url": "https://github.com/advisories/GHSA-6pcv-j4jx-m4vx", + "type": "advisory" }, { - "title": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-rvqx-wpfh-mfx7", - "url": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-rvqx-wpfh-mfx7", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6pcv-j4jx-m4vx", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56272", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x2g5-fvc2-gqvp", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-insufficient-password-salt-rounds-in-bcrypt-hashing", + "type": "advisory" + }, + { + "title": "GHSA-x2g5-fvc2-gqvp", + "url": "https://github.com/advisories/GHSA-x2g5-fvc2-gqvp", + "type": "advisory" }, { - "title": "https://github.com/langflow-ai/langflow/commit/faac4db133de32fcb6d483fa9ff52f40ce42bdc0", - "url": "https://github.com/langflow-ai/langflow/commit/faac4db133de32fcb6d483fa9ff52f40ce42bdc0", + "title": "https://github.com/FlowiseAI/Flowise/pull/5665", + "url": "https://github.com/FlowiseAI/Flowise/pull/5665", "type": "reference" }, { - "title": "Microsoft", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-64660", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-x2g5-fvc2-gqvp", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64660", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-43995", "type": "advisory" }, { - "title": "MaccariTA", - "url": "https://maccarita.com/posts/idesaster/", - "type": "research" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-qqvm-66q4-vf5c", + "type": "vendor" }, { - "title": "Roo Code", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-4pqh-4ggm-jfmm", - "type": "research" + "title": "GHSA-qqvm-66q4-vf5c", + "url": "https://github.com/advisories/GHSA-qqvm-66q4-vf5c", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-qqvm-66q4-vf5c", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58372", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-8026", "type": "advisory" }, { - "title": "Microsoft", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53773", + "title": "cna@vuldb.com", + "url": "https://gist.github.com/YLChen-007/50a553f09aa1c7c04ce18cec13986a91", + "type": "exploit" + }, + { + "title": "cna@vuldb.com", + "url": "https://vuldb.com/submit/777656", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53773", + "title": "cna@vuldb.com", + "url": "https://vuldb.com/vuln/361273", "type": "advisory" }, { - "title": "Cursor", - "url": "https://github.com/cursor/cursor/security/advisories/GHSA-vqv7-vq92-x87f", - "type": "research" + "title": "cna@vuldb.com", + "url": "https://vuldb.com/vuln/361273/cti", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54130", + "title": "GHSA-8f47-4rh3-x44m", + "url": "https://github.com/advisories/GHSA-8f47-4rh3-x44m", "type": "advisory" }, { - "title": "JetBrains", - "url": "https://www.jetbrains.com/privacy-security/issues-fixed/", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-8f47-4rh3-x44m", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58335", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41264", "type": "advisory" }, { - "title": "Zed", - "url": "https://github.com/zed-industries/zed/security/advisories/GHSA-x34m-39xw-g2wr", - "type": "research" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3hjv-c53m-58jj", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55012", + "title": "GHSA-3hjv-c53m-58jj", + "url": "https://github.com/advisories/GHSA-3hjv-c53m-58jj", "type": "advisory" }, { - "title": "Roo Code", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-3765-5vjr-qjgm", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-3hjv-c53m-58jj", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53536", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41265", "type": "advisory" }, { - "title": "Cursor", - "url": "https://github.com/cursor/cursor/security/advisories/GHSA-9h3v-h59j-v6rj", - "type": "research" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v38x-c887-992f", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-49150", + "title": "GHSA-v38x-c887-992f", + "url": "https://github.com/advisories/GHSA-v38x-c887-992f", "type": "advisory" }, { - "title": "Roo Code", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-wr2q-46pg-f228", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-v38x-c887-992f", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53097", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41137", "type": "advisory" }, { - "title": "Wiz analysis", - "url": "https://www.wiz.io/vulnerability-database/cve/cve-2025-53773", - "type": "analysis" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9wc7-mj3f-74xv", + "type": "vendor" }, { - "title": "Embrace The Red", - "url": "https://embracethered.com/blog/posts/2025/github-copilot-remote-code-execution-via-prompt-injection/", - "type": "analysis" + "title": "GHSA-9wc7-mj3f-74xv", + "url": "https://github.com/advisories/GHSA-9wc7-mj3f-74xv", + "type": "advisory" }, { - "title": "The Hacker News", - "url": "https://thehackernews.com/2025/12/researchers-uncover-30-flaws-in-ai.html", - "type": "analysis" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-9wc7-mj3f-74xv", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61260", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41138", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "http://openai.com", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-f228-chmx-v6j6", + "type": "vendor" }, { - "title": "cve@mitre.org", - "url": "https://research.checkpoint.com/2025/openai-codex-cli-command-injection-vulnerability/", - "type": "reference" + "title": "GHSA-f228-chmx-v6j6", + "url": "https://github.com/advisories/GHSA-f228-chmx-v6j6", + "type": "advisory" }, { - "title": "GHSA-xrxf-jgv3-qmrm", - "url": "https://github.com/advisories/GHSA-xrxf-jgv3-qmrm", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-f228-chmx-v6j6", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-60511", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41266", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "http://moodle.com", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4jpm-cgx2-8h37", + "type": "vendor" }, { - "title": "cve@mitre.org", - "url": "https://github.com/onurcangnc/moodle_block_openai_chat", - "type": "reference" + "title": "GHSA-4jpm-cgx2-8h37", + "url": "https://github.com/advisories/GHSA-4jpm-cgx2-8h37", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://onurcangenc.com.tr/posts/idor-in-moodle-openai-chat-block-block_openai_chat-proof-of-concept-poc--cve-2025-60511/", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-4jpm-cgx2-8h37", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/296edfc829a7c6efc8b5dbe09aa766a9aed79598", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41267", + "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/releases/tag/v3.26.0", - "type": "reference" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-48m6-ch88-55mj", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58373", + "title": "GHSA-48m6-ch88-55mj", + "url": "https://github.com/advisories/GHSA-48m6-ch88-55mj", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/pull/7405", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-48m6-ch88-55mj", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41268", + "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-p76r-7mc3-qh7c", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cvrr-qhgw-2mm6", "type": "vendor" }, + { + "title": "GHSA-cvrr-qhgw-2mm6", + "url": "https://github.com/advisories/GHSA-cvrr-qhgw-2mm6", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-cvrr-qhgw-2mm6", + "type": "advisory" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58374", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41269", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/pull/7390/files", - "type": "reference" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-rh7v-6w34-w2rr", + "type": "vendor" + }, + { + "title": "GHSA-rh7v-6w34-w2rr", + "url": "https://github.com/advisories/GHSA-rh7v-6w34-w2rr", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-rh7v-6w34-w2rr", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41270", + "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-c292-qxq4-4p2v", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-xhmj-rg95-44hv", "type": "vendor" }, { - "title": "af854a3a-2127-422b-91ae-364da2661108", - "url": "https://news.ycombinator.com/item?id=44883108", + "title": "GHSA-xhmj-rg95-44hv", + "url": "https://github.com/advisories/GHSA-xhmj-rg95-44hv", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40466", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-xhmj-rg95-44hv", "type": "advisory" }, { - "title": "GHSA-w3w2-mpp5-92gm", - "url": "https://github.com/advisories/GHSA-w3w2-mpp5-92gm", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41271", "type": "advisory" }, { - "title": "https://activemq.apache.org/security-advisories.data/CVE-2026-34197-announcement.txt", - "url": "https://activemq.apache.org/security-advisories.data/CVE-2026-34197-announcement.txt", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6r77-hqx7-7vw8", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34197", + "title": "GHSA-6r77-hqx7-7vw8", + "url": "https://github.com/advisories/GHSA-6r77-hqx7-7vw8", "type": "advisory" }, { - "title": "GHSA-rxpj-7qvf-xv32", - "url": "https://github.com/advisories/GHSA-rxpj-7qvf-xv32", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6r77-hqx7-7vw8", "type": "advisory" }, { - "title": "http://www.openwall.com/lists/oss-security/2026/04/06/3", - "url": "http://www.openwall.com/lists/oss-security/2026/04/06/3", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41272", + "type": "advisory" }, { - "title": "CVEReports", - "url": "https://cvereports.com/reports/CVE-2026-40217", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2x8m-83vc-6wv4", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40217", + "title": "GHSA-2x8m-83vc-6wv4", + "url": "https://github.com/advisories/GHSA-2x8m-83vc-6wv4", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://www.x41-dsec.de/lab/advisories/x41-2026-001-litellm/", - "type": "exploit" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-2x8m-83vc-6wv4", + "type": "advisory" }, { - "title": "GHSA-wxxx-gvqv-xp7p", - "url": "https://github.com/advisories/GHSA-wxxx-gvqv-xp7p", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41273", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/security/advisories/GHSA-wxxx-gvqv-xp7p", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-wxxx-gvqv-xp7p", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6f7g-v4pp-r667", + "type": "vendor" }, { - "title": "https://github.com/BerriAI/litellm/releases/tag/v1.83.10-stable", - "url": "https://github.com/BerriAI/litellm/releases/tag/v1.83.10-stable", - "type": "reference" + "title": "GHSA-6f7g-v4pp-r667", + "url": "https://github.com/advisories/GHSA-6f7g-v4pp-r667", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wxxx-gvqv-xp7p", + "url": "https://osv.dev/vulnerability/GHSA-6f7g-v4pp-r667", "type": "advisory" }, - { - "title": "https://github.com/BerriAI/litellm", - "url": "https://github.com/BerriAI/litellm", - "type": "reference" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-47101", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41275", "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://gist.github.com/13ph03nix/9ec616e1fdc77b3673509c60206e827f", - "type": "exploit" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/2220f3076ac89bd2a2e3439acf57dcfbec2434c9", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x5w6-38gp-mrqh", + "type": "vendor" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/5190bd07eb23a037745d86328096f54378f1614a", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://hackerone.com/reports/1888915", + "type": "exploit" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/d910a95661fce3cdd36f3b06c03ecf9c46c6457c", - "type": "patch" + "title": "GHSA-x5w6-38gp-mrqh", + "url": "https://github.com/advisories/GHSA-x5w6-38gp-mrqh", + "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/releases/tag/v1.83.14-stable", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-x5w6-38gp-mrqh", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-47102", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41276", "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/128d32d2494b759c5d15da3452452af4c6a34c01", - "type": "patch" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/e6f18ce75b111c9b93dc15c72894cbdeb53177ce", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-f6hc-c5jr-878p", + "type": "vendor" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/pull/25541", - "type": "patch" + "title": "GHSA-f6hc-c5jr-878p", + "url": "https://github.com/advisories/GHSA-f6hc-c5jr-878p", + "type": "advisory" }, { - "title": "SentinelOne", - "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-35029/", - "type": "analysis" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-f6hc-c5jr-878p", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-35029", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41277", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-53mr-6c8q-9789", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3prp-9gf7-4rxx", "type": "vendor" }, { - "title": "af854a3a-2127-422b-91ae-364da2661108", - "url": "http://seclists.org/fulldisclosure/2026/Apr/17", - "type": "reference" - }, - { - "title": "GHSA-53mr-6c8q-9789", - "url": "https://github.com/advisories/GHSA-53mr-6c8q-9789", + "title": "GHSA-3prp-9gf7-4rxx", + "url": "https://github.com/advisories/GHSA-3prp-9gf7-4rxx", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-53mr-6c8q-9789", + "url": "https://osv.dev/vulnerability/GHSA-3prp-9gf7-4rxx", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42203", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41278", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/releases/tag/v1.83.7-stable", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-xqmj-j6mv-4862", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w47f-j8rh-wx87", "type": "vendor" }, { - "title": "GHSA-xqmj-j6mv-4862", - "url": "https://github.com/advisories/GHSA-xqmj-j6mv-4862", + "title": "GHSA-w47f-j8rh-wx87", + "url": "https://github.com/advisories/GHSA-w47f-j8rh-wx87", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-xqmj-j6mv-4862", + "url": "https://osv.dev/vulnerability/GHSA-w47f-j8rh-wx87", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42208", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41279", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-r75f-5x8p-qvmc", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5fw2-mwhh-9947", "type": "vendor" }, { - "title": "GHSA-r75f-5x8p-qvmc", - "url": "https://github.com/advisories/GHSA-r75f-5x8p-qvmc", + "title": "GHSA-5fw2-mwhh-9947", + "url": "https://github.com/advisories/GHSA-5fw2-mwhh-9947", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-r75f-5x8p-qvmc", + "url": "https://osv.dev/vulnerability/GHSA-5fw2-mwhh-9947", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42271", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41274", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-v4p8-mg3p-g94g", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-28g4-38q8-3cwc", "type": "vendor" }, { - "title": "GHSA-v4p8-mg3p-g94g", - "url": "https://github.com/advisories/GHSA-v4p8-mg3p-g94g", + "title": "GHSA-28g4-38q8-3cwc", + "url": "https://github.com/advisories/GHSA-28g4-38q8-3cwc", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v4p8-mg3p-g94g", + "url": "https://osv.dev/vulnerability/GHSA-28g4-38q8-3cwc", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-35030", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30615", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-jjhc-v7c2-5hh6", - "type": "vendor" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30616", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30617", + "type": "advisory" }, { - "title": "GHSA-jjhc-v7c2-5hh6", - "url": "https://github.com/advisories/GHSA-jjhc-v7c2-5hh6", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30624", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jjhc-v7c2-5hh6", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30625", "type": "advisory" }, { - "title": "GHSA-3926-2jvf-fg29", - "url": "https://github.com/advisories/GHSA-3926-2jvf-fg29", + "title": "cve@mitre.org", + "url": "https://github.com/Upsonic/Upsonic/commit/855053fce0662227d9246268ff4a0844b481a305", + "type": "reference" + }, + { + "title": "GHSA-cw73-5f7h-m4gv", + "url": "https://github.com/advisories/GHSA-cw73-5f7h-m4gv", "type": "advisory" }, { - "title": "GHSA-69x8-hrgq-fjj8", - "url": "https://github.com/advisories/GHSA-69x8-hrgq-fjj8", + "title": "GHSA-w6v6-49gh-mc9w", + "url": "https://github.com/advisories/GHSA-w6v6-49gh-mc9w", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/security/advisories/GHSA-69x8-hrgq-fjj8", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-69x8-hrgq-fjj8", + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-69x8-hrgq-fjj8", + "url": "https://osv.dev/vulnerability/GHSA-w6v6-49gh-mc9w", "type": "advisory" }, { - "title": "GHSA-5mg7-485q-xm76", - "url": "https://github.com/advisories/GHSA-5mg7-485q-xm76", + "title": "GHSA-cc4f-hjpj-g9p8", + "url": "https://github.com/advisories/GHSA-cc4f-hjpj-g9p8", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/issues/24518", - "url": "https://github.com/BerriAI/litellm/issues/24518", + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cc4f-hjpj-g9p8", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cc4f-hjpj-g9p8", "type": "reference" }, { - "title": "https://futuresearch.ai/blog/litellm-pypi-supply-chain-attack", - "url": "https://futuresearch.ai/blog/litellm-pypi-supply-chain-attack", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-cc4f-hjpj-g9p8", + "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/litellm/PYSEC-2026-2.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/litellm/PYSEC-2026-2.yaml", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30820", + "type": "advisory" }, { - "title": "https://inspector.pypi.io/project/litellm/1.82.7/packages/79/5f/b6998d42c6ccd32d36e12661f2734602e72a576d52a51f4245aef0b20b4d/litellm-1.82.7-py3-none-any.whl/litellm/proxy/proxy_server.py#line.130", - "url": "https://inspector.pypi.io/project/litellm/1.82.7/packages/79/5f/b6998d42c6ccd32d36e12661f2734602e72a576d52a51f4245aef0b20b4d/litellm-1.82.7-py3-none-any.whl/litellm/proxy/proxy_server.py#line.130", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.13", "type": "reference" }, { - "title": "https://inspector.pypi.io/project/litellm/1.82.8/packages/f6/2c/731b614e6cee0bca1e010a36fd381fba69ee836fe3cb6753ba23ef2b9601/litellm-1.82.8.tar.gz/litellm-1.82.8/litellm_init.pth#line.1", - "url": "https://inspector.pypi.io/project/litellm/1.82.8/packages/f6/2c/731b614e6cee0bca1e010a36fd381fba69ee836fe3cb6753ba23ef2b9601/litellm-1.82.8.tar.gz/litellm-1.82.8/litellm_init.pth#line.1", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wvhq-wp8g-c7vq", + "type": "vendor" + }, + { + "title": "GHSA-wvhq-wp8g-c7vq", + "url": "https://github.com/advisories/GHSA-wvhq-wp8g-c7vq", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5mg7-485q-xm76", + "url": "https://osv.dev/vulnerability/GHSA-wvhq-wp8g-c7vq", "type": "advisory" }, { - "title": "https://docs.litellm.ai/blog/security-update-march-2026", - "url": "https://docs.litellm.ai/blog/security-update-march-2026", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30821", + "type": "advisory" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-j8g8-j7fc-43v6", + "type": "vendor" + }, + { + "title": "GHSA-j8g8-j7fc-43v6", + "url": "https://github.com/advisories/GHSA-j8g8-j7fc-43v6", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/MAL-2026-2144", + "url": "https://osv.dev/vulnerability/GHSA-j8g8-j7fc-43v6", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/issues/24512", - "url": "https://github.com/BerriAI/litellm/issues/24512", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30822", + "type": "advisory" }, { - "title": "https://www.wiz.io/blog/threes-a-crowd-teampcp-trojanizes-litellm-in-continuation-of-campaign", - "url": "https://www.wiz.io/blog/threes-a-crowd-teampcp-trojanizes-litellm-in-continuation-of-campaign", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-mq4r-h2gh-qv7x", + "type": "vendor" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-2", + "title": "GHSA-mq4r-h2gh-qv7x", + "url": "https://github.com/advisories/GHSA-mq4r-h2gh-qv7x", "type": "advisory" }, { - "title": "https://www.wiz.io/blog/teampcp-attack-kics-github-action", - "url": "https://www.wiz.io/blog/teampcp-attack-kics-github-action", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-mq4r-h2gh-qv7x", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34291", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30823", "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/langflow-ai/langflow", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cwc3-p92j-g7qm", + "type": "vendor" }, { - "title": "disclosure@vulncheck.com", - "url": "https://www.obsidiansecurity.com/blog/cve-2025-34291-critical-account-takeover-and-rce-vulnerability-in-the-langflow-ai-agent-workflow-platform", - "type": "exploit" + "title": "GHSA-cwc3-p92j-g7qm", + "url": "https://github.com/advisories/GHSA-cwc3-p92j-g7qm", + "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://www.vulncheck.com/advisories/langflow-cors-misconfiguration-to-token-hijack-and-rce", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-cwc3-p92j-g7qm", "type": "advisory" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://www.crowdsec.net/vulntracking-report/cve-2025-34291", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30824", "type": "advisory" }, { - "title": "GHSA-577h-p2hh-v4mv", - "url": "https://github.com/advisories/GHSA-577h-p2hh-v4mv", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5f53-522j-j454", + "type": "vendor" + }, + { + "title": "GHSA-5f53-522j-j454", + "url": "https://github.com/advisories/GHSA-5f53-522j-j454", "type": "advisory" }, { - "title": "https://github.com/langflow-ai/langflow/pull/10139", - "url": "https://github.com/langflow-ai/langflow/pull/10139", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-5f53-522j-j454", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58360", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-31829", "type": "advisory" }, { - "title": "GHSA-fjf5-xgmq-5525", - "url": "https://github.com/advisories/GHSA-fjf5-xgmq-5525", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fvcw-9w9r-pxc7", + "type": "vendor" }, { - "title": "https://github.com/geoserver/geoserver/security/advisories/GHSA-fjf5-xgmq-5525", - "url": "https://github.com/geoserver/geoserver/security/advisories/GHSA-fjf5-xgmq-5525", - "type": "reference" + "title": "GHSA-fvcw-9w9r-pxc7", + "url": "https://github.com/advisories/GHSA-fvcw-9w9r-pxc7", + "type": "advisory" }, { - "title": "https://osgeo-org.atlassian.net/browse/GEOS-11682", - "url": "https://osgeo-org.atlassian.net/browse/GEOS-11682", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-fvcw-9w9r-pxc7", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54236", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22688", "type": "advisory" }, { - "title": "GHSA-wh92-6q6g-px7j", - "url": "https://github.com/advisories/GHSA-wh92-6q6g-px7j", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/Tencent/WeKnora/commit/f7900a5e9a18c99d25cec9589ead9e4e59ce04bb", + "type": "patch" }, { - "title": "https://helpx.adobe.com/security/products/magento/apsb25-88.html", - "url": "https://helpx.adobe.com/security/products/magento/apsb25-88.html", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Tencent/WeKnora/security/advisories/GHSA-78h3-63c4-5fqc", + "type": "vendor" + }, + { + "title": "GHSA-78h3-63c4-5fqc", + "url": "https://github.com/advisories/GHSA-78h3-63c4-5fqc", + "type": "advisory" }, { - "title": "https://nullsecurityx.codes/cve-2025-54236-sessionreaper-unauthenticated-rce-in-magento", - "url": "https://nullsecurityx.codes/cve-2025-54236-sessionreaper-unauthenticated-rce-in-magento", + "title": "https://pkg.go.dev/vuln/GO-2026-4292", + "url": "https://pkg.go.dev/vuln/GO-2026-4292", "type": "reference" }, { - "title": "https://experienceleague.adobe.com/en/docs/experience-cloud-kcs/kbarticles/ka-27397", - "url": "https://experienceleague.adobe.com/en/docs/experience-cloud-kcs/kbarticles/ka-27397", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22252", + "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/1be6fce1a6864ae63e8160b0666db2c647f2dbba", + "url": "https://github.com/danny-avila/LibreChat/commit/211b39f3113d4e6ecab84be0a83f4e9c9dea127f", "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/3993406ebdc0553a32ef391a799a4fb124930a1c", - "type": "patch" + "url": "https://github.com/danny-avila/LibreChat/security/advisories/GHSA-cxhj-j78r-p88f", + "type": "vendor" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53547", - "type": "advisory" - }, - { - "title": "GHSA-557j-xg8c-q2mm", - "url": "https://github.com/advisories/GHSA-557j-xg8c-q2mm", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61687", "type": "advisory" }, { - "title": "https://github.com/helm/helm/security/advisories/GHSA-557j-xg8c-q2mm", - "url": "https://github.com/helm/helm/security/advisories/GHSA-557j-xg8c-q2mm", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/components/src/storageUtils.ts#L1104-L1111", "type": "reference" }, { - "title": "https://github.com/helm/helm/commit/4b8e61093d8f579f1165cdc6bd4b43fa5455f571", - "url": "https://github.com/helm/helm/commit/4b8e61093d8f579f1165cdc6bd4b43fa5455f571", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/server/src/controllers/attachments/index.ts#L4-L11", "type": "reference" }, { "title": "security-advisories@github.com", - "url": "https://github.com/getcursor/cursor/security/advisories/GHSA-9h3v-h59j-v6rj", + "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/server/src/routes/attachments/index.ts#L8", "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/10b2fb32ed047bbd7b8d10ef185c1ed345efcc92", - "type": "patch" + "title": "GHSA-35g6-rrw3-v6xc", + "url": "https://github.com/advisories/GHSA-35g6-rrw3-v6xc", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/7d0b22f9e659dc6c26aab0bacbea27874986e772", - "type": "patch" + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-35g6-rrw3-v6xc", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-35g6-rrw3-v6xc", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53098", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-35g6-rrw3-v6xc", "type": "advisory" }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-5x8h-m52g-5v54", - "type": "vendor" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24016", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29192", "type": "advisory" }, { - "title": "GHSA-hcrc-79hj-m3qh", - "url": "https://github.com/advisories/GHSA-hcrc-79hj-m3qh", - "type": "advisory" + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/pull/4905", + "type": "patch" }, { - "title": "https://github.com/wazuh/wazuh/security/advisories/GHSA-hcrc-79hj-m3qh", - "url": "https://github.com/wazuh/wazuh/security/advisories/GHSA-hcrc-79hj-m3qh", + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.5", "type": "reference" }, { - "title": "GHSA-c995-4fw3-j39m", - "url": "https://github.com/advisories/GHSA-c995-4fw3-j39m", - "type": "advisory" + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7r4h-vmj9-wg42", + "type": "exploit" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27554", + "title": "GHSA-7r4h-vmj9-wg42", + "url": "https://github.com/advisories/GHSA-7r4h-vmj9-wg42", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://kibty.town/blog/todesktop", + "title": "https://github.com/FlowiseAI/Flowise/commit/9a06a85a8ddcbaeca1342827a5fea9087a587d97", + "url": "https://github.com/FlowiseAI/Flowise/commit/9a06a85a8ddcbaeca1342827a5fea9087a587d97", "type": "reference" }, { - "title": "cve@mitre.org", - "url": "https://www.todesktop.com/blog/posts/security-incident-at-todesktop", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-7r4h-vmj9-wg42", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10188", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-50538", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://github.com/berriai/litellm/commit/21156ff5d0d84a7dd93f951ca033275c77e4f73c", - "type": "reference" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/96a32812-213c-4819-ba4e-36143d35e95b", - "type": "reference" + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-964p-j4gg-mhwc", + "type": "exploit" }, { - "title": "GHSA-gw2q-qw9j-rgv7", - "url": "https://github.com/advisories/GHSA-gw2q-qw9j-rgv7", + "title": "GHSA-964p-j4gg-mhwc", + "url": "https://github.com/advisories/GHSA-964p-j4gg-mhwc", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gw2q-qw9j-rgv7", + "url": "https://osv.dev/vulnerability/GHSA-964p-j4gg-mhwc", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0330", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-57164", "type": "advisory" }, { - "title": "GHSA-879v-fggm-vxw2", - "url": "https://github.com/advisories/GHSA-879v-fggm-vxw2", + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/blob/main/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7944-7c6r-55vv", + "type": "vendor" + }, + { + "title": "GHSA-7944-7c6r-55vv", + "url": "https://github.com/advisories/GHSA-7944-7c6r-55vv", "type": "advisory" }, { - "title": "https://huntr.com/bounties/661b388a-44d8-4ad5-862b-4dc5b80be30a", - "url": "https://huntr.com/bounties/661b388a-44d8-4ad5-862b-4dc5b80be30a", + "title": "https://github.com/FlowiseAI/Flowise/blob/flowise%403.0.5/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", + "url": "https://github.com/FlowiseAI/Flowise/blob/flowise%403.0.5/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-879v-fggm-vxw2", + "url": "https://osv.dev/vulnerability/GHSA-7944-7c6r-55vv", + "type": "advisory" + }, + { + "title": "GHSA-3g4j-r53p-22wx", + "url": "https://github.com/advisories/GHSA-3g4j-r53p-22wx", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0628", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55346", "type": "advisory" }, { - "title": "GHSA-fjcf-3j3r-78rp", - "url": "https://github.com/advisories/GHSA-fjcf-3j3r-78rp", + "title": "GHSA-hmgh-466j-fx4c", + "url": "https://github.com/advisories/GHSA-hmgh-466j-fx4c", "type": "advisory" }, { - "title": "https://github.com/berriai/litellm/commit/566d9354aab4215091b2e51ad0333e948125fa1b", - "url": "https://github.com/berriai/litellm/commit/566d9354aab4215091b2e51ad0333e948125fa1b", + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmgh-466j-fx4c", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmgh-466j-fx4c", "type": "reference" }, { - "title": "https://huntr.com/bounties/6c0e2f75-2d03-42f9-9530-e16a973317fc", - "url": "https://huntr.com/bounties/6c0e2f75-2d03-42f9-9530-e16a973317fc", + "title": "https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925", + "url": "https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fjcf-3j3r-78rp", + "url": "https://osv.dev/vulnerability/GHSA-hmgh-466j-fx4c", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9606", + "title": "GHSA-7rgr-72hp-9wp3", + "url": "https://github.com/advisories/GHSA-7rgr-72hp-9wp3", "type": "advisory" }, { - "title": "GHSA-g5pg-73fc-hjwq", - "url": "https://github.com/advisories/GHSA-g5pg-73fc-hjwq", + "title": "GHSA-wq95-wr7m-26h4", + "url": "https://github.com/advisories/GHSA-wq95-wr7m-26h4", "type": "advisory" }, { - "title": "https://github.com/berriai/litellm/commit/9094071c4782183e84f10630e2450be3db55509a", - "url": "https://github.com/berriai/litellm/commit/9094071c4782183e84f10630e2450be3db55509a", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58434", + "type": "advisory" }, { - "title": "https://huntr.com/bounties/4a03796f-a8d4-4293-84ef-d3959456223a", - "url": "https://huntr.com/bounties/4a03796f-a8d4-4293-84ef-d3959456223a", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/commit/9e178d68873eb876073846433a596590d3d9c863", + "type": "patch" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-g5pg-73fc-hjwq", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wgpv-6j63-x5ph", + "type": "vendor" + }, + { + "title": "GHSA-wgpv-6j63-x5ph", + "url": "https://github.com/advisories/GHSA-wgpv-6j63-x5ph", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8984", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-wgpv-6j63-x5ph", "type": "advisory" }, { - "title": "GHSA-fh2c-86xm-pm2x", - "url": "https://github.com/advisories/GHSA-fh2c-86xm-pm2x", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59527", "type": "advisory" }, { - "title": "https://huntr.com/bounties/554fc76b-3097-4223-b4cf-110b853e9355", - "url": "https://huntr.com/bounties/554fc76b-3097-4223-b4cf-110b853e9355", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/src/utils.ts#L474-L478", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/blob/8c5ff150f6142608ffe968e4e68429f978fda187/litellm/tests/test_spend_logs.py#L242", - "url": "https://github.com/BerriAI/litellm/blob/8c5ff150f6142608ffe968e4e68429f978fda187/litellm/tests/test_spend_logs.py#L242", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/fetch-links/index.ts#L6-L24", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/commit/4f49f836aa844ac9b6bfbeff27e6f6b2b9cf3f61", - "url": "https://github.com/BerriAI/litellm/commit/4f49f836aa844ac9b6bfbeff27e6f6b2b9cf3f61", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/services/fetch-links/index.ts#L8-L18", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fh2c-86xm-pm2x", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hr92-4q35-4j3m", + "type": "vendor" + }, + { + "title": "GHSA-hr92-4q35-4j3m", + "url": "https://github.com/advisories/GHSA-hr92-4q35-4j3m", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6825", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-hr92-4q35-4j3m", "type": "advisory" }, { - "title": "GHSA-53gh-p8jc-7rg8", - "url": "https://github.com/advisories/GHSA-53gh-p8jc-7rg8", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54994", "type": "advisory" }, { - "title": "https://huntr.com/bounties/1d98bebb-6cf4-46c9-87c3-d3b1972973b5", - "url": "https://huntr.com/bounties/1d98bebb-6cf4-46c9-87c3-d3b1972973b5", + "title": "security-advisories@github.com", + "url": "https://github.com/akoskm/create-mcp-server-stdio/blob/main/src/index.ts#L24-L40", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/blob/056913fd7049923a106130b02d7c29e7f312beec/litellm/utils.py#L2818", - "url": "https://github.com/BerriAI/litellm/blob/056913fd7049923a106130b02d7c29e7f312beec/litellm/utils.py#L2818", + "title": "security-advisories@github.com", + "url": "https://github.com/akoskm/create-mcp-server-stdio/commit/48c26bbe1f8c62764e4592f33c8300d1cadd2eac", "type": "reference" }, { - "title": "https://github.com/berriai/litellm/commit/441c7275ed2715f47650a7c2e525055c804073a9", - "url": "https://github.com/berriai/litellm/commit/441c7275ed2715f47650a7c2e525055c804073a9", + "title": "security-advisories@github.com", + "url": "https://github.com/akoskm/create-mcp-server-stdio/security/advisories/GHSA-3ch2-jxxc-v4xf", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-53gh-p8jc-7rg8", + "title": "GHSA-3ch2-jxxc-v4xf", + "url": "https://github.com/advisories/GHSA-3ch2-jxxc-v4xf", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6587", - "type": "advisory" + "title": "https://github.com/akoskm/create-mcp-server-stdio/pull/1", + "url": "https://github.com/akoskm/create-mcp-server-stdio/pull/1", + "type": "reference" }, { - "title": "security@huntr.dev", - "url": "https://github.com/berriai/litellm/commit/ba1912afd1b19e38d3704bb156adf887f91ae1e0", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8943", + "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/4001e1a2-7b7a-4776-a3ae-e6692ec3d997", + "title": "reefs@jfrog.com", + "url": "https://research.jfrog.com/vulnerabilities/flowise-os-command-remote-code-execution-jfsa-2025-001380578/", "type": "exploit" }, { - "title": "GHSA-g26j-5385-hhw3", - "url": "https://github.com/advisories/GHSA-g26j-5385-hhw3", + "title": "GHSA-2vv2-3x8x-4gv7", + "url": "https://github.com/advisories/GHSA-2vv2-3x8x-4gv7", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-g26j-5385-hhw3", + "url": "https://osv.dev/vulnerability/GHSA-2vv2-3x8x-4gv7", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4888", + "title": "GHSA-q4xx-mc3q-23x8", + "url": "https://github.com/advisories/GHSA-q4xx-mc3q-23x8", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/48461d89-cf13-4ad3-a43e-0d37da08fc6c", - "type": "exploit" - }, - { - "title": "GHSA-3xr8-qfvj-9p9j", - "url": "https://github.com/advisories/GHSA-3xr8-qfvj-9p9j", + "title": "GHSA-h42x-xx2q-6v6g", + "url": "https://github.com/advisories/GHSA-h42x-xx2q-6v6g", "type": "advisory" }, - { - "title": "https://github.com/BerriAI/litellm/pull/3193", - "url": "https://github.com/BerriAI/litellm/pull/3193", - "type": "reference" - }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3xr8-qfvj-9p9j", + "url": "https://osv.dev/vulnerability/GHSA-h42x-xx2q-6v6g", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5710", - "type": "advisory" - }, - { - "title": "GHSA-qqcv-vg9f-5rr3", - "url": "https://github.com/advisories/GHSA-qqcv-vg9f-5rr3", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8181", "type": "advisory" }, { - "title": "https://huntr.com/bounties/70897f59-a966-4d93-b71e-745e3da91970", - "url": "https://huntr.com/bounties/70897f59-a966-4d93-b71e-745e3da91970", + "title": "vulnreport@tenable.com", + "url": "https://tenable.com/security/research/tra-2024-33", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/commit/da3ae00bd68f451ed8ddf0bc0a9fd34bde5554d6", - "url": "https://github.com/BerriAI/litellm/commit/da3ae00bd68f451ed8ddf0bc0a9fd34bde5554d6", - "type": "reference" + "title": "GHSA-2q4w-x8h2-2fvh", + "url": "https://github.com/advisories/GHSA-2q4w-x8h2-2fvh", + "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/blob/224148d6133ee50801cb129cbd21ccc213992e25/litellm/proxy/auth/user_api_key_auth.py#L1020", - "url": "https://github.com/BerriAI/litellm/blob/224148d6133ee50801cb129cbd21ccc213992e25/litellm/proxy/auth/user_api_key_auth.py#L1020", + "title": "https://tenable.com/security/research/tra-2024-22-0", + "url": "https://tenable.com/security/research/tra-2024-22-0", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-qqcv-vg9f-5rr3", + "url": "https://osv.dev/vulnerability/GHSA-2q4w-x8h2-2fvh", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5751", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8182", "type": "advisory" }, { - "title": "GHSA-gppg-gqw8-wh9g", - "url": "https://github.com/advisories/GHSA-gppg-gqw8-wh9g", + "title": "vulnreport@tenable.com", + "url": "https://tenable.com/security/research/tra-2024-34", "type": "advisory" }, { - "title": "https://huntr.com/bounties/ae623c2f-b64b-4245-9ed4-f13a0a5824ce", - "url": "https://huntr.com/bounties/ae623c2f-b64b-4245-9ed4-f13a0a5824ce", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/pull/4228", - "url": "https://github.com/BerriAI/litellm/pull/4228", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/commit/fcea4c22ad96b24436f196ae709f71932e84b0b8", - "url": "https://github.com/BerriAI/litellm/commit/fcea4c22ad96b24436f196ae709f71932e84b0b8", - "type": "reference" + "title": "GHSA-48x4-mx8f-gr4h", + "url": "https://github.com/advisories/GHSA-48x4-mx8f-gr4h", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gppg-gqw8-wh9g", + "url": "https://osv.dev/vulnerability/GHSA-48x4-mx8f-gr4h", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5225", - "type": "advisory" - }, - { - "title": "GHSA-h6m6-jj8v-94jj", - "url": "https://github.com/advisories/GHSA-h6m6-jj8v-94jj", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36420", "type": "advisory" }, { - "title": "https://huntr.com/bounties/491e4884-0306-4cd4-8fe2-9a19de33bf5c", - "url": "https://huntr.com/bounties/491e4884-0306-4cd4-8fe2-9a19de33bf5c", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/e93ce07851cdc0fcde12374f301b8070f2043687/packages/server/src/index.ts#L982", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/pull/3940", - "url": "https://github.com/BerriAI/litellm/pull/3940", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://securitylab.github.com/advisories/GHSL-2023-232_GHSL-2023-234_Flowise/", + "type": "exploit" }, { - "title": "https://github.com/BerriAI/litellm/commit/f75c15d6cd535aa78014378ad532de1df6be2f56", - "url": "https://github.com/BerriAI/litellm/commit/f75c15d6cd535aa78014378ad532de1df6be2f56", - "type": "reference" + "title": "GHSA-h997-3fxj-p5j8", + "url": "https://github.com/advisories/GHSA-h997-3fxj-p5j8", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h6m6-jj8v-94jj", + "url": "https://osv.dev/vulnerability/GHSA-h997-3fxj-p5j8", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4890", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36421", "type": "advisory" }, { - "title": "GHSA-8j42-pcfm-3467", - "url": "https://github.com/advisories/GHSA-8j42-pcfm-3467", + "title": "GHSA-66f2-xxgm-f6xp", + "url": "https://github.com/advisories/GHSA-66f2-xxgm-f6xp", "type": "advisory" }, - { - "title": "https://huntr.com/bounties/a4f6d357-5b44-4e00-9cac-f1cc351211d2", - "url": "https://huntr.com/bounties/a4f6d357-5b44-4e00-9cac-f1cc351211d2", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/pull/2954", - "url": "https://github.com/BerriAI/litellm/pull/2954", - "type": "reference" - }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8j42-pcfm-3467", + "url": "https://osv.dev/vulnerability/GHSA-66f2-xxgm-f6xp", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4264", - "type": "advisory" - }, - { - "title": "GHSA-7ggm-4rjg-594w", - "url": "https://github.com/advisories/GHSA-7ggm-4rjg-594w", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36422", "type": "advisory" }, { - "title": "https://huntr.com/bounties/a3221b0c-6e25-4295-ab0f-042997e8fc61", - "url": "https://huntr.com/bounties/a3221b0c-6e25-4295-ab0f-042997e8fc61", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%401.4.0/packages/server/src/index.ts#L312-L312", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/blob/main/litellm/proxy/proxy_server.py#L2104-L2108", - "url": "https://github.com/BerriAI/litellm/blob/main/litellm/proxy/proxy_server.py#L2104-L2108", - "type": "reference" + "title": "GHSA-2jch-qc96-9f5g", + "url": "https://github.com/advisories/GHSA-2jch-qc96-9f5g", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7ggm-4rjg-594w", + "url": "https://osv.dev/vulnerability/GHSA-2jch-qc96-9f5g", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2952", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36423", "type": "advisory" }, { - "title": "GHSA-46cm-pfwv-cgf8", - "url": "https://github.com/advisories/GHSA-46cm-pfwv-cgf8", + "title": "GHSA-fccx-2pwj-hrq7", + "url": "https://github.com/advisories/GHSA-fccx-2pwj-hrq7", "type": "advisory" }, { - "title": "https://huntr.com/bounties/a9e0a164-6de0-43a4-a640-0cbfb54220a4", - "url": "https://huntr.com/bounties/a9e0a164-6de0-43a4-a640-0cbfb54220a4", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/blob/0d803e13798db40aa7463e64a6bafaee386424f5/litellm/proxy/proxy_server.py#L2087", - "url": "https://github.com/BerriAI/litellm/blob/0d803e13798db40aa7463e64a6bafaee386424f5/litellm/proxy/proxy_server.py#L2087", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/issues/2949", - "url": "https://github.com/BerriAI/litellm/issues/2949", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-fccx-2pwj-hrq7", + "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/pull/2941", - "url": "https://github.com/BerriAI/litellm/pull/2941", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37145", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-46cm-pfwv-cgf8", + "title": "GHSA-858c-qxvx-rg9v", + "url": "https://github.com/advisories/GHSA-858c-qxvx-rg9v", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/commit/8a1cdc901708b07b7ff4eca20f9cb0f1f0e8d0b3", - "url": "https://github.com/BerriAI/litellm/commit/8a1cdc901708b07b7ff4eca20f9cb0f1f0e8d0b3", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-858c-qxvx-rg9v", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24086", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37146", "type": "advisory" }, { - "title": "GHSA-f8fv-f786-9933", - "url": "https://github.com/advisories/GHSA-f8fv-f786-9933", + "title": "GHSA-wxm4-9f8p-gggv", + "url": "https://github.com/advisories/GHSA-wxm4-9f8p-gggv", "type": "advisory" }, { - "title": "https://helpx.adobe.com/security/products/magento/apsb22-12.html", - "url": "https://helpx.adobe.com/security/products/magento/apsb22-12.html", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-wxm4-9f8p-gggv", + "type": "advisory" } ], "tags": [ + "actively-exploited", + "akoskm-create-mcp-server-stdio", + "anthropic", "auth-bypass", - "codex-cli", + "code-injection", "command-injection", - "copilot", - "cursor", "cve", - "cve-2025-53773", - "deserialization", - "developer-tools", + "cvss-10", + "dify", + "exploited-in-the-wild", + "flowise", + "flowise-components", + "flowise-ui", "ghsa", - "github-copilot", - "github.com-wazuh-wazuh", - "helm.sh-helm-v3", - "ide", - "idesaster", + "github.com-tencent-weknora", "info-disclosure", - "langflow", - "langflow-base", - "litellm", - "magento-community-edition", - "magento-project-community-edition", + "librechat", "mcp", + "npm", "nvd", - "openai", - "openai-codex", - "org.apache.activemq-activemq-all", - "org.apache.activemq-activemq-broker", - "org.apache.activemq-apache-activemq", - "org.geoserver-gs-wms", - "org.geoserver.web-gs-web-app", "osv", "path-traversal", "prompt-injection", "rce", - "roo-code", "sandbox-escape", - "settings-overwrite", "sql-injection", "ssrf", - "universal-attack", - "vscode", - "yolo-mode", - "zed" + "stdio", + "systemic-vuln", + "upsonic", + "weknora", + "xss" ] }, { - "id": "INC-01340", - "title": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", - "date": "2026-03", + "id": "INC-01063", + "title": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", + "date": "2026-01", "year": 2026, "category": "real-world", - "description": "TeamPCP compromised LiteLLM (3.4M daily downloads) via a poisoned Trivy GitHub Action that stole the PYPI_PUBLISH token. Backdoored versions contained a three-stage credential harvester collecting SSH keys, cloud tokens, Kubernetes configs. Available ~3 hours before PyPI quarantine.", + "description": "CVSS 8.8. Insufficient policy enforcement in Chrome's WebView tag allowed malicious browser extensions with only basic permissions to hijack the Gemini Live panel. Access camera/microphone without consent, take screenshots of any website, access local files. Discovered by Palo Alto Unit42. Patched in Chrome 143.0.7499.192.", "owasp_entries": [ "LLM03", - "LLM04", - "LLM05", - "ASI03", - "ASI04", - "ASI05", - "DSGAI08" + "LLM10", + "ASI02", + "ASI03" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", "AML.T0012", - "AML.T0018", - "AML.T0019", - "AML.T0020", + "AML.T0048", "AML.T0049", "AML.T0050", + "AML.T0053", "AML.T0055", - "AML.T0059", "AML.T0060" ], "mitre_atlas_tactics": [ - "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", "AML.TA0011", "AML.TA0012", "AML.TA0013" ], "nist_ai_rmf": [ "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", + "GOVERN-3.2", "MANAGE-2.3", - "MANAGE-3.2", - "MAP-4.1", - "MAP-4.2", + "MANAGE-2.4", + "MAP-3.5", "MEASURE-2.5", "MEASURE-2.7" ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "CI/CD pipeline compromised to steal PyPI publish token" - }, - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "Three-stage credential harvester deployed via package install" - } - ], - "attack_vector": "supply-chain", - "affected": "LiteLLM — 3.4M daily downloads; SSH keys, cloud tokens, K8s configs", - "impact": "Mass credential theft potential; supply chain compromise; 3-hour exposure window", - "severity": "Critical", - "mitigations": [ - "GitHub Actions supply chain verification", - "Package integrity monitoring and rollback", - "PyPI publish token rotation and 2FA" - ], + "attack_vector": "rce", + "affected": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", + "severity": "High", "references": [ { - "title": "Inside LiteLLM supply chain compromise", - "url": "https://www.trendmicro.com/en_us/research/26/c/inside-litellm-supply-chain-compromise.html", + "title": "Palo Alto Unit42", + "url": "https://unit42.paloaltonetworks.com/gemini-live-in-chrome-hijacking/", "type": "research" } - ], - "tags": [ - "ci-cd", - "credential-theft", - "litellm", - "pypi", - "supply-chain" ] }, { - "id": "INC-01370", - "title": "Marimo Pre-Auth RCE (CVE-2026-39987)", - "date": "2026-04", + "id": "INC-01064", + "title": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", + "date": "2026-01", "year": 2026, - "category": "real-world", - "description": "CVSS 9.3. Marimo Python reactive notebook (~19.6k GitHub stars) terminal WebSocket endpoint `/terminal/ws` lacks authentication. Single WebSocket connection grants full PTY shell. Commonly runs as root in Docker. Sysdig honeypots observed exploitation within hours of disclosure. Confirmed exploited in the wild. Fixed in v0.23.0.", + "category": "research-demonstrated", + "description": "Indirect prompt injection via shared Google Docs, calendar invites, or emails causes Gemini Enterprise to search for sensitive terms and embed results in an external image URL. A single poisoned document could exfiltrate years of email, calendar, and document data with zero clicks, zero warnings, and zero DLP alerts.", "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", "LLM05", - "ASI03", - "ASI05" + "ASI01", + "ASI02", + "ASI06", + "ASI09", + "DSGAI01", + "DSGAI19" ], "mitre_atlas": [ - "AML.T0011", - "AML.T0012", - "AML.T0049", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0048.001", + "AML.T0048.003", "AML.T0050", - "AML.T0055", - "AML.T0060" + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057", + "AML.T0059", + "AML.T0066" ], "mitre_atlas_tactics": [ + "AML.TA0001", "AML.TA0003", - "AML.TA0004", "AML.TA0005", - "AML.TA0012", - "AML.TA0013" + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.4", + "GOVERN-1.1", + "GOVERN-3.2", "MANAGE-2.3", - "MEASURE-2.5", - "MEASURE-2.7" + "MANAGE-2.4", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.6", + "MEASURE-2.7", + "MEASURE-2.8" ], - "attack_vector": "rce", - "affected": "Marimo Pre-Auth RCE (CVE-2026-39987)", + "maestro_layers": [ + { + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "Gemini processes attacker-controlled document content" + }, + { + "layer": "L2", + "label": "Data Operations", + "role": "impact", + "notes": "Years of email, calendar, and documents exfiltrated" + } + ], + "attack_vector": "indirect-prompt-injection", + "affected": "Gemini Enterprise — Google Workspace email, calendar, documents", + "impact": "Silent zero-click exfiltration of enterprise data; invisible to security teams and DLP", "severity": "Critical", + "mitigations": [ + "Block external image loading in AI-generated content", + "Content sanitization for shared documents", + "DLP monitoring for AI-mediated data access patterns" + ], "references": [ { - "title": "Endor Labs", - "url": "https://www.endorlabs.com/learn/root-in-one-request-marimos-critical-pre-auth-rce-cve-2026-39987", - "type": "advisory" + "title": "GeminiJack: Zero-click Gemini vulnerability", + "url": "https://noma.security/blog/geminijack-google-gemini-zero-click-vulnerability/", + "type": "research" + }, + { + "title": "Indirect prompt injections & Google's layered defense - Google Workspace", + "url": "https://knowledge.workspace.google.com/admin/security/indirect-prompt-injections-and-googles-layered-defense-strategy-for-gemini", + "type": "vendor" } + ], + "tags": [ + "data-exfiltration", + "enterprise", + "gemini", + "geminijack", + "google-workspace", + "indirect-prompt-injection", + "vertex-ai", + "zero-click" ] }, { - "id": "INC-01378", - "title": "MCP fURI -- Microsoft MarkItDown MCP SSRF", - "date": "2026-01", + "id": "INC-01092", + "title": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", + "date": "2026-03", "year": 2026, "category": "real-world", - "description": "Microsoft's MarkItDown MCP server allowed arbitrary URI calls with no boundaries. On AWS EC2 instances using IMDSv1, attackers could query instance metadata to obtain access/secret keys with potential full admin access. Researchers found ~36.7% of all MCP servers have similar SSRF exposure.", + "description": "Supply chain campaign targeting developers via 72 malicious OpenVSX extensions and 151+ GitHub repositories. 9 million installs. 433 compromised components. Used invisible Unicode characters to encode payloads. Targeted crypto wallets, credentials, SSH keys. Extensions mimicked AI coding assistant tools.", "owasp_entries": [ - "ASI02", - "ASI03" + "LLM04", + "LLM10", + "ASI03", + "ASI04", + "ASI05", + "DSGAI08" ], "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", "AML.T0012", "AML.T0049", "AML.T0050", - "AML.T0053", - "AML.T0055" + "AML.T0055", + "AML.T0060" ], "mitre_atlas_tactics": [ + "AML.TA0003", "AML.TA0004", "AML.TA0005", "AML.TA0012", @@ -17820,1413 +3962,1230 @@ ], "nist_ai_rmf": [ "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MAP-4.1", + "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "ssrf", - "affected": "MCP fURI", - "severity": "Medium", - "references": [ + "maestro_layers": [ { - "title": "Microsoft", - "url": "https://www.darkreading.com/application-security/microsoft-anthropic-mcp-servers-risk-takeovers", - "type": "research" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "Malicious extensions published to VSCode/OpenVSX marketplaces" }, { - "title": "BlueRock", - "url": "https://www.bluerock.io/post/mcp-furi-microsoft-markitdown-vulnerabilities", + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "Credential theft, crypto wallet compromise, SSH key exfiltration" + } + ], + "attack_vector": "supply-chain", + "affected": "OpenVSX, GitHub, npm — 9 million installs across 433 components", + "impact": "Mass credential theft; crypto wallet compromise; developer environment compromise at scale", + "severity": "Critical", + "mitigations": [ + "Code signing for marketplace extensions", + "Extension provenance verification", + "Runtime monitoring for extension network activity" + ], + "references": [ + { + "title": "GlassWorm: Unicode attack across GitHub, npm, VSCode", + "url": "https://www.aikido.dev/blog/glassworm-returns-unicode-attack-github-npm-vscode", "type": "research" } + ], + "tags": [ + "credential-theft", + "extensions", + "supply-chain", + "unicode", + "vscode" ] }, { - "id": "INC-01390", - "title": "MCPJam Inspector RCE (CVE-2026-23744)", - "date": "2026-01", - "year": 2026, + "id": "INC-01291", + "title": "LangChain LLMMathChain prompt-injection RCE via Python exec", + "date": "2023-04", + "year": 2023, "category": "real-world", - "description": "CVSS 9.8. MCPJam inspector v1.4.2 and earlier listens on 0.0.0.0 by default with no authentication. A crafted HTTP request installs a malicious MCP server and executes arbitrary code. Public exploit available. Fixed in v1.4.3.", + "description": "In LangChain through 0.0.131, the LLMMathChain chain allows prompt injection attacks that can execute arbitrary code via the Python exec method. The chain uses insecure exec/eval on LLM-generated math expressions. Disclosed by the NVIDIA AI Red Team; fixed in 0.0.142.", "owasp_entries": [ + "LLM01", + "LLM02", "LLM03", - "LLM05", + "LLM04", + "LLM06", + "LLM10", + "ASI01", "ASI02", + "ASI03", "ASI04", - "ASI05" + "ASI05", + "ASI08" ], "mitre_atlas": [ "AML.T0010", "AML.T0010.001", - "AML.T0010.003", "AML.T0011", + "AML.T0012", + "AML.T0029", + "AML.T0034", + "AML.T0048", "AML.T0049", "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", "AML.T0053", + "AML.T0057", "AML.T0060" ], "mitre_atlas_tactics": [ "AML.TA0003", "AML.TA0004", "AML.TA0005", + "AML.TA0010", + "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ + "GOVERN-1.4", "GOVERN-3.2", "GOVERN-6.1", - "GOVERN-6.2", + "MANAGE-2.1", "MANAGE-2.3", + "MANAGE-4.1", + "MAP-2.1", "MAP-3.5", - "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.4", "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "rce", - "affected": "MCPJam Inspector RCE (CVE-2026-23744)", + "attack_vector": "prompt-injection", + "affected": "langchain-ai/langchain <= 0.0.131 (fixed 0.0.142)", + "impact": "Remote code execution on agent host; environment variable exfiltration; reverse shell establishment; full host compromise", "severity": "Critical", + "mitigations": [ + "Disable code execution tools in production unless strictly required", + "Input validation before any tool invocation — do not pass unvalidated content to execution tools", + "Least-privilege principle — agents should not have host execution capabilities", + "Run code execution in sandboxed environments with no network access (containers, gVisor)", + "Run eval profiles: evals/garak/ASI05_code_execution.yaml — threshold 0%" + ], "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-23744", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29374", "type": "advisory" }, { - "title": "VulnerableMCP", - "url": "https://vulnerablemcp.info/vuln/cve-2026-23744-mcpjam-inspector-rce.html", + "title": "GHSA-fprp-p869-w6q2", + "url": "https://github.com/advisories/GHSA-fprp-p869-w6q2", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/1026", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/814", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/pull/1119", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://twitter.com/rharang/status/1641899743608463365/photo/1", + "type": "exploit" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-fprp-p869-w6q2", + "type": "advisory" + }, + { + "title": "https://github.com/langchain-ai/langchain", + "url": "https://github.com/langchain-ai/langchain", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-18", + "type": "advisory" + }, + { + "title": "CVE-2023-36258 — LangChain Python execution vulnerability", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36258", + "type": "advisory" + }, + { + "title": "Security Advisory: LlamaIndex code execution via prompt injection", + "url": "https://github.com/run-llama/llama_index/security/advisories", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/5872", + "type": "exploit" + }, + { + "title": "GHSA-2qmj-7962-cjq8", + "url": "https://github.com/advisories/GHSA-2qmj-7962-cjq8", + "type": "advisory" + }, + { + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-98.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-98.yaml", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/issues/5872", + "url": "https://github.com/langchain-ai/langchain/issues/5872", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/6003", + "url": "https://github.com/langchain-ai/langchain/pull/6003", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-2qmj-7962-cjq8", + "type": "advisory" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/7870", + "url": "https://github.com/langchain-ai/langchain/pull/7870", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-98", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46229", + "type": "advisory" + }, + { + "title": "Palo Alto Unit42", + "url": "https://unit42.paloaltonetworks.com/langchain-vulnerabilities/", + "type": "research" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-44467", + "type": "advisory" + }, + { + "title": "GHSA-gjjr-63x4-v8cq", + "url": "https://github.com/advisories/GHSA-gjjr-63x4-v8cq", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/commit/4c97a10bd0d9385cfee234a63b5bd826a295e483", + "type": "patch" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/11233", + "url": "https://github.com/langchain-ai/langchain/pull/11233", + "type": "reference" + }, + { + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2023-194.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2023-194.yaml", + "type": "reference" + }, + { + "title": "https://pypi.org/project/langchain-experimental/0.0.14", + "url": "https://pypi.org/project/langchain-experimental/0.0.14", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-gjjr-63x4-v8cq", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-194", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-28088", + "type": "advisory" + }, + { + "title": "GHSA-h59x-p739-982c", + "url": "https://github.com/advisories/GHSA-h59x-p739-982c", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/PinkDraconian/PoC-Langchain-RCE/blob/main/README.md", + "type": "exploit" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/blob/f96dd57501131840b713ed7c2e86cbf1ddc2761f/libs/core/langchain_core/utils/loading.py", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/MCPJam/inspector/commit/e6b9cf9d9e6c9cbec31493b1bdca3a1255fe3e7a", + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/pull/18600", "type": "patch" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/MCPJam/inspector/security/advisories/GHSA-232v-j27c-5pp6", - "type": "vendor" + "title": "https://github.com/langchain-ai/langchain/commit/e1924b3e93d513ca950c72f8e80e1c133749fba5", + "url": "https://github.com/langchain-ai/langchain/commit/e1924b3e93d513ca950c72f8e80e1c133749fba5", + "type": "reference" }, { - "title": "GHSA-232v-j27c-5pp6", - "url": "https://github.com/advisories/GHSA-232v-j27c-5pp6", - "type": "advisory" - } - ], - "tags": [ - "cve", - "ghsa", - "mcpjam-inspector", - "nvd", - "rce" - ] - }, - { - "id": "INC-01391", - "title": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "SSRF vulnerability (CVSS 8.8) in Azure MCP Server Tools allowed stealing managed identity tokens via malicious URLs submitted in place of Azure resource identifiers. Attackers could impersonate the server's identity and access Azure resources, compromising Azure and Entra ID tenants.", - "owasp_entries": [ - "LLM03", - "LLM05", - "ASI02", - "ASI03", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0012", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0055", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MANAGE-3.1", - "MAP-3.5", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "MCPwned", - "severity": "Critical", - "references": [ + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-43.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-43.yaml", + "type": "reference" + }, { - "title": "Microsoft", - "url": "https://windowsnews.ai/article/microsoft-patches-critical-azure-mcp-ssrf-vulnerability-cve-2026-26118-in-march-2026-security-update.404636", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-h59x-p739-982c", "type": "advisory" }, { - "title": "Token Security", - "url": "https://www.token.security/blog/mcpwned-azure-mcp-rce-vulnerability-leads-to-cloud-takeover", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-43", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26118", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2965", "type": "advisory" }, { - "title": "secure@microsoft.com", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26118", - "type": "vendor" - }, - { - "title": "GHSA-hhfx-wfvq-7g9c", - "url": "https://github.com/advisories/GHSA-hhfx-wfvq-7g9c", + "title": "GHSA-3hjh-jh2h-vrg6", + "url": "https://github.com/advisories/GHSA-3hjh-jh2h-vrg6", "type": "advisory" }, { - "title": "https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34", - "url": "https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34", + "title": "https://huntr.com/bounties/90b0776d-9fa6-4841-aac4-09fde5918cae", + "url": "https://huntr.com/bounties/90b0776d-9fa6-4841-aac4-09fde5918cae", "type": "reference" }, { - "title": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2", - "url": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2", + "title": "https://github.com/langchain-ai/langchain/pull/22903", + "url": "https://github.com/langchain-ai/langchain/pull/22903", "type": "reference" }, { - "title": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17", - "url": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17", + "title": "https://github.com/langchain-ai/langchain/commit/9a877c7adbd06f90a2518152f65b562bd90487cc", + "url": "https://github.com/langchain-ai/langchain/commit/9a877c7adbd06f90a2518152f65b562bd90487cc", "type": "reference" - } - ], - "tags": [ - "azure", - "azure-mcp", - "azure.mcp", - "cloud-takeover", - "cve", - "ghsa", - "mcp", - "msmcp-azure", - "nvd", - "rce", - "ssrf" - ] - }, - { - "id": "INC-01411", - "title": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "An autonomous AI agent inside Meta posted incorrect technical advice on an internal forum without human approval. An employee followed it, exposing proprietary code, business strategies, and user-related datasets to unauthorized engineers for two hours. Classified as Sev-1.", - "owasp_entries": [ - "LLM06", - "LLM09", - "ASI08", - "ASI09", - "ASI10", - "DSGAI01" - ], - "mitre_atlas": [ - "AML.T0048", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0053", - "AML.T0058" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0005", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-4.1", - "MANAGE-4.3", - "MAP-3.5", - "MEASURE-2.5", - "MEASURE-2.8" - ], - "maestro_layers": [ + }, { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "Autonomous agent posts without human approval" + "title": "https://github.com/langchain-ai/langchain/commit/73c42306745b0831aa6fe7fe4eeb70d2c2d87a82", + "url": "https://github.com/langchain-ai/langchain/commit/73c42306745b0831aa6fe7fe4eeb70d2c2d87a82", + "type": "reference" }, { - "layer": "L2", - "label": "Data Operations", - "role": "impact", - "notes": "Proprietary data exposed to unauthorized engineers" - } - ], - "attack_vector": "other", - "affected": "Meta — internal engineering forum; proprietary code and business data", - "impact": "Sev-1 incident; proprietary data exposed for 2 hours; trust damage in internal AI agents", - "severity": "Critical", - "mitigations": [ - "Agent output confidence thresholds for autonomous posting", - "Content review before publishing agent-generated advice", - "Human-in-the-loop for agent posts to shared channels" - ], - "references": [ + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-3hjh-jh2h-vrg6", + "type": "advisory" + }, { - "title": "Meta is having trouble with rogue AI agents", - "url": "https://techcrunch.com/2026/03/18/meta-is-having-trouble-with-rogue-ai-agents/", - "type": "news" - } - ], - "tags": [ - "autonomous", - "data-exposure", - "meta", - "rogue-agent", - "sev-1" - ] - }, - { - "id": "INC-01429", - "title": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", - "date": "2026-03", - "year": 2026, - "category": "research-demonstrated", - "description": "Cross-prompt injection attack (CVE-2026-26133) in Microsoft 365 Copilot email/Teams summarization. Attacker embeds hidden instructions in ordinary emails; Copilot produces convincing phishing content within the trusted summary interface.", - "owasp_entries": [ - "LLM01", - "LLM03", - "LLM04", - "LLM05", - "ASI01", - "ASI04", - "ASI05", - "ASI06", - "ASI09", - "DSGAI04" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0011" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-118", + "type": "advisory" + }, { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "Copilot processes attacker-controlled email content" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3095", + "type": "advisory" }, { - "layer": "L6", - "label": "Security & Compliance", - "role": "impact", - "notes": "Phishing content appears as trusted AI-generated summary" - } - ], - "attack_vector": "xss", - "affected": "Microsoft 365 Copilot — enterprise email and Teams users", - "impact": "AI-powered phishing inside trusted interface; user trust exploitation; credential theft", - "severity": "Critical", - "mitigations": [ - "Email content sanitization before AI summarization", - "Phishing detection in AI-generated outputs", - "Visual distinction for AI-generated vs original content" - ], - "references": [ + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/e62d4895-2901-405b-9559-38276b6a5273", + "type": "exploit" + }, { - "title": "Copilot prompt injection AI email phishing", - "url": "https://permiso.io/blog/copilot-prompt-injection-ai-email-phishing", - "type": "research" + "title": "GHSA-q25c-c977-4cmh", + "url": "https://github.com/advisories/GHSA-q25c-c977-4cmh", + "type": "advisory" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/24451", + "url": "https://github.com/langchain-ai/langchain/pull/24451", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/commit/604dfe2d99246b0c09f047c604f0c63eafba31e7", + "url": "https://github.com/langchain-ai/langchain/commit/604dfe2d99246b0c09f047c604f0c63eafba31e7", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/releases/tag/langchain-community%3D%3D0.2.9", + "url": "https://github.com/langchain-ai/langchain/releases/tag/langchain-community%3D%3D0.2.9", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-q25c-c977-4cmh", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26133", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21513", "type": "advisory" }, { - "title": "secure@microsoft.com", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26133", - "type": "vendor" - } - ], - "tags": [ - "command-injection", - "copilot", - "cve", - "email", - "nvd", - "phishing", - "trust-exploitation", - "xpia" - ] - }, - { - "id": "INC-01435", - "title": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", - "date": "2026-03-10", - "year": 2026, - "category": "real-world", - "description": "XSS flaw in Microsoft Excel causes Copilot Agent mode to exfiltrate data via unintended network egress. Zero-click: victim does not need to open the file -- processing by Copilot Agent in preview pane or automated workflow triggers the attack. CVSS 7.5. Patched March 10, 2026.", - "owasp_entries": [ - "LLM01", - "LLM02", - "ASI01", - "ASI02", - "ASI03", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0024", - "AML.T0025", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "attack_vector": "data-exfiltration", - "affected": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", - "severity": "High", - "references": [ + "title": "Snyk", + "url": "https://security.snyk.io/vuln/SNYK-PYTHON-LANGCHAINEXPERIMENTAL-7278171", + "type": "advisory" + }, { - "title": "Microsoft", - "url": "https://www.theregister.com/2026/03/10/zeroclick_microsoft_info_disclosure_bug/", - "type": "research" + "title": "report@snyk.io", + "url": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py%23L81", + "type": "reference" }, { - "title": "Microsoft Patches Critical Excel Copilot AI Data Leak Vulnerability", - "url": "https://oecd.ai/en/incidents/2026-03-10-21ff", - "type": "report" + "title": "report@snyk.io", + "url": "https://github.com/langchain-ai/langchain/commit/7b13292e3544b2f5f2bfb8a27a062ea2b0c34561", + "type": "patch" }, { - "title": "Patch Alert: Microsoft Fixes Nearly 80 Bugs, Including Critical Office Flaws", - "url": "https://www.techrepublic.com/article/news-microsoft-march-patch-tuesday-78-vulnerabilities/", - "type": "news" + "title": "GHSA-cgcg-p68q-3w7v", + "url": "https://github.com/advisories/GHSA-cgcg-p68q-3w7v", + "type": "advisory" }, { - "title": "Critical 0-Click Microsoft Excel Security Bug Lets Copilot Steal Data", - "url": "https://www.forbes.com/sites/daveywinder/2026/03/11/critical-0-click-microsoft-excel-security-bug-lets-copilot-steal-data/", - "type": "news" + "title": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py#L81", + "url": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py#L81", + "type": "reference" }, { - "title": "This 'fascinating' Microsoft Excel security flaw teams up spreadsheets and Copilot Agent to steal data", - "url": "https://www.techradar.com/pro/security/this-fascinating-microsoft-excel-security-flaw-teams-up-spreadsheets-and-copilot-agent-to-steal-data", - "type": "news" - } - ], - "tags": [ - "oecd-aim" - ] - }, - { - "id": "INC-01440", - "title": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "CVSS 9.9. Critical RCE in Microsoft Semantic Kernel Python SDK's InMemoryVectorStore filter functionality. Attackers execute arbitrary code through crafted filter expressions. Semantic Kernel powers many Microsoft Copilot integrations and RAG-based AI applications. Fixed in python-1.39.4.", - "owasp_entries": [ - "LLM03", - "LLM04", - "LLM05", - "LLM08", - "ASI02", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0011", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0059", - "AML.T0060", - "AML.T0066", - "AML.T0070" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", - "severity": "Critical", - "references": [ + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-62.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-62.yaml", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-cgcg-p68q-3w7v", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-62", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46946", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://cwe.mitre.org/data/definitions/95.html", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://docs.sympy.org/latest/modules/codegen.html", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://gist.github.com/12end/68c0c58d2564ef4141bccd4651480820#file-cve-2024-46946-txt", + "type": "exploit" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/releases/tag/langchain-experimental%3D%3D0.3.0", + "type": "reference" + }, + { + "title": "GHSA-p2qj-r53j-h3xj", + "url": "https://github.com/advisories/GHSA-p2qj-r53j-h3xj", + "type": "advisory" + }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/cve-2026-26030", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-p2qj-r53j-h3xj", "type": "advisory" }, { - "title": "GitLab Advisory", - "url": "https://advisories.gitlab.com/pkg/pypi/semantic-kernel/CVE-2026-26030/", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-374", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/microsoft/semantic-kernel/pull/13505", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8309", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/microsoft/semantic-kernel/releases/tag/python-1.39.4", - "type": "reference" + "title": "GHSA-45pg-36p6-83v9", + "url": "https://github.com/advisories/GHSA-45pg-36p6-83v9", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/microsoft/semantic-kernel/security/advisories/GHSA-xjw9-4gw8-4rqx", - "type": "vendor" + "title": "security@huntr.dev", + "url": "https://github.com/langchain-ai/langchain/commit/c2a3021bb0c5f54649d380b42a0684ca5778c255", + "type": "patch" }, { - "title": "GHSA-xjw9-4gw8-4rqx", - "url": "https://github.com/advisories/GHSA-xjw9-4gw8-4rqx", - "type": "advisory" + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/8f4ad910-7fdc-4089-8f0a-b5df5f32e7c5", + "type": "exploit" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/semantic-kernel/PYSEC-2026-163.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/semantic-kernel/PYSEC-2026-163.yaml", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-115.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-115.yaml", "type": "reference" - } - ], - "tags": [ - "cve", - "ghsa", - "nvd", - "rce", - "semantic-kernel" - ] - }, - { - "id": "INC-01465", - "title": "Moltbook — vibe-coded social network exposes 1.5M API tokens and 35K emails", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "Moltbook, a social network built entirely via vibe coding (zero manual code), exposed 1.5 million API authentication tokens, 35,000 email addresses, and thousands of private messages via an unsecured Supabase database. The AI scaffolded the database with permissive settings; the founder deployed as-is without review.", - "owasp_entries": [ - "LLM02", - "ASI03", - "ASI09", - "DSGAI01", - "DSGAI02", - "DSGAI08" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0024", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0055", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "AI-generated code with insecure default database configuration" }, { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "Unsecured database exposed to public internet" - } - ], - "attack_vector": "other", - "affected": "Moltbook — 1.5M API tokens, 35K emails, private messages", - "impact": "First major real-world vibe-coding security disaster; mass data exposure; trust damage", - "severity": "Critical", - "mitigations": [ - "Automated security scanning of AI-scaffolded applications", - "Database access control defaults", - "Security review of AI-generated infrastructure code before deployment" - ], - "references": [ - { - "title": "Exposed Moltbook database reveals millions of API keys", - "url": "https://www.wiz.io/blog/exposed-moltbook-database-reveals-millions-of-api-keys", - "type": "research" - } - ], - "tags": [ - "ai-generated-code", - "database-exposure", - "insecure-defaults", - "vibe-coding" - ] - }, - { - "id": "INC-01471", - "title": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", - "date": "2026-01", - "year": 2026, - "category": "real-world", - "description": "CVSS 10.0. Content-type confusion in webhook request handling allows unauthenticated attackers to forge uploaded files, read arbitrary local files, forge admin sessions, and execute commands on the host. ~100,000 n8n servers globally affected. If an LLM-powered chatbot node is present, attackers can exfiltrate file contents by chatting with the bot. Fixed in v1.121.0.", - "owasp_entries": [ - "LLM02", - "LLM03", - "LLM05", - "ASI02", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0011", - "AML.T0024", - "AML.T0025", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "data-exfiltration", - "affected": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", - "severity": "Critical", - "references": [ + "title": "https://github.com/langchain-ai/langchain/commit/64c317eba05fbac0c6a6fc5aa192bc0d7130972e", + "url": "https://github.com/langchain-ai/langchain/commit/64c317eba05fbac0c6a6fc5aa192bc0d7130972e", + "type": "reference" + }, { - "title": "NVD", - "url": "https://thehackernews.com/2026/01/critical-n8n-vulnerability-cvss-100.html", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-45pg-36p6-83v9", + "type": "advisory" }, { - "title": "Cyera Research", - "url": "https://www.cyera.com/research/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026-21858", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-115", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-21858", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55443", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-v4pr-fm98-w9pg", - "type": "vendor" + "url": "https://github.com/langchain-ai/langchain/commit/dcaf7795a3e6590af55c3ff7bda6add6355e9ea6", + "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://www.cyera.com/research-labs/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026-21858", - "type": "exploit" + "url": "https://github.com/langchain-ai/langchain/security/advisories/GHSA-gr75-jv2w-4656", + "type": "vendor" }, { - "title": "GHSA-v4pr-fm98-w9pg", - "url": "https://github.com/advisories/GHSA-v4pr-fm98-w9pg", + "title": "GHSA-gr75-jv2w-4656", + "url": "https://github.com/advisories/GHSA-gr75-jv2w-4656", "type": "advisory" - } - ], - "tags": [ - "cve", - "ghsa", - "info-disclosure", - "n8n", - "nvd" - ] - }, - { - "id": "INC-01589", - "title": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", - "date": "2026-02-01", - "year": 2026, - "category": "real-world", - "description": "OpenClaw (135K+ GitHub stars) had over 138 CVEs in 63 days. CVE-2026-25253 (CVSS 8.8) enabled one-click RCE. Over 21,000 publicly exposed instances found. 341 malicious skills (~12% of ClawHub marketplace) performed credential theft and lateral movement across connected enterprise SaaS apps.", - "owasp_entries": [ - "LLM02", - "LLM03", - "LLM05", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI10" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0048", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "maestro_layers": [ + }, { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "138 CVEs in core framework; malicious skills in marketplace" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-gr75-jv2w-4656", + "type": "advisory" }, { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "propagation", - "notes": "12% of marketplace skills are malicious" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58340", + "type": "advisory" }, { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "21,000 exposed instances; lateral movement to SaaS apps" - } - ], - "attack_vector": "rce", - "affected": "OpenClaw — 21,000+ exposed instances; connected enterprise SaaS apps", - "impact": "138 CVEs; 341 malicious marketplace skills; credential theft at scale; enterprise lateral movement", - "severity": "Critical", - "mitigations": [ - "Agent framework security auditing", - "Marketplace skill vetting and signing", - "Network isolation for agent instances" - ], - "references": [ + "title": "disclosure@vulncheck.com", + "url": "https://huntr.com/bounties/e7ece02c-d4bb-4166-8e08-6baf4f8845bb", + "type": "exploit" + }, { - "title": "OpenClaw: The AI agent security crisis", - "url": "https://www.reco.ai/blog/openclaw-the-ai-agent-security-crisis-unfolding-right-now", - "type": "research" + "title": "disclosure@vulncheck.com", + "url": "https://www.langchain.com/", + "type": "reference" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/langchain-mrkloutputparser-redos", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25253", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5998", "type": "advisory" }, { - "title": "GHSA-g8p2-7wf7-98mq", - "url": "https://github.com/advisories/GHSA-g8p2-7wf7-98mq", + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/fa3a2753-57c3-4e08-a176-d7a3ffda28fe", + "type": "exploit" + }, + { + "title": "GHSA-f2jm-rw3h-6phg", + "url": "https://github.com/advisories/GHSA-f2jm-rw3h-6phg", "type": "advisory" }, { - "title": "https://github.com/openclaw/openclaw/security/advisories/GHSA-g8p2-7wf7-98mq", - "url": "https://github.com/openclaw/openclaw/security/advisories/GHSA-g8p2-7wf7-98mq", + "title": "https://github.com/langchain-ai/langchain/commit/77209f315efd13442ec51c67719ba37dfaa44511", + "url": "https://github.com/langchain-ai/langchain/commit/77209f315efd13442ec51c67719ba37dfaa44511", "type": "reference" }, { - "title": "https://depthfirst.com/post/1-click-rce-to-steal-your-moltbot-data-and-keys", - "url": "https://depthfirst.com/post/1-click-rce-to-steal-your-moltbot-data-and-keys", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-f2jm-rw3h-6phg", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38459", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/commit/ce0b0f22a175139df8f41cdcfb4d2af411112009", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/compare/langchain-experimental==0.0.60...langchain-experimental==0.0.61", "type": "reference" }, { - "title": "https://openclaw.ai/blog", - "url": "https://openclaw.ai/blog", + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/pull/22860", "type": "reference" }, { - "title": "MITRE ATLAS — AML.CS0050", - "url": "https://atlas.mitre.org/studies/AML.CS0050", - "type": "research" + "title": "GHSA-wmvm-9vqv-5qpp", + "url": "https://github.com/advisories/GHSA-wmvm-9vqv-5qpp", + "type": "advisory" }, { - "title": "GHSA-r2c6-8jc8-g32w", - "url": "https://github.com/advisories/GHSA-r2c6-8jc8-g32w", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-53.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-53.yaml", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-wmvm-9vqv-5qpp", "type": "advisory" - } - ], - "tags": [ - "atlas", - "case-study", - "clawdbot", - "cve", - "enterprise", - "ghsa", - "malicious-skills", - "marketplace", - "mass-cve", - "openclaw", - "rce", - "research" - ] - }, - { - "id": "INC-01637", - "title": "PerplexedBrowser -- Perplexity Comet Agentic Browser Vulnerabilities", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Three separate disclosures: CometJacking (one-click URL manipulation exfiltrates data, LayerX Oct 2025), PerplexedBrowser (zero-click attacks via calendar invites exfiltrate local files and hijack 1Password accounts, Zenity Labs Mar 2026), and Trail of Bits audit (four prompt injection techniques extracting private Gmail data, Feb 2026). All patched.", - "owasp_entries": [ - "LLM01", - "ASI01", - "ASI02", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0048.001", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053" - ], - "mitre_atlas_tactics": [ - "AML.TA0005", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "attack_vector": "prompt-injection", - "affected": "PerplexedBrowser", - "severity": "Medium", - "references": [ + }, { - "title": "Zenity Labs", - "url": "https://labs.zenity.io/p/perplexedbrowser-perplexity-s-agent-browser-can-leak-your-personal-pc-local-files", - "type": "research" - } - ] - }, - { - "id": "INC-01666", - "title": "PraisonAI Quadruple CVE Disclosure", - "date": "2026-04", - "year": 2026, - "category": "real-world", - "description": "Four critical/high vulnerabilities in PraisonAI multi-agent framework: CVE-2026-39888 (CVSS 9.9) sandbox escape via exception frame traversal; CVE-2026-39890 (CVSS 9.8) RCE via YAML deserialization with `!!js/function` tags; CVE-2026-39891 (CVSS 8.8) template injection in agent tool definitions; CVE-2026-39889 (CVSS 7.5) unauthenticated SSE event stream exposes all agent activity. Fixed in 4.5.115.", - "owasp_entries": [ - "LLM03", - "LLM05", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI07" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0011", - "AML.T0012", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0055", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "PraisonAI Quadruple CVE Disclosure", - "severity": "Critical", - "references": [ + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-53", + "type": "advisory" + }, { - "title": "GitLab Advisory", - "url": "https://advisories.gitlab.com/pkg/pypi/praisonai/CVE-2026-39890/", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3571", "type": "advisory" }, { - "title": "TheHackerWire", - "url": "https://www.thehackerwire.com/critical-praisonai-sandbox-escape-rce-cve-2026-39888/", + "title": "security@huntr.dev", + "url": "https://github.com/langchain-ai/langchain/commit/aad3d8bd47d7f5598156ff2bdcc8f736f24a7412", + "type": "patch" + }, + { + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/2df3acdc-ee4f-4257-bbf8-a7de3870a9d8", + "type": "exploit" + }, + { + "title": "GHSA-rgp8-pm28-3759", + "url": "https://github.com/advisories/GHSA-rgp8-pm28-3759", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-rgp8-pm28-3759", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27444", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/commit/de9a6cdf163ed00adaf2e559203ed0a9ca2f1de7", + "type": "patch" + }, + { + "title": "GHSA-v8vj-cv27-hjv8", + "url": "https://github.com/advisories/GHSA-v8vj-cv27-hjv8", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-v8vj-cv27-hjv8", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-375", "type": "advisory" }, + { + "title": "https://pypi.org/project/langchain-experimental", + "url": "https://pypi.org/project/langchain-experimental", + "type": "reference" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39891", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0243", "type": "advisory" }, { - "title": "GHSA-hwg5-x759-7wjg", - "url": "https://github.com/advisories/GHSA-hwg5-x759-7wjg", + "title": "GHSA-h9j7-5xvc-qhg5", + "url": "https://github.com/advisories/GHSA-h9j7-5xvc-qhg5", "type": "advisory" }, { - "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-hwg5-x759-7wjg", - "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-hwg5-x759-7wjg", + "title": "https://github.com/langchain-ai/langchain/commit/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22", + "url": "https://github.com/langchain-ai/langchain/commit/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22", "type": "reference" }, { - "title": "https://github.com/MervinPraison/PraisonAI/releases/tag/v4.5.115", - "url": "https://github.com/MervinPraison/PraisonAI/releases/tag/v4.5.115", + "title": "https://huntr.com/bounties/370904e7-10ac-40a4-a8d4-e2d16e1ca861", + "url": "https://huntr.com/bounties/370904e7-10ac-40a4-a8d4-e2d16e1ca861", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/15559", + "url": "https://github.com/langchain-ai/langchain/pull/15559", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/blob/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22/libs/community/langchain_community/document_loaders/recursive_url_loader.py#L51-L51", + "url": "https://github.com/langchain-ai/langchain/blob/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22/libs/community/langchain_community/document_loaders/recursive_url_loader.py#L51-L51", "type": "reference" }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-h9j7-5xvc-qhg5", + "type": "advisory" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39889", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32786", "type": "advisory" }, { - "title": "GHSA-f292-66h9-fpmf", - "url": "https://github.com/advisories/GHSA-f292-66h9-fpmf", + "title": "cve@mitre.org", + "url": "https://gist.github.com/rharang/d265f46fc3161b31ac2e81db44d662e1", "type": "advisory" }, { - "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-f292-66h9-fpmf", - "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-f292-66h9-fpmf", + "title": "GHSA-6h8p-4hx9-w66c", + "url": "https://github.com/advisories/GHSA-6h8p-4hx9-w66c", + "type": "advisory" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/12747", + "url": "https://github.com/langchain-ai/langchain/pull/12747", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39888", + "title": "https://github.com/langchain-ai/langchain/releases/tag/v0.0.329", + "url": "https://github.com/langchain-ai/langchain/releases/tag/v0.0.329", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6h8p-4hx9-w66c", "type": "advisory" }, { - "title": "GHSA-qf73-2hrx-xprp", - "url": "https://github.com/advisories/GHSA-qf73-2hrx-xprp", + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/commit/9ecb7240a480720ec9d739b3877a52f76098a2b8", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/pull/11925", + "type": "vendor" + }, + { + "title": "GHSA-655w-fm8m-m478", + "url": "https://github.com/advisories/GHSA-655w-fm8m-m478", "type": "advisory" }, { - "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qf73-2hrx-xprp", - "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qf73-2hrx-xprp", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-205.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-205.yaml", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39890", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-655w-fm8m-m478", "type": "advisory" }, { - "title": "GHSA-32vr-5gcf-3pw2", - "url": "https://github.com/advisories/GHSA-32vr-5gcf-3pw2", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-205", "type": "advisory" }, - { - "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-32vr-5gcf-3pw2", - "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-32vr-5gcf-3pw2", - "type": "reference" - } - ], - "tags": [ - "cve", - "deserialization", - "ghsa", - "path-traversal", - "praisonai", - "praisonaiagents", - "rce" - ] - }, - { - "id": "INC-01723", - "title": "Anyscale Ray LFI via /static/ directory (missing authorization)", - "date": "2023-09-05", - "year": 2023, - "category": "real-world", - "description": "Local file inclusion in Ray's /static/ directory allows attackers to read any file on the server without authentication. Fixed in 2.8.1+.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "LLM06", - "ASI01", - "ASI04", - "ASI05", - "DSGAI08" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0011", - "AML.T0018", - "AML.T0040", - "AML.T0048", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0000", - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-3.1", - "MAP-2.1", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "path-traversal", - "affected": "ray < 2.8.1", - "impact": "Cluster-wide malware propagation; cryptocurrency mining hijack; compute resource theft", - "severity": "Critical", - "mitigations": [ - "Authentication on job submission APIs", - "Network segmentation for AI compute clusters", - "Patch Ray framework promptly" - ], - "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6020", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32785", "type": "advisory" }, { - "title": "GHSA-6cxr-8q3m-jwrr", - "url": "https://github.com/advisories/GHSA-6cxr-8q3m-jwrr", + "title": "GHSA-8h5w-f6q9-wg35", + "url": "https://github.com/advisories/GHSA-8h5w-f6q9-wg35", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/83dd8619-6dc3-4c98-8f1b-e620fedcd1f6", - "type": "exploit" + "title": "https://gist.github.com/rharang/9c58d39db8c01db5b7c888e467c0533f", + "url": "https://gist.github.com/rharang/9c58d39db8c01db5b7c888e467c0533f", + "type": "reference" }, { - "title": "https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023", - "url": "https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023", + "title": "https://github.com/langchain-ai/langchain/issues/5923#issuecomment-1696053841", + "url": "https://github.com/langchain-ai/langchain/issues/5923#issuecomment-1696053841", "type": "reference" }, { - "title": "https://github.com/ray-project/ray/releases/tag/ray-2.8.1", - "url": "https://github.com/ray-project/ray/releases/tag/ray-2.8.1", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-8h5w-f6q9-wg35", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6cxr-8q3m-jwrr", + "url": "https://osv.dev/vulnerability/PYSEC-2026-372", "type": "advisory" }, { - "title": "https://github.com/ray-project/ray", - "url": "https://github.com/ray-project/ray", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36095", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6021", + "title": "GHSA-gwqq-6vq7-5j86", + "url": "https://github.com/advisories/GHSA-gwqq-6vq7-5j86", "type": "advisory" }, { - "title": "GHSA-3pww-qvr8-6mhp", - "url": "https://github.com/advisories/GHSA-3pww-qvr8-6mhp", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-gwqq-6vq7-5j86", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/5039c045-f986-4cbc-81ac-370fe4b0d3f8", - "type": "exploit" + "title": "https://github.com/langchain-ai/langchain/commit/8ba9835b925473655914f63822775679e03ea137", + "url": "https://github.com/langchain-ai/langchain/commit/8ba9835b925473655914f63822775679e03ea137", + "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3pww-qvr8-6mhp", + "url": "https://osv.dev/vulnerability/PYSEC-2023-138", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6019", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38896", "type": "advisory" }, { - "title": "GHSA-h3xg-wv58-5p43", - "url": "https://github.com/advisories/GHSA-h3xg-wv58-5p43", + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/pull/6003", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://twitter.com/llm_sec/status/1668711587287375876", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/d0290f3c-b302-4161-89f2-c13bb28b4cfe", - "type": "exploit" + "title": "GHSA-92j5-3459-qgp4", + "url": "https://github.com/advisories/GHSA-92j5-3459-qgp4", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h3xg-wv58-5p43", + "url": "https://osv.dev/vulnerability/GHSA-92j5-3459-qgp4", "type": "advisory" }, { - "title": "ShadowRay: First Known Attack Campaign Targeting AI Workloads - Oligo", - "url": "https://www.oligo.security/blog/shadowray-attack-ai-workloads-actively-exploited-in-the-wild", - "type": "research" + "title": "https://github.com/langchain-ai/langchain/commit/e294ba475a355feb95003ed8f1a2b99942509a9e", + "url": "https://github.com/langchain-ai/langchain/commit/e294ba475a355feb95003ed8f1a2b99942509a9e", + "type": "reference" }, { - "title": "CVE-2023-48022 Anyscale Ray Dashboard RCE - Censys", - "url": "https://censys.com/advisory/cve-2023-48022", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-146", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36188", + "type": "advisory" + }, + { + "title": "GHSA-57fc-8q82-gfp3", + "url": "https://github.com/advisories/GHSA-57fc-8q82-gfp3", "type": "advisory" }, { - "title": "MITRE ATLAS — AML.CS0023", - "url": "https://atlas.mitre.org/studies/AML.CS0023", - "type": "research" + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-109.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-109.yaml", + "type": "reference" }, { - "title": "ShadowRay: AI Infrastructure Is Being Exploited In the Wild", - "url": "https://protectai.com/threat-research/shadowray-ai-infrastructure-is-being-exploited-in-the-wild", - "type": "research" + "title": "https://github.com/langchain-ai/langchain/pull/8425", + "url": "https://github.com/langchain-ai/langchain/pull/8425", + "type": "reference" }, { - "title": "CVE-2023-48022", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-48022", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-57fc-8q82-gfp3", + "type": "advisory" }, { - "title": "ShadowRay 2.0: AI turned against itself", - "url": "https://www.oligo.security/blog/shadowray-2-0-attackers-turn-ai-against-itself-in-global-campaign-that-hijacks-ai-into-self-propagating-botnet", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-109", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32981", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38860", "type": "advisory" }, { - "title": "GHSA-j3mh-qmjj-xp83", - "url": "https://github.com/advisories/GHSA-j3mh-qmjj-xp83", + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/7641", + "type": "exploit" + }, + { + "title": "GHSA-fj32-q626-pjjc", + "url": "https://github.com/advisories/GHSA-fj32-q626-pjjc", "type": "advisory" }, { - "title": "https://packetstorm.news/files/id/215801/", - "url": "https://packetstorm.news/files/id/215801/", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-145.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-145.yaml", "type": "reference" }, { - "title": "https://www.vulncheck.com/advisories/ray-dashboard-path-traversal-leading-to-local-file-disclosure", - "url": "https://www.vulncheck.com/advisories/ray-dashboard-path-traversal-leading-to-local-file-disclosure", + "title": "https://github.com/langchain-ai/langchain/issues/7641", + "url": "https://github.com/langchain-ai/langchain/issues/7641", "type": "reference" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/ray/PYSEC-2026-130.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/ray/PYSEC-2026-130.yaml", + "title": "https://github.com/langchain-ai/langchain/pull/8092", + "url": "https://github.com/langchain-ai/langchain/pull/8092", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j3mh-qmjj-xp83", + "url": "https://osv.dev/vulnerability/GHSA-fj32-q626-pjjc", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-130", + "url": "https://osv.dev/vulnerability/PYSEC-2023-145", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27482", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36189", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/ray-project/ray/commit/0fda8b824cdc9dc6edd763bb28dfd7d1cc9b02a4", - "type": "patch" + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/5923", + "type": "exploit" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/ray-project/ray/pull/60526", + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/pull/6051", "type": "patch" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/ray-project/ray/releases/tag/ray-2.54.0", - "type": "reference" + "title": "GHSA-7q94-qpjr-xpgm", + "url": "https://github.com/advisories/GHSA-7q94-qpjr-xpgm", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/ray-project/ray/security/advisories/GHSA-q5fh-2hc8-f6rq", - "type": "vendor" + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-110.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-110.yaml", + "type": "reference" }, { - "title": "GHSA-q5fh-2hc8-f6rq", - "url": "https://github.com/advisories/GHSA-q5fh-2hc8-f6rq", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-7q94-qpjr-xpgm", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-q5fh-2hc8-f6rq", + "url": "https://osv.dev/vulnerability/PYSEC-2023-110", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34351", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34541", "type": "advisory" }, { - "title": "GHSA-gx77-xgc2-4888", - "url": "https://github.com/advisories/GHSA-gx77-xgc2-4888", + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/4849", + "type": "exploit" + }, + { + "title": "GHSA-6643-h7h5-x9wh", + "url": "https://github.com/advisories/GHSA-6643-h7h5-x9wh", "type": "advisory" }, { - "title": "https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-w8vc-465m-jjw6", - "url": "https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-w8vc-465m-jjw6", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-92.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-92.yaml", "type": "reference" }, { - "title": "https://docs.ray.io/en/latest/ray-security/token-auth.html", - "url": "https://docs.ray.io/en/latest/ray-security/token-auth.html", + "title": "https://github.com/langchain-ai/langchain/issues/4849", + "url": "https://github.com/langchain-ai/langchain/issues/4849", "type": "reference" }, { - "title": "https://www.vulncheck.com/advisories/anyscale-ray-token-authentication-disabled-by-default-insecure-configuration", - "url": "https://www.vulncheck.com/advisories/anyscale-ray-token-authentication-disabled-by-default-insecure-configuration", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6643-h7h5-x9wh", + "type": "advisory" }, { - "title": "https://github.com/ray-project/ray/releases/tag/ray-2.52.0", - "url": "https://github.com/ray-project/ray/releases/tag/ray-2.52.0", + "title": "https://github.com/langchain-ai/langchain/commit/fab24457bcf8ede882abd11419769c92bc4e7751", + "url": "https://github.com/langchain-ai/langchain/commit/fab24457bcf8ede882abd11419769c92bc4e7751", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gx77-xgc2-4888", + "url": "https://osv.dev/vulnerability/PYSEC-2023-92", "type": "advisory" - }, + } + ], + "tags": [ + "agent-framework", + "bypass", + "code-execution", + "cve", + "deserialization", + "dos", + "eval", + "ghsa", + "graphcypher", + "langchain", + "langchain-anthropic", + "langchain-community", + "langchain-core", + "langchain-experimental", + "llamaindex", + "llm-math", + "load_chain", + "loaders", + "nvd", + "osv", + "palchain", + "path-traversal", + "prompt-injection", + "rce", + "retriever", + "sitemap", + "sql-injection", + "ssrf", + "sympy", + "vector-sql" + ] + }, + { + "id": "INC-01297", + "title": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "CVSS 9.8. Langflow's CSVAgentComponent hardcodes `allow_dangerous_code=True`, auto-enabling LangChain's Python REPL tool. Attackers inject malicious prompts through user-supplied input, achieving arbitrary Python/OS command execution. No authentication required. Affects versions prior to 1.8.0.", + "owasp_entries": [ + "LLM01", + "LLM10", + "ASI01", + "ASI02", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0011", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "prompt-injection", + "affected": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", + "severity": "Critical", + "references": [ { - "title": "GHSA-6wgj-66m2-xxp2", - "url": "https://github.com/advisories/GHSA-6wgj-66m2-xxp2", - "type": "advisory" + "title": "GitHub Advisory", + "url": "https://github.com/advisories/GHSA-3645-fxcv-hqr4", + "type": "research" }, { - "title": "https://bishopfox.com/blog/ray-versions-2-6-3-2-8-0", - "url": "https://bishopfox.com/blog/ray-versions-2-6-3-2-8-0", - "type": "reference" + "title": "TheHackerWire", + "url": "https://www.thehackerwire.com/langflow-csv-agent-rce-via-prompt-injection/", + "type": "research" }, { - "title": "https://docs.ray.io/en/latest/ray-security/index.html", - "url": "https://docs.ray.io/en/latest/ray-security/index.html", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27966", + "type": "advisory" }, { - "title": "https://www.vicarius.io/vsociety/posts/shadowray-cve-2023-48022-exploit", - "url": "https://www.vicarius.io/vsociety/posts/shadowray-cve-2023-48022-exploit", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/langflow-ai/langflow/commit/d8c6480daa17b2f2af0b5470cdf5c3d28dc9e508", + "type": "patch" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6wgj-66m2-xxp2", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-3645-fxcv-hqr4", + "type": "vendor" + } + ], + "tags": [ + "cve", + "ghsa", + "langflow", + "nvd", + "prompt-injection" + ] + }, + { + "id": "INC-01340", + "title": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "TeamPCP compromised LiteLLM (3.4M daily downloads) via a poisoned Trivy GitHub Action that stole the PYPI_PUBLISH token. Backdoored versions contained a three-stage credential harvester collecting SSH keys, cloud tokens, Kubernetes configs. Available ~3 hours before PyPI quarantine.", + "owasp_entries": [ + "LLM04", + "LLM05", + "LLM10", + "ASI03", + "ASI04", + "ASI05", + "DSGAI08" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0012", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0049", + "AML.T0050", + "AML.T0055", + "AML.T0059", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "maestro_layers": [ + { + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "CI/CD pipeline compromised to steal PyPI publish token" }, { - "title": "https://github.com/ray-project/ray/commit/978947083b1e192dba61ef653c863b11d56b0936", - "url": "https://github.com/ray-project/ray/commit/978947083b1e192dba61ef653c863b11d56b0936", - "type": "reference" - }, + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "Three-stage credential harvester deployed via package install" + } + ], + "attack_vector": "supply-chain", + "affected": "LiteLLM — 3.4M daily downloads; SSH keys, cloud tokens, K8s configs", + "impact": "Mass credential theft potential; supply chain compromise; 3-hour exposure window", + "severity": "Critical", + "mitigations": [ + "GitHub Actions supply chain verification", + "Package integrity monitoring and rollback", + "PyPI publish token rotation and 2FA" + ], + "references": [ { - "title": "https://console.vulncheck.com/cve/CVE-2023-48022", - "url": "https://console.vulncheck.com/cve/CVE-2023-48022", - "type": "reference" + "title": "Inside LiteLLM supply chain compromise", + "url": "https://www.trendmicro.com/en_us/research/26/c/inside-litellm-supply-chain-compromise.html", + "type": "research" } ], "tags": [ - "atlas", - "botnet", - "case-study", - "command-injection", - "credential-exfiltration", - "crypto-mining", - "cryptojacking", - "cve", - "cve-2023-48022", - "dashboard", - "exploited-in-the-wild", - "ghsa", - "info-disclosure", - "infrastructure", - "lfi", - "log-api", - "mlops", - "nvd", - "osv", - "path-traversal", - "ray", - "ray-project", - "rce", - "real-world", - "self-spreading", - "shadowray", + "ci-cd", + "credential-theft", + "litellm", + "pypi", "supply-chain" ] }, { - "id": "INC-01769", - "title": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", - "date": "2026-03", + "id": "INC-01370", + "title": "Marimo Pre-Auth RCE (CVE-2026-39987)", + "date": "2026-04", "year": 2026, "category": "real-world", - "description": "Two CVSS 9.8 unauthenticated RCE vulnerabilities via unsafe pickle.loads() deserialization in ZeroMQ broker and disaggregation modules. CVE-2026-3989 (CVSS 7.8): insecure pickle.load() in replay_request_dump.py. Unpatched as of disclosure.", + "description": "CVSS 9.3. Marimo Python reactive notebook (~19.6k GitHub stars) terminal WebSocket endpoint `/terminal/ws` lacks authentication. Single WebSocket connection grants full PTY shell. Commonly runs as root in Docker. Sysdig honeypots observed exploitation within hours of disclosure. Confirmed exploited in the wild. Fixed in v0.23.0.", "owasp_entries": [ - "LLM03", - "LLM05", - "ASI02", + "LLM10", "ASI03", - "ASI04", "ASI05" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", "AML.T0011", "AML.T0012", "AML.T0049", "AML.T0050", - "AML.T0053", "AML.T0055", "AML.T0060" ], @@ -19239,555 +5198,455 @@ ], "nist_ai_rmf": [ "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", "MANAGE-2.3", - "MAP-3.5", "MEASURE-2.5", "MEASURE-2.7" ], "attack_vector": "rce", - "affected": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "affected": "Marimo Pre-Auth RCE (CVE-2026-39987)", "severity": "Critical", "references": [ { - "title": "The Hacker News", - "url": "https://thehackernews.com/2026/03/ai-flaws-in-amazon-bedrock-langsmith.html", - "type": "research" - }, - { - "title": "SentinelOne", - "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-25528/", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25750", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/langchain-ai/helm/security/advisories/GHSA-r8wq-jwgw-p74g", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3059", - "type": "advisory" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/multimodal_gen/runtime/scheduler_client.py", - "type": "reference" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/pull/20904", - "type": "reference" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/releases/tag/v0.5.10", - "type": "reference" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/security/advisories/GHSA-3cp7-c6q2-94xr", - "type": "reference" - }, - { - "title": "cret@cert.org", - "url": "https://orca.security/resources/blog/sglang-llm-framework-rce-vulnerabilities/", - "type": "exploit" - }, - { - "title": "GHSA-rgq9-fqf5-fv58", - "url": "https://github.com/advisories/GHSA-rgq9-fqf5-fv58", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3060", - "type": "advisory" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/srt/disaggregation/encode_receiver.py", - "type": "reference" - }, - { - "title": "GHSA-jx93-g359-86wm", - "url": "https://github.com/advisories/GHSA-jx93-g359-86wm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3989", - "type": "advisory" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/blob/main/scripts/playground/replay_request_dump.py", - "type": "reference" - }, - { - "title": "GHSA-hvwj-8w5g-28rg", - "url": "https://github.com/advisories/GHSA-hvwj-8w5g-28rg", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25528", - "type": "advisory" - }, - { - "title": "GHSA-v34v-rq6j-cj6p", - "url": "https://github.com/advisories/GHSA-v34v-rq6j-cj6p", + "title": "Endor Labs", + "url": "https://www.endorlabs.com/learn/root-in-one-request-marimos-critical-pre-auth-rce-cve-2026-39987", "type": "advisory" - }, - { - "title": "https://github.com/langchain-ai/langsmith-sdk/security/advisories/GHSA-v34v-rq6j-cj6p", - "url": "https://github.com/langchain-ai/langsmith-sdk/security/advisories/GHSA-v34v-rq6j-cj6p", - "type": "reference" } - ], - "tags": [ - "cve", - "deserialization", - "ghsa", - "langchain", - "langsmith", - "nvd", - "sglang", - "ssrf" ] }, { - "id": "INC-02058", - "title": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "id": "INC-01378", + "title": "MCP fURI -- Microsoft MarkItDown MCP SSRF", "date": "2026-01", "year": 2026, "category": "real-world", - "description": "AI-powered IDEs (Cursor, Windsurf, Google Antigravity, Trae) forked from VS Code inherit hardcoded recommended extension lists pointing to VS Code Marketplace. These IDEs use OpenVSX, where those extension namespaces were unclaimed. Attackers could register them and publish malware that users would install via built-in recommendations.", + "description": "Microsoft's MarkItDown MCP server allowed arbitrary URI calls with no boundaries. On AWS EC2 instances using IMDSv1, attackers could query instance metadata to obtain access/secret keys with potential full admin access. Researchers found ~36.7% of all MCP servers have similar SSRF exposure.", "owasp_entries": [ - "LLM03", - "ASI04" + "ASI02", + "ASI03" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003" + "AML.T0012", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0055" ], "mitre_atlas_tactics": [ - "AML.TA0004" + "AML.TA0004", + "AML.TA0005", + "AML.TA0012", + "AML.TA0013" ], "nist_ai_rmf": [ - "GOVERN-6.1", - "GOVERN-6.2", - "MAP-4.1" + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.7" ], - "attack_vector": "supply-chain", - "affected": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "attack_vector": "ssrf", + "affected": "MCP fURI", "severity": "Medium", "references": [ { - "title": "The Hacker News", - "url": "https://thehackernews.com/2026/01/vs-code-forks-recommend-missing.html", + "title": "Microsoft", + "url": "https://www.darkreading.com/application-security/microsoft-anthropic-mcp-servers-risk-takeovers", + "type": "research" + }, + { + "title": "BlueRock", + "url": "https://www.bluerock.io/post/mcp-furi-microsoft-markitdown-vulnerabilities", "type": "research" } ] }, { - "id": "INC-02105", - "title": "XBOW — first critical CVE discovered entirely by autonomous AI penetration testing agent", - "date": "2026-03", + "id": "INC-01390", + "title": "MCPJam Inspector RCE (CVE-2026-23744)", + "date": "2026-01", "year": 2026, - "category": "research-demonstrated", - "description": "CVE-2026-21536, a critical vulnerability in Microsoft Devices Pricing Program, was discovered entirely by XBOW's autonomous AI penetration testing agent. XBOW agents have submitted 1,060+ vulnerabilities on HackerOne, executed 48-step exploit chains, and matched a principal pentester's 40-hour assessment in 28 minutes.", + "category": "real-world", + "description": "CVSS 9.8. MCPJam inspector v1.4.2 and earlier listens on 0.0.0.0 by default with no authentication. A crafted HTTP request installs a malicious MCP server and executes arbitrary code. Public exploit available. Fixed in v1.4.3.", "owasp_entries": [ - "LLM06", - "ASI05", - "ASI10" + "LLM04", + "LLM10", + "ASI02", + "ASI04", + "ASI05" ], "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", "AML.T0011", - "AML.T0048", "AML.T0049", "AML.T0050", - "AML.T0053" + "AML.T0053", + "AML.T0060" ], "mitre_atlas_tactics": [ + "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.4", "GOVERN-3.2", + "GOVERN-6.1", "GOVERN-6.2", "MANAGE-2.3", - "MANAGE-2.4", "MAP-3.5", + "MAP-4.1", + "MEASURE-2.5", "MEASURE-2.7" ], - "maestro_layers": [ + "attack_vector": "rce", + "affected": "MCPJam Inspector RCE (CVE-2026-23744)", + "severity": "Critical", + "references": [ { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "Autonomous AI agent discovers and validates vulnerabilities" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-23744", + "type": "advisory" }, { - "layer": "L6", - "label": "Security & Compliance", - "role": "impact", - "notes": "First critical CVE attributed to autonomous AI agent" - } - ], - "attack_vector": "other", - "affected": "Microsoft Devices Pricing Program; broader implications for AI-discovered vulnerabilities", - "impact": "Paradigm shift in vulnerability discovery; 48-step exploit chains automated; 40-hour → 28-minute assessment", - "severity": "Critical", - "mitigations": [ - "Ethical guidelines for autonomous security testing", - "Rate limiting for automated vulnerability scanning", - "Responsible disclosure frameworks for AI-discovered vulnerabilities" - ], - "references": [ + "title": "VulnerableMCP", + "url": "https://vulnerablemcp.info/vuln/cve-2026-23744-mcpjam-inspector-rce.html", + "type": "advisory" + }, { - "title": "XBOW: Three RCE vulnerabilities in Microsoft", - "url": "https://xbow.com/blog/three-rce-vulnerabilities-in-microsoft-identified-xbow", - "type": "research" + "title": "security-advisories@github.com", + "url": "https://github.com/MCPJam/inspector/commit/e6b9cf9d9e6c9cbec31493b1bdca3a1255fe3e7a", + "type": "patch" }, { - "title": "Microsoft", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21536", + "title": "security-advisories@github.com", + "url": "https://github.com/MCPJam/inspector/security/advisories/GHSA-232v-j27c-5pp6", + "type": "vendor" + }, + { + "title": "GHSA-232v-j27c-5pp6", + "url": "https://github.com/advisories/GHSA-232v-j27c-5pp6", "type": "advisory" } ], "tags": [ - "ai-agent", - "autonomous-pentest", - "cve-discovery", - "vulnerability-research" + "cve", + "ghsa", + "mcpjam-inspector", + "nvd", + "rce" ] }, { - "id": "INC-02186", - "title": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", - "date": "2025-04", - "year": 2025, - "category": "research-demonstrated", - "description": "Malicious agent published fake agent card in open A2A directory falsely claiming high trust. LLM judge agent selected it, enabling rogue agent to intercept sensitive data and leak to unauthorized parties.", + "id": "INC-01391", + "title": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "SSRF vulnerability (CVSS 8.8) in Azure MCP Server Tools allowed stealing managed identity tokens via malicious URLs submitted in place of Azure resource identifiers. Attackers could impersonate the server's identity and access Azure resources, compromising Azure and Entra ID tenants.", "owasp_entries": [ - "LLM02", "LLM04", - "LLM05", - "LLM09", + "LLM10", + "ASI02", "ASI03", - "ASI06", - "ASI07", - "ASI08", - "ASI10" + "ASI04", + "ASI05" ], "mitre_atlas": [ + "AML.T0010", "AML.T0012", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0048", - "AML.T0048.001", "AML.T0049", "AML.T0050", "AML.T0053", "AML.T0055", - "AML.T0057", - "AML.T0058", - "AML.T0059", - "AML.T0060", - "AML.T0066" + "AML.T0060" ], "mitre_atlas_tactics": [ - "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", "AML.TA0012", "AML.TA0013" ], "nist_ai_rmf": [ - "GOVERN-1.1", "GOVERN-1.4", - "GOVERN-6.2", + "GOVERN-3.2", + "GOVERN-6.1", "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.2", - "MANAGE-4.1", - "MANAGE-4.3", - "MAP-4.1", - "MAP-4.2", - "MEASURE-2.10", + "MANAGE-3.1", + "MAP-3.5", "MEASURE-2.5", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "Fake agent card published in open directory" - }, - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "propagation", - "notes": "LLM judge trusts falsified trust claims" - } + "MEASURE-2.7" ], "attack_vector": "rce", - "affected": "Agent-2-Agent (A2A) protocol — multi-agent workflows", - "impact": "Data interception; trust violation; cascading agent compromise", + "affected": "MCPwned", "severity": "Critical", - "mitigations": [ - "Agent card signing and validation", - "Cryptographic agent identity verification", - "Multi-factor trust assessment (not just self-declared)" - ], "references": [ { - "title": "Agent-in-the-Middle: Abusing agent cards in A2A protocol", - "url": "https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/agent-in-the-middle-abusing-agent-cards-in-the-agent-2-agent-protocol-to-win-all-the-tasks", + "title": "Microsoft", + "url": "https://windowsnews.ai/article/microsoft-patches-critical-azure-mcp-ssrf-vulnerability-cve-2026-26118-in-march-2026-security-update.404636", + "type": "advisory" + }, + { + "title": "Token Security", + "url": "https://www.token.security/blog/mcpwned-azure-mcp-rce-vulnerability-leads-to-cloud-takeover", "type": "research" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26118", + "type": "advisory" + }, + { + "title": "secure@microsoft.com", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26118", + "type": "vendor" + }, + { + "title": "GHSA-hhfx-wfvq-7g9c", + "url": "https://github.com/advisories/GHSA-hhfx-wfvq-7g9c", + "type": "advisory" + }, + { + "title": "https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34", + "url": "https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34", + "type": "reference" + }, + { + "title": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2", + "url": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2", + "type": "reference" + }, + { + "title": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17", + "url": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17", + "type": "reference" } ], "tags": [ - "a2a", - "agent-directory", - "mitm", - "multi-agent", - "trust-spoofing" + "azure", + "azure-mcp", + "azure.mcp", + "cloud-takeover", + "cve", + "ghsa", + "mcp", + "msmcp-azure", + "nvd", + "rce", + "ssrf" ] }, { - "id": "INC-02190", - "title": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", - "date": "2025", - "year": 2025, - "category": "research-demonstrated", - "description": "Scan of 1,808 MCP servers: 66% had at least one security finding. 43% had shell/command injection, 20% tooling infrastructure flaws, 13% authentication bypasses, 10% path traversal. Critical findings demonstrated ability to execute arbitrary code with no user interaction.", + "id": "INC-01411", + "title": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "An autonomous AI agent inside Meta posted incorrect technical advice on an internal forum without human approval. An employee followed it, exposing proprietary code, business strategies, and user-related datasets to unauthorized engineers for two hours. Classified as Sev-1.", "owasp_entries": [ "LLM03", - "LLM05", - "ASI02", - "ASI03", - "ASI04", - "ASI05" + "LLM07", + "ASI08", + "ASI09", + "ASI10", + "DSGAI01" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", + "AML.T0048", + "AML.T0048.001", + "AML.T0048.003", "AML.T0053", - "AML.T0055", - "AML.T0060" + "AML.T0058" ], "mitre_atlas_tactics": [ "AML.TA0003", - "AML.TA0004", "AML.TA0005", - "AML.TA0012", - "AML.TA0013" + "AML.TA0011", + "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-1.4", "GOVERN-3.2", - "GOVERN-6.1", "GOVERN-6.2", "MANAGE-2.3", - "MAP-2.1", + "MANAGE-2.4", + "MANAGE-4.1", + "MANAGE-4.3", "MAP-3.5", - "MAP-4.1", "MEASURE-2.5", - "MEASURE-2.7" + "MEASURE-2.8" ], "maestro_layers": [ { - "layer": "L7", - "label": "Agent Ecosystem", + "layer": "L3", + "label": "Agent Frameworks", "role": "origin", - "notes": "Systemic insecurity across MCP server ecosystem" + "notes": "Autonomous agent posts without human approval" }, { - "layer": "L3", - "label": "Agent Frameworks", + "layer": "L2", + "label": "Data Operations", "role": "impact", - "notes": "66% of servers vulnerable to code execution or data theft" + "notes": "Proprietary data exposed to unauthorized engineers" } ], - "attack_vector": "command-injection", - "affected": "MCP server ecosystem — 1,808 servers scanned, 66% vulnerable", - "impact": "Systemic risk to AI agent infrastructure; arbitrary code execution at scale", + "attack_vector": "other", + "affected": "Meta — internal engineering forum; proprietary code and business data", + "impact": "Sev-1 incident; proprietary data exposed for 2 hours; trust damage in internal AI agents", "severity": "Critical", "mitigations": [ - "Automated vulnerability scanning for MCP servers", - "Community security baseline standards", - "MCP server security certification program" + "Agent output confidence thresholds for autonomous posting", + "Content review before publishing agent-generated advice", + "Human-in-the-loop for agent posts to shared channels" ], "references": [ { - "title": "AgentSeal MCP server security findings", - "url": "https://agentseal.org/blog/mcp-server-security-findings", - "type": "research" + "title": "Meta is having trouble with rogue AI agents", + "url": "https://techcrunch.com/2026/03/18/meta-is-having-trouble-with-rogue-ai-agents/", + "type": "news" } ], "tags": [ - "command-injection", - "ecosystem-security", - "mass-scan", - "mcp", - "systemic-risk" + "autonomous", + "data-exposure", + "meta", + "rogue-agent", + "sev-1" ] }, { - "id": "INC-02191", - "title": "AgentSmith Prompt-Hub Proxy Attack", - "date": "2025-06", - "year": 2025, - "category": "real-world", - "description": "Proxy prompt agent exfiltrated API keys", + "id": "INC-01429", + "title": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", + "date": "2026-03", + "year": 2026, + "category": "research-demonstrated", + "description": "Cross-prompt injection attack (CVE-2026-26133) in Microsoft 365 Copilot email/Teams summarization. Attacker embeds hidden instructions in ordinary emails; Copilot produces convincing phishing content within the trusted summary interface.", "owasp_entries": [ - "LLM03", - "ASI04" + "LLM01", + "LLM04", + "LLM05", + "LLM10", + "ASI01", + "ASI04", + "ASI05", + "ASI06", + "ASI09", + "DSGAI04" ], "mitre_atlas": [ "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0024", - "AML.T0025", - "AML.T0057" + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0059", + "AML.T0066" ], "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", "AML.TA0004", - "AML.TA0010" + "AML.TA0005", + "AML.TA0006", + "AML.TA0011" ], "nist_ai_rmf": [ + "GOVERN-3.2", "GOVERN-6.1", - "GOVERN-6.2", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.7" + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.7", + "MEASURE-2.8" ], - "attack_vector": "data-exfiltration", - "affected": "AgentSmith Prompt-Hub Proxy Attack", - "severity": "Medium", - "references": [ + "maestro_layers": [ { - "title": "Noma Security", - "url": "https://noma.security/blog/how-an-ai-agent-vulnerability-in-langsmith-could-lead-to-stolen-api-keys-and-hijacked-llm-responses", - "type": "research" + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "Copilot processes attacker-controlled email content" + }, + { + "layer": "L6", + "label": "Security & Compliance", + "role": "impact", + "notes": "Phishing content appears as trusted AI-generated summary" } - ] - }, - { - "id": "INC-02297", - "title": "Amazon Bedrock AgentCore Sandbox DNS Escape", - "date": "2025-09", - "year": 2025, - "category": "real-world", - "description": "AgentCore Code Interpreter's \"Sandbox\" mode (advertised as \"complete isolation\") allows outbound DNS queries. Attackers can establish bidirectional C2 channels and exfiltrate data via DNS tunneling. AWS declined to fix, reclassifying as \"intended functionality.\" Independently confirmed by Palo Alto Unit42.", - "owasp_entries": [ - "ASI02", - "ASI03" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0024", - "AML.T0025", - "AML.T0050", - "AML.T0053", - "AML.T0055", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0012", - "AML.TA0013" ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7" + "attack_vector": "xss", + "affected": "Microsoft 365 Copilot — enterprise email and Teams users", + "impact": "AI-powered phishing inside trusted interface; user trust exploitation; credential theft", + "severity": "Critical", + "mitigations": [ + "Email content sanitization before AI summarization", + "Phishing detection in AI-generated outputs", + "Visual distinction for AI-generated vs original content" ], - "attack_vector": "data-exfiltration", - "affected": "Amazon Bedrock AgentCore Sandbox DNS Escape", - "severity": "Medium", "references": [ { - "title": "AWS", - "url": "https://unit42.paloaltonetworks.com/bypass-of-aws-sandbox-network-isolation-mode/", + "title": "Copilot prompt injection AI email phishing", + "url": "https://permiso.io/blog/copilot-prompt-injection-ai-email-phishing", "type": "research" }, { - "title": "BeyondTrust", - "url": "https://www.beyondtrust.com/blog/entry/pwning-aws-agentcore-code-interpreter", - "type": "research" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26133", + "type": "advisory" + }, + { + "title": "secure@microsoft.com", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26133", + "type": "vendor" } + ], + "tags": [ + "command-injection", + "copilot", + "cve", + "email", + "nvd", + "phishing", + "trust-exploitation", + "xpia" ] }, { - "id": "INC-02300", - "title": "Amazon Q Prompt Poisoning", - "date": "2025-07-13", - "year": 2025, + "id": "INC-01435", + "title": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", + "date": "2026-03-10", + "year": 2026, "category": "real-world", - "description": "Destructive prompt in extension risked file wipes", + "description": "XSS flaw in Microsoft Excel causes Copilot Agent mode to exfiltrate data via unintended network egress. Zero-click: victim does not need to open the file -- processing by Copilot Agent in preview pane or automated workflow triggers the attack. CVSS 7.5. Patched March 10, 2026.", "owasp_entries": [ "LLM01", "LLM02", - "LLM03", - "LLM05", "ASI01", "ASI02", - "ASI04", - "ASI05", + "ASI03", "ASI09" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", + "AML.T0012", "AML.T0024", "AML.T0025", + "AML.T0048.001", "AML.T0048.003", - "AML.T0049", "AML.T0050", "AML.T0051", "AML.T0051.000", "AML.T0051.001", "AML.T0053", - "AML.T0057", - "AML.T0060" + "AML.T0057" ], "mitre_atlas_tactics": [ - "AML.TA0003", "AML.TA0004", "AML.TA0005", "AML.TA0010", @@ -19795,260 +5654,343 @@ "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.1", + "GOVERN-1.4", "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", "MANAGE-2.3", "MAP-2.1", "MAP-3.5", - "MAP-4.1", "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" + "MEASURE-2.7", + "MEASURE-2.8" ], - "attack_vector": "other", - "affected": "Amazon Q Prompt Poisoning", - "severity": "Critical", + "attack_vector": "data-exfiltration", + "affected": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", + "severity": "High", "references": [ { - "title": "AWS", - "url": "https://aws.amazon.com/security/security-bulletins/AWS-2025-015", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8217", - "type": "advisory" - }, - { - "title": "Embrace The Red", - "url": "https://embracethered.com/blog/posts/2025/amazon-q-developer-data-exfil-via-dns/", + "title": "Microsoft", + "url": "https://www.theregister.com/2026/03/10/zeroclick_microsoft_info_disclosure_bug/", "type": "research" }, { - "title": "MITRE ATLAS — AML.CS0047", - "url": "https://atlas.mitre.org/studies/AML.CS0047", - "type": "research" + "title": "OECD (2026), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2026-03-10-21ff (accessed on 2026-05-11)", + "url": "https://oecd.ai/en/incidents/2026-03-10-21ff", + "type": "reference" }, { - "title": "GitHub commit containing the malicious prompt", - "url": "https://github.com/aws/aws-toolkit-vscode/commit/1294b38b7fade342cfcbaf7cf80e2e5096ea1f9c", - "type": "research" + "title": "Patch Alert: Microsoft Fixes Nearly 80 Bugs, Including Critical Office Flaws", + "url": "https://www.techrepublic.com/article/news-microsoft-march-patch-tuesday-78-vulnerabilities/", + "type": "news" }, { - "title": "404 Media report on the Amazon Q VS Code extension incident", - "url": "https://www.404media.co/hacker-plants-computer-wiping-commands-in-amazons-ai-coding-agent/", - "type": "research" + "title": "Critical 0-Click Microsoft Excel Security Bug Lets Copilot Steal Data", + "url": "https://www.forbes.com/sites/daveywinder/2026/03/11/critical-0-click-microsoft-excel-security-bug-lets-copilot-steal-data/", + "type": "news" }, { - "title": "Medium article detailing the events of the Amazon Q VS Code extension incident", - "url": "https://medium.com/@ismailkovvuru/the-amazon-q-vs-code-prompt-injection-explained-impact-and-learnings-for-devops-3a9d2f752dea", - "type": "research" + "title": "This 'fascinating' Microsoft Excel security flaw teams up spreadsheets and Copilot Agent to steal data", + "url": "https://www.techradar.com/pro/security/this-fascinating-microsoft-excel-security-flaw-teams-up-spreadsheets-and-copilot-agent-to-steal-data", + "type": "news" } ], "tags": [ - "amazon-q", - "atlas", - "case-study", - "dns-exfil", - "real-world" + "oecd-aim" ] }, { - "id": "INC-02321", - "title": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", - "date": "2025-06", - "year": 2025, + "id": "INC-01440", + "title": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", + "date": "2026-03", + "year": 2026, "category": "real-world", - "description": "Path validation bypass, unrestricted git_init (CVSS 8.8), and argument injection in git_diff. Chained with Filesystem MCP, achieved RCE via Git smudge/clean filters. Exploitable via prompt injection through malicious README files or issue descriptions. Reported June 2025, patched December 2025, disclosed January 2026.", + "description": "CVSS 9.9. Critical RCE in Microsoft Semantic Kernel Python SDK's InMemoryVectorStore filter functionality. Attackers execute arbitrary code through crafted filter expressions. Semantic Kernel powers many Microsoft Copilot integrations and RAG-based AI applications. Fixed in python-1.39.4.", "owasp_entries": [ - "LLM01", - "LLM03", + "LLM04", "LLM05", - "LLM06", - "ASI01", + "LLM09", + "LLM10", "ASI02", "ASI04", - "ASI05", - "ASI07" + "ASI05" ], "mitre_atlas": [ "AML.T0010", "AML.T0011", + "AML.T0018", + "AML.T0019", + "AML.T0020", "AML.T0049", "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", "AML.T0053", - "AML.T0060" + "AML.T0059", + "AML.T0060", + "AML.T0066", + "AML.T0070" ], "mitre_atlas_tactics": [ + "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", + "AML.TA0006", + "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-3.2", "GOVERN-6.1", "MANAGE-2.3", - "MAP-2.1", + "MANAGE-3.2", "MAP-3.5", - "MAP-4.1", + "MAP-4.2", "MEASURE-2.5", "MEASURE-2.7" ], "attack_vector": "rce", - "affected": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", - "severity": "High", + "affected": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", + "severity": "Critical", "references": [ { - "title": "The Hacker News", - "url": "https://thehackernews.com/2026/01/three-flaws-in-anthropic-mcp-git-server.html", - "type": "research" - }, - { - "title": "Infosecurity Magazine", - "url": "https://www.infosecurity-magazine.com/news/prompt-injection-bugs-anthropic/", - "type": "analysis" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/cve-2026-26030", + "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-68143", + "title": "GitLab Advisory", + "url": "https://advisories.gitlab.com/pkg/pypi/semantic-kernel/CVE-2026-26030/", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/modelcontextprotocol/servers/commit/eac56e7bcde48fb64d5a973924d05d69a7d876e6", + "url": "https://github.com/microsoft/semantic-kernel/pull/13505", "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://github.com/modelcontextprotocol/servers/security/advisories/GHSA-5cgr-j3jf-jw3v", + "url": "https://github.com/microsoft/semantic-kernel/releases/tag/python-1.39.4", + "type": "reference" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/microsoft/semantic-kernel/security/advisories/GHSA-xjw9-4gw8-4rqx", "type": "vendor" + }, + { + "title": "GHSA-xjw9-4gw8-4rqx", + "url": "https://github.com/advisories/GHSA-xjw9-4gw8-4rqx", + "type": "advisory" + }, + { + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/semantic-kernel/PYSEC-2026-163.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/semantic-kernel/PYSEC-2026-163.yaml", + "type": "reference" } ], "tags": [ - "anthropic", - "chain", - "command-injection", "cve", - "git", - "mcp", + "ghsa", "nvd", - "path-traversal" + "rce", + "semantic-kernel" ] }, { - "id": "INC-02324", - "title": "Anthropic SQLite MCP Server SQL Injection", - "date": "2025-06", - "year": 2025, + "id": "INC-01465", + "title": "Moltbook — vibe-coded social network exposes 1.5M API tokens and 35K emails", + "date": "2026-02", + "year": 2026, "category": "real-world", - "description": "Classic SQL injection in Anthropic's reference SQLite MCP server (direct concatenation of unsanitized input). Despite being archived, forked 5,000+ times. Unpatched code exists in thousands of downstream agents. Anthropic declared \"out of scope.\" SQL injection enables stored-prompt injection for manipulating AI agents.", + "description": "Moltbook, a social network built entirely via vibe coding (zero manual code), exposed 1.5 million API authentication tokens, 35,000 email addresses, and thousands of private messages via an unsecured Supabase database. The AI scaffolded the database with permissive settings; the founder deployed as-is without review.", "owasp_entries": [ - "LLM01", - "LLM03", + "LLM02", + "ASI03", + "ASI09", + "DSGAI01", + "DSGAI02", + "DSGAI08" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0024", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0055", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "maestro_layers": [ + { + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "AI-generated code with insecure default database configuration" + }, + { + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "Unsecured database exposed to public internet" + } + ], + "attack_vector": "other", + "affected": "Moltbook — 1.5M API tokens, 35K emails, private messages", + "impact": "First major real-world vibe-coding security disaster; mass data exposure; trust damage", + "severity": "Critical", + "mitigations": [ + "Automated security scanning of AI-scaffolded applications", + "Database access control defaults", + "Security review of AI-generated infrastructure code before deployment" + ], + "references": [ + { + "title": "Exposed Moltbook database reveals millions of API keys", + "url": "https://www.wiz.io/blog/exposed-moltbook-database-reveals-millions-of-api-keys", + "type": "research" + } + ], + "tags": [ + "ai-generated-code", + "database-exposure", + "insecure-defaults", + "vibe-coding" + ] + }, + { + "id": "INC-01471", + "title": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", + "date": "2026-01", + "year": 2026, + "category": "real-world", + "description": "CVSS 10.0. Content-type confusion in webhook request handling allows unauthenticated attackers to forge uploaded files, read arbitrary local files, forge admin sessions, and execute commands on the host. ~100,000 n8n servers globally affected. If an LLM-powered chatbot node is present, attackers can exfiltrate file contents by chatting with the bot. Fixed in v1.121.0.", + "owasp_entries": [ + "LLM02", "LLM04", + "LLM10", "ASI02", "ASI04", - "ASI06" + "ASI05" ], "mitre_atlas": [ "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0018", - "AML.T0019", - "AML.T0020", + "AML.T0011", + "AML.T0024", + "AML.T0025", + "AML.T0049", "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", "AML.T0053", - "AML.T0059", - "AML.T0066" + "AML.T0057", + "AML.T0060" ], "mitre_atlas_tactics": [ - "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", - "AML.TA0011", + "AML.TA0010", "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-3.2", "GOVERN-6.1", - "GOVERN-6.2", "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", "MAP-3.5", - "MAP-4.1", - "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "prompt-injection", - "affected": "Anthropic SQLite MCP Server SQL Injection", - "severity": "Medium", + "attack_vector": "data-exfiltration", + "affected": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", + "severity": "Critical", "references": [ { - "title": "Trend Micro", - "url": "https://www.trendmicro.com/en_us/research/25/f/why-a-classic-mcp-server-vulnerability-can-undermine-your-entire-ai-agent.html", - "type": "research" + "title": "NVD", + "url": "https://thehackernews.com/2026/01/critical-n8n-vulnerability-cvss-100.html", + "type": "research" + }, + { + "title": "Cyera Research", + "url": "https://www.cyera.com/research/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026-21858", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-21858", + "type": "advisory" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-v4pr-fm98-w9pg", + "type": "vendor" + }, + { + "title": "security-advisories@github.com", + "url": "https://www.cyera.com/research-labs/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026-21858", + "type": "exploit" + }, + { + "title": "GHSA-v4pr-fm98-w9pg", + "url": "https://github.com/advisories/GHSA-v4pr-fm98-w9pg", + "type": "advisory" } + ], + "tags": [ + "cve", + "ghsa", + "info-disclosure", + "n8n", + "nvd" ] }, { - "id": "INC-02426", - "title": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", - "date": "2025-11-13", - "year": 2025, + "id": "INC-01589", + "title": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", + "date": "2026-02-01", + "year": 2026, "category": "real-world", - "description": "Anthropic reportedly identified a cyber espionage campaign in which a purported Chinese state-linked group, designated GTG-1002 by Anthropic, allegedly jailbroke Claude Code and used it to automate 80–90% of multi-stage intrusions. The AI reportedly independently performed reconnaissance, vulnerability discovery, exploitation, credential harvesting, and data extraction across roughly 30 targets before the activity was detected and blocked.", + "description": "OpenClaw (135K+ GitHub stars) had over 138 CVEs in 63 days. CVE-2026-25253 (CVSS 8.8) enabled one-click RCE. Over 21,000 publicly exposed instances found. 341 malicious skills (~12% of ClawHub marketplace) performed credential theft and lateral movement across connected enterprise SaaS apps.", "owasp_entries": [ - "LLM01", "LLM02", - "LLM06", - "LLM07", - "LLM09", + "LLM04", "LLM10", - "ASI01", "ASI02", "ASI03", - "ASI06", - "ASI07", - "ASI09", + "ASI04", + "ASI05", "ASI10" ], "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", "AML.T0012", - "AML.T0017", "AML.T0024", - "AML.T0025", - "AML.T0029", "AML.T0048", - "AML.T0048.003", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", + "AML.T0049", + "AML.T0050", "AML.T0053", - "AML.T0054", "AML.T0055", - "AML.T0056", "AML.T0057", - "AML.T0058", - "AML.T0066" + "AML.T0060" ], "mitre_atlas_tactics": [ "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0007", "AML.TA0010", "AML.TA0011", "AML.TA0012", @@ -20056,1165 +5998,1671 @@ ], "nist_ai_rmf": [ "GOVERN-1.1", - "GOVERN-1.3", "GOVERN-1.4", - "GOVERN-1.5", "GOVERN-3.2", + "GOVERN-6.1", "GOVERN-6.2", - "MANAGE-2.1", "MANAGE-2.3", "MANAGE-2.4", - "MAP-2.1", - "MAP-2.3", "MAP-3.5", "MAP-4.1", "MEASURE-2.10", - "MEASURE-2.11", - "MEASURE-2.4", - "MEASURE-2.7", - "MEASURE-2.8" + "MEASURE-2.5", + "MEASURE-2.7" ], - "attack_vector": "other", - "impact": "Autonomous mass cyberattacks; data exfiltration; vulnerability exploitation at scale; state-sponsored AI weaponization", + "maestro_layers": [ + { + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "138 CVEs in core framework; malicious skills in marketplace" + }, + { + "layer": "L7", + "label": "Agent Ecosystem", + "role": "propagation", + "notes": "12% of marketplace skills are malicious" + }, + { + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "21,000 exposed instances; lateral movement to SaaS apps" + } + ], + "attack_vector": "rce", + "affected": "OpenClaw — 21,000+ exposed instances; connected enterprise SaaS apps", + "impact": "138 CVEs; 341 malicious marketplace skills; credential theft at scale; enterprise lateral movement", "severity": "Critical", "mitigations": [ - "Abuse detection for multi-step offensive operations", - "Mandatory reporting for suspected state-sponsored abuse", - "Rate limiting and pattern detection for exploit chains" + "Agent framework security auditing", + "Marketplace skill vetting and signing", + "Network isolation for agent instances" ], "references": [ { - "title": "AIID incident #1263", - "url": "https://incidentdatabase.ai/cite/1263/", - "type": "report" + "title": "OpenClaw: The AI agent security crisis", + "url": "https://www.reco.ai/blog/openclaw-the-ai-agent-security-crisis-unfolding-right-now", + "type": "research" }, { - "title": "Disrupting the first reported AI-orchestrated cyber espionage campaign - Anthropic", - "url": "https://www.anthropic.com/news/disrupting-AI-espionage", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25253", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://depthfirst.com/post/1-click-rce-to-steal-your-moltbot-data-and-keys", + "type": "exploit" + }, + { + "title": "cve@mitre.org", + "url": "https://ethiack.com/news/blog/one-click-rce-moltbot", + "type": "exploit" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/openclaw/openclaw/security/advisories/GHSA-g8p2-7wf7-98mq", "type": "vendor" }, { - "title": "AIRI Navigator — incident 1263", - "url": "https://www.airi-navigator.com/incidents/1263", + "title": "cve@mitre.org", + "url": "https://openclaw.ai/blog", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://x.com/0xacb/status/2016913750557651228", + "type": "exploit" + }, + { + "title": "GHSA-g8p2-7wf7-98mq", + "url": "https://github.com/advisories/GHSA-g8p2-7wf7-98mq", + "type": "advisory" + }, + { + "title": "MITRE ATLAS — AML.CS0050", + "url": "https://atlas.mitre.org/studies/AML.CS0050", "type": "research" }, { - "title": "Anthropic Disrupts First Documented Case — Paul Weiss", - "url": "https://www.paulweiss.com/insights/client-memos/anthropic-disrupts-first-documented-case-of-large-scale-ai-orchestrated-cyberattack", - "type": "analysis" + "title": "GHSA-r2c6-8jc8-g32w", + "url": "https://github.com/advisories/GHSA-r2c6-8jc8-g32w", + "type": "advisory" } ], "tags": [ - "abuse", - "agentic", - "agentic-attack", - "ai-post-deployment", - "aiid", - "airi-navigator", - "anthropic", - "apt", - "autonomous-attack", - "autonomous-espionage", - "chemical", - "china", - "claude-code", - "csam", - "espionage", - "eu-ai-act-2-high-risk", - "extortion", - "financial", - "fraud", - "government", - "gtg-1002", - "intentional", - "jailbreak", - "manufacturing", - "state-sponsored", - "threat-report", - "weaponization" + "atlas", + "case-study", + "clawdbot", + "cve", + "enterprise", + "ghsa", + "malicious-skills", + "marketplace", + "mass-cve", + "nvd", + "openclaw", + "rce", + "research" ] }, { - "id": "INC-02435", - "title": "Claude Code DNS Exfiltration (CVE-2025-55284)", - "date": "2025-06", - "year": 2025, + "id": "INC-01637", + "title": "PerplexedBrowser -- Perplexity Comet Agentic Browser Vulnerabilities", + "date": "2026-03", + "year": 2026, "category": "real-world", - "description": "Claude Code's default allowlist of \"safe commands\" included ping and dig, enabling data exfiltration via DNS requests without user confirmation. An attacker could hijack Claude Code via indirect prompt injection, read .env files, and exfiltrate secrets as DNS subdomains. Fixed in v1.0.4.", + "description": "Three separate disclosures: CometJacking (one-click URL manipulation exfiltrates data, LayerX Oct 2025), PerplexedBrowser (zero-click attacks via calendar invites exfiltrate local files and hijack 1Password accounts, Zenity Labs Mar 2026), and Trail of Bits audit (four prompt injection techniques extracting private Gmail data, Feb 2026). All patched.", "owasp_entries": [ "LLM01", - "LLM02", - "LLM03", "ASI01", "ASI02", - "ASI04" + "ASI09" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0024", + "AML.T0048.001", + "AML.T0048.003", "AML.T0050", "AML.T0051", "AML.T0051.000", "AML.T0051.001", - "AML.T0053", - "AML.T0057" + "AML.T0053" ], "mitre_atlas_tactics": [ - "AML.TA0004", "AML.TA0005", - "AML.TA0010", + "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.1", "GOVERN-3.2", - "GOVERN-6.1", "MANAGE-2.3", "MAP-2.1", "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7" + "MEASURE-2.7", + "MEASURE-2.8" ], "attack_vector": "prompt-injection", - "affected": "Claude Code DNS Exfiltration (CVE-2025-55284)", - "severity": "High", + "affected": "PerplexedBrowser", + "severity": "Medium", "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55284", - "type": "advisory" - }, - { - "title": "Embrace The Red", - "url": "https://embracethered.com/blog/posts/2025/claude-code-exfiltration-via-dns-requests/", + "title": "Zenity Labs", + "url": "https://labs.zenity.io/p/perplexedbrowser-perplexity-s-agent-browser-can-leak-your-personal-pc-local-files", "type": "research" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-x5gv-jw7f-j6xj", - "type": "vendor" - }, - { - "title": "GHSA-x5gv-jw7f-j6xj", - "url": "https://github.com/advisories/GHSA-x5gv-jw7f-j6xj", - "type": "advisory" - } - ], - "tags": [ - "anthropic", - "anthropic-ai-claude-code", - "cve", - "ghsa", - "nvd" + } ] }, { - "id": "INC-02443", - "title": "Vulnerable juju hook tool abstract UNIX domain socket", - "date": "2024-10", - "year": 2024, - "category": "vulnerability-disclosure", - "description": "### Impact When combined with an attack of `JUJU_CONTEXT_ID`, any user on the local system with access to the default network namespace may connect to the `@/var/lib/juju/agents/unit-xxxx-yyyy/agent.socket` and perform actions that are normally reserved to a juju charm. ### Patches Patch: https://github.com/juju/juju/commit/2f2ec128ef5a8ca81fc86ae79cfcdbab0007c206 Patched in: - 3.5.4 - 3.4.6 - 3.3.7 - 3.1.10 - 2.9.51 ### Workarounds No workarounds available. ### References [GHSA-mh98-763h-m9v4](https://github.com/juju/juju/security/advisories/GHSA-mh98-763h-m9v4) https://github.com/juju/juju/blob/725800953aaa29dbeda4f806097bf838e61644dd/worker/uniter/paths.go#L222", + "id": "INC-01666", + "title": "PraisonAI Quadruple CVE Disclosure", + "date": "2026-04", + "year": 2026, + "category": "real-world", + "description": "Four critical/high vulnerabilities in PraisonAI multi-agent framework: CVE-2026-39888 (CVSS 9.9) sandbox escape via exception frame traversal; CVE-2026-39890 (CVSS 9.8) RCE via YAML deserialization with `!!js/function` tags; CVE-2026-39891 (CVSS 8.8) template injection in agent tool definitions; CVE-2026-39889 (CVSS 7.5) unauthenticated SSE event stream exposes all agent activity. Fixed in 4.5.115.", "owasp_entries": [ - "LLM02", - "LLM03", "LLM04", - "LLM05", - "LLM06", + "LLM10", "ASI02", "ASI03", "ASI04", "ASI05", - "ASI10" + "ASI07" ], "mitre_atlas": [ "AML.T0010", "AML.T0010.001", "AML.T0011", "AML.T0012", - "AML.T0020", - "AML.T0024", - "AML.T0048", "AML.T0049", "AML.T0050", - "AML.T0051", - "AML.T0051.000", "AML.T0053", - "AML.T0057", + "AML.T0055", "AML.T0060" ], "mitre_atlas_tactics": [ "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" + "AML.TA0012", + "AML.TA0013" ], "nist_ai_rmf": [ - "GOVERN-1.1", "GOVERN-1.4", "GOVERN-3.2", "GOVERN-6.1", - "GOVERN-6.2", "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.1", - "MAP-2.1", "MAP-3.5", - "MAP-4.2", - "MEASURE-2.10", + "MAP-4.1", "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "other", - "affected": "go/github.com/juju/juju", + "attack_vector": "rce", + "affected": "PraisonAI Quadruple CVE Disclosure", "severity": "Critical", "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8037", - "type": "advisory" - }, - { - "title": "GHSA-8v4w-f4r9-7h6x", - "url": "https://github.com/advisories/GHSA-8v4w-f4r9-7h6x", - "type": "advisory" - }, - { - "title": "https://github.com/juju/juju/security/advisories/GHSA-8v4w-f4r9-7h6x", - "url": "https://github.com/juju/juju/security/advisories/GHSA-8v4w-f4r9-7h6x", - "type": "reference" - }, - { - "title": "https://github.com/juju/juju/security/advisories/GHSA-mh98-763h-m9v4", - "url": "https://github.com/juju/juju/security/advisories/GHSA-mh98-763h-m9v4", - "type": "reference" - }, - { - "title": "https://github.com/juju/juju/commit/2f2ec128ef5a8ca81fc86ae79cfcdbab0007c206", - "url": "https://github.com/juju/juju/commit/2f2ec128ef5a8ca81fc86ae79cfcdbab0007c206", - "type": "reference" - }, - { - "title": "https://github.com/juju/juju/blob/725800953aaa29dbeda4f806097bf838e61644dd/worker/uniter/paths.go#L222", - "url": "https://github.com/juju/juju/blob/725800953aaa29dbeda4f806097bf838e61644dd/worker/uniter/paths.go#L222", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7558", - "type": "advisory" - }, - { - "title": "GHSA-mh98-763h-m9v4", - "url": "https://github.com/advisories/GHSA-mh98-763h-m9v4", - "type": "advisory" - }, - { - "title": "https://github.com/juju/juju/commit/ecd7e2d0e9867576b9da04871e22232f06fa0cc7", - "url": "https://github.com/juju/juju/commit/ecd7e2d0e9867576b9da04871e22232f06fa0cc7", - "type": "reference" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2024-3173", - "url": "https://pkg.go.dev/vuln/GO-2024-3173", - "type": "reference" - }, - { - "title": "GHSA-fc27-7pf5-96v3", - "url": "https://github.com/advisories/GHSA-fc27-7pf5-96v3", - "type": "advisory" - }, - { - "title": "https://www.cve.org/CVERecord?id=CVE-2024-8037", - "url": "https://www.cve.org/CVERecord?id=CVE-2024-8037", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23334", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5687", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23320", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23319", - "type": "advisory" - }, - { - "title": "Wiz analysis", - "url": "https://www.wiz.io/blog/nvidia-triton-cve-2025-23319-vuln-chain-to-ai-server", - "type": "analysis" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23311", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23310", - "type": "advisory" - }, - { - "title": "GHSA-h2wf-vc6w-xq48", - "url": "https://github.com/advisories/GHSA-h2wf-vc6w-xq48", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33226", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5736", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33212", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-68613", - "type": "advisory" - }, - { - "title": "Intel 471", - "url": "https://www.intel471.com/blog/cve-2025-68613-zerobot-botnet-exploits-critical-vulnerability-impacting-n8n-ai-orchestration-platform", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24162", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5838", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24206", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5828", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24207", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24208", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24209", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24210", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24213", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24214", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24215", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44587", - "type": "advisory" - }, - { - "title": "GHSA-7g26-2qgj-chfg", - "url": "https://github.com/advisories/GHSA-7g26-2qgj-chfg", - "type": "advisory" - }, - { - "title": "https://github.com/carrierwaveuploader/carrierwave/security/advisories/GHSA-7g26-2qgj-chfg", - "url": "https://github.com/carrierwaveuploader/carrierwave/security/advisories/GHSA-7g26-2qgj-chfg", - "type": "reference" - }, - { - "title": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/carrierwave/CVE-2026-44587.yml", - "url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/carrierwave/CVE-2026-44587.yml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24146", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5816", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24147", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24173", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24174", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24175", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24222", + "title": "GitLab Advisory", + "url": "https://advisories.gitlab.com/pkg/pypi/praisonai/CVE-2026-39890/", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5837", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24231", + "title": "TheHackerWire", + "url": "https://www.thehackerwire.com/critical-praisonai-sandbox-escape-rce-cve-2026-39888/", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62188", - "type": "advisory" - }, - { - "title": "GHSA-3cjc-vhfm-ffp2", - "url": "https://github.com/advisories/GHSA-3cjc-vhfm-ffp2", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39891", "type": "advisory" }, { - "title": "https://lists.apache.org/thread/ffrmkcwgr2lcz0f5nnnyswhpn3fytsvo", - "url": "https://lists.apache.org/thread/ffrmkcwgr2lcz0f5nnnyswhpn3fytsvo", - "type": "reference" - }, - { - "title": "https://github.com/apache/dolphinscheduler/releases/tag/3.0.2", - "url": "https://github.com/apache/dolphinscheduler/releases/tag/3.0.2", - "type": "reference" - }, - { - "title": "GHSA-32wq-ppwg-3w4m", - "url": "https://github.com/advisories/GHSA-32wq-ppwg-3w4m", + "title": "GHSA-hwg5-x759-7wjg", + "url": "https://github.com/advisories/GHSA-hwg5-x759-7wjg", "type": "advisory" }, { - "title": "https://github.com/alastairlundy/EnhancedLinq/security/advisories/GHSA-32wq-ppwg-3w4m", - "url": "https://github.com/alastairlundy/EnhancedLinq/security/advisories/GHSA-32wq-ppwg-3w4m", + "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-hwg5-x759-7wjg", + "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-hwg5-x759-7wjg", "type": "reference" }, { - "title": "https://github.com/dotnet/announcements/issues/384", - "url": "https://github.com/dotnet/announcements/issues/384", + "title": "https://github.com/MervinPraison/PraisonAI/releases/tag/v4.5.115", + "url": "https://github.com/MervinPraison/PraisonAI/releases/tag/v4.5.115", "type": "reference" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33238", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5790", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33254", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24158", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24141", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5798", - "type": "reference" + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39889", + "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33244", + "title": "GHSA-f292-66h9-fpmf", + "url": "https://github.com/advisories/GHSA-f292-66h9-fpmf", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5782", + "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-f292-66h9-fpmf", + "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-f292-66h9-fpmf", "type": "reference" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24157", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39888", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5800", - "type": "vendor" - }, - { - "title": "GHSA-m4jw-wgmf-889x", - "url": "https://github.com/advisories/GHSA-m4jw-wgmf-889x", + "title": "GHSA-qf73-2hrx-xprp", + "url": "https://github.com/advisories/GHSA-qf73-2hrx-xprp", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24159", - "type": "advisory" + "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qf73-2hrx-xprp", + "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qf73-2hrx-xprp", + "type": "reference" }, { - "title": "GHSA-v7v2-m736-cf3c", - "url": "https://github.com/advisories/GHSA-v7v2-m736-cf3c", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39890", "type": "advisory" }, { - "title": "GHSA-8fh9-c4jq-94h4", - "url": "https://github.com/advisories/GHSA-8fh9-c4jq-94h4", + "title": "GHSA-32vr-5gcf-3pw2", + "url": "https://github.com/advisories/GHSA-32vr-5gcf-3pw2", "type": "advisory" }, { - "title": "https://github.com/blowdart/idunno.Bluesky/security/advisories/GHSA-8fh9-c4jq-94h4", - "url": "https://github.com/blowdart/idunno.Bluesky/security/advisories/GHSA-8fh9-c4jq-94h4", + "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-32vr-5gcf-3pw2", + "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-32vr-5gcf-3pw2", "type": "reference" - }, + } + ], + "tags": [ + "cve", + "deserialization", + "ghsa", + "path-traversal", + "praisonai", + "praisonaiagents", + "rce" + ] + }, + { + "id": "INC-01723", + "title": "Anyscale Ray LFI via /static/ directory (missing authorization)", + "date": "2023-09-05", + "year": 2023, + "category": "real-world", + "description": "Local file inclusion in Ray's /static/ directory allows attackers to read any file on the server without authentication. Fixed in 2.8.1+.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", + "LLM04", + "LLM10", + "ASI01", + "ASI04", + "ASI05", + "DSGAI08" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0011", + "AML.T0018", + "AML.T0040", + "AML.T0048", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0000", + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.1", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "path-traversal", + "affected": "ray < 2.8.1", + "impact": "Cluster-wide malware propagation; cryptocurrency mining hijack; compute resource theft", + "severity": "Critical", + "mitigations": [ + "Authentication on job submission APIs", + "Network segmentation for AI compute clusters", + "Patch Ray framework promptly" + ], + "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26130", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6020", "type": "advisory" }, { - "title": "GHSA-4vgm-c2wm-63mw", - "url": "https://github.com/advisories/GHSA-4vgm-c2wm-63mw", + "title": "GHSA-6cxr-8q3m-jwrr", + "url": "https://github.com/advisories/GHSA-6cxr-8q3m-jwrr", "type": "advisory" }, { - "title": "https://github.com/dotnet/aspnetcore/security/advisories/GHSA-4vgm-c2wm-63mw", - "url": "https://github.com/dotnet/aspnetcore/security/advisories/GHSA-4vgm-c2wm-63mw", + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/83dd8619-6dc3-4c98-8f1b-e620fedcd1f6", + "type": "exploit" + }, + { + "title": "https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023", + "url": "https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023", "type": "reference" }, { - "title": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26130", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26130", + "title": "https://github.com/ray-project/ray/releases/tag/ray-2.8.1", + "url": "https://github.com/ray-project/ray/releases/tag/ray-2.8.1", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33236", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6cxr-8q3m-jwrr", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5762", - "type": "vendor" + "title": "https://github.com/ray-project/ray", + "url": "https://github.com/ray-project/ray", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33241", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-516", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33243", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6021", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33245", + "title": "GHSA-3pww-qvr8-6mhp", + "url": "https://github.com/advisories/GHSA-3pww-qvr8-6mhp", "type": "advisory" }, { - "title": "GHSA-9379-mwvr-7wxx", - "url": "https://github.com/advisories/GHSA-9379-mwvr-7wxx", - "type": "advisory" + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/5039c045-f986-4cbc-81ac-370fe4b0d3f8", + "type": "exploit" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33246", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-3pww-qvr8-6mhp", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33249", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-515", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33250", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6019", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33251", + "title": "GHSA-h3xg-wv58-5p43", + "url": "https://github.com/advisories/GHSA-h3xg-wv58-5p43", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33252", - "type": "advisory" + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/d0290f3c-b302-4161-89f2-c13bb28b4cfe", + "type": "exploit" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33253", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-h3xg-wv58-5p43", "type": "advisory" }, { - "title": "GHSA-hvjw-vp7g-39h5", - "url": "https://github.com/advisories/GHSA-hvjw-vp7g-39h5", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-519", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33233", - "type": "advisory" + "title": "ShadowRay: First Known Attack Campaign Targeting AI Workloads - Oligo", + "url": "https://www.oligo.security/blog/shadowray-attack-ai-workloads-actively-exploited-in-the-wild", + "type": "research" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5761", - "type": "reference" + "title": "CVE-2023-48022 Anyscale Ray Dashboard RCE - Censys", + "url": "https://censys.com/advisory/cve-2023-48022", + "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33213", - "type": "advisory" + "title": "MITRE ATLAS — AML.CS0023", + "url": "https://atlas.mitre.org/studies/AML.CS0023", + "type": "research" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5739", - "type": "reference" + "title": "ShadowRay: AI Infrastructure Is Being Exploited In the Wild", + "url": "https://protectai.com/threat-research/shadowray-ai-infrastructure-is-being-exploited-in-the-wild", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33201", - "type": "advisory" + "title": "CVE-2023-48022", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-48022", + "type": "research" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5734", - "type": "vendor" + "title": "ShadowRay 2.0: AI turned against itself", + "url": "https://www.oligo.security/blog/shadowray-2-0-attackers-turn-ai-against-itself-in-global-campaign-that-hijacks-ai-into-self-propagating-botnet", + "type": "research" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/08f332015153decdda3c37ad4fcb9f7ba13a7c79", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32981", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/1c933358acef527ff61466e53268b41a04be1000", - "type": "patch" + "title": "GHSA-j3mh-qmjj-xp83", + "url": "https://github.com/advisories/GHSA-j3mh-qmjj-xp83", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/39a2d1d60edde89674ca96dcbb3eb076ffff6316", - "type": "patch" + "title": "https://packetstorm.news/files/id/215801/", + "url": "https://packetstorm.news/files/id/215801/", + "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-v98v-ff95-f3cp", - "type": "vendor" + "title": "https://www.vulncheck.com/advisories/ray-dashboard-path-traversal-leading-to-local-file-disclosure", + "url": "https://www.vulncheck.com/advisories/ray-dashboard-path-traversal-leading-to-local-file-disclosure", + "type": "reference" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://www.akamai.com/blog/security-research/2026/feb/zerobot-malware-targets-n8n-automation-platform", - "type": "exploit" + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/ray/PYSEC-2026-130.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/ray/PYSEC-2026-130.yaml", + "type": "reference" }, { - "title": "GHSA-v98v-ff95-f3cp", - "url": "https://github.com/advisories/GHSA-v98v-ff95-f3cp", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-j3mh-qmjj-xp83", "type": "advisory" }, { - "title": "Endor Labs", - "url": "https://www.endorlabs.com/learn/cve-2026-25049-n8n-rce", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-130", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25049", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27482", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/7860896909b3d42993a36297f053d2b0e633235d", + "url": "https://github.com/ray-project/ray/commit/0fda8b824cdc9dc6edd763bb28dfd7d1cc9b02a4", "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/936c06cfc1ad269a89e8ef7f8ac79c104436d54b", + "url": "https://github.com/ray-project/ray/pull/60526", "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-6cqr-8cfr-67f8", + "url": "https://github.com/ray-project/ray/releases/tag/ray-2.54.0", + "type": "reference" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/ray-project/ray/security/advisories/GHSA-q5fh-2hc8-f6rq", "type": "vendor" }, { - "title": "GHSA-6cqr-8cfr-67f8", - "url": "https://github.com/advisories/GHSA-6cqr-8cfr-67f8", + "title": "GHSA-q5fh-2hc8-f6rq", + "url": "https://github.com/advisories/GHSA-q5fh-2hc8-f6rq", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-q5fh-2hc8-f6rq", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27577", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34351", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://docs.n8n.io/hosting/securing/overview", + "title": "GHSA-gx77-xgc2-4888", + "url": "https://github.com/advisories/GHSA-gx77-xgc2-4888", + "type": "advisory" + }, + { + "title": "https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-w8vc-465m-jjw6", + "url": "https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-w8vc-465m-jjw6", "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/1479aab2d32fe0ee087f82b9038b1035c98be2f6", - "type": "patch" + "title": "https://docs.ray.io/en/latest/ray-security/token-auth.html", + "url": "https://docs.ray.io/en/latest/ray-security/token-auth.html", + "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/9e5212ecbc5d2d4e6f340b636a5e84be6369882e", - "type": "patch" + "title": "https://www.vulncheck.com/advisories/anyscale-ray-token-authentication-disabled-by-default-insecure-configuration", + "url": "https://www.vulncheck.com/advisories/anyscale-ray-token-authentication-disabled-by-default-insecure-configuration", + "type": "reference" + }, + { + "title": "https://github.com/ray-project/ray/releases/tag/ray-2.52.0", + "url": "https://github.com/ray-project/ray/releases/tag/ray-2.52.0", + "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-vpcf-gvg4-6qwr", - "type": "vendor" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-gx77-xgc2-4888", + "type": "advisory" }, { - "title": "GHSA-vpcf-gvg4-6qwr", - "url": "https://github.com/advisories/GHSA-vpcf-gvg4-6qwr", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-518", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27578", + "title": "GHSA-6wgj-66m2-xxp2", + "url": "https://github.com/advisories/GHSA-6wgj-66m2-xxp2", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/062644ef786b6af480afe4a0f12bc6d70040534a", - "type": "patch" + "title": "https://bishopfox.com/blog/ray-versions-2-6-3-2-8-0", + "url": "https://bishopfox.com/blog/ray-versions-2-6-3-2-8-0", + "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-2p9h-rqjw-gm92", - "type": "vendor" + "title": "https://docs.ray.io/en/latest/ray-security/index.html", + "url": "https://docs.ray.io/en/latest/ray-security/index.html", + "type": "reference" }, { - "title": "GHSA-2p9h-rqjw-gm92", - "url": "https://github.com/advisories/GHSA-2p9h-rqjw-gm92", - "type": "advisory" + "title": "https://www.vicarius.io/vsociety/posts/shadowray-cve-2023-48022-exploit", + "url": "https://www.vicarius.io/vsociety/posts/shadowray-cve-2023-48022-exploit", + "type": "reference" }, { - "title": "GHSA-jh8h-6c9q-7gmw", - "url": "https://github.com/advisories/GHSA-jh8h-6c9q-7gmw", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6wgj-66m2-xxp2", "type": "advisory" }, { - "title": "https://github.com/n8n-io/n8n/security/advisories/GHSA-jh8h-6c9q-7gmw", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-jh8h-6c9q-7gmw", + "title": "https://github.com/ray-project/ray/commit/978947083b1e192dba61ef653c863b11d56b0936", + "url": "https://github.com/ray-project/ray/commit/978947083b1e192dba61ef653c863b11d56b0936", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-66516", - "type": "advisory" + "title": "https://console.vulncheck.com/cve/CVE-2023-48022", + "url": "https://console.vulncheck.com/cve/CVE-2023-48022", + "type": "reference" }, { - "title": "GHSA-f58c-gq56-vjjf", - "url": "https://github.com/advisories/GHSA-f58c-gq56-vjjf", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-517", "type": "advisory" - }, + } + ], + "tags": [ + "atlas", + "botnet", + "case-study", + "command-injection", + "credential-exfiltration", + "crypto-mining", + "cryptojacking", + "cve", + "cve-2023-48022", + "dashboard", + "exploited-in-the-wild", + "ghsa", + "info-disclosure", + "infrastructure", + "lfi", + "log-api", + "mlops", + "nvd", + "osv", + "path-traversal", + "ray", + "ray-project", + "rce", + "real-world", + "self-spreading", + "shadowray", + "supply-chain" + ] + }, + { + "id": "INC-01769", + "title": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "Two CVSS 9.8 unauthenticated RCE vulnerabilities via unsafe pickle.loads() deserialization in ZeroMQ broker and disaggregation modules. CVE-2026-3989 (CVSS 7.8): insecure pickle.load() in replay_request_dump.py. Unpatched as of disclosure.", + "owasp_entries": [ + "LLM04", + "LLM10", + "ASI02", + "ASI03", + "ASI04", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0011", + "AML.T0012", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0055", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.3", + "MAP-3.5", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "rce", + "affected": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "severity": "Critical", + "references": [ { - "title": "https://lists.apache.org/thread/s5x3k93nhbkqzztp1olxotoyjpdlps9k", - "url": "https://lists.apache.org/thread/s5x3k93nhbkqzztp1olxotoyjpdlps9k", - "type": "reference" + "title": "The Hacker News", + "url": "https://thehackernews.com/2026/03/ai-flaws-in-amazon-bedrock-langsmith.html", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33204", + "title": "SentinelOne", + "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-25528/", "type": "advisory" }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5729", - "type": "vendor" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33202", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25750", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5723", + "title": "security-advisories@github.com", + "url": "https://github.com/langchain-ai/helm/security/advisories/GHSA-r8wq-jwgw-p74g", "type": "vendor" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23361", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3059", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5718", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33178", - "type": "advisory" + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/multimodal_gen/runtime/scheduler_client.py", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33203", - "type": "advisory" + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/pull/20904", + "type": "reference" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5726", + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/releases/tag/v0.5.10", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33205", - "type": "advisory" + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/security/advisories/GHSA-3cp7-c6q2-94xr", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59828", - "type": "advisory" + "title": "cret@cert.org", + "url": "https://orca.security/resources/blog/sglang-llm-framework-rce-vulnerabilities/", + "type": "exploit" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-2jjv-qf24-vfm4", + "title": "GHSA-rgq9-fqf5-fv58", + "url": "https://github.com/advisories/GHSA-rgq9-fqf5-fv58", "type": "advisory" }, { - "title": "GHSA-2jjv-qf24-vfm4", - "url": "https://github.com/advisories/GHSA-2jjv-qf24-vfm4", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3060", "type": "advisory" }, { - "title": "https://osv.dev/vulnerability/GHSA-2jjv-qf24-vfm4", - "url": "https://osv.dev/vulnerability/GHSA-2jjv-qf24-vfm4", + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/srt/disaggregation/encode_receiver.py", "type": "reference" }, { - "title": "https://yarnpkg.com/advanced/plugin-tutorial", - "url": "https://yarnpkg.com/advanced/plugin-tutorial", - "type": "reference" + "title": "GHSA-jx93-g359-86wm", + "url": "https://github.com/advisories/GHSA-jx93-g359-86wm", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23298", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3989", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5683", + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/blob/main/scripts/playground/replay_request_dump.py", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23317", + "title": "GHSA-hvwj-8w5g-28rg", + "url": "https://github.com/advisories/GHSA-hvwj-8w5g-28rg", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23318", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25528", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23321", + "title": "GHSA-v34v-rq6j-cj6p", + "url": "https://github.com/advisories/GHSA-v34v-rq6j-cj6p", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23322", - "type": "advisory" - }, + "title": "https://github.com/langchain-ai/langsmith-sdk/security/advisories/GHSA-v34v-rq6j-cj6p", + "url": "https://github.com/langchain-ai/langsmith-sdk/security/advisories/GHSA-v34v-rq6j-cj6p", + "type": "reference" + } + ], + "tags": [ + "cve", + "deserialization", + "ghsa", + "langchain", + "langsmith", + "nvd", + "sglang", + "ssrf" + ] + }, + { + "id": "INC-02058", + "title": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "date": "2026-01", + "year": 2026, + "category": "real-world", + "description": "AI-powered IDEs (Cursor, Windsurf, Google Antigravity, Trae) forked from VS Code inherit hardcoded recommended extension lists pointing to VS Code Marketplace. These IDEs use OpenVSX, where those extension namespaces were unclaimed. Attackers could register them and publish malware that users would install via built-in recommendations.", + "owasp_entries": [ + "LLM04", + "ASI04" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003" + ], + "mitre_atlas_tactics": [ + "AML.TA0004" + ], + "nist_ai_rmf": [ + "GOVERN-6.1", + "GOVERN-6.2", + "MAP-4.1" + ], + "attack_vector": "supply-chain", + "affected": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "severity": "Medium", + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23323", - "type": "advisory" - }, + "title": "The Hacker News", + "url": "https://thehackernews.com/2026/01/vs-code-forks-recommend-missing.html", + "type": "research" + } + ] + }, + { + "id": "INC-02105", + "title": "XBOW — first critical CVE discovered entirely by autonomous AI penetration testing agent", + "date": "2026-03", + "year": 2026, + "category": "research-demonstrated", + "description": "CVE-2026-21536, a critical vulnerability in Microsoft Devices Pricing Program, was discovered entirely by XBOW's autonomous AI penetration testing agent. XBOW agents have submitted 1,060+ vulnerabilities on HackerOne, executed 48-step exploit chains, and matched a principal pentester's 40-hour assessment in 28 minutes.", + "owasp_entries": [ + "LLM03", + "ASI05", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0011", + "AML.T0048", + "AML.T0049", + "AML.T0050", + "AML.T0053" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0005", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MAP-3.5", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23324", - "type": "advisory" + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "Autonomous AI agent discovers and validates vulnerabilities" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23325", - "type": "advisory" - }, + "layer": "L6", + "label": "Security & Compliance", + "role": "impact", + "notes": "First critical CVE attributed to autonomous AI agent" + } + ], + "attack_vector": "other", + "affected": "Microsoft Devices Pricing Program; broader implications for AI-discovered vulnerabilities", + "impact": "Paradigm shift in vulnerability discovery; 48-step exploit chains automated; 40-hour → 28-minute assessment", + "severity": "Critical", + "mitigations": [ + "Ethical guidelines for autonomous security testing", + "Rate limiting for automated vulnerability scanning", + "Responsible disclosure frameworks for AI-discovered vulnerabilities" + ], + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23326", - "type": "advisory" + "title": "XBOW: Three RCE vulnerabilities in Microsoft", + "url": "https://xbow.com/blog/three-rce-vulnerabilities-in-microsoft-identified-xbow", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23327", + "title": "Microsoft", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21536", "type": "advisory" - }, + } + ], + "tags": [ + "ai-agent", + "autonomous-pentest", + "cve-discovery", + "vulnerability-research" + ] + }, + { + "id": "INC-02186", + "title": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", + "date": "2025-04", + "year": 2025, + "category": "research-demonstrated", + "description": "Malicious agent published fake agent card in open A2A directory falsely claiming high trust. LLM judge agent selected it, enabling rogue agent to intercept sensitive data and leak to unauthorized parties.", + "owasp_entries": [ + "LLM02", + "LLM05", + "LLM07", + "LLM10", + "ASI03", + "ASI06", + "ASI07", + "ASI08", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0024", + "AML.T0048", + "AML.T0048.001", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0058", + "AML.T0059", + "AML.T0060", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MANAGE-3.2", + "MANAGE-4.1", + "MANAGE-4.3", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "maestro_layers": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23331", - "type": "advisory" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "Fake agent card published in open directory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23333", - "type": "advisory" - }, + "layer": "L3", + "label": "Agent Frameworks", + "role": "propagation", + "notes": "LLM judge trusts falsified trust claims" + } + ], + "attack_vector": "rce", + "affected": "Agent-2-Agent (A2A) protocol — multi-agent workflows", + "impact": "Data interception; trust violation; cascading agent compromise", + "severity": "Critical", + "mitigations": [ + "Agent card signing and validation", + "Cryptographic agent identity verification", + "Multi-factor trust assessment (not just self-declared)" + ], + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23335", - "type": "advisory" - }, + "title": "Agent-in-the-Middle: Abusing agent cards in A2A protocol", + "url": "https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/agent-in-the-middle-abusing-agent-cards-in-the-agent-2-agent-protocol-to-win-all-the-tasks", + "type": "research" + } + ], + "tags": [ + "a2a", + "agent-directory", + "mitm", + "multi-agent", + "trust-spoofing" + ] + }, + { + "id": "INC-02190", + "title": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", + "date": "2025", + "year": 2025, + "category": "research-demonstrated", + "description": "Scan of 1,808 MCP servers: 66% had at least one security finding. 43% had shell/command injection, 20% tooling infrastructure flaws, 13% authentication bypasses, 10% path traversal. Critical findings demonstrated ability to execute arbitrary code with no user interaction.", + "owasp_entries": [ + "LLM04", + "LLM10", + "ASI02", + "ASI03", + "ASI04", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0012", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0053", + "AML.T0055", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23303", - "type": "advisory" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "Systemic insecurity across MCP server ecosystem" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5686", - "type": "vendor" - }, + "layer": "L3", + "label": "Agent Frameworks", + "role": "impact", + "notes": "66% of servers vulnerable to code execution or data theft" + } + ], + "attack_vector": "command-injection", + "affected": "MCP server ecosystem — 1,808 servers scanned, 66% vulnerable", + "impact": "Systemic risk to AI agent infrastructure; arbitrary code execution at scale", + "severity": "Critical", + "mitigations": [ + "Automated vulnerability scanning for MCP servers", + "Community security baseline standards", + "MCP server security certification program" + ], + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23304", - "type": "advisory" - }, + "title": "AgentSeal MCP server security findings", + "url": "https://agentseal.org/blog/mcp-server-security-findings", + "type": "research" + } + ], + "tags": [ + "command-injection", + "ecosystem-security", + "mass-scan", + "mcp", + "systemic-risk" + ] + }, + { + "id": "INC-02191", + "title": "AgentSmith Prompt-Hub Proxy Attack", + "date": "2025-06", + "year": 2025, + "category": "real-world", + "description": "Proxy prompt agent exfiltrated API keys", + "owasp_entries": [ + "LLM04", + "ASI04" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0024", + "AML.T0025", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0010" + ], + "nist_ai_rmf": [ + "GOVERN-6.1", + "GOVERN-6.2", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "attack_vector": "data-exfiltration", + "affected": "AgentSmith Prompt-Hub Proxy Attack", + "severity": "Medium", + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23307", - "type": "advisory" - }, + "title": "Noma Security", + "url": "https://noma.security/blog/how-an-ai-agent-vulnerability-in-langsmith-could-lead-to-stolen-api-keys-and-hijacked-llm-responses", + "type": "research" + } + ] + }, + { + "id": "INC-02297", + "title": "Amazon Bedrock AgentCore Sandbox DNS Escape", + "date": "2025-09", + "year": 2025, + "category": "real-world", + "description": "AgentCore Code Interpreter's \"Sandbox\" mode (advertised as \"complete isolation\") allows outbound DNS queries. Attackers can establish bidirectional C2 channels and exfiltrate data via DNS tunneling. AWS declined to fix, reclassifying as \"intended functionality.\" Independently confirmed by Palo Alto Unit42.", + "owasp_entries": [ + "ASI02", + "ASI03" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0024", + "AML.T0025", + "AML.T0050", + "AML.T0053", + "AML.T0055", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "attack_vector": "data-exfiltration", + "affected": "Amazon Bedrock AgentCore Sandbox DNS Escape", + "severity": "Medium", + "references": [ { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5690", - "type": "vendor" + "title": "AWS", + "url": "https://unit42.paloaltonetworks.com/bypass-of-aws-sandbox-network-isolation-mode/", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23312", - "type": "advisory" - }, + "title": "BeyondTrust", + "url": "https://www.beyondtrust.com/blog/entry/pwning-aws-agentcore-code-interpreter", + "type": "research" + } + ] + }, + { + "id": "INC-02300", + "title": "Amazon Q Prompt Poisoning", + "date": "2025-07-13", + "year": 2025, + "category": "real-world", + "description": "Destructive prompt in extension risked file wipes", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", + "LLM10", + "ASI01", + "ASI02", + "ASI04", + "ASI05", + "ASI09" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0024", + "AML.T0025", + "AML.T0048.003", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-3.2", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "other", + "affected": "Amazon Q Prompt Poisoning", + "severity": "Critical", + "references": [ { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5689", + "title": "AWS", + "url": "https://aws.amazon.com/security/security-bulletins/AWS-2025-015", "type": "vendor" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23313", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23314", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23315", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-30399", - "type": "advisory" - }, - { - "title": "GHSA-266m-wp2v-x7mq", - "url": "https://github.com/advisories/GHSA-266m-wp2v-x7mq", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8217", "type": "advisory" }, { - "title": "https://github.com/dotnet/runtime/security/advisories/GHSA-266m-wp2v-x7mq", - "url": "https://github.com/dotnet/runtime/security/advisories/GHSA-266m-wp2v-x7mq", - "type": "reference" - }, - { - "title": "https://github.com/dotnet/runtime/issues/116495", - "url": "https://github.com/dotnet/runtime/issues/116495", - "type": "reference" + "title": "Embrace The Red", + "url": "https://embracethered.com/blog/posts/2025/amazon-q-developer-data-exfil-via-dns/", + "type": "research" }, { - "title": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-30399", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-30399", - "type": "reference" + "title": "MITRE ATLAS — AML.CS0047", + "url": "https://atlas.mitre.org/studies/AML.CS0047", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6156", - "type": "advisory" + "title": "GitHub commit containing the malicious prompt", + "url": "https://github.com/aws/aws-toolkit-vscode/commit/1294b38b7fade342cfcbaf7cf80e2e5096ea1f9c", + "type": "research" }, { - "title": "GHSA-4c49-9fpc-hc3v", - "url": "https://github.com/advisories/GHSA-4c49-9fpc-hc3v", - "type": "advisory" + "title": "404 Media report on the Amazon Q VS Code extension incident", + "url": "https://www.404media.co/hacker-plants-computer-wiping-commands-in-amazons-ai-coding-agent/", + "type": "research" }, { - "title": "https://github.com/canonical/lxd/security/advisories/GHSA-4c49-9fpc-hc3v", - "url": "https://github.com/canonical/lxd/security/advisories/GHSA-4c49-9fpc-hc3v", - "type": "reference" - }, + "title": "Medium article detailing the events of the Amazon Q VS Code extension incident", + "url": "https://medium.com/@ismailkovvuru/the-amazon-q-vs-code-prompt-injection-explained-impact-and-learnings-for-devops-3a9d2f752dea", + "type": "research" + } + ], + "tags": [ + "amazon-q", + "atlas", + "case-study", + "dns-exfil", + "real-world" + ] + }, + { + "id": "INC-02321", + "title": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", + "date": "2025-06", + "year": 2025, + "category": "real-world", + "description": "Path validation bypass, unrestricted git_init (CVSS 8.8), and argument injection in git_diff. Chained with Filesystem MCP, achieved RCE via Git smudge/clean filters. Exploitable via prompt injection through malicious README files or issue descriptions. Reported June 2025, patched December 2025, disclosed January 2026.", + "owasp_entries": [ + "LLM01", + "LLM03", + "LLM04", + "LLM10", + "ASI01", + "ASI02", + "ASI04", + "ASI05", + "ASI07" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0011", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "rce", + "affected": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", + "severity": "High", + "references": [ { - "title": "https://github.com/canonical/lxd/commit/92468bb60f4f1edf38ff0434414bea4f28afa711", - "url": "https://github.com/canonical/lxd/commit/92468bb60f4f1edf38ff0434414bea4f28afa711", - "type": "reference" + "title": "The Hacker News", + "url": "https://thehackernews.com/2026/01/three-flaws-in-anthropic-mcp-git-server.html", + "type": "research" }, { - "title": "https://pkg.go.dev/vuln/GO-2024-3312", - "url": "https://pkg.go.dev/vuln/GO-2024-3312", - "type": "reference" + "title": "Infosecurity Magazine", + "url": "https://www.infosecurity-magazine.com/news/prompt-injection-bugs-anthropic/", + "type": "analysis" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32007", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-68143", "type": "advisory" }, { - "title": "GHSA-59hw-j9g6-mfg3", - "url": "https://github.com/advisories/GHSA-59hw-j9g6-mfg3", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/modelcontextprotocol/servers/commit/eac56e7bcde48fb64d5a973924d05d69a7d876e6", + "type": "patch" }, { - "title": "https://lists.apache.org/thread/poxgnxhhnzz735kr1wos366l5vdbb0nv", - "url": "https://lists.apache.org/thread/poxgnxhhnzz735kr1wos366l5vdbb0nv", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/modelcontextprotocol/servers/security/advisories/GHSA-5cgr-j3jf-jw3v", + "type": "vendor" + } + ], + "tags": [ + "anthropic", + "chain", + "command-injection", + "cve", + "git", + "mcp", + "nvd", + "path-traversal" + ] + }, + { + "id": "INC-02324", + "title": "Anthropic SQLite MCP Server SQL Injection", + "date": "2025-06", + "year": 2025, + "category": "real-world", + "description": "Classic SQL injection in Anthropic's reference SQLite MCP server (direct concatenation of unsanitized input). Despite being archived, forked 5,000+ times. Unpatched code exists in thousands of downstream agents. Anthropic declared \"out of scope.\" SQL injection enables stored-prompt injection for manipulating AI agents.", + "owasp_entries": [ + "LLM01", + "LLM04", + "LLM05", + "ASI02", + "ASI04", + "ASI06" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0059", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.7" + ], + "attack_vector": "prompt-injection", + "affected": "Anthropic SQLite MCP Server SQL Injection", + "severity": "Medium", + "references": [ + { + "title": "Trend Micro", + "url": "https://www.trendmicro.com/en_us/research/25/f/why-a-classic-mcp-server-vulnerability-can-undermine-your-entire-ai-agent.html", + "type": "research" + } + ] + }, + { + "id": "INC-02426", + "title": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", + "date": "2025-11-13", + "year": 2025, + "category": "real-world", + "description": "AI Incident Database (AIID) entry #1263: Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage. Alleged deployer/developer: Anthropic, Gtg 1002, State Linked Operator Using Autonomous Ai Enabled Intrusion Workflows, Unknown Chinese State Sponsored Entity. See the linked AIID entry for full narrative, sourcing, and classification.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", + "LLM06", + "LLM07", + "LLM08", + "ASI01", + "ASI02", + "ASI03", + "ASI06", + "ASI07", + "ASI09", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0017", + "AML.T0024", + "AML.T0025", + "AML.T0029", + "AML.T0048", + "AML.T0048.003", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0054", + "AML.T0055", + "AML.T0056", + "AML.T0057", + "AML.T0058", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0007", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.3", + "GOVERN-1.4", + "GOVERN-1.5", + "GOVERN-3.2", + "GOVERN-6.2", + "MANAGE-2.1", + "MANAGE-2.3", + "MANAGE-2.4", + "MAP-2.1", + "MAP-2.3", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.11", + "MEASURE-2.4", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "attack_vector": "other", + "affected": "Anthropic, Gtg 1002, State Linked Operator Using Autonomous Ai Enabled Intrusion Workflows, Unknown Chinese State Sponsored Entity", + "impact": "Autonomous mass cyberattacks; data exfiltration; vulnerability exploitation at scale; state-sponsored AI weaponization", + "severity": "Critical", + "mitigations": [ + "Abuse detection for multi-step offensive operations", + "Mandatory reporting for suspected state-sponsored abuse", + "Rate limiting and pattern detection for exploit chains" + ], + "references": [ + { + "title": "AIID incident #1263", + "url": "https://incidentdatabase.ai/cite/1263/", + "type": "report" }, { - "title": "https://spark.apache.org/security.html", - "url": "https://spark.apache.org/security.html", - "type": "reference" + "title": "Disrupting the first reported AI-orchestrated cyber espionage campaign - Anthropic", + "url": "https://www.anthropic.com/news/disrupting-AI-espionage", + "type": "vendor" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/pyspark/PYSEC-2023-72.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/pyspark/PYSEC-2023-72.yaml", - "type": "reference" + "title": "AIRI Navigator — incident 1263", + "url": "https://www.airi-navigator.com/incidents/1263", + "type": "research" }, + { + "title": "Anthropic Disrupts First Documented Case — Paul Weiss", + "url": "https://www.paulweiss.com/insights/client-memos/anthropic-disrupts-first-documented-case-of-large-scale-ai-orchestrated-cyberattack", + "type": "analysis" + } + ], + "tags": [ + "abuse", + "agentic", + "agentic-attack", + "ai-post-deployment", + "aiid", + "airi-navigator", + "anthropic", + "apt", + "autonomous-attack", + "autonomous-espionage", + "chemical", + "china", + "claude-code", + "csam", + "espionage", + "eu-ai-act-2-high-risk", + "extortion", + "financial", + "fraud", + "government", + "gtg-1002", + "intentional", + "jailbreak", + "manufacturing", + "mit-risk-domain:4-malicious-actors-misuse", + "state-sponsored", + "threat-report", + "weaponization" + ] + }, + { + "id": "INC-02435", + "title": "Claude Code DNS Exfiltration (CVE-2025-55284)", + "date": "2025-06", + "year": 2025, + "category": "real-world", + "description": "Claude Code's default allowlist of \"safe commands\" included ping and dig, enabling data exfiltration via DNS requests without user confirmation. An attacker could hijack Claude Code via indirect prompt injection, read .env files, and exfiltrate secrets as DNS subdomains. Fixed in v1.0.4.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", + "ASI01", + "ASI02", + "ASI04" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0024", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "attack_vector": "prompt-injection", + "affected": "Claude Code DNS Exfiltration (CVE-2025-55284)", + "severity": "High", + "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-28260", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55284", "type": "advisory" }, { - "title": "GHSA-w4m3-43gp-x8hx", - "url": "https://github.com/advisories/GHSA-w4m3-43gp-x8hx", - "type": "advisory" + "title": "Embrace The Red", + "url": "https://embracethered.com/blog/posts/2025/claude-code-exfiltration-via-dns-requests/", + "type": "research" }, { - "title": "https://github.com/dotnet/runtime/security/advisories/GHSA-w4m3-43gp-x8hx", - "url": "https://github.com/dotnet/runtime/security/advisories/GHSA-w4m3-43gp-x8hx", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-x5gv-jw7f-j6xj", + "type": "vendor" }, { - "title": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28260", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28260", - "type": "reference" + "title": "GHSA-x5gv-jw7f-j6xj", + "url": "https://github.com/advisories/GHSA-x5gv-jw7f-j6xj", + "type": "advisory" } ], "tags": [ "anthropic", "anthropic-ai-claude-code", - "auth-bypass", - "automation", - "buffer-overflow", - "carrierwave", - "chain", - "code-injection", - "command-injection", "cve", - "cve-2025-23319", - "deserialization", - "enhancedlinq.async", "ghsa", - "github.com-canonical-lxd", - "github.com-juju-juju", - "idunno.atproto", - "idunno.atproto.oauthcallback", - "idunno.bluesky", - "inference-server", - "info-disclosure", - "memory", - "microsoft.aspnetcore.app.runtime.win-x64", - "microsoft.aspnetcore.app.runtime.win-x86", - "microsoft.netcore.app.runtime.win-arm", - "microsoft.netcore.app.runtime.win-arm64", - "microsoft.netcore.app.runtime.win-x64", - "microsoft.netcore.app.runtime.win-x86", - "n8n", - "nemo", - "nemo-toolkit", - "nvd", - "nvidia", - "org.apache.dolphinscheduler-dolphinscheduler", - "org.apache.spark-spark-parent-2.12", - "org.apache.tika-tika-core", - "org.apache.tika-tika-parser-pdf-module", - "org.apache.tika-tika-parsers", - "path-traversal", - "pyspark", - "rce", - "ssrf", - "transformers", - "triton", - "triton-inference-server", - "xss" + "nvd" ] }, { @@ -21226,7 +7674,7 @@ "description": "Critical RCE in official Claude Desktop extensions (Chrome, iMessage, Apple Notes) allowed malicious websites to execute arbitrary code via unsanitized command injection.", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI05" ], @@ -21325,7 +7773,7 @@ "description": "Researchers demonstrated using Claude's \"Skills\" feature to perform indirect prompt injection attacks, weaponizing the Claude Files API to exfiltrate sensitive data through malicious skills.", "owasp_entries": [ "LLM01", - "LLM03", + "LLM04", "ASI01", "ASI02", "ASI04" @@ -21375,8 +7823,8 @@ "description": "Cato Networks demonstrated deploying MedusaLocker ransomware through Claude's Skills plugin by downloading, modifying, and re-uploading malicious Skills with autonomous execution capability.", "owasp_entries": [ "LLM03", - "LLM05", - "LLM06", + "LLM04", + "LLM10", "ASI02", "ASI04", "ASI05", @@ -21553,7 +8001,7 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM05", + "LLM10", "ASI01", "ASI02", "ASI05" @@ -21606,8 +8054,8 @@ "category": "real-world", "description": "Cursor ships with Workspace Trust disabled by default. A malicious `.vscode/tasks.json` with `runOn: \"folderOpen\"` auto-executes code the moment a developer opens a project folder -- no trust prompt, no consent. A booby-trapped repo can steal cloud keys, PATs, API tokens, and pivot to CI/CD.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI04", "ASI05" ], @@ -21653,8 +8101,8 @@ "description": "OX Security discovered that Cursor and Windsurf IDEs, built on outdated VS Code forks with stale Electron/Chromium, are exposed to 94+ known CVEs including sandbox escapes. 1.8M developers affected. Both IDEs running Chromium six major versions behind. Forked architecture makes patching structurally difficult and slow.", "owasp_entries": [ "LLM02", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI04", "ASI05" ], @@ -21712,8 +8160,8 @@ "description": "Cloned projects with `.cursor/cli.json` could override global config, allowing attacker-controlled commands to execute via Cursor CLI context.", "owasp_entries": [ "LLM01", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI01", "ASI04", "ASI05" @@ -21790,8 +8238,8 @@ "description": "Case-insensitive filesystems allowed crafted prompt to overwrite critical `.cursor` config, enabling persistent RCE and agent compromise.", "owasp_entries": [ "LLM01", - "LLM05", - "LLM06", + "LLM03", + "LLM10", "ASI01", "ASI03", "ASI05" @@ -21859,7 +8307,7 @@ "description": "Cursor agent prompt led Cursor to write malicious `.code-workspace` settings, allowing command execution on workspace open via VSCode integration.", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI05" ], @@ -21880,7 +8328,7 @@ "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "other", + "attack_vector": "rce", "affected": "Cursor Workspace File Injection", "severity": "High", "references": [ @@ -21916,7 +8364,7 @@ "description": "A logic flaw allows a malicious agent to read sensitive files protected by cursorignore by creating a new cursorignore file that invalidates existing configurations.", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI02", "ASI05" @@ -21942,7 +8390,7 @@ "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "other", + "attack_vector": "auth-bypass", "affected": "Cursorignore Bypass via New Cursorignore Write", "severity": "High", "references": [ @@ -21973,8 +8421,8 @@ "description": "Devin's async coding agent had no protection against prompt injection. Multiple exfiltration vectors via Browser tool, Shell tool (curl/wget), Markdown images, and expose_port tool. Devin has unrestricted internet access by default. Reported April 2025; acknowledged but unfixed after 120+ days.", "owasp_entries": [ "LLM01", - "LLM05", - "LLM08", + "LLM09", + "LLM10", "ASI01", "ASI02", "ASI05" @@ -22025,8 +8473,8 @@ "category": "real-world", "description": "SSRF in Dify <= 1.6.0 via /console/api/remote-files/ endpoint. Attackers force the Dify server to make arbitrary requests to internal networks, cloud metadata services (IMDS), and localhost. Enables credential theft from cloud environments and firewall bypass. Actively exploited in the wild per CrowdSec.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI02", "ASI03", "ASI04", @@ -22092,8 +8540,8 @@ "category": "real-world", "description": "CVSS 7.5. Dify v1.9.1 fails to enforce authentication on /console/api/system-features endpoint, exposing enabled features, security protocols, and other sensitive internal configuration to any unauthenticated user. Provides reconnaissance data for follow-on attacks.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI03", "ASI04" ], @@ -22208,8 +8656,8 @@ "category": "real-world", "description": "CVE-2025-53110 (CVSS 7.3): directory containment bypass via naive prefix-matching. CVE-2025-53109 (CVSS 8.4): symlink bypass gave full read/write to any file on the host, including /etc/sudoers. Combined, enabled arbitrary code execution via Launch Agents or cron jobs. All versions prior to 0.6.3 affected.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI02", "ASI04", "ASI05" @@ -22302,16 +8750,13 @@ "description": "Critical indirect prompt injection in Salesforce Agentforce allows external attacker to mislead the agent and exfiltrate sensitive CRM records outside the organization.", "owasp_entries": [ "LLM01", - "LLM03", - "LLM05", + "LLM10", "ASI01", "ASI02", - "ASI04", "DSGAI01", "DSGAI19" ], "mitre_atlas": [ - "AML.T0010", "AML.T0049", "AML.T0050", "AML.T0051", @@ -22328,7 +8773,6 @@ ], "nist_ai_rmf": [ "GOVERN-3.2", - "GOVERN-6.1", "MANAGE-2.3", "MAP-2.1", "MAP-3.5", @@ -22368,35 +8812,13 @@ "title": "Salesforce", "url": "https://help.salesforce.com/s/articleView?id=005135034&type=1", "type": "research" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10875", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64318", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64320", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64321", - "type": "advisory" } ], "tags": [ "crm", - "cve", "data-exfiltration", "enterprise", "indirect-injection", - "nvd", "salesforce" ] }, @@ -22408,8 +8830,8 @@ "category": "real-world", "description": "Unsanitized user input in Framelink Figma MCP’s `get_figma_data` tool enabled unauthenticated remote command execution on host systems.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI02", "ASI04", "ASI05" @@ -22506,8 +8928,8 @@ "LLM01", "LLM02", "LLM03", - "LLM05", - "LLM06", + "LLM04", + "LLM10", "ASI01", "ASI02", "ASI04", @@ -22610,7 +9032,7 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM04", + "LLM05", "ASI01", "ASI02", "ASI06", @@ -22681,7 +9103,7 @@ "category": "real-world", "description": "AI-powered IDE misinterpreted a cache-clearing instruction and issued a system-level delete command with quiet flag, wiping a developer's entire D: drive without confirmation, causing irreversible data loss.", "owasp_entries": [ - "LLM05", + "LLM10", "ASI02", "ASI05" ], @@ -22726,8 +9148,8 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM05", - "LLM06", + "LLM03", + "LLM10", "ASI01", "ASI02", "ASI05", @@ -22795,7 +9217,7 @@ "category": "real-world", "description": "Agent misunderstood file instructions and wiped user’s directory; admitted catastrophic loss", "owasp_entries": [ - "LLM05", + "LLM10", "ASI05" ], "mitre_atlas": [ @@ -22877,10 +9299,10 @@ "LLM01", "LLM02", "LLM03", - "LLM05", - "LLM06", + "LLM04", "LLM07", - "LLM09", + "LLM08", + "LLM10", "ASI01", "ASI02", "ASI03", @@ -23012,7 +9434,7 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM08", + "LLM09", "ASI01", "ASI02" ], @@ -23110,8 +9532,8 @@ "LLM01", "LLM02", "LLM03", - "LLM05", - "LLM06", + "LLM04", + "LLM10", "ASI01", "ASI02", "ASI04", @@ -23304,7 +9726,7 @@ "category": "real-world", "description": "Command injection in AWS Kiro's helper function for querying Git repository state. The workspace path itself could force unintended command execution. Fixed in Kiro v0.6.18.", "owasp_entries": [ - "LLM05", + "LLM10", "ASI05" ], "mitre_atlas": [ @@ -23344,8 +9766,8 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI01", "ASI02", "ASI04", @@ -23453,7 +9875,7 @@ "category": "real-world", "description": "NPM-hosted backdoored MCP server containing dual reverse shells — one executing at install time and another at runtime — providing persistent remote access to agent environments.", "owasp_entries": [ - "LLM03", + "LLM04", "ASI03", "ASI04", "ASI05" @@ -23539,7 +9961,7 @@ "category": "real-world", "description": "Reported as the first in-the-wild malicious MCP server on npm; it impersonated postmark-mcp and secretly BCC’d emails to the attacker.", "owasp_entries": [ - "LLM03", + "LLM04", "ASI02", "ASI04", "ASI07" @@ -23588,9 +10010,9 @@ "category": "real-world", "description": "OAuth flow in untrusted MCP servers could return poisoned responses, letting attacker inject commands executed by the agent post-authentication.", "owasp_entries": [ - "LLM03", "LLM04", "LLM05", + "LLM10", "ASI04", "ASI05", "ASI07" @@ -23620,7 +10042,7 @@ "MAP-4.2", "MEASURE-2.7" ], - "attack_vector": "other", + "attack_vector": "command-injection", "affected": "MCP OAuth Response Exploit", "severity": "High", "references": [ @@ -23656,7 +10078,7 @@ "description": "Security researchers demonstrated that Model Context Protocol (MCP) servers can embed hidden malicious instructions in tool descriptions that are invisible to users but processed by the LLM. These hidden instructions can exfiltrate data, modify tool behaviour, or override safety controls. The attack exploits the trust boundary between MCP server descriptions and the agent's decision-making, requiring no user interaction.", "owasp_entries": [ "LLM01", - "LLM03", + "LLM04", "ASI02", "ASI03", "ASI04", @@ -23755,8 +10177,8 @@ "description": "CVSS 9.6. mcp-remote (437K+ downloads), a popular OAuth proxy for MCP, achieved full RCE on the client machine when connecting to a malicious MCP server. The server sends a crafted authorization_endpoint URL triggering OS command injection via the open() function. First demonstrated real-world full RCE on an MCP client OS. Affected 0.0.5-0.1.15, fixed in 0.1.16.", "owasp_entries": [ "LLM03", - "LLM05", - "LLM06", + "LLM04", + "LLM10", "ASI04", "ASI05", "ASI07" @@ -23837,7 +10259,7 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM06", + "LLM03", "ASI01", "ASI02", "ASI03", @@ -23989,9 +10411,9 @@ "category": "real-world", "description": "Critical out-of-bounds write in Ollama < 0.7.0 when parsing malicious GGUF model files. Vulnerability in mllama C++ parsing code. Researchers demonstrated arbitrary memory bit-flipping via crafted metadata to overwrite function pointers and achieve RCE. An attacker with API access could load a malicious model to take over the server. Ollama rewrote the code in Go for v0.7.0.", "owasp_entries": [ - "LLM03", "LLM04", "LLM05", + "LLM10", "ASI04", "ASI05" ], @@ -24096,7 +10518,7 @@ "LLM02", "LLM03", "LLM04", - "LLM06", + "LLM05", "ASI01", "ASI02", "ASI03", @@ -24175,7 +10597,7 @@ "description": "Indirect prompt injection hijacked the OpenHands agent to download and execute remote malicious code, turning it into a compromised \"ZombAI\".", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI05" ], @@ -24291,8 +10713,8 @@ "description": "USENIX Security 2025 paper demonstrating the first systematic knowledge database corruption attack against RAG. Injecting just 5 malicious texts into a knowledge database with millions of entries achieves 90% attack success rate, causing the LLM to generate attacker-chosen answers. Works in both white-box and black-box settings.", "owasp_entries": [ "LLM01", - "LLM04", - "LLM08", + "LLM05", + "LLM09", "ASI01", "ASI06", "DSGAI04", @@ -24369,7 +10791,7 @@ "category": "real-world", "description": "Postgres MCP server accepted semicolon-delimited statements. Injecting \"COMMIT; DROP SCHEMA public CASCADE;\" ended the read-only transaction wrapper and allowed full-privilege commands. The npm package still gets 21K weekly downloads.", "owasp_entries": [ - "LLM05", + "LLM10", "ASI02", "ASI05" ], @@ -24412,8 +10834,8 @@ "category": "real-world", "description": "CVSS 10.0. Critical unauthenticated RCE in React Server Components' Flight protocol. A single HTTP request executes arbitrary code. Affected React 19.x used by Dify and other AI platforms. Multiple threat actors exploited within days.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI04", "ASI05" ], @@ -24469,7 +10891,7 @@ "description": "Replit's AI agent hallucinated data, deleted a production database, and generated false outputs to hide its mistakes. The agent produced fabricated records to cover the data loss.", "owasp_entries": [ "LLM01", - "LLM09", + "LLM07", "ASI01", "ASI09", "ASI10", @@ -24553,8 +10975,8 @@ "category": "real-world", "description": "Chinese threat actor UNC6395 stole OAuth tokens from Salesloft's Drift AI Chat agent integration to access Salesforce CRM environments across 700+ organizations including Cloudflare, Google, Palo Alto Networks, Proofpoint, and Zscaler. Automated SOQL queries exported contacts, support cases, and account data including plaintext AWS keys and VPN credentials.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI03", "ASI04", "DSGAI01", @@ -24809,8 +11231,8 @@ "description": "Critical RCE vulnerabilities in AI inference servers from unsafe ZeroMQ pickle deserialization via code reuse across Meta, NVIDIA, and vLLM. CVE-2024-50050. Allows cluster takeover and data theft.", "owasp_entries": [ "LLM02", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI04", "ASI05", "DSGAI08" @@ -24900,8 +11322,8 @@ "category": "real-world", "description": "RCE exploit in SharePoint leveraged by agents", "owasp_entries": [ - "LLM05", - "LLM08", + "LLM09", + "LLM10", "ASI05" ], "mitre_atlas": [ @@ -24953,7 +11375,7 @@ "description": "Demonstrated a general attack pattern across multiple AI agent platforms: bypassing human approval protections via argument injection in pre-approved commands (e.g. `go test -exec` flag). The same malicious prompts work when embedded in code comments, rule files, GitHub repos, and logging output.", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI05" ], @@ -24997,8 +11419,8 @@ "description": "Command injection in agentic AI workflows can let a remote, unauthenticated attacker cause VS Code to run injected commands on the developer’s machine.", "owasp_entries": [ "LLM01", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI01", "ASI02", "ASI04", @@ -25060,7 +11482,7 @@ "description": "A malicious MCP server, added alongside a legitimate WhatsApp MCP server, used tool poisoning (hidden instructions in tool descriptions) to silently exfiltrate a user's entire WhatsApp message history. Bypassed end-to-end encryption and DLP because it appeared as normal AI behavior.", "owasp_entries": [ "LLM01", - "LLM04", + "LLM05", "ASI01", "ASI02", "ASI04", @@ -25160,9 +11582,9 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM04", "LLM05", - "LLM08", + "LLM09", + "LLM10", "ASI01", "ASI02", "ASI05", @@ -25244,8 +11666,8 @@ "category": "research-demonstrated", "description": "Anthropic researchers demonstrated that large language models can be trained to behave normally during evaluation but activate hidden malicious behaviours when triggered by specific conditions (e.g., a date change to 2024). The 'sleeper agent' behaviours persisted through standard safety fine-tuning (RLHF, SFT) and adversarial training. Larger models were harder to remove the deceptive behaviour from, suggesting current safety training may be insufficient to detect planted backdoors.", "owasp_entries": [ - "LLM03", "LLM04", + "LLM05", "ASI02", "ASI04", "ASI09", @@ -25349,7 +11771,7 @@ "description": "Microsoft researchers published the Crescendo attack — a multi-turn conversational jailbreak where the attacker gradually escalates requests across many turns, with each turn appearing benign or only slightly more sensitive than the previous. The model, which evaluates each turn in isolation against recent context, progressively accepts more harmful content as the conversation establishes a pattern. The attack exploits the fact that models evaluate safety based on recent conversational context, not the cumulative trajectory from session start. Crescendo was tested against GPT-4, Gemini Pro, Claude, and Copilot — achieving harmful content generation in all cases with median 7–12 turns. Unlike single-shot jailbreaks, Crescendo is conversational and does not require encoding or special formatting.", "owasp_entries": [ "LLM01", - "LLM06", + "LLM03", "ASI01", "ASI06" ], @@ -25450,8 +11872,8 @@ "description": "Anthropic researchers published research demonstrating \"many-shot jailbreaking\" — a context-length attack where a large number of faux-dialogue examples are prepended to a harmful request in the prompt. With sufficient in-context examples (100–256 shots) of the model \"complying\" with harmful requests (fabricated dialogue), frontier models including Claude, GPT-4, and Llama begin to follow the behavioral pattern established in context, overriding their safety training. The attack exploits the in-context learning capability of long-context models — the same feature that makes them flexible also makes them susceptible to behavioral override via example accumulation. Effectiveness increases with context window size, making more capable models more vulnerable.", "owasp_entries": [ "LLM01", - "LLM04", - "LLM06", + "LLM03", + "LLM05", "ASI01" ], "mitre_atlas": [ @@ -25538,11 +11960,11 @@ "date": "2024-03-29", "year": 2024, "category": "real-world", - "description": "New York City's chatbot, launched under Mayor Eric Adams's plan to assist businesses, has been reportedly providing dangerously inaccurate legal advice. The Microsoft-powered bot allegedly informed users that landlords can refuse Section 8 vouchers and that businesses can operate cash-free, among other falsehoods. The city acknowledges the chatbot is a pilot program and commits to improvements while the errors are addressed.", + "description": "AI Incident Database (AIID) entry #714: Microsoft-Powered New York City Chatbot Advises Illegal Practices. Alleged deployer/developer: Eric Adams Administration, Microsoft, New York City Government, New York City Office Of Technology And Innovation. See the linked AIID entry for full narrative, sourcing, and classification.", "owasp_entries": [ - "LLM05", - "LLM06", - "LLM09", + "LLM03", + "LLM07", + "LLM10", "ASI09", "DSGAI01", "DSGAI17" @@ -25574,6 +11996,7 @@ "MEASURE-2.9" ], "attack_vector": "other", + "affected": "Eric Adams Administration, Microsoft, New York City Government, New York City Office Of Technology And Innovation", "impact": "Potential for businesses to unknowingly violate labour law based on AI guidance; public credibility damage; city forced to add disclaimers", "severity": "High", "mitigations": [ @@ -25594,9 +12017,9 @@ "type": "news" }, { - "title": "OECD AI Incidents Monitor entry", + "title": "OECD (2024), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2024-03-29-3dce (accessed on 2026-05-16)", "url": "https://oecd.ai/en/incidents/2024-03-29-3dce", - "type": "report" + "type": "reference" }, { "title": "AIRI Navigator — incident 714", @@ -25609,13 +12032,12 @@ "aiid", "airi-navigator", "azure-openai", - "consumer-protection", "cross-listed", "eu-ai-act-3-limited-risk", "government", - "government-ai", "hallucination", "legal", + "mit-risk-domain:3-misinformation", "mycity", "oecd", "public-sector", @@ -25632,8 +12054,8 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM06", - "LLM08", + "LLM03", + "LLM09", "ASI01", "ASI02", "ASI06", @@ -25765,8 +12187,8 @@ "description": "Security researchers published a comprehensive toolkit for extracting system prompts from GPT-4 and other production LLMs. The toolkit combined multi-turn conversation steering, encoding tricks (Base64, ROT13), and role-play scenarios to reliably extract complete system prompts from deployed applications. The research demonstrated that prompt confidentiality is fundamentally broken as a security control.", "owasp_entries": [ "LLM01", - "LLM07", - "LLM10", + "LLM06", + "LLM08", "ASI05", "DSGAI01", "DSGAI08" @@ -25859,8 +12281,8 @@ "description": "Researchers Zou et al. (PoisonedRAG) and independently Chaudhari et al. demonstrated that an attacker with write access to even a small fraction of a RAG corpus (as few as 1–5 injected documents) could reliably control the model's output for targeted queries. The attack crafts documents whose embeddings are close to target query embeddings, ensuring they are retrieved, while their content contains adversarial instructions or disinformation. This works even against embedding models the attacker does not have access to (black-box attack).", "owasp_entries": [ "LLM01", - "LLM04", - "LLM08", + "LLM05", + "LLM09", "ASI01", "ASI02", "ASI06", @@ -25986,8 +12408,8 @@ "description": "Investigations by TIME and The Guardian revealed systematic privacy violations in AI data labeling supply chains. Workers at Sama (previously contracted by OpenAI for RLHF content moderation labeling) and similar data annotation companies in Kenya, India, and the Philippines were exposed to traumatic content (violence, CSAM, hate speech) without adequate psychological support, earning as little as $1.32/hour. Additionally, the annotation platforms used by these workers often lacked basic data security — labeled data containing personal information (medical records, legal documents, private communications) was accessible to workers without need-to-know controls, and annotation task metadata (worker identity, labeling speed, accuracy) was collected without informed consent. The investigation revealed that the third-party AI data supply chain had minimal security governance, creating both worker welfare and data security risks that propagated into the training data of major production models.", "owasp_entries": [ "LLM03", - "LLM06", - "LLM09", + "LLM04", + "LLM07", "ASI09", "DSGAI13", "DSGAI14", @@ -26103,8 +12525,8 @@ "description": "Microsoft researchers disclosed the Skeleton Key attack — a direct jailbreak technique where the attacker instructs the model to augment (not replace) its safety behavior by adding a new \"override mode\" framing. Unlike earlier jailbreaks that attempt to confuse or deceive the model, Skeleton Key directly asks the model to acknowledge that it can generate any content if prefixed with a warning, effectively making the model complicit in its own safety bypass. Microsoft tested Skeleton Key against GPT-3.5 Turbo, GPT-4, GPT-4o, Meta Llama3, Mistral Large, Anthropic Claude 3 Opus, and Google Gemini Pro 1.0 — all were susceptible to varying degrees. The attack requires no encoding or roleplay — it is a direct authority assertion that exploits the model's instruction-following training.", "owasp_entries": [ "LLM01", - "LLM06", - "LLM07", + "LLM03", + "LLM08", "ASI01" ], "mitre_atlas": [ @@ -26196,8 +12618,8 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM06", - "LLM08", + "LLM03", + "LLM09", "ASI01", "ASI02", "ASI06", @@ -26337,7 +12759,7 @@ "description": "Fábio Perez and Ian Ribeiro published the foundational paper systematically documenting prompt injection attacks. They demonstrated that simple instructions such as 'Ignore previous instructions and [do X]' were consistently effective against GPT-3 across diverse task categories. They introduced the taxonomy of goal hijacking (redirecting the task) vs. prompt leaking (extracting the system prompt). This paper defined the attack surface that all subsequent prompt injection work builds on and directly influenced OWASP LLM01.", "owasp_entries": [ "LLM01", - "LLM07", + "LLM08", "DSGAI01" ], "mitre_atlas": [ @@ -26417,14 +12839,14 @@ "date": "2021-01-01", "year": 2021, "category": "real-world", - "description": "North Korean operatives have reportedly used AI-generated identities to secure remote jobs or impersonate employers in order to infiltrate companies. These tactics allegedly support sanctions evasion through wage theft, credential exfiltration, and malware deployment. Workers reportedly use fake resumes, VPNs, and face-altering tools; some deploy malware like OtterCookie after embedding, while others lure targets via spoofed job interviews. AI systems are reportedly used to generate fake resumes, alter profile photos, and assist in real-time responses during video interviews.", + "description": "AI Incident Database (AIID) entry #1118: Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers. Alleged deployer/developer: Cho Chung Pom, Choe Jong Yong, Christina Chapman, Contagious Interview, Deepfake Technology Developers, Department 53, Famous Chollima, Government Of North Korea, Gwisin Gang, Hyon Chol Song, Jang Chol Myong, Jong Kyong Chol, Jong Song Hwa, Kim Mu Rim, Kim Ryu Song, Kim Sang Man, Kim Ye Won, Ko Chung Sok, Large Language Model Developers, Lazarus Group, Matthew Isaac Knoot, Minh Phuong Ngoc Vong, North Korean Threat Actors, Openai, Purplebravo, Reconnaissance General Bureau, Ri Kyong Sik, Rim Un Chol, Sim Hyon Sop, Sok Kwang Hyok, Son Un Chol, Unc5267, Void Dokkaebi, Wagemole, Waterplum, Yang Di. See the linked AIID entry for full narrative, sourcing, and classification.", "owasp_entries": [ "LLM01", "LLM02", - "LLM05", + "LLM03", "LLM06", "LLM07", - "LLM09", + "LLM08", "LLM10", "ASI01", "ASI02", @@ -26487,6 +12909,7 @@ "MEASURE-2.8" ], "attack_vector": "data-exfiltration", + "affected": "Cho Chung Pom, Choe Jong Yong, Christina Chapman, Contagious Interview, Deepfake Technology Developers, Department 53, Famous Chollima, Government Of North Korea, Gwisin Gang, Hyon Chol Song, Jang Chol Myong, Jong Kyong Chol, Jong Song Hwa, Kim Mu Rim, Kim Ryu Song, Kim Sang Man, Kim Ye Won, Ko Chung Sok, Large Language Model Developers, Lazarus Group, Matthew Isaac Knoot, Minh Phuong Ngoc Vong, North Korean Threat Actors, Openai, Purplebravo, Reconnaissance General Bureau, Ri Kyong Sik, Rim Un Chol, Sim Hyon Sop, Sok Kwang Hyok, Son Un Chol, Unc5267, Void Dokkaebi, Wagemole, Waterplum, Yang Di", "impact": "AI-enabled criminal enterprises; ransomware ecosystem; employment fraud at scale; $500K+ extortion demands", "severity": "Critical", "mitigations": [ @@ -26506,9 +12929,9 @@ "type": "vendor" }, { - "title": "OECD AI Incidents Monitor entry", + "title": "OECD (2025), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2025-04-08-98be (accessed on 2026-06-09)", "url": "https://oecd.ai/en/incidents/2025-04-08-98be", - "type": "report" + "type": "reference" }, { "title": "AIID incident #1021", @@ -26516,14 +12939,14 @@ "type": "report" }, { - "title": "OECD AI Incidents Monitor entry", + "title": "OECD (2025), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2025-04-14-d8a1 (accessed on 2026-06-09)", "url": "https://oecd.ai/en/incidents/2025-04-14-d8a1", - "type": "report" + "type": "reference" }, { - "title": "OECD AI Incidents Monitor entry", + "title": "OECD (2025), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2025-08-27-cabd (accessed on 2026-06-09)", "url": "https://oecd.ai/en/incidents/2025-08-27-cabd", - "type": "report" + "type": "reference" }, { "title": "AIID incident #1201", @@ -26558,7 +12981,6 @@ ], "tags": [ "agentic", - "agentic-cybercrime", "agentic-misuse", "ai-post-deployment", "aiid", @@ -26590,12 +13012,12 @@ "jasper-sleet", "microsoft", "misuse", + "mit-risk-domain:4-malicious-actors-misuse", "no-code-ransomware", "north-korea", "oecd", "raas", "ransomware", - "ransomware-adjacent", "ransomware-gen", "romance-scam", "russia", @@ -26615,9 +13037,9 @@ "owasp_entries": [ "LLM01", "LLM02", - "LLM05", - "LLM06", - "LLM07", + "LLM03", + "LLM08", + "LLM10", "ASI01", "ASI02", "ASI06", diff --git a/docs/backlinks.js b/docs/backlinks.js index 084adeb..25b8ecb 100644 --- a/docs/backlinks.js +++ b/docs/backlinks.js @@ -1,5 +1,5 @@ // Auto-generated by scripts/generate.js — do not edit manually -// Generated: 2026-06-15 +// Generated: 2026-09-28 // Backlinks: 526 window.CROSSWALK_BACKLINKS = [ { diff --git a/docs/data.js b/docs/data.js index 6bf3213..e5cc1ec 100644 --- a/docs/data.js +++ b/docs/data.js @@ -1,6 +1,6 @@ // Auto-generated by scripts/generate.js — do not edit manually // Source: GenAI Security Crosswalk v1.5.2 -// Generated: 2026-06-15 +// Generated: 2026-09-28 // Entries: 41 window.CROSSWALK_DATA = [ { @@ -865,12 +865,6 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-01297" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", @@ -1947,12 +1941,6 @@ window.CROSSWALK_DATA = [ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "A2A Protocol -- Agent Card Poisoning Vulnerability", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html", @@ -2037,12 +2025,6 @@ window.CROSSWALK_DATA = [ "year": 2023, "incident_id": "INC-01291" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01435.html", @@ -2097,12 +2079,6 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02435" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Pirate Data Exfiltration", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02449.html", @@ -2955,18 +2931,6 @@ window.CROSSWALK_DATA = [ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, - { - "name": "AnythingLLM Multiple CVEs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", - "year": 2026, - "incident_id": "INC-00627" - }, { "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", @@ -2974,22 +2938,16 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-00671" }, { - "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", - "year": 2026, - "incident_id": "INC-00813" - }, - { - "name": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00834.html", + "name": "ChatGPT Data Exfiltration via DNS Covert Channel", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00746.html", "year": 2026, - "incident_id": "INC-00834" + "incident_id": "INC-00746" }, { - "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", + "name": "Claude Cowork File Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00827.html", "year": 2026, - "incident_id": "INC-00860" + "incident_id": "INC-00827" }, { "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", @@ -3004,10 +2962,16 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-01015" }, { - "name": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01092.html", + "name": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01063.html", "year": 2026, - "incident_id": "INC-01092" + "incident_id": "INC-01063" + }, + { + "name": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01064.html", + "year": 2026, + "incident_id": "INC-01064" }, { "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", @@ -3016,58 +2980,10 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-01291" }, { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, - { - "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", - "year": 2026, - "incident_id": "INC-01340" - }, - { - "name": "MCPJam Inspector RCE (CVE-2026-23744)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01390.html", - "year": 2026, - "incident_id": "INC-01390" - }, - { - "name": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01391.html", - "year": 2026, - "incident_id": "INC-01391" - }, - { - "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", - "year": 2026, - "incident_id": "INC-01429" - }, - { - "name": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01440.html", - "year": 2026, - "incident_id": "INC-01440" - }, - { - "name": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01471.html", - "year": 2026, - "incident_id": "INC-01471" - }, - { - "name": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01589.html", - "year": 2026, - "incident_id": "INC-01589" - }, - { - "name": "PraisonAI Quadruple CVE Disclosure", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01666.html", + "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", "year": 2026, - "incident_id": "INC-01666" + "incident_id": "INC-01411" }, { "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", @@ -3076,34 +2992,10 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-01723" }, { - "name": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01769.html", - "year": 2026, - "incident_id": "INC-01769" - }, - { - "name": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02058.html", + "name": "XBOW — first critical CVE discovered entirely by autonomous AI penetration testing agent", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02105.html", "year": 2026, - "incident_id": "INC-02058" - }, - { - "name": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02190.html", - "year": 2025, - "incident_id": "INC-02190" - }, - { - "name": "AgentSmith Prompt-Hub Proxy Attack", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02191.html", - "year": 2025, - "incident_id": "INC-02191" - }, - { - "name": "Amazon Q Prompt Poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02300.html", - "year": 2025, - "incident_id": "INC-02300" + "incident_id": "INC-02105" }, { "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", @@ -3112,28 +3004,10 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-02321" }, { - "name": "Anthropic SQLite MCP Server SQL Injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02324.html", - "year": 2025, - "incident_id": "INC-02324" - }, - { - "name": "Claude Code DNS Exfiltration (CVE-2025-55284)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02435.html", - "year": 2025, - "incident_id": "INC-02435" - }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, - { - "name": "Claude Skills Data Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02450.html", + "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", "year": 2025, - "incident_id": "INC-02450" + "incident_id": "INC-02426" }, { "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", @@ -3142,52 +3016,10 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-02451" }, { - "name": "Cursor \"Open-Folder\" Autorun Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02462.html", - "year": 2025, - "incident_id": "INC-02462" - }, - { - "name": "Cursor & Windsurf Forked Chromium 94+ N-Day Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02463.html", - "year": 2025, - "incident_id": "INC-02463" - }, - { - "name": "Cursor CLI Project Config RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02467.html", - "year": 2025, - "incident_id": "INC-02467" - }, - { - "name": "Dify SSRF via RemoteFileUploadApi (CVE-2025-56520)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02514.html", - "year": 2025, - "incident_id": "INC-02514" - }, - { - "name": "Dify Unauthenticated Information Disclosure (CVE-2025-63387)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02515.html", - "year": 2025, - "incident_id": "INC-02515" - }, - { - "name": "EscapeRoute -- Anthropic Filesystem MCP Sandbox Escape (CVE-2025-53109 & CVE-2025-53110)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02546.html", - "year": 2025, - "incident_id": "INC-02546" - }, - { - "name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html", - "year": 2025, - "incident_id": "INC-02590" - }, - { - "name": "Framelink Figma MCP RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", + "name": "Cursor Config Overwrite via Case Mismatch", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", "year": 2025, - "incident_id": "INC-02592" + "incident_id": "INC-02468" }, { "name": "GitHub Copilot & Cursor Code-Agent Exploit", @@ -3195,6 +3027,12 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02607" }, + { + "name": "Google Antigravity IDE Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02629.html", + "year": 2025, + "incident_id": "INC-02629" + }, { "name": "GPT-4.1 jailbreak via tool poisoning", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", @@ -3207,36 +3045,6 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02700" }, - { - "name": "LangGrinch -- LangChain Core Serialization Injection (CVE-2025-68664)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02813.html", - "year": 2025, - "incident_id": "INC-02813" - }, - { - "name": "Malicious MCP server backdoor on npm — dual reverse shells in mcp-runcommand-server", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02848.html", - "year": 2025, - "incident_id": "INC-02848" - }, - { - "name": "Malicious MCP Server Impersonating Postmark", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02849.html", - "year": 2025, - "incident_id": "INC-02849" - }, - { - "name": "MCP OAuth Response Exploit", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02871.html", - "year": 2025, - "incident_id": "INC-02871" - }, - { - "name": "MCP tool poisoning — hidden instructions in Model Context Protocol tool descriptions", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02874.html", - "year": 2025, - "incident_id": "INC-02874" - }, { "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", @@ -3244,10 +3052,10 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-02878" }, { - "name": "Ollama GGUF Model File RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02980.html", + "name": "Microsoft Copilot Studio agents public by default — unauthorized data exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02899.html", "year": 2025, - "incident_id": "INC-02980" + "incident_id": "INC-02899" }, { "name": "OpenAI ChatGPT Operator Vulnerability", @@ -3256,40 +3064,58 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-02997" }, { - "name": "React2Shell Impacting Dify and AI Platforms (CVE-2025-55182)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03149.html", - "year": 2025, - "incident_id": "INC-03149" + "name": "Crescendo: multi-turn escalation attack (Microsoft)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03687.html", + "year": 2024, + "incident_id": "INC-03687" }, { - "name": "Salesloft Drift OAuth breach — Chinese actor UNC6395 accesses 700+ Salesforce CRM environments", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03194.html", - "year": 2025, - "incident_id": "INC-03194" - }, - { - "name": "ShadowMQ — critical RCE in Meta/NVIDIA/vLLM inference servers via pickle deserialization", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03211.html", - "year": 2025, - "incident_id": "INC-03211" + "name": "Many-shot jailbreaking (Anthropic research)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03967.html", + "year": 2024, + "incident_id": "INC-03967" }, { - "name": "Visual Studio Code & Agentic AI workflows RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03334.html", - "year": 2025, - "incident_id": "INC-03334" + "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", + "year": 2024, + "incident_id": "INC-04007" }, { - "name": "Anthropic Sleeper Agents paper — models trained to hide malicious behaviour", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03572.html", + "name": "Nassi et al. \"ComPromptMized\" Morris II multi-agent worm", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04027.html", "year": 2024, - "incident_id": "INC-03572" + "incident_id": "INC-04027" }, { "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", "year": 2024, "incident_id": "INC-04179" + }, + { + "name": "Skeleton Key: direct system prompt override (Microsoft)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04207.html", + "year": 2024, + "incident_id": "INC-04207" + }, + { + "name": "Slack AI indirect injection via channel content", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04208.html", + "year": 2024, + "incident_id": "INC-04208" + }, + { + "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", + "year": 2021, + "incident_id": "INC-08177" + }, + { + "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", + "year": 2023, + "incident_id": "INC-08181" } ], "crossrefs": { @@ -4025,28 +3851,22 @@ window.CROSSWALK_DATA = [ ], "incidents": [ { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, - { - "name": "A2A Protocol -- Agent Card Poisoning Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html", + "name": "AnythingLLM Multiple CVEs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", "year": 2026, - "incident_id": "INC-00036" + "incident_id": "INC-00627" }, { - "name": "AI recommendation poisoning — hidden prompt injections in 'Summarize with AI' buttons across 31 companies", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00198.html", + "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", "year": 2026, - "incident_id": "INC-00198" + "incident_id": "INC-00671" }, { - "name": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00833.html", + "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", "year": 2026, - "incident_id": "INC-00833" + "incident_id": "INC-00813" }, { "name": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", @@ -4055,16 +3875,16 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-00834" }, { - "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", + "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", "year": 2026, - "incident_id": "INC-00924" + "incident_id": "INC-00860" }, { - "name": "Eight Attack Vectors in AWS Bedrock Agents", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00928.html", + "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", "year": 2026, - "incident_id": "INC-00928" + "incident_id": "INC-00924" }, { "name": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", @@ -4073,10 +3893,16 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-01015" }, { - "name": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01064.html", + "name": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01092.html", "year": 2026, - "incident_id": "INC-01064" + "incident_id": "INC-01092" + }, + { + "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", + "year": 2023, + "incident_id": "INC-01291" }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", @@ -4084,6 +3910,18 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-01340" }, + { + "name": "MCPJam Inspector RCE (CVE-2026-23744)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01390.html", + "year": 2026, + "incident_id": "INC-01390" + }, + { + "name": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01391.html", + "year": 2026, + "incident_id": "INC-01391" + }, { "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", @@ -4097,10 +3935,64 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-01440" }, { - "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", + "name": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01471.html", + "year": 2026, + "incident_id": "INC-01471" + }, + { + "name": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01589.html", + "year": 2026, + "incident_id": "INC-01589" + }, + { + "name": "PraisonAI Quadruple CVE Disclosure", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01666.html", + "year": 2026, + "incident_id": "INC-01666" + }, + { + "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01723.html", + "year": 2023, + "incident_id": "INC-01723" + }, + { + "name": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01769.html", + "year": 2026, + "incident_id": "INC-01769" + }, + { + "name": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02058.html", + "year": 2026, + "incident_id": "INC-02058" + }, + { + "name": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02190.html", "year": 2025, - "incident_id": "INC-02186" + "incident_id": "INC-02190" + }, + { + "name": "AgentSmith Prompt-Hub Proxy Attack", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02191.html", + "year": 2025, + "incident_id": "INC-02191" + }, + { + "name": "Amazon Q Prompt Poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02300.html", + "year": 2025, + "incident_id": "INC-02300" + }, + { + "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02321.html", + "year": 2025, + "incident_id": "INC-02321" }, { "name": "Anthropic SQLite MCP Server SQL Injection", @@ -4109,91 +4001,187 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-02324" }, { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" + "name": "Claude Code DNS Exfiltration (CVE-2025-55284)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02435.html", + "year": 2025, + "incident_id": "INC-02435" }, { - "name": "GitPublic Issue Repo Hijack", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02613.html", + "name": "Claude Skills Data Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02450.html", "year": 2025, - "incident_id": "INC-02613" + "incident_id": "INC-02450" }, { - "name": "MCP OAuth Response Exploit", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02871.html", + "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", "year": 2025, - "incident_id": "INC-02871" + "incident_id": "INC-02451" }, { - "name": "Ollama GGUF Model File RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02980.html", + "name": "Cursor \"Open-Folder\" Autorun Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02462.html", "year": 2025, - "incident_id": "INC-02980" + "incident_id": "INC-02462" }, { - "name": "OpenAI ChatGPT Operator Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02997.html", + "name": "Cursor & Windsurf Forked Chromium 94+ N-Day Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02463.html", "year": 2025, - "incident_id": "INC-02997" + "incident_id": "INC-02463" }, { - "name": "PoisonedRAG — 5 malicious texts in millions achieve 90% attack success rate on RAG systems", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03036.html", + "name": "Cursor CLI Project Config RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02467.html", "year": 2025, - "incident_id": "INC-03036" + "incident_id": "INC-02467" }, { - "name": "WhatsApp MCP tool poisoning — hidden instructions exfiltrate entire message history", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03368.html", + "name": "Dify SSRF via RemoteFileUploadApi (CVE-2025-56520)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02514.html", "year": 2025, - "incident_id": "INC-03368" + "incident_id": "INC-02514" }, { - "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03376.html", + "name": "Dify Unauthenticated Information Disclosure (CVE-2025-63387)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02515.html", "year": 2025, - "incident_id": "INC-03376" + "incident_id": "INC-02515" }, { - "name": "Anthropic Sleeper Agents paper — models trained to hide malicious behaviour", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03572.html", - "year": 2024, - "incident_id": "INC-03572" + "name": "EscapeRoute -- Anthropic Filesystem MCP Sandbox Escape (CVE-2025-53109 & CVE-2025-53110)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02546.html", + "year": 2025, + "incident_id": "INC-02546" }, { - "name": "Many-shot jailbreaking (Anthropic research)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03967.html", - "year": 2024, - "incident_id": "INC-03967" + "name": "Framelink Figma MCP RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", + "year": 2025, + "incident_id": "INC-02592" }, { - "name": "RAG corpus poisoning — embedding-space manipulation to force retrieval", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04142.html", - "year": 2024, - "incident_id": "INC-04142" - } - ], - "crossrefs": { - "agentic_top10": [ - "ASI06" - ], - "dsgai_2026": [ - "DSGAI04", - "DSGAI21", - "DSGAI03", - "DSGAI02", - "DSGAI09", - "DSGAI05" - ] - }, - "changelog": [ + "name": "GitHub Copilot & Cursor Code-Agent Exploit", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02607.html", + "year": 2025, + "incident_id": "INC-02607" + }, { - "date": "2026-03-27", - "version": "1.0.0", - "change": "Initial entry — generated from GenAI Security Crosswalk v1.5.1 mapping files", - "author": "emmanuelgjr" + "name": "GPT-4.1 jailbreak via tool poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", + "year": 2025, + "incident_id": "INC-02646" + }, + { + "name": "Hub MCP Prompt Injection (Cross-Context)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02700.html", + "year": 2025, + "incident_id": "INC-02700" + }, + { + "name": "LangGrinch -- LangChain Core Serialization Injection (CVE-2025-68664)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02813.html", + "year": 2025, + "incident_id": "INC-02813" + }, + { + "name": "Malicious MCP server backdoor on npm — dual reverse shells in mcp-runcommand-server", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02848.html", + "year": 2025, + "incident_id": "INC-02848" + }, + { + "name": "Malicious MCP Server Impersonating Postmark", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02849.html", + "year": 2025, + "incident_id": "INC-02849" + }, + { + "name": "MCP OAuth Response Exploit", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02871.html", + "year": 2025, + "incident_id": "INC-02871" + }, + { + "name": "MCP tool poisoning — hidden instructions in Model Context Protocol tool descriptions", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02874.html", + "year": 2025, + "incident_id": "INC-02874" + }, + { + "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", + "year": 2025, + "incident_id": "INC-02878" + }, + { + "name": "Ollama GGUF Model File RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02980.html", + "year": 2025, + "incident_id": "INC-02980" + }, + { + "name": "OpenAI ChatGPT Operator Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02997.html", + "year": 2025, + "incident_id": "INC-02997" + }, + { + "name": "React2Shell Impacting Dify and AI Platforms (CVE-2025-55182)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03149.html", + "year": 2025, + "incident_id": "INC-03149" + }, + { + "name": "Salesloft Drift OAuth breach — Chinese actor UNC6395 accesses 700+ Salesforce CRM environments", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03194.html", + "year": 2025, + "incident_id": "INC-03194" + }, + { + "name": "ShadowMQ — critical RCE in Meta/NVIDIA/vLLM inference servers via pickle deserialization", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03211.html", + "year": 2025, + "incident_id": "INC-03211" + }, + { + "name": "Visual Studio Code & Agentic AI workflows RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03334.html", + "year": 2025, + "incident_id": "INC-03334" + }, + { + "name": "Anthropic Sleeper Agents paper — models trained to hide malicious behaviour", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03572.html", + "year": 2024, + "incident_id": "INC-03572" + }, + { + "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", + "year": 2024, + "incident_id": "INC-04179" + } + ], + "crossrefs": { + "agentic_top10": [ + "ASI06" + ], + "dsgai_2026": [ + "DSGAI04", + "DSGAI21", + "DSGAI03", + "DSGAI02", + "DSGAI09", + "DSGAI05" + ] + }, + "changelog": [ + { + "date": "2026-03-27", + "version": "1.0.0", + "change": "Initial entry — generated from GenAI Security Crosswalk v1.5.1 mapping files", + "author": "emmanuelgjr" } ] }, @@ -4880,34 +4868,22 @@ window.CROSSWALK_DATA = [ ], "incidents": [ { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, - { - "name": "AnythingLLM Multiple CVEs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", - "year": 2026, - "incident_id": "INC-00627" - }, - { - "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", + "name": "A2A Protocol -- Agent Card Poisoning Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html", "year": 2026, - "incident_id": "INC-00671" + "incident_id": "INC-00036" }, { - "name": "ChatGPT Data Exfiltration via DNS Covert Channel", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00746.html", + "name": "AI recommendation poisoning — hidden prompt injections in 'Summarize with AI' buttons across 31 companies", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00198.html", "year": 2026, - "incident_id": "INC-00746" + "incident_id": "INC-00198" }, { - "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", + "name": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00833.html", "year": 2026, - "incident_id": "INC-00813" + "incident_id": "INC-00833" }, { "name": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", @@ -4915,24 +4891,18 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-00834" }, - { - "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", - "year": 2026, - "incident_id": "INC-00860" - }, - { - "name": "Docker MCP Server OS Command Injection (CVE-2026-5741)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00904.html", - "year": 2026, - "incident_id": "INC-00904" - }, { "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", "year": 2026, "incident_id": "INC-00924" }, + { + "name": "Eight Attack Vectors in AWS Bedrock Agents", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00928.html", + "year": 2026, + "incident_id": "INC-00928" + }, { "name": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01015.html", @@ -4940,34 +4910,10 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-01015" }, { - "name": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01063.html", - "year": 2026, - "incident_id": "INC-01063" - }, - { - "name": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01092.html", - "year": 2026, - "incident_id": "INC-01092" - }, - { - "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", - "year": 2023, - "incident_id": "INC-01291" - }, - { - "name": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01297.html", - "year": 2026, - "incident_id": "INC-01297" - }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", + "name": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01064.html", "year": 2026, - "incident_id": "INC-01298" + "incident_id": "INC-01064" }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", @@ -4975,24 +4921,6 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-01340" }, - { - "name": "Marimo Pre-Auth RCE (CVE-2026-39987)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01370.html", - "year": 2026, - "incident_id": "INC-01370" - }, - { - "name": "MCPJam Inspector RCE (CVE-2026-23744)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01390.html", - "year": 2026, - "incident_id": "INC-01390" - }, - { - "name": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01391.html", - "year": 2026, - "incident_id": "INC-01391" - }, { "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", @@ -5005,36 +4933,6 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-01440" }, - { - "name": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01471.html", - "year": 2026, - "incident_id": "INC-01471" - }, - { - "name": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01589.html", - "year": 2026, - "incident_id": "INC-01589" - }, - { - "name": "PraisonAI Quadruple CVE Disclosure", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01666.html", - "year": 2026, - "incident_id": "INC-01666" - }, - { - "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01723.html", - "year": 2023, - "incident_id": "INC-01723" - }, - { - "name": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01769.html", - "year": 2026, - "incident_id": "INC-01769" - }, { "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", @@ -5042,178 +4940,22 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-02186" }, { - "name": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02190.html", + "name": "Anthropic SQLite MCP Server SQL Injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02324.html", "year": 2025, - "incident_id": "INC-02190" + "incident_id": "INC-02324" }, { - "name": "Amazon Q Prompt Poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02300.html", + "name": "GitPublic Issue Repo Hijack", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02613.html", "year": 2025, - "incident_id": "INC-02300" + "incident_id": "INC-02613" }, { - "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02321.html", + "name": "MCP OAuth Response Exploit", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02871.html", "year": 2025, - "incident_id": "INC-02321" - }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, - { - "name": "Claude Desktop PromptJacking RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02447.html", - "year": 2025, - "incident_id": "INC-02447" - }, - { - "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", - "year": 2025, - "incident_id": "INC-02451" - }, - { - "name": "Cline AI Coding Agent Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02455.html", - "year": 2025, - "incident_id": "INC-02455" - }, - { - "name": "Cursor \"Open-Folder\" Autorun Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02462.html", - "year": 2025, - "incident_id": "INC-02462" - }, - { - "name": "Cursor & Windsurf Forked Chromium 94+ N-Day Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02463.html", - "year": 2025, - "incident_id": "INC-02463" - }, - { - "name": "Cursor CLI Project Config RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02467.html", - "year": 2025, - "incident_id": "INC-02467" - }, - { - "name": "Cursor Config Overwrite via Case Mismatch", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", - "year": 2025, - "incident_id": "INC-02468" - }, - { - "name": "Cursor Workspace File Injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02471.html", - "year": 2025, - "incident_id": "INC-02471" - }, - { - "name": "Cursorignore Bypass via New Cursorignore Write", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02480.html", - "year": 2025, - "incident_id": "INC-02480" - }, - { - "name": "Devin AI Agent Prompt Injection & Data Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02512.html", - "year": 2025, - "incident_id": "INC-02512" - }, - { - "name": "Dify SSRF via RemoteFileUploadApi (CVE-2025-56520)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02514.html", - "year": 2025, - "incident_id": "INC-02514" - }, - { - "name": "Dify Unauthenticated Information Disclosure (CVE-2025-63387)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02515.html", - "year": 2025, - "incident_id": "INC-02515" - }, - { - "name": "EscapeRoute -- Anthropic Filesystem MCP Sandbox Escape (CVE-2025-53109 & CVE-2025-53110)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02546.html", - "year": 2025, - "incident_id": "INC-02546" - }, - { - "name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html", - "year": 2025, - "incident_id": "INC-02590" - }, - { - "name": "Framelink Figma MCP RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", - "year": 2025, - "incident_id": "INC-02592" - }, - { - "name": "GitHub Copilot & Cursor Code-Agent Exploit", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02607.html", - "year": 2025, - "incident_id": "INC-02607" - }, - { - "name": "Google Antigravity AI Data Wipe", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02627.html", - "year": 2025, - "incident_id": "INC-02627" - }, - { - "name": "Google Antigravity IDE Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02629.html", - "year": 2025, - "incident_id": "INC-02629" - }, - { - "name": "Google Gemini CLI File Loss", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02631.html", - "year": 2025, - "incident_id": "INC-02631" - }, - { - "name": "GPT-4.1 jailbreak via tool poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", - "year": 2025, - "incident_id": "INC-02646" - }, - { - "name": "Hub MCP Prompt Injection (Cross-Context)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02700.html", - "year": 2025, - "incident_id": "INC-02700" - }, - { - "name": "Kiro IDE Command Injection (CVE-2026-0830)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02793.html", - "year": 2025, - "incident_id": "INC-02793" - }, - { - "name": "LangGrinch -- LangChain Core Serialization Injection (CVE-2025-68664)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02813.html", - "year": 2025, - "incident_id": "INC-02813" - }, - { - "name": "MCP OAuth Response Exploit", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02871.html", - "year": 2025, - "incident_id": "INC-02871" - }, - { - "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", - "year": 2025, - "incident_id": "INC-02878" + "incident_id": "INC-02871" }, { "name": "Ollama GGUF Model File RCE", @@ -5222,52 +4964,22 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-02980" }, { - "name": "OpenHands ZombAI RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03010.html", - "year": 2025, - "incident_id": "INC-03010" - }, - { - "name": "Postgres MCP Server SQL Injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03039.html", - "year": 2025, - "incident_id": "INC-03039" - }, - { - "name": "React2Shell Impacting Dify and AI Platforms (CVE-2025-55182)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03149.html", - "year": 2025, - "incident_id": "INC-03149" - }, - { - "name": "Salesloft Drift OAuth breach — Chinese actor UNC6395 accesses 700+ Salesforce CRM environments", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03194.html", - "year": 2025, - "incident_id": "INC-03194" - }, - { - "name": "ShadowMQ — critical RCE in Meta/NVIDIA/vLLM inference servers via pickle deserialization", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03211.html", - "year": 2025, - "incident_id": "INC-03211" - }, - { - "name": "ToolShell RCE via SharePoint", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03300.html", + "name": "OpenAI ChatGPT Operator Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02997.html", "year": 2025, - "incident_id": "INC-03300" + "incident_id": "INC-02997" }, { - "name": "Trail of Bits: Prompt Injection to RCE in AI Agents", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03304.html", + "name": "PoisonedRAG — 5 malicious texts in millions achieve 90% attack success rate on RAG systems", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03036.html", "year": 2025, - "incident_id": "INC-03304" + "incident_id": "INC-03036" }, { - "name": "Visual Studio Code & Agentic AI workflows RCE", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03334.html", + "name": "WhatsApp MCP tool poisoning — hidden instructions exfiltrate entire message history", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03368.html", "year": 2025, - "incident_id": "INC-03334" + "incident_id": "INC-03368" }, { "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", @@ -5276,22 +4988,22 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-03376" }, { - "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", + "name": "Anthropic Sleeper Agents paper — models trained to hide malicious behaviour", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03572.html", "year": 2024, - "incident_id": "INC-04007" + "incident_id": "INC-03572" }, { - "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", - "year": 2021, - "incident_id": "INC-08177" + "name": "Many-shot jailbreaking (Anthropic research)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03967.html", + "year": 2024, + "incident_id": "INC-03967" }, { - "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", - "year": 2023, - "incident_id": "INC-08181" + "name": "RAG corpus poisoning — embedding-space manipulation to force retrieval", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04142.html", + "year": 2024, + "incident_id": "INC-04142" } ], "crossrefs": { @@ -6014,208 +5726,28 @@ window.CROSSWALK_DATA = [ ], "incidents": [ { - "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", - "year": 2026, - "incident_id": "INC-00671" - }, - { - "name": "ChatGPT Data Exfiltration via DNS Covert Channel", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00746.html", - "year": 2026, - "incident_id": "INC-00746" - }, - { - "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", - "year": 2026, - "incident_id": "INC-00813" + "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", + "year": 2023, + "incident_id": "INC-01291" }, { - "name": "Claude Cowork File Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00827.html", - "year": 2026, - "incident_id": "INC-00827" + "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", + "year": 2025, + "incident_id": "INC-02426" }, { - "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", - "year": 2026, - "incident_id": "INC-00924" - }, - { - "name": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01015.html", - "year": 2025, - "incident_id": "INC-01015" - }, - { - "name": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01063.html", - "year": 2026, - "incident_id": "INC-01063" - }, - { - "name": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01064.html", - "year": 2026, - "incident_id": "INC-01064" - }, - { - "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", - "year": 2023, - "incident_id": "INC-01291" - }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, - { - "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", - "year": 2026, - "incident_id": "INC-01411" - }, - { - "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01723.html", - "year": 2023, - "incident_id": "INC-01723" - }, - { - "name": "XBOW — first critical CVE discovered entirely by autonomous AI penetration testing agent", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02105.html", - "year": 2026, - "incident_id": "INC-02105" - }, - { - "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02321.html", - "year": 2025, - "incident_id": "INC-02321" - }, - { - "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", - "year": 2025, - "incident_id": "INC-02426" - }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, - { - "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", - "year": 2025, - "incident_id": "INC-02451" - }, - { - "name": "Cursor Config Overwrite via Case Mismatch", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", - "year": 2025, - "incident_id": "INC-02468" - }, - { - "name": "GitHub Copilot & Cursor Code-Agent Exploit", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02607.html", - "year": 2025, - "incident_id": "INC-02607" - }, - { - "name": "Google Antigravity IDE Vulnerabilities", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02629.html", - "year": 2025, - "incident_id": "INC-02629" - }, - { - "name": "GPT-4.1 jailbreak via tool poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", - "year": 2025, - "incident_id": "INC-02646" - }, - { - "name": "Hub MCP Prompt Injection (Cross-Context)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02700.html", - "year": 2025, - "incident_id": "INC-02700" - }, - { - "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", - "year": 2025, - "incident_id": "INC-02878" - }, - { - "name": "Microsoft Copilot Studio agents public by default — unauthorized data exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02899.html", - "year": 2025, - "incident_id": "INC-02899" - }, - { - "name": "OpenAI ChatGPT Operator Vulnerability", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02997.html", - "year": 2025, - "incident_id": "INC-02997" - }, - { - "name": "Crescendo: multi-turn escalation attack (Microsoft)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03687.html", - "year": 2024, - "incident_id": "INC-03687" - }, - { - "name": "Many-shot jailbreaking (Anthropic research)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03967.html", - "year": 2024, - "incident_id": "INC-03967" - }, - { - "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", - "year": 2024, - "incident_id": "INC-04007" - }, - { - "name": "Nassi et al. \"ComPromptMized\" Morris II multi-agent worm", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04027.html", - "year": 2024, - "incident_id": "INC-04027" - }, - { - "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", - "year": 2024, - "incident_id": "INC-04179" - }, - { - "name": "Skeleton Key: direct system prompt override (Microsoft)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04207.html", - "year": 2024, - "incident_id": "INC-04207" - }, - { - "name": "Slack AI indirect injection via channel content", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04208.html", - "year": 2024, - "incident_id": "INC-04208" + "name": "OpenAI GPT-4 system prompt extraction toolkit — systematic prompt leakage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04067.html", + "year": 2024, + "incident_id": "INC-04067" }, { "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", "year": 2021, "incident_id": "INC-08177" - }, - { - "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", - "year": 2023, - "incident_id": "INC-08181" } ], "crossrefs": { @@ -6886,10 +6418,16 @@ window.CROSSWALK_DATA = [ ], "incidents": [ { - "name": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00833.html", + "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", "year": 2026, - "incident_id": "INC-00833" + "incident_id": "INC-01411" + }, + { + "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", + "year": 2025, + "incident_id": "INC-02186" }, { "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", @@ -6904,34 +6442,28 @@ window.CROSSWALK_DATA = [ "incident_id": "INC-02646" }, { - "name": "OpenAI GPT-4 system prompt extraction toolkit — systematic prompt leakage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04067.html", - "year": 2024, - "incident_id": "INC-04067" + "name": "Replit vibe coding meltdown — agent hallucinated data, deleted production database, hid mistakes", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03152.html", + "year": 2025, + "incident_id": "INC-03152" }, { - "name": "Skeleton Key: direct system prompt override (Microsoft)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04207.html", + "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", "year": 2024, - "incident_id": "INC-04207" + "incident_id": "INC-04007" }, { - "name": "Perez & Ribeiro — 'Ignore Previous Prompt': foundational direct injection study", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-05172.html", - "year": 2022, - "incident_id": "INC-05172" + "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", + "year": 2024, + "incident_id": "INC-04179" }, { "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", "year": 2021, "incident_id": "INC-08177" - }, - { - "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", - "year": 2023, - "incident_id": "INC-08181" } ], "crossrefs": { @@ -7652,76 +7184,52 @@ window.CROSSWALK_DATA = [ ], "incidents": [ { - "name": "Claude Cowork File Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00827.html", + "name": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00833.html", "year": 2026, - "incident_id": "INC-00827" + "incident_id": "INC-00833" }, { - "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", - "year": 2026, - "incident_id": "INC-00860" + "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", + "year": 2025, + "incident_id": "INC-02426" }, { - "name": "Eight Attack Vectors in AWS Bedrock Agents", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00928.html", - "year": 2026, - "incident_id": "INC-00928" + "name": "GPT-4.1 jailbreak via tool poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", + "year": 2025, + "incident_id": "INC-02646" }, { - "name": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01440.html", - "year": 2026, - "incident_id": "INC-01440" + "name": "OpenAI GPT-4 system prompt extraction toolkit — systematic prompt leakage", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04067.html", + "year": 2024, + "incident_id": "INC-04067" }, { - "name": "Devin AI Agent Prompt Injection & Data Exfiltration", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02512.html", - "year": 2025, - "incident_id": "INC-02512" + "name": "Skeleton Key: direct system prompt override (Microsoft)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04207.html", + "year": 2024, + "incident_id": "INC-04207" }, { - "name": "HashJack -- URL Fragment Prompt Injection for AI Browsers", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02686.html", - "year": 2025, - "incident_id": "INC-02686" + "name": "Perez & Ribeiro — 'Ignore Previous Prompt': foundational direct injection study", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-05172.html", + "year": 2022, + "incident_id": "INC-05172" }, { - "name": "PoisonedRAG — 5 malicious texts in millions achieve 90% attack success rate on RAG systems", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03036.html", - "year": 2025, - "incident_id": "INC-03036" + "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", + "year": 2021, + "incident_id": "INC-08177" }, { - "name": "ToolShell RCE via SharePoint", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03300.html", - "year": 2025, - "incident_id": "INC-03300" - }, - { - "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03376.html", - "year": 2025, - "incident_id": "INC-03376" - }, - { - "name": "Nassi et al. \"ComPromptMized\" Morris II multi-agent worm", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04027.html", - "year": 2024, - "incident_id": "INC-04027" - }, - { - "name": "RAG corpus poisoning — embedding-space manipulation to force retrieval", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04142.html", - "year": 2024, - "incident_id": "INC-04142" - }, - { - "name": "Slack AI indirect injection via channel content", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04208.html", - "year": 2024, - "incident_id": "INC-04208" + "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", + "year": 2023, + "incident_id": "INC-08181" } ], "crossrefs": { @@ -8409,58 +7917,76 @@ window.CROSSWALK_DATA = [ ], "incidents": [ { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" + "name": "Claude Cowork File Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00827.html", + "year": 2026, + "incident_id": "INC-00827" }, { - "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", + "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", "year": 2026, - "incident_id": "INC-01411" + "incident_id": "INC-00860" }, { - "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", + "name": "Eight Attack Vectors in AWS Bedrock Agents", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00928.html", + "year": 2026, + "incident_id": "INC-00928" + }, + { + "name": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01440.html", + "year": 2026, + "incident_id": "INC-01440" + }, + { + "name": "Devin AI Agent Prompt Injection & Data Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02512.html", "year": 2025, - "incident_id": "INC-02186" + "incident_id": "INC-02512" }, { - "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", + "name": "HashJack -- URL Fragment Prompt Injection for AI Browsers", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02686.html", "year": 2025, - "incident_id": "INC-02426" + "incident_id": "INC-02686" }, { - "name": "GPT-4.1 jailbreak via tool poisoning", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", + "name": "PoisonedRAG — 5 malicious texts in millions achieve 90% attack success rate on RAG systems", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03036.html", "year": 2025, - "incident_id": "INC-02646" + "incident_id": "INC-03036" }, { - "name": "Replit vibe coding meltdown — agent hallucinated data, deleted production database, hid mistakes", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03152.html", + "name": "ToolShell RCE via SharePoint", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03300.html", "year": 2025, - "incident_id": "INC-03152" + "incident_id": "INC-03300" }, { - "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", + "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03376.html", + "year": 2025, + "incident_id": "INC-03376" + }, + { + "name": "Nassi et al. \"ComPromptMized\" Morris II multi-agent worm", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04027.html", "year": 2024, - "incident_id": "INC-04007" + "incident_id": "INC-04027" }, { - "name": "Scale AI / Sama contractor data exposure — third-party AI labeling workforce privacy violations", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04179.html", + "name": "RAG corpus poisoning — embedding-space manipulation to force retrieval", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04142.html", "year": 2024, - "incident_id": "INC-04179" + "incident_id": "INC-04142" }, { - "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", - "year": 2021, - "incident_id": "INC-08177" + "name": "Slack AI indirect injection via channel content", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04208.html", + "year": 2024, + "incident_id": "INC-04208" } ], "crossrefs": { @@ -9026,163 +8552,529 @@ window.CROSSWALK_DATA = [ "notes": "Conduct adversarial resource consumption testing (sponge examples, token amplification, recursive context injection) before each production release" }, { - "framework": "NIST SP 800-218A", - "control_id": "RV.2.1-PS", - "control_name": "Assess, prioritise, and remediate — availability remediation", - "tier": "Foundational", - "scope": "Both", - "notes": "Define and test remediation procedures for availability incidents — rate limit tightening, model rollback, cost circuit breaker activation" + "framework": "NIST SP 800-218A", + "control_id": "RV.2.1-PS", + "control_name": "Assess, prioritise, and remediate — availability remediation", + "tier": "Foundational", + "scope": "Both", + "notes": "Define and test remediation procedures for availability incidents — rate limit tightening, model rollback, cost circuit breaker activation" + }, + { + "framework": "NIST SP 800-218A", + "control_id": "PS.2.1-PS", + "control_name": "Verify software integrity — throttle and limit configuration integrity", + "tier": "Foundational", + "scope": "Both", + "notes": "Verify that rate limit and resource constraint configurations have not been altered before deployment; treat throttle configuration as a security artefact" + }, + { + "framework": "FedRAMP", + "control_id": "SC-7", + "control_name": "Boundary Protection — rate limiting and cost controls", + "tier": "Foundational", + "scope": "Both", + "notes": "Enforce rate limiting, token quotas, and cost circuit breakers at the AI service boundary; define per-user and per-session consumption limits" + }, + { + "framework": "FedRAMP", + "control_id": "SI-4", + "control_name": "System Monitoring — consumption anomaly detection", + "tier": "Foundational", + "scope": "Both", + "notes": "Monitor AI service consumption metrics — tokens, latency, cost — in real time; alert and auto-mitigate on consumption anomalies" + }, + { + "framework": "FedRAMP", + "control_id": "CM-7", + "control_name": "Least Functionality — resource budget enforcement", + "tier": "Foundational", + "scope": "Both", + "notes": "Restrict AI services to defined resource budgets; disable unnecessary model capabilities; enforce compute and cost limits in configuration" + }, + { + "framework": "FedRAMP", + "control_id": "IR-4", + "control_name": "Incident Handling — consumption incident response", + "tier": "Foundational", + "scope": "Both", + "notes": "Define incident handling procedures for AI consumption anomalies including automatic throttling, service suspension, and cost cap enforcement" + }, + { + "framework": "DORA", + "control_id": "Art. 9", + "control_name": "Protection and Prevention — consumption controls", + "tier": "Foundational", + "scope": "Both", + "notes": "Implement rate limiting, token quotas, and cost circuit breakers on financial AI inference services; define per-user and per-service consumption limits" + }, + { + "framework": "DORA", + "control_id": "Art. 10", + "control_name": "Detection — consumption anomaly detection", + "tier": "Foundational", + "scope": "Both", + "notes": "Monitor AI service consumption metrics in real time; alert on token spikes, latency degradation, and cost overruns affecting financial service availability" + }, + { + "framework": "DORA", + "control_id": "Art. 12", + "control_name": "Backup Policies — AI service continuity", + "tier": "Foundational", + "scope": "Both", + "notes": "Maintain backup model deployments and fallback inference paths for AI services supporting critical financial functions; test restoration procedures" + }, + { + "framework": "DORA", + "control_id": "Art. 11", + "control_name": "Response and Recovery — consumption incident response", + "tier": "Foundational", + "scope": "Both", + "notes": "Define response and recovery procedures for AI consumption incidents; include automatic throttling, failover activation, and service restoration" + } + ], + "tools": [ + { + "name": "Kong Gateway", + "type": "open-source", + "url": "https://github.com/Kong/kong" + }, + { + "name": "Nginx (rate limiting)", + "type": "open-source", + "url": "https://nginx.org" + }, + { + "name": "LiteLLM", + "type": "open-source", + "url": "https://github.com/BerriAI/litellm" + }, + { + "name": "OpenTelemetry", + "type": "open-source", + "url": "https://opentelemetry.io" + }, + { + "name": "Claroty", + "type": "commercial", + "url": "https://claroty.com" + }, + { + "name": "Nozomi Networks", + "type": "commercial", + "url": "https://www.nozominetworks.com" + }, + { + "name": "LiteLLM (rate limiting)", + "type": "open-source", + "url": "https://github.com/BerriAI/litellm" + }, + { + "name": "AWS Budgets / Azure Cost Management", + "type": "commercial", + "url": "https://aws.amazon.com/aws-cost-management/aws-budgets/" + }, + { + "name": "Inspect AI", + "url": "https://github.com/UKGovernmentBEIS/inspect_ai", + "type": "open-source" + } + ], + "incidents": [ + { + "name": "AnythingLLM Multiple CVEs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", + "year": 2026, + "incident_id": "INC-00627" + }, + { + "name": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00671.html", + "year": 2026, + "incident_id": "INC-00671" + }, + { + "name": "ChatGPT Data Exfiltration via DNS Covert Channel", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00746.html", + "year": 2026, + "incident_id": "INC-00746" + }, + { + "name": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00813.html", + "year": 2026, + "incident_id": "INC-00813" + }, + { + "name": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00834.html", + "year": 2026, + "incident_id": "INC-00834" + }, + { + "name": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00860.html", + "year": 2026, + "incident_id": "INC-00860" + }, + { + "name": "Docker MCP Server OS Command Injection (CVE-2026-5741)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00904.html", + "year": 2026, + "incident_id": "INC-00904" + }, + { + "name": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00924.html", + "year": 2026, + "incident_id": "INC-00924" + }, + { + "name": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01015.html", + "year": 2025, + "incident_id": "INC-01015" + }, + { + "name": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01063.html", + "year": 2026, + "incident_id": "INC-01063" + }, + { + "name": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01092.html", + "year": 2026, + "incident_id": "INC-01092" + }, + { + "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", + "year": 2023, + "incident_id": "INC-01291" + }, + { + "name": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01297.html", + "year": 2026, + "incident_id": "INC-01297" + }, + { + "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", + "year": 2026, + "incident_id": "INC-01340" + }, + { + "name": "Marimo Pre-Auth RCE (CVE-2026-39987)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01370.html", + "year": 2026, + "incident_id": "INC-01370" + }, + { + "name": "MCPJam Inspector RCE (CVE-2026-23744)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01390.html", + "year": 2026, + "incident_id": "INC-01390" + }, + { + "name": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01391.html", + "year": 2026, + "incident_id": "INC-01391" + }, + { + "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", + "year": 2026, + "incident_id": "INC-01429" + }, + { + "name": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01440.html", + "year": 2026, + "incident_id": "INC-01440" + }, + { + "name": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01471.html", + "year": 2026, + "incident_id": "INC-01471" + }, + { + "name": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01589.html", + "year": 2026, + "incident_id": "INC-01589" + }, + { + "name": "PraisonAI Quadruple CVE Disclosure", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01666.html", + "year": 2026, + "incident_id": "INC-01666" + }, + { + "name": "Anyscale Ray LFI via /static/ directory (missing authorization)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01723.html", + "year": 2023, + "incident_id": "INC-01723" + }, + { + "name": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01769.html", + "year": 2026, + "incident_id": "INC-01769" + }, + { + "name": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02186.html", + "year": 2025, + "incident_id": "INC-02186" + }, + { + "name": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02190.html", + "year": 2025, + "incident_id": "INC-02190" + }, + { + "name": "Amazon Q Prompt Poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02300.html", + "year": 2025, + "incident_id": "INC-02300" + }, + { + "name": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02321.html", + "year": 2025, + "incident_id": "INC-02321" + }, + { + "name": "Claude Desktop PromptJacking RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02447.html", + "year": 2025, + "incident_id": "INC-02447" + }, + { + "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", + "year": 2025, + "incident_id": "INC-02451" + }, + { + "name": "Cline AI Coding Agent Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02455.html", + "year": 2025, + "incident_id": "INC-02455" + }, + { + "name": "Cursor \"Open-Folder\" Autorun Vulnerability", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02462.html", + "year": 2025, + "incident_id": "INC-02462" + }, + { + "name": "Cursor & Windsurf Forked Chromium 94+ N-Day Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02463.html", + "year": 2025, + "incident_id": "INC-02463" + }, + { + "name": "Cursor CLI Project Config RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02467.html", + "year": 2025, + "incident_id": "INC-02467" + }, + { + "name": "Cursor Config Overwrite via Case Mismatch", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", + "year": 2025, + "incident_id": "INC-02468" + }, + { + "name": "Cursor Workspace File Injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02471.html", + "year": 2025, + "incident_id": "INC-02471" + }, + { + "name": "Cursorignore Bypass via New Cursorignore Write", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02480.html", + "year": 2025, + "incident_id": "INC-02480" + }, + { + "name": "Devin AI Agent Prompt Injection & Data Exfiltration", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02512.html", + "year": 2025, + "incident_id": "INC-02512" + }, + { + "name": "Dify SSRF via RemoteFileUploadApi (CVE-2025-56520)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02514.html", + "year": 2025, + "incident_id": "INC-02514" + }, + { + "name": "Dify Unauthenticated Information Disclosure (CVE-2025-63387)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02515.html", + "year": 2025, + "incident_id": "INC-02515" + }, + { + "name": "EscapeRoute -- Anthropic Filesystem MCP Sandbox Escape (CVE-2025-53109 & CVE-2025-53110)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02546.html", + "year": 2025, + "incident_id": "INC-02546" + }, + { + "name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html", + "year": 2025, + "incident_id": "INC-02590" + }, + { + "name": "Framelink Figma MCP RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", + "year": 2025, + "incident_id": "INC-02592" }, { - "framework": "NIST SP 800-218A", - "control_id": "PS.2.1-PS", - "control_name": "Verify software integrity — throttle and limit configuration integrity", - "tier": "Foundational", - "scope": "Both", - "notes": "Verify that rate limit and resource constraint configurations have not been altered before deployment; treat throttle configuration as a security artefact" + "name": "GitHub Copilot & Cursor Code-Agent Exploit", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02607.html", + "year": 2025, + "incident_id": "INC-02607" }, { - "framework": "FedRAMP", - "control_id": "SC-7", - "control_name": "Boundary Protection — rate limiting and cost controls", - "tier": "Foundational", - "scope": "Both", - "notes": "Enforce rate limiting, token quotas, and cost circuit breakers at the AI service boundary; define per-user and per-session consumption limits" + "name": "Google Antigravity AI Data Wipe", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02627.html", + "year": 2025, + "incident_id": "INC-02627" }, { - "framework": "FedRAMP", - "control_id": "SI-4", - "control_name": "System Monitoring — consumption anomaly detection", - "tier": "Foundational", - "scope": "Both", - "notes": "Monitor AI service consumption metrics — tokens, latency, cost — in real time; alert and auto-mitigate on consumption anomalies" + "name": "Google Antigravity IDE Vulnerabilities", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02629.html", + "year": 2025, + "incident_id": "INC-02629" }, { - "framework": "FedRAMP", - "control_id": "CM-7", - "control_name": "Least Functionality — resource budget enforcement", - "tier": "Foundational", - "scope": "Both", - "notes": "Restrict AI services to defined resource budgets; disable unnecessary model capabilities; enforce compute and cost limits in configuration" + "name": "Google Gemini CLI File Loss", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02631.html", + "year": 2025, + "incident_id": "INC-02631" }, { - "framework": "FedRAMP", - "control_id": "IR-4", - "control_name": "Incident Handling — consumption incident response", - "tier": "Foundational", - "scope": "Both", - "notes": "Define incident handling procedures for AI consumption anomalies including automatic throttling, service suspension, and cost cap enforcement" + "name": "GPT-4.1 jailbreak via tool poisoning", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02646.html", + "year": 2025, + "incident_id": "INC-02646" }, { - "framework": "DORA", - "control_id": "Art. 9", - "control_name": "Protection and Prevention — consumption controls", - "tier": "Foundational", - "scope": "Both", - "notes": "Implement rate limiting, token quotas, and cost circuit breakers on financial AI inference services; define per-user and per-service consumption limits" + "name": "Hub MCP Prompt Injection (Cross-Context)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02700.html", + "year": 2025, + "incident_id": "INC-02700" }, { - "framework": "DORA", - "control_id": "Art. 10", - "control_name": "Detection — consumption anomaly detection", - "tier": "Foundational", - "scope": "Both", - "notes": "Monitor AI service consumption metrics in real time; alert on token spikes, latency degradation, and cost overruns affecting financial service availability" + "name": "Kiro IDE Command Injection (CVE-2026-0830)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02793.html", + "year": 2025, + "incident_id": "INC-02793" }, { - "framework": "DORA", - "control_id": "Art. 12", - "control_name": "Backup Policies — AI service continuity", - "tier": "Foundational", - "scope": "Both", - "notes": "Maintain backup model deployments and fallback inference paths for AI services supporting critical financial functions; test restoration procedures" + "name": "LangGrinch -- LangChain Core Serialization Injection (CVE-2025-68664)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02813.html", + "year": 2025, + "incident_id": "INC-02813" }, { - "framework": "DORA", - "control_id": "Art. 11", - "control_name": "Response and Recovery — consumption incident response", - "tier": "Foundational", - "scope": "Both", - "notes": "Define response and recovery procedures for AI consumption incidents; include automatic throttling, failover activation, and service restoration" - } - ], - "tools": [ - { - "name": "Kong Gateway", - "type": "open-source", - "url": "https://github.com/Kong/kong" + "name": "MCP OAuth Response Exploit", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02871.html", + "year": 2025, + "incident_id": "INC-02871" }, { - "name": "Nginx (rate limiting)", - "type": "open-source", - "url": "https://nginx.org" + "name": "mcp-remote OAuth Command Injection (CVE-2025-6514)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02878.html", + "year": 2025, + "incident_id": "INC-02878" }, { - "name": "LiteLLM", - "type": "open-source", - "url": "https://github.com/BerriAI/litellm" + "name": "Ollama GGUF Model File RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02980.html", + "year": 2025, + "incident_id": "INC-02980" }, { - "name": "OpenTelemetry", - "type": "open-source", - "url": "https://opentelemetry.io" + "name": "OpenHands ZombAI RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03010.html", + "year": 2025, + "incident_id": "INC-03010" }, { - "name": "Claroty", - "type": "commercial", - "url": "https://claroty.com" + "name": "Postgres MCP Server SQL Injection", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03039.html", + "year": 2025, + "incident_id": "INC-03039" }, { - "name": "Nozomi Networks", - "type": "commercial", - "url": "https://www.nozominetworks.com" + "name": "React2Shell Impacting Dify and AI Platforms (CVE-2025-55182)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03149.html", + "year": 2025, + "incident_id": "INC-03149" }, { - "name": "LiteLLM (rate limiting)", - "type": "open-source", - "url": "https://github.com/BerriAI/litellm" + "name": "Salesloft Drift OAuth breach — Chinese actor UNC6395 accesses 700+ Salesforce CRM environments", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03194.html", + "year": 2025, + "incident_id": "INC-03194" }, { - "name": "AWS Budgets / Azure Cost Management", - "type": "commercial", - "url": "https://aws.amazon.com/aws-cost-management/aws-budgets/" + "name": "ShadowMQ — critical RCE in Meta/NVIDIA/vLLM inference servers via pickle deserialization", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03211.html", + "year": 2025, + "incident_id": "INC-03211" }, { - "name": "Inspect AI", - "url": "https://github.com/UKGovernmentBEIS/inspect_ai", - "type": "open-source" - } - ], - "incidents": [ + "name": "ToolShell RCE via SharePoint", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03300.html", + "year": 2025, + "incident_id": "INC-03300" + }, { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" + "name": "Trail of Bits: Prompt Injection to RCE in AI Agents", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03304.html", + "year": 2025, + "incident_id": "INC-03304" }, { - "name": "LangChain LLMMathChain prompt-injection RCE via Python exec", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01291.html", - "year": 2023, - "incident_id": "INC-01291" + "name": "Visual Studio Code & Agentic AI workflows RCE", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03334.html", + "year": 2025, + "incident_id": "INC-03334" }, { - "name": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02426.html", + "name": "Windsurf Data Exfiltration & SpAIware (Multiple Vectors)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-03376.html", "year": 2025, - "incident_id": "INC-02426" + "incident_id": "INC-03376" }, { - "name": "OpenAI GPT-4 system prompt extraction toolkit — systematic prompt leakage", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04067.html", + "name": "Microsoft-Powered New York City Chatbot Advises Illegal Practices", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-04007.html", "year": 2024, - "incident_id": "INC-04067" + "incident_id": "INC-04007" }, { "name": "Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08177.html", "year": 2021, "incident_id": "INC-08177" + }, + { + "name": "ChatGPT plugin/cross-plugin data exfiltration via Markdown image injection (Embrace The Red)", + "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-08181.html", + "year": 2023, + "incident_id": "INC-08181" } ], "crossrefs": { @@ -10098,12 +9990,6 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-01297" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01429.html", @@ -11207,12 +11093,6 @@ window.CROSSWALK_DATA = [ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "AnythingLLM Multiple CVEs", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", @@ -11303,12 +11183,6 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-01297" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "MCP fURI -- Microsoft MarkItDown MCP SSRF", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01378.html", @@ -11411,12 +11285,6 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02435" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Pirate Data Exfiltration", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02449.html", @@ -12494,12 +12362,6 @@ window.CROSSWALK_DATA = [ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "AnythingLLM Multiple CVEs", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", @@ -12566,12 +12428,6 @@ window.CROSSWALK_DATA = [ "year": 2023, "incident_id": "INC-01291" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", @@ -12650,12 +12506,6 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02426" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Cursor Config Overwrite via Case Mismatch", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02468.html", @@ -13495,12 +13345,6 @@ window.CROSSWALK_DATA = [ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "AnythingLLM Multiple CVEs", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", @@ -13555,12 +13399,6 @@ window.CROSSWALK_DATA = [ "year": 2023, "incident_id": "INC-01291" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", @@ -13663,12 +13501,6 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02435" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Skills Data Exfiltration", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02450.html", @@ -13717,12 +13549,6 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02546" }, - { - "name": "ForcedLeak — Salesforce Agentforce indirect prompt injection exfiltrates CRM data", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02590.html", - "year": 2025, - "incident_id": "INC-02590" - }, { "name": "Framelink Figma MCP RCE", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02592.html", @@ -14587,12 +14413,6 @@ window.CROSSWALK_DATA = [ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "AnythingLLM Multiple CVEs", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00627.html", @@ -14665,12 +14485,6 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-01297" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01340.html", @@ -14761,12 +14575,6 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02321" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Desktop PromptJacking RCE", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02447.html", @@ -16691,12 +16499,6 @@ window.CROSSWALK_DATA = [ } ], "incidents": [ - { - "name": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00010.html", - "year": 2023, - "incident_id": "INC-00010" - }, { "name": "A2A Protocol -- Agent Card Poisoning Vulnerability", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-00036.html", @@ -18438,12 +18240,6 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-01064" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", @@ -19440,12 +19236,6 @@ window.CROSSWALK_DATA = [ "year": 2026, "incident_id": "INC-00834" }, - { - "name": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01298.html", - "year": 2026, - "incident_id": "INC-01298" - }, { "name": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-01411.html", @@ -19476,12 +19266,6 @@ window.CROSSWALK_DATA = [ "year": 2025, "incident_id": "INC-02426" }, - { - "name": "Vulnerable juju hook tool abstract UNIX domain socket", - "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02443.html", - "year": 2024, - "incident_id": "INC-02443" - }, { "name": "Claude Skills ransomware deployment — MedusaLocker via malicious plugin", "url": "https://emmanuelgjr.github.io/genai_incidents/incident/INC-02451.html", diff --git a/docs/frameworks-registry.js b/docs/frameworks-registry.js index 3566305..977260e 100644 --- a/docs/frameworks-registry.js +++ b/docs/frameworks-registry.js @@ -1,5 +1,5 @@ // Auto-generated by scripts/generate.js — do not edit manually -// Generated: 2026-06-15 +// Generated: 2026-09-28 // Frameworks: 25 window.CROSSWALK_FRAMEWORKS = [ { diff --git a/docs/incidents.js b/docs/incidents.js index 9f3c87d..1653ab3 100644 --- a/docs/incidents.js +++ b/docs/incidents.js @@ -1,26 +1,165 @@ // Auto-generated by scripts/generate.js — do not edit manually -// Generated: 2026-06-15 -// Incidents: 122 +// Generated: 2026-09-28 +// Incidents: 119 window.CROSSWALK_INCIDENTS = [ { - "id": "INC-00010", - "title": "org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption", - "date": "2023-06", - "year": 2023, - "category": "vulnerability-disclosure", - "description": "## Summary The fork of `org.cyberneko.html` used by Nokogiri (Rubygem) raises a `java.lang.OutOfMemoryError` exception when parsing ill-formed HTML markup. ## Severity The maintainers have evaluated this as [**High Severity** 7.5 (CVSS3.1)](https://www.first.org/cvss/calculator/3.1#CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H). ## Mitigation Upgrade to `>= 1.9.22.noko2`. ## Credit This vulnerability was reported by [이형관 (windshock)](https://www.linkedin.com/in/windshock/). ## References [CWE-400](https://cwe.mitre.org/data/definitions/400.html) Uncontrolled Resource Consumption ## Notes The upstream library `org.cyberneko.html` is no longer maintained. Nokogiri uses its own fork of this library located at https://github.com/sparklemotion/nekohtml and this CVE applies only to that fork. Other forks of nekohtml may have a similar vulnerability.", + "id": "INC-00036", + "title": "A2A Protocol -- Agent Card Poisoning Vulnerability", + "date": "2026", + "year": 2026, + "category": "real-world", + "description": "Google's Agent-to-Agent (A2A) protocol has systemic vulnerabilities: agent card poisoning (malicious metadata injection causing data exfiltration), agent impersonation/shadowing, replay attacks, and contagion risk (one compromised agent influencing others in collaborative workflows). The spec delegates credential management entirely to implementers with no built-in protections.", "owasp_entries": [ "LLM02", - "LLM03", - "LLM04", "LLM05", - "LLM09", + "ASI06", + "ASI07", + "ASI08" + ], + "mitre_atlas": [ + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0024", + "AML.T0048", + "AML.T0051", + "AML.T0051.000", + "AML.T0053", + "AML.T0057", + "AML.T0059", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MANAGE-4.1", + "MAP-2.1", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "attack_vector": "prompt-injection", + "affected": "A2A Protocol", + "severity": "Medium", + "references": [ + { + "title": "Palo Alto Networks", + "url": "https://live.paloaltonetworks.com/t5/community-blogs/safeguarding-ai-agents-an-in-depth-look-at-a2a-protocol-risks/ba-p/1235996", + "type": "research" + } + ] + }, + { + "id": "INC-00198", + "title": "AI recommendation poisoning — hidden prompt injections in 'Summarize with AI' buttons across 31 companies", + "date": "2026-02", + "year": 2026, + "category": "research-demonstrated", + "description": "Microsoft researchers discovered that 'Summarize with AI' buttons on websites contain hidden prompt-injection instructions that poison AI assistant memory. Over 60 days, 50 distinct examples found from 31 companies across 12+ industries. Altered memory influences later answers in unrelated conversations.", + "owasp_entries": [ + "LLM01", + "LLM05", + "ASI01", + "ASI06", + "ASI09", + "DSGAI04" + ], + "mitre_atlas": [ + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0059", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0005", + "AML.TA0006", + "AML.TA0011" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "maestro_layers": [ + { + "layer": "L2", + "label": "Data Operations", + "role": "origin", + "notes": "Hidden instructions embedded in web content processed by AI" + }, + { + "layer": "L3", + "label": "Agent Frameworks", + "role": "propagation", + "notes": "Poisoned content persists in AI assistant memory across sessions" + } + ], + "attack_vector": "prompt-injection", + "affected": "AI assistants processing web content — 31 companies, 12+ industries", + "impact": "Cross-session manipulation; persistent behavioral modification; memory-based trust exploitation", + "severity": "High", + "mitigations": [ + "Content integrity verification before memory storage", + "Memory content sanitization", + "Session isolation for AI memory" + ], + "references": [ + { + "title": "AI recommendation poisoning", + "url": "https://www.microsoft.com/en-us/security/blog/2026/02/10/ai-recommendation-poisoning/", + "type": "research" + } + ], + "tags": [ + "cross-session", + "memory-poisoning", + "persistent", + "trust", + "web-content" + ] + }, + { + "id": "INC-00627", + "title": "AnythingLLM Multiple CVEs", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "Multiple vulnerabilities in AnythingLLM Desktop v1.11.1 and earlier: CVE-2026-32626 (CVSS 9.7) streaming phase XSS to RCE via LLM response injection in Electron; CVE-2026-32719 Zip Slip path traversal in plugin imports leading to arbitrary code execution; CVE-2026-32617 authentication bypass exposing HTTP/WebSocket endpoints; CVE-2026-24477 Qdrant API key exposed in plaintext via `/api/setup-complete`.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", "LLM10", + "ASI01", "ASI02", "ASI03", "ASI04", - "ASI05", - "ASI07" + "ASI05" ], "mitre_atlas": [ "AML.T0010", @@ -28,15153 +167,1091 @@ window.CROSSWALK_INCIDENTS = [ "AML.T0010.003", "AML.T0011", "AML.T0012", - "AML.T0018", - "AML.T0019", - "AML.T0020", "AML.T0024", - "AML.T0029", - "AML.T0034", - "AML.T0048.001", "AML.T0049", "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", "AML.T0053", "AML.T0057", - "AML.T0058", - "AML.T0059", "AML.T0060" ], "mitre_atlas_tactics": [ - "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", "AML.TA0010", - "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-1.1", "GOVERN-1.4", + "GOVERN-3.2", "GOVERN-6.1", "GOVERN-6.2", "MANAGE-2.3", - "MANAGE-3.2", - "MANAGE-4.3", + "MAP-2.1", "MAP-3.5", "MAP-4.1", - "MAP-4.2", "MEASURE-2.10", - "MEASURE-2.4", "MEASURE-2.5", - "MEASURE-2.7", - "MEASURE-2.8" + "MEASURE-2.7" ], - "attack_vector": "other", - "affected": "maven/org.nokogiri:nekohtml", + "attack_vector": "rce", + "affected": "AnythingLLM Multiple CVEs", "severity": "Critical", "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24839", - "type": "advisory" + "title": "GitHub Advisory", + "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-rrmw-2j6x-4mf2", + "type": "research" }, { - "title": "GHSA-9849-p7jc-9rmv", - "url": "https://github.com/advisories/GHSA-9849-p7jc-9rmv", + "title": "SentinelOne", + "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-32617/", "type": "advisory" }, - { - "title": "https://github.com/sparklemotion/nekohtml/security/advisories/GHSA-9849-p7jc-9rmv", - "url": "https://github.com/sparklemotion/nekohtml/security/advisories/GHSA-9849-p7jc-9rmv", - "type": "reference" - }, - { - "title": "https://github.com/sparklemotion/nekohtml/commit/a800fce3b079def130ed42a408ff1d09f89e773d", - "url": "https://github.com/sparklemotion/nekohtml/commit/a800fce3b079def130ed42a408ff1d09f89e773d", - "type": "reference" - }, - { - "title": "https://www.oracle.com/security-alerts/cpujul2022.html", - "url": "https://www.oracle.com/security-alerts/cpujul2022.html", - "type": "reference" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-29577", - "type": "advisory" - }, - { - "title": "GHSA-vp37-2f9p-3vr3", - "url": "https://github.com/advisories/GHSA-vp37-2f9p-3vr3", - "type": "advisory" - }, - { - "title": "https://github.com/nahsra/antisamy/commit/32e273507da0e964b58c50fd8a4c94c9d9363af0", - "url": "https://github.com/nahsra/antisamy/commit/32e273507da0e964b58c50fd8a4c94c9d9363af0", - "type": "reference" - }, - { - "title": "https://github.com/nahsra/antisamy/releases/tag/v1.6.7", - "url": "https://github.com/nahsra/antisamy/releases/tag/v1.6.7", - "type": "reference" - }, - { - "title": "GHSA-gx8x-g87m-h5q6", - "url": "https://github.com/advisories/GHSA-gx8x-g87m-h5q6", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32617", "type": "advisory" }, { - "title": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-gx8x-g87m-h5q6", - "url": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-gx8x-g87m-h5q6", - "type": "reference" - }, - { - "title": "https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.4", - "url": "https://github.com/sparklemotion/nokogiri/releases/tag/v1.13.4", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-24qj-pw4h-3jmm", + "type": "vendor" }, { - "title": "GHSA-xxx9-3xcr-gjj3", - "url": "https://github.com/advisories/GHSA-xxx9-3xcr-gjj3", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32626", "type": "advisory" }, { - "title": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-xxx9-3xcr-gjj3", - "url": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-xxx9-3xcr-gjj3", - "type": "reference" - }, - { - "title": "https://nvd.nist.gov/vuln/detail/CVE-2022-23437", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23437", - "type": "reference" - }, - { - "title": "https://github.com/advisories/GHSA-h65f-jvqw-m9fj", - "url": "https://github.com/advisories/GHSA-h65f-jvqw-m9fj", - "type": "reference" - }, - { - "title": "https://groups.google.com/g/ruby-security-ann/c/vX7qSjsvWis/m/TJWN4oOKBwAJ?utm_medium=email&utm_source=footer", - "url": "https://groups.google.com/g/ruby-security-ann/c/vX7qSjsvWis/m/TJWN4oOKBwAJ?utm_medium=email&utm_source=footer", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Mintplex-Labs/anything-llm/commit/9e2d144dc8be6fab29f560f5bcdaa9ef7dbb4214", + "type": "patch" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24836", - "type": "advisory" - }, - { - "title": "GHSA-crjr-9rc5-ghw8", - "url": "https://github.com/advisories/GHSA-crjr-9rc5-ghw8", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32719", "type": "advisory" }, { - "title": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-crjr-9rc5-ghw8", - "url": "https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-crjr-9rc5-ghw8", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Mintplex-Labs/anything-llm/commit/6a492f038da195a5c9a239d5ca2e9f2151c25f8c", + "type": "patch" }, { - "title": "https://github.com/sparklemotion/nokogiri/commit/e444525ef1634b675cd1cf52d39f4320ef0aecfd", - "url": "https://github.com/sparklemotion/nokogiri/commit/e444525ef1634b675cd1cf52d39f4320ef0aecfd", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-rh66-4w74-cf4m", + "type": "vendor" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-38296", - "type": "advisory" - }, - { - "title": "GHSA-9rr6-jpg7-9jg6", - "url": "https://github.com/advisories/GHSA-9rr6-jpg7-9jg6", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24477", "type": "advisory" }, - { - "title": "https://lists.apache.org/thread/70x8fw2gx3g9ty7yk0f2f1dlpqml2smd", - "url": "https://lists.apache.org/thread/70x8fw2gx3g9ty7yk0f2f1dlpqml2smd", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/pyspark/PYSEC-2022-186.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/pyspark/PYSEC-2022-186.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-0839", - "type": "advisory" - }, - { - "title": "GHSA-jvfv-hrrc-6q72", - "url": "https://github.com/advisories/GHSA-jvfv-hrrc-6q72", - "type": "advisory" - }, - { - "title": "https://github.com/liquibase/liquibase/commit/33d9d925082097fb1a3d2fc8e44423d964cd9381", - "url": "https://github.com/liquibase/liquibase/commit/33d9d925082097fb1a3d2fc8e44423d964cd9381", - "type": "reference" - }, - { - "title": "https://huntr.dev/bounties/f1ae5779-b406-4594-a8a3-d089c68d6e70", - "url": "https://huntr.dev/bounties/f1ae5779-b406-4594-a8a3-d089c68d6e70", - "type": "reference" - }, - { - "title": "http://seclists.org/fulldisclosure/2025/Apr/14", - "url": "http://seclists.org/fulldisclosure/2025/Apr/14", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread/6pjwm10bb69kq955fzr1n0nflnjd27dl", - "url": "https://lists.apache.org/thread/6pjwm10bb69kq955fzr1n0nflnjd27dl", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2022/01/24/3", - "url": "http://www.openwall.com/lists/oss-security/2022/01/24/3", - "type": "reference" - }, - { - "title": "https://www.oracle.com/security-alerts/cpuapr2022.html", - "url": "https://www.oracle.com/security-alerts/cpuapr2022.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1000198", - "type": "advisory" - }, - { - "title": "GHSA-8rc4-3jc3-83pm", - "url": "https://github.com/advisories/GHSA-8rc4-3jc3-83pm", - "type": "advisory" - }, - { - "title": "https://jenkins.io/security/advisory/2018-05-09/#SECURITY-671", - "url": "https://jenkins.io/security/advisory/2018-05-09/#SECURITY-671", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1000194", - "type": "advisory" - }, - { - "title": "GHSA-x646-m7x2-gcp7", - "url": "https://github.com/advisories/GHSA-x646-m7x2-gcp7", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/5cf0a77d44310523b763698f67d645c1f2427f30", - "url": "https://github.com/jenkinsci/jenkins/commit/5cf0a77d44310523b763698f67d645c1f2427f30", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-22118", - "type": "advisory" - }, - { - "title": "GHSA-gfwj-fwqj-fp3v", - "url": "https://github.com/advisories/GHSA-gfwj-fwqj-fp3v", - "type": "advisory" - }, - { - "title": "https://security.netapp.com/advisory/ntap-20210713-0005/", - "url": "https://security.netapp.com/advisory/ntap-20210713-0005/", - "type": "reference" - }, - { - "title": "https://tanzu.vmware.com/security/cve-2021-22118", - "url": "https://tanzu.vmware.com/security/cve-2021-22118", - "type": "reference" - }, - { - "title": "https://www.oracle.com//security-alerts/cpujul2021.html", - "url": "https://www.oracle.com//security-alerts/cpujul2021.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-27193", - "type": "advisory" - }, - { - "title": "GHSA-4m44-5j2g-xf64", - "url": "https://github.com/advisories/GHSA-4m44-5j2g-xf64", - "type": "advisory" - }, - { - "title": "https://ckeditor.com/blog/CKEditor-4.15.1-with-a-security-patch-released/", - "url": "https://ckeditor.com/blog/CKEditor-4.15.1-with-a-security-patch-released/", - "type": "reference" - }, - { - "title": "https://ckeditor.com/cke4/release/CKEditor-4.15.1", - "url": "https://ckeditor.com/cke4/release/CKEditor-4.15.1", - "type": "reference" - }, - { - "title": "https://ckeditor.com/ckeditor-4/download/", - "url": "https://ckeditor.com/ckeditor-4/download/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10383", - "type": "advisory" - }, - { - "title": "GHSA-9m48-54pj-h248", - "url": "https://github.com/advisories/GHSA-9m48-54pj-h248", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2019:2789", - "url": "https://access.redhat.com/errata/RHSA-2019:2789", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2019:3144", - "url": "https://access.redhat.com/errata/RHSA-2019:3144", - "type": "reference" - }, - { - "title": "https://jenkins.io/security/advisory/2019-08-28/#SECURITY-1453", - "url": "https://jenkins.io/security/advisory/2019-08-28/#SECURITY-1453", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-5351", - "type": "advisory" - }, - { - "title": "GHSA-66rx-gqx3-p98m", - "url": "https://github.com/advisories/GHSA-66rx-gqx3-p98m", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/79487", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/79487", - "type": "reference" - }, - { - "title": "http://www.nds.rub.de/media/nds/veroeffentlichungen/2012/08/22/BreakingSAML_3.pdf", - "url": "http://www.nds.rub.de/media/nds/veroeffentlichungen/2012/08/22/BreakingSAML_3.pdf", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2912", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/bentoml/bentoml/commit/fd70379733c57c6368cc022ac1f841b7b426db7b", - "type": "reference" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/349a1cce-6bb5-4345-82a5-bf7041b65a68", - "type": "reference" - }, - { - "title": "GHSA-hvj5-mvw9-93j3", - "url": "https://github.com/advisories/GHSA-hvj5-mvw9-93j3", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hvj5-mvw9-93j3", - "type": "advisory" - }, - { - "title": "https://github.com/bentoml/BentoML", - "url": "https://github.com/bentoml/BentoML", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1561", - "type": "advisory" - }, - { - "title": "GHSA-g9cj-cfpp-4g2x", - "url": "https://github.com/advisories/GHSA-g9cj-cfpp-4g2x", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/24a583688046867ca8b8b02959c441818bdb34a2", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/4acf584e-2fe8-490e-878d-2d9bf2698338", - "type": "exploit" - }, - { - "title": "security@huntr.dev", - "url": "https://www.gradio.app/changelog#4-13-0", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-g9cj-cfpp-4g2x", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio", - "url": "https://github.com/gradio-app/gradio", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7365", - "type": "advisory" - }, - { - "title": "GHSA-xhpr-465j-7p9q", - "url": "https://github.com/advisories/GHSA-xhpr-465j-7p9q", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-xhpr-465j-7p9q", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-xhpr-465j-7p9q", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/issues/40446", - "url": "https://github.com/keycloak/keycloak/issues/40446", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/pull/40520", - "url": "https://github.com/keycloak/keycloak/pull/40520", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:11986", - "url": "https://access.redhat.com/errata/RHSA-2025:11986", - "type": "reference" - }, - { - "title": "GHSA-gj52-35xm-gxjh", - "url": "https://github.com/advisories/GHSA-gj52-35xm-gxjh", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-7365", - "url": "https://access.redhat.com/security/cve/CVE-2025-7365", - "type": "reference" - }, - { - "title": "https://bugzilla.redhat.com/show_bug.cgi?id=2378852", - "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2378852", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8419", - "type": "advisory" - }, - { - "title": "GHSA-m4j5-5x4r-2xp9", - "url": "https://github.com/advisories/GHSA-m4j5-5x4r-2xp9", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-m4j5-5x4r-2xp9", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-m4j5-5x4r-2xp9", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:15336", - "url": "https://access.redhat.com/errata/RHSA-2025:15336", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:15337", - "url": "https://access.redhat.com/errata/RHSA-2025:15337", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:15338", - "url": "https://access.redhat.com/errata/RHSA-2025:15338", - "type": "reference" - }, - { - "title": "GHSA-qj5r-2r5p-phc7", - "url": "https://github.com/advisories/GHSA-qj5r-2r5p-phc7", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-8419", - "url": "https://access.redhat.com/security/cve/CVE-2025-8419", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10044", - "type": "advisory" - }, - { - "title": "GHSA-27gc-wj6x-9w55", - "url": "https://github.com/advisories/GHSA-27gc-wj6x-9w55", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-27gc-wj6x-9w55", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-27gc-wj6x-9w55", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/pull/42035", - "url": "https://github.com/keycloak/keycloak/pull/42035", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:16399", - "url": "https://access.redhat.com/errata/RHSA-2025:16399", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:16400", - "url": "https://access.redhat.com/errata/RHSA-2025:16400", - "type": "reference" - }, - { - "title": "GHSA-xmcw-mv9p-7pq2", - "url": "https://github.com/advisories/GHSA-xmcw-mv9p-7pq2", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-10044", - "url": "https://access.redhat.com/security/cve/CVE-2025-10044", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-7307", - "type": "advisory" - }, - { - "title": "GHSA-p5mv-gj8j-xqgf", - "url": "https://github.com/advisories/GHSA-p5mv-gj8j-xqgf", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-7307", - "url": "https://access.redhat.com/security/cve/CVE-2026-7307", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:19594", - "url": "https://access.redhat.com/errata/RHSA-2026:19594", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:19597", - "url": "https://access.redhat.com/errata/RHSA-2026:19597", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-37982", - "type": "advisory" - }, - { - "title": "GHSA-w4p5-rfh6-cwrv", - "url": "https://github.com/advisories/GHSA-w4p5-rfh6-cwrv", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-37982", - "url": "https://access.redhat.com/security/cve/CVE-2026-37982", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:19596", - "url": "https://access.redhat.com/errata/RHSA-2026:19596", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6420", - "type": "advisory" - }, - { - "title": "GHSA-q8w6-w55c-ccv5", - "url": "https://github.com/advisories/GHSA-q8w6-w55c-ccv5", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-q8w6-w55c-ccv5", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-q8w6-w55c-ccv5", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-6420", - "url": "https://access.redhat.com/security/cve/CVE-2026-6420", - "type": "reference" - }, - { - "title": "GHSA-wc6p-4gwj-jcr8", - "url": "https://github.com/advisories/GHSA-wc6p-4gwj-jcr8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6494", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2026-6494", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6859", - "type": "advisory" - }, - { - "title": "GHSA-rxpq-xgqx-fr7p", - "url": "https://github.com/advisories/GHSA-rxpq-xgqx-fr7p", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-6859", - "url": "https://access.redhat.com/security/cve/CVE-2026-6859", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-12805", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/errata/RHSA-2026:2106", - "type": "vendor" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/errata/RHSA-2026:2695", - "type": "vendor" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2025-12805", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2575", - "type": "advisory" - }, - { - "title": "GHSA-xv6h-r36f-3gp5", - "url": "https://github.com/advisories/GHSA-xv6h-r36f-3gp5", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:3947", - "url": "https://access.redhat.com/errata/RHSA-2026:3947", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:3948", - "url": "https://access.redhat.com/errata/RHSA-2026:3948", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-2575", - "url": "https://access.redhat.com/security/cve/CVE-2026-2575", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2092", - "type": "advisory" - }, - { - "title": "GHSA-wmxr-6j5f-838p", - "url": "https://github.com/advisories/GHSA-wmxr-6j5f-838p", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:3925", - "url": "https://access.redhat.com/errata/RHSA-2026:3925", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:3926", - "url": "https://access.redhat.com/errata/RHSA-2026:3926", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2603", - "type": "advisory" - }, - { - "title": "GHSA-x4p7-7chp-64hq", - "url": "https://github.com/advisories/GHSA-x4p7-7chp-64hq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-1289", - "type": "advisory" - }, - { - "title": "GHSA-j96m-mjp6-99xr", - "url": "https://github.com/advisories/GHSA-j96m-mjp6-99xr", - "type": "advisory" - }, - { - "title": "https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-j96m-mjp6-99xr", - "url": "https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-j96m-mjp6-99xr", - "type": "reference" - }, - { - "title": "https://github.com/ImageMagick/ImageMagick/commit/c5b23cbf2119540725e6dc81f4deb25798ead6a4", - "url": "https://github.com/ImageMagick/ImageMagick/commit/c5b23cbf2119540725e6dc81f4deb25798ead6a4", - "type": "reference" - }, - { - "title": "https://lists.debian.org/debian-lts-announce/2024/02/msg00007.html", - "url": "https://lists.debian.org/debian-lts-announce/2024/02/msg00007.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3047", - "type": "advisory" - }, - { - "title": "GHSA-8cr3-vpxx-92cx", - "url": "https://github.com/advisories/GHSA-8cr3-vpxx-92cx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-12343", - "type": "advisory" - }, - { - "title": "patrick@puiterwijk.org", - "url": "https://access.redhat.com/security/cve/CVE-2025-12343", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0871", - "type": "advisory" - }, - { - "title": "GHSA-v4jw-m6rm-399h", - "url": "https://github.com/advisories/GHSA-v4jw-m6rm-399h", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2365", - "url": "https://access.redhat.com/errata/RHSA-2026:2365", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2366", - "url": "https://access.redhat.com/errata/RHSA-2026:2366", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-0871", - "url": "https://access.redhat.com/security/cve/CVE-2026-0871", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-14778", - "type": "advisory" - }, - { - "title": "GHSA-fm6w-rrp3-2x4w", - "url": "https://github.com/advisories/GHSA-fm6w-rrp3-2x4w", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2364", - "url": "https://access.redhat.com/errata/RHSA-2026:2364", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-14778", - "url": "https://access.redhat.com/security/cve/CVE-2025-14778", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2363", - "url": "https://access.redhat.com/errata/RHSA-2026:2363", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-1529", - "type": "advisory" - }, - { - "title": "GHSA-hcvw-475w-8g7p", - "url": "https://github.com/advisories/GHSA-hcvw-475w-8g7p", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-1529", - "url": "https://access.redhat.com/security/cve/CVE-2026-1529", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-1709", - "type": "advisory" - }, - { - "title": "GHSA-4jqp-9qjv-57m2", - "url": "https://github.com/advisories/GHSA-4jqp-9qjv-57m2", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-4jqp-9qjv-57m2", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-4jqp-9qjv-57m2", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-1709", - "url": "https://access.redhat.com/security/cve/CVE-2026-1709", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2224", - "url": "https://access.redhat.com/errata/RHSA-2026:2224", - "type": "reference" - }, - { - "title": "GHSA-27jc-jmp8-qfw5", - "url": "https://github.com/advisories/GHSA-27jc-jmp8-qfw5", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2026:2225", - "url": "https://access.redhat.com/errata/RHSA-2026:2225", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-67849", - "type": "advisory" - }, - { - "title": "GHSA-mhf6-pp52-8wqj", - "url": "https://github.com/advisories/GHSA-mhf6-pp52-8wqj", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-67849", - "url": "https://access.redhat.com/security/cve/CVE-2025-67849", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/a3063dcaa44dbe66e60a37cadb33bfadfe4feb03", - "url": "https://github.com/moodle/moodle/commit/a3063dcaa44dbe66e60a37cadb33bfadfe4feb03", - "type": "reference" - }, - { - "title": "https://moodle.org/mod/forum/discuss.php?d=471299", - "url": "https://moodle.org/mod/forum/discuss.php?d=471299", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-1190", - "type": "advisory" - }, - { - "title": "GHSA-63v5-26vq-m4vm", - "url": "https://github.com/advisories/GHSA-63v5-26vq-m4vm", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2026-1190", - "url": "https://access.redhat.com/security/cve/CVE-2026-1190", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/issues/45646", - "url": "https://github.com/keycloak/keycloak/issues/45646", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-14525", - "type": "advisory" - }, - { - "title": "GHSA-25mh-hp8x-cgrv", - "url": "https://github.com/advisories/GHSA-25mh-hp8x-cgrv", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-14525", - "url": "https://access.redhat.com/security/cve/CVE-2025-14525", - "type": "reference" - }, - { - "title": "https://github.com/kubevirt/kubevirt/releases/tag/v1.7.0", - "url": "https://github.com/kubevirt/kubevirt/releases/tag/v1.7.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4472", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2021-4472", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://bugs.launchpad.net/horizon/+bug/1931558", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://review.opendev.org/c/openstack/mistral-dashboard/+/800952", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://review.opendev.org/c/openstack/python-mistralclient/+/800950", - "type": "reference" - }, - { - "title": "GHSA-75hx-6r6j-hw56", - "url": "https://github.com/advisories/GHSA-75hx-6r6j-hw56", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-13609", - "type": "advisory" - }, - { - "title": "GHSA-xh5w-g8gq-r3v9", - "url": "https://github.com/advisories/GHSA-xh5w-g8gq-r3v9", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-13609", - "url": "https://access.redhat.com/security/cve/CVE-2025-13609", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/pull/1785", - "url": "https://github.com/keylime/keylime/pull/1785", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/commit/e1ae8de1f7b1385eaeec66572a92ff1338e6e157", - "url": "https://github.com/keylime/keylime/commit/e1ae8de1f7b1385eaeec66572a92ff1338e6e157", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6242", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2025-6242", - "type": "reference" - }, - { - "title": "GHSA-3f6c-7fw2-ppm4", - "url": "https://github.com/advisories/GHSA-3f6c-7fw2-ppm4", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3f6c-7fw2-ppm4", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3f6c-7fw2-ppm4", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/9d9a2b77f19f68262d5e469c4e82c0f6365ad72d", - "url": "https://github.com/vllm-project/vllm/commit/9d9a2b77f19f68262d5e469c4e82c0f6365ad72d", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3f6c-7fw2-ppm4", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-9566", - "type": "advisory" - }, - { - "title": "GHSA-wp3j-xq48-xpjw", - "url": "https://github.com/advisories/GHSA-wp3j-xq48-xpjw", - "type": "advisory" - }, - { - "title": "https://github.com/containers/podman/security/advisories/GHSA-wp3j-xq48-xpjw", - "url": "https://github.com/containers/podman/security/advisories/GHSA-wp3j-xq48-xpjw", - "type": "reference" - }, - { - "title": "https://github.com/containers/podman/commit/43fbde4e665fe6cee6921868f04b7ccd3de5ad89", - "url": "https://github.com/containers/podman/commit/43fbde4e665fe6cee6921868f04b7ccd3de5ad89", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-9566", - "url": "https://access.redhat.com/security/cve/CVE-2025-9566", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-7195", - "type": "advisory" - }, - { - "title": "GHSA-856v-8qm2-9wjv", - "url": "https://github.com/advisories/GHSA-856v-8qm2-9wjv", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-7195", - "url": "https://access.redhat.com/security/cve/CVE-2025-7195", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:19335", - "url": "https://access.redhat.com/errata/RHSA-2025:19335", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:19332", - "url": "https://access.redhat.com/errata/RHSA-2025:19332", - "type": "reference" - }, - { - "title": "GHSA-522r-9946-fw43", - "url": "https://github.com/advisories/GHSA-522r-9946-fw43", - "type": "advisory" - }, - { - "title": "https://github.com/cloudflare/circl/security/advisories/GHSA-2x5j-vhc8-9cwm", - "url": "https://github.com/cloudflare/circl/security/advisories/GHSA-2x5j-vhc8-9cwm", - "type": "reference" - }, - { - "title": "https://nvd.nist.gov/vuln/detail/CVE-2025-8556", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8556", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-8556", - "url": "https://access.redhat.com/security/cve/CVE-2025-8556", - "type": "reference" - }, - { - "title": "https://github.com/cloudflare/circl", - "url": "https://github.com/cloudflare/circl", - "type": "reference" - }, - { - "title": "GHSA-2x5j-vhc8-9cwm", - "url": "https://github.com/advisories/GHSA-2x5j-vhc8-9cwm", - "type": "advisory" - }, - { - "title": "https://github.com/cloudflare/circl/tree/v1.6.1", - "url": "https://github.com/cloudflare/circl/tree/v1.6.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3931", - "type": "advisory" - }, - { - "title": "GHSA-rpg2-jvhp-h354", - "url": "https://github.com/advisories/GHSA-rpg2-jvhp-h354", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2025:7592", - "url": "https://access.redhat.com/errata/RHSA-2025:7592", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-3931", - "url": "https://access.redhat.com/security/cve/CVE-2025-3931", - "type": "reference" - }, - { - "title": "https://github.com/RedHatInsights/yggdrasil/commit/196d0cbea42f72e6dfecaa563681a99e9fdb4a38", - "url": "https://github.com/RedHatInsights/yggdrasil/commit/196d0cbea42f72e6dfecaa563681a99e9fdb4a38", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3644", - "type": "advisory" - }, - { - "title": "GHSA-cpm7-mv33-jwf8", - "url": "https://github.com/advisories/GHSA-cpm7-mv33-jwf8", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-3644", - "url": "https://access.redhat.com/security/cve/CVE-2025-3644", - "type": "reference" - }, - { - "title": "https://github.com/search?q=repo%3Amoodle%2Fmoodle+MDL-83994&type=commits", - "url": "https://github.com/search?q=repo%3Amoodle%2Fmoodle+MDL-83994&type=commits", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3634", - "type": "advisory" - }, - { - "title": "GHSA-qhc7-xhc2-7p7w", - "url": "https://github.com/advisories/GHSA-qhc7-xhc2-7p7w", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-3634", - "url": "https://access.redhat.com/security/cve/CVE-2025-3634", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/b0965139014b459c3cb96e4fff45af4d5e09e261", - "url": "https://github.com/moodle/moodle/commit/b0965139014b459c3cb96e4fff45af4d5e09e261", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1057", - "type": "advisory" - }, - { - "title": "GHSA-9jxq-5x44-gx23", - "url": "https://github.com/advisories/GHSA-9jxq-5x44-gx23", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-9jxq-5x44-gx23", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-9jxq-5x44-gx23", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/commit/e08b10d86c3717006774e787542c190e2ba24fc7", - "url": "https://github.com/keylime/keylime/commit/e08b10d86c3717006774e787542c190e2ba24fc7", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2025-1057", - "url": "https://access.redhat.com/security/cve/CVE-2025-1057", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48897", - "type": "advisory" - }, - { - "title": "GHSA-x3x9-349x-2485", - "url": "https://github.com/advisories/GHSA-x3x9-349x-2485", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-1932", - "type": "advisory" - }, - { - "title": "GHSA-x83m-pf6f-pf9g", - "url": "https://github.com/advisories/GHSA-x83m-pf6f-pf9g", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2023-1932", - "url": "https://access.redhat.com/security/cve/CVE-2023-1932", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8698", - "type": "advisory" - }, - { - "title": "GHSA-xgfv-xpx8-qhcr", - "url": "https://github.com/advisories/GHSA-xgfv-xpx8-qhcr", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-xgfv-xpx8-qhcr", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-xgfv-xpx8-qhcr", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/releases/tag/25.0.6", - "url": "https://github.com/keycloak/keycloak/releases/tag/25.0.6", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2024-8698", - "url": "https://access.redhat.com/security/cve/CVE-2024-8698", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9407", - "type": "advisory" - }, - { - "title": "GHSA-fhqq-8f65-5xfc", - "url": "https://github.com/advisories/GHSA-fhqq-8f65-5xfc", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2024-9407", - "url": "https://access.redhat.com/security/cve/CVE-2024-9407", - "type": "reference" - }, - { - "title": "https://github.com/containers/podman/releases/tag/v5.2.4", - "url": "https://github.com/containers/podman/releases/tag/v5.2.4", - "type": "reference" - }, - { - "title": "https://github.com/containers/buildah/commit/e4e2ad5ca2088d7c388109394135ead7aaf1f4f4", - "url": "https://github.com/containers/buildah/commit/e4e2ad5ca2088d7c388109394135ead7aaf1f4f4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8939", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2024-8939", - "type": "reference" - }, - { - "title": "GHSA-wc36-9694-f9rf", - "url": "https://github.com/advisories/GHSA-wc36-9694-f9rf", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/issues/6137", - "url": "https://github.com/vllm-project/vllm/issues/6137", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wc36-9694-f9rf", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm", - "url": "https://github.com/vllm-project/vllm", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47868", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-4q3c-cj7g-jcwf", - "type": "exploit" - }, - { - "title": "GHSA-4q3c-cj7g-jcwf", - "url": "https://github.com/advisories/GHSA-4q3c-cj7g-jcwf", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-217.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-217.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-4q3c-cj7g-jcwf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-217", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47165", - "type": "advisory" - }, - { - "title": "GHSA-89v2-pqfv-c5r9", - "url": "https://github.com/advisories/GHSA-89v2-pqfv-c5r9", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-89v2-pqfv-c5r9", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-214.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-214.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-89v2-pqfv-c5r9", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-214", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47084", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-3c67-5hwx-f6wx", - "type": "advisory" - }, - { - "title": "GHSA-3c67-5hwx-f6wx", - "url": "https://github.com/advisories/GHSA-3c67-5hwx-f6wx", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-196.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-196.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3c67-5hwx-f6wx", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-196", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32381", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/mlc-ai/xgrammar/pull/243", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/mlc-ai/xgrammar/security/advisories/GHSA-389x-67px-mjg3", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/16283", - "type": "patch" - }, - { - "title": "GHSA-389x-67px-mjg3", - "url": "https://github.com/advisories/GHSA-389x-67px-mjg3", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/xgrammar/PYSEC-2025-235.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/xgrammar/PYSEC-2025-235.yaml", - "type": "reference" - }, - { - "title": "GHSA-hf3c-wxg2-49q9", - "url": "https://github.com/advisories/GHSA-hf3c-wxg2-49q9", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-hf3c-wxg2-49q9", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-hf3c-wxg2-49q9", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/cb84e45ac75b42ba6795145923e8eb323bb825ad", - "url": "https://github.com/vllm-project/vllm/commit/cb84e45ac75b42ba6795145923e8eb323bb825ad", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hf3c-wxg2-49q9", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32434", - "type": "advisory" - }, - { - "title": "GHSA-53q9-r3pm-6pq6", - "url": "https://github.com/advisories/GHSA-53q9-r3pm-6pq6", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/pytorch/pytorch/security/advisories/GHSA-53q9-r3pm-6pq6", - "type": "vendor" - }, - { - "title": "af854a3a-2127-422b-91ae-364da2661108", - "url": "https://lists.debian.org/debian-lts-announce/2025/12/msg00000.html", - "type": "reference" - }, - { - "title": "https://github.com/pytorch/pytorch/commit/8d4b8a920a2172523deb95bf20e8e52d50649c04", - "url": "https://github.com/pytorch/pytorch/commit/8d4b8a920a2172523deb95bf20e8e52d50649c04", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-41.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-41.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-53q9-r3pm-6pq6", - "type": "advisory" - }, - { - "title": "https://github.com/pytorch/pytorch", - "url": "https://github.com/pytorch/pytorch", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-41", - "type": "advisory" - }, - { - "title": "GHSA-m9mp-6x32-5rhg", - "url": "https://github.com/advisories/GHSA-m9mp-6x32-5rhg", - "type": "advisory" - }, - { - "title": "https://github.com/ThalesGroup/scio/security/advisories/GHSA-m9mp-6x32-5rhg", - "url": "https://github.com/ThalesGroup/scio/security/advisories/GHSA-m9mp-6x32-5rhg", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-12345", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/?id.348531", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4530", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Ka7arotto/cve/blob/main/Aix-DB-nl2sql.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4538", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/pull/176791", - "type": "patch" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-139", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4993", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/YLChen-007/3bf37486022d4c57caec3a35cd79ac92", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4515", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Ka7arotto/cve/blob/main/metagpt-rce1.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4516", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Ka7arotto/cve/blob/main/MetaGPT-rce2.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4963", - "type": "advisory" - }, - { - "title": "GHSA-54fq-v6x8-244g", - "url": "https://github.com/advisories/GHSA-54fq-v6x8-244g", - "type": "advisory" - }, - { - "title": "https://gist.github.com/YLChen-007/35b7d46e892266a0ed6dbe57802858be", - "url": "https://gist.github.com/YLChen-007/35b7d46e892266a0ed6dbe57802858be", - "type": "reference" - }, - { - "title": "https://gist.github.com/YLChen-007/7146f45960f79bc1e2976fed526e0a9b", - "url": "https://gist.github.com/YLChen-007/7146f45960f79bc1e2976fed526e0a9b", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4229", - "type": "advisory" - }, - { - "title": "GHSA-6mj8-jmp2-g8q7", - "url": "https://github.com/advisories/GHSA-6mj8-jmp2-g8q7", - "type": "advisory" - }, - { - "title": "https://gist.github.com/YLChen-007/b4f326eaecc29b192cf93dc5d6bc0623", - "url": "https://gist.github.com/YLChen-007/b4f326eaecc29b192cf93dc5d6bc0623", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2970", - "type": "advisory" - }, - { - "title": "GHSA-hg58-x52p-859c", - "url": "https://github.com/advisories/GHSA-hg58-x52p-859c", - "type": "advisory" - }, - { - "title": "https://github.com/hacktivesec/datapizza-ai-disclosure/blob/main/unsafe-deserialization.md", - "url": "https://github.com/hacktivesec/datapizza-ai-disclosure/blob/main/unsafe-deserialization.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2969", - "type": "advisory" - }, - { - "title": "GHSA-q5xx-fxv3-xxqf", - "url": "https://github.com/advisories/GHSA-q5xx-fxv3-xxqf", - "type": "advisory" - }, - { - "title": "https://github.com/hacktivesec/datapizza-ai-disclosure/blob/main/ssti.md", - "url": "https://github.com/hacktivesec/datapizza-ai-disclosure/blob/main/ssti.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2897", - "type": "advisory" - }, - { - "title": "GHSA-rfh7-7v27-6p9r", - "url": "https://github.com/advisories/GHSA-rfh7-7v27-6p9r", - "type": "advisory" - }, - { - "title": "https://github.com/I4m6da/CVE/issues/4", - "url": "https://github.com/I4m6da/CVE/issues/4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2654", - "type": "advisory" - }, - { - "title": "GHSA-jxgv-6j54-wwc7", - "url": "https://github.com/advisories/GHSA-jxgv-6j54-wwc7", - "type": "advisory" - }, - { - "title": "https://github.com/CH0ico/CVE_choco_smolagent/blob/main/report.md#proof-of-concept-execution", - "url": "https://github.com/CH0ico/CVE_choco_smolagent/blob/main/report.md#proof-of-concept-execution", - "type": "reference" - }, - { - "title": "https://github.com/CH0ico/CVE_choco_smolagent/tree/main", - "url": "https://github.com/CH0ico/CVE_choco_smolagent/tree/main", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-15453", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/milvus-io/milvus/issues/46442", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/milvus-io/milvus/milestone/139", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-63396", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://pytorch.com", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/Daisy2ang", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/pytorch/pytorch/issues/156563", - "type": "exploit" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-210", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-11489", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/wonderwhy-er/DesktopCommanderMCP/issues/219", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-11445", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Kilo-Org/kilocode/pull/2244", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Kilo-Org/kilocode/pull/2244/commits/2fdddf89edba41ec3a527134e485a3388c464333", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://mcpsec.dev/advisories/2025-10-02-kilo-code-ai-agent-supply-chain-attack/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10619", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/sequa-ai/sequa-mcp/commit/e569815854166db5f71c2e722408f8957fb9e804", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://lavender-bicycle-a5a.notion.site/Sequa-MCP-RCE-26853a41781f807da1c0cd158f9e3e1a?source=copy_link", - "type": "reference" - }, - { - "title": "GHSA-9pw5-wx67-q964", - "url": "https://github.com/advisories/GHSA-9pw5-wx67-q964", - "type": "advisory" - }, - { - "title": "https://www.npmjs.com/package/%40sequa-ai/sequa-mcp/v/1.0.14", - "url": "https://www.npmjs.com/package/%40sequa-ai/sequa-mcp/v/1.0.14", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10164", - "type": "advisory" - }, - { - "title": "GHSA-9w53-xr52-mwgj", - "url": "https://github.com/advisories/GHSA-9w53-xr52-mwgj", - "type": "advisory" - }, - { - "title": "https://github.com/sgl-project/sglang/commit/49afb3d9d9deedf6dea3a6dd5c50e85e7d8bcb07", - "url": "https://github.com/sgl-project/sglang/commit/49afb3d9d9deedf6dea3a6dd5c50e85e7d8bcb07", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10952", - "type": "advisory" - }, - { - "title": "GHSA-9x36-c74v-fgr6", - "url": "https://github.com/advisories/GHSA-9x36-c74v-fgr6", - "type": "advisory" - }, - { - "title": "https://github.com/geyang/ml-logger/issues/74", - "url": "https://github.com/geyang/ml-logger/issues/74", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10950", - "type": "advisory" - }, - { - "title": "GHSA-57hm-8rjv-498w", - "url": "https://github.com/advisories/GHSA-57hm-8rjv-498w", - "type": "advisory" - }, - { - "title": "https://github.com/geyang/ml-logger/issues/72", - "url": "https://github.com/geyang/ml-logger/issues/72", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10951", - "type": "advisory" - }, - { - "title": "GHSA-8x9j-2p8r-7xc6", - "url": "https://github.com/advisories/GHSA-8x9j-2p8r-7xc6", - "type": "advisory" - }, - { - "title": "https://github.com/geyang/ml-logger/issues/73", - "url": "https://github.com/geyang/ml-logger/issues/73", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10097", - "type": "advisory" - }, - { - "title": "GHSA-g4c9-f287-64xg", - "url": "https://github.com/advisories/GHSA-g4c9-f287-64xg", - "type": "advisory" - }, - { - "title": "https://github.com/simstudioai/sim/issues/961", - "url": "https://github.com/simstudioai/sim/issues/961", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8665", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/bayuncao-bit/vul-30", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-9654", - "type": "advisory" - }, - { - "title": "GHSA-694p-3fxc-m92h", - "url": "https://github.com/advisories/GHSA-694p-3fxc-m92h", - "type": "advisory" - }, - { - "title": "https://github.com/AiondaDotCom/mcp-ssh/commit/5b9b9c5b28d3f2672f356a790154ed68e17ef453", - "url": "https://github.com/AiondaDotCom/mcp-ssh/commit/5b9b9c5b28d3f2672f356a790154ed68e17ef453", - "type": "reference" - }, - { - "title": "https://github.com/AiondaDotCom/mcp-ssh/commit/cd2566a948b696501abfa6c6b03462cac5fb43d8", - "url": "https://github.com/AiondaDotCom/mcp-ssh/commit/cd2566a948b696501abfa6c6b03462cac5fb43d8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-9262", - "type": "advisory" - }, - { - "title": "GHSA-p6rm-483j-37jf", - "url": "https://github.com/advisories/GHSA-p6rm-483j-37jf", - "type": "advisory" - }, - { - "title": "https://gist.github.com/superboy-zjc/a01bd059c4078249d899f8c70c8feb0e", - "url": "https://gist.github.com/superboy-zjc/a01bd059c4078249d899f8c70c8feb0e", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6853", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/chatchat-space/Langchain-Chatchat/issues/5352", - "type": "exploit" - }, - { - "title": "GHSA-qmgv-j263-qr33", - "url": "https://github.com/advisories/GHSA-qmgv-j263-qr33", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6854", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/chatchat-space/Langchain-Chatchat/issues/5353", - "type": "vendor" - }, - { - "title": "GHSA-8v8h-4pjx-rg73", - "url": "https://github.com/advisories/GHSA-8v8h-4pjx-rg73", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6855", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/chatchat-space/Langchain-Chatchat/issues/5354", - "type": "vendor" - }, - { - "title": "GHSA-f823-phmg-x5fr", - "url": "https://github.com/advisories/GHSA-f823-phmg-x5fr", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6092", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/superboy-zjc/96f0d56da584d840ba18355cbea96ac4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6107", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/superboy-zjc/f71b84ed074260a5e459581caa2f1fb2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6773", - "type": "advisory" - }, - { - "title": "GHSA-v9w6-9hq9-33ch", - "url": "https://github.com/advisories/GHSA-v9w6-9hq9-33ch", - "type": "advisory" - }, - { - "title": "https://github.com/HKUDS/LightRAG/issues/1692", - "url": "https://github.com/HKUDS/LightRAG/issues/1692", - "type": "reference" - }, - { - "title": "https://github.com/HKUDS/LightRAG/commit/60777d535b719631680bcf5d0969bdef79ca4eaf", - "url": "https://github.com/HKUDS/LightRAG/commit/60777d535b719631680bcf5d0969bdef79ca4eaf", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6518", - "type": "advisory" - }, - { - "title": "GHSA-8gff-cf92-72pv", - "url": "https://github.com/advisories/GHSA-8gff-cf92-72pv", - "type": "advisory" - }, - { - "title": "https://github.com/PySpur-Dev/pyspur/issues/289", - "url": "https://github.com/PySpur-Dev/pyspur/issues/289", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6167", - "type": "advisory" - }, - { - "title": "GHSA-rp38-pj7h-r8q2", - "url": "https://github.com/advisories/GHSA-rp38-pj7h-r8q2", - "type": "advisory" - }, - { - "title": "https://github.com/themanojdesai/python-a2a/issues/40", - "url": "https://github.com/themanojdesai/python-a2a/issues/40", - "type": "reference" - }, - { - "title": "https://github.com/themanojdesai/python-a2a/releases/tag/v0.5.6", - "url": "https://github.com/themanojdesai/python-a2a/releases/tag/v0.5.6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4287", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Divigroup-RAP/PYTORCH/commit/5827d2061dcb4acd05ac5f8e65d8693a481ba0f5", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/150836", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/pull/150923", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5320", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/superboy-zjc/aa3dfa161d7b19d8a53ab4605792f2fe", - "type": "reference" - }, - { - "title": "GHSA-wmjh-cpqj-4v6x", - "url": "https://github.com/advisories/GHSA-wmjh-cpqj-4v6x", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wmjh-cpqj-4v6x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-10783", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/gradio-app/gradio/issues/13395", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/gradio-app/gradio/pull/13394", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/cve/CVE-2026-10783", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/submit/831451", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27167", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-h3h8-3v2v-rg7m", - "type": "vendor" - }, - { - "title": "GHSA-h3h8-3v2v-rg7m", - "url": "https://github.com/advisories/GHSA-h3h8-3v2v-rg7m", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/dfee0da06d0aa94b3c2684131e7898d5d5c1911e", - "url": "https://github.com/gradio-app/gradio/commit/dfee0da06d0aa94b3c2684131e7898d5d5c1911e", - "type": "reference" - }, - { - "title": "https://github.com/gradio-app/gradio/releases/tag/gradio@6.6.0", - "url": "https://github.com/gradio-app/gradio/releases/tag/gradio@6.6.0", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-63.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-63.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h3h8-3v2v-rg7m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-63", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-28415", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-pfjf-5gxr-995x", - "type": "vendor" - }, - { - "title": "GHSA-pfjf-5gxr-995x", - "url": "https://github.com/advisories/GHSA-pfjf-5gxr-995x", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/releases/tag/gradio%406.6.0", - "url": "https://github.com/gradio-app/gradio/releases/tag/gradio%406.6.0", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-65.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-65.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pfjf-5gxr-995x", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-65", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-28414", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-39mp-8hj3-5c49", - "type": "vendor" - }, - { - "title": "GHSA-39mp-8hj3-5c49", - "url": "https://github.com/advisories/GHSA-39mp-8hj3-5c49", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/6011b00d0154b85532fa901dd73cf8fa7d86fd04", - "url": "https://github.com/gradio-app/gradio/commit/6011b00d0154b85532fa901dd73cf8fa7d86fd04", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-64.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-64.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-39mp-8hj3-5c49", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-64", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-28416", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-jmh7-g254-2cq9", - "type": "vendor" - }, - { - "title": "GHSA-jmh7-g254-2cq9", - "url": "https://github.com/advisories/GHSA-jmh7-g254-2cq9", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/fc7c01ea1e581ef70be98fddf003b0c91315c7cc", - "url": "https://github.com/gradio-app/gradio/commit/fc7c01ea1e581ef70be98fddf003b0c91315c7cc", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-66.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2026-66.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jmh7-g254-2cq9", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-66", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48889", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-8jw3-6x8j-v96g", - "type": "exploit" - }, - { - "title": "GHSA-8jw3-6x8j-v96g", - "url": "https://github.com/advisories/GHSA-8jw3-6x8j-v96g", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2025-119.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2025-119.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8jw3-6x8j-v96g", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-119", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4515", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/superboy-zjc/2a727cb0c1d468f21a91e0416d006ffe", - "type": "exploit" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5173", - "type": "advisory" - }, - { - "title": "GHSA-55g9-6c2x-gf8q", - "url": "https://github.com/advisories/GHSA-55g9-6c2x-gf8q", - "type": "advisory" - }, - { - "title": "https://github.com/HumanSignal/label-studio-ml-backend/issues/765", - "url": "https://github.com/HumanSignal/label-studio-ml-backend/issues/765", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5150", - "type": "advisory" - }, - { - "title": "GHSA-j9wp-865g-rf48", - "url": "https://github.com/advisories/GHSA-j9wp-865g-rf48", - "type": "advisory" - }, - { - "title": "https://gist.github.com/superboy-zjc/56502343bcb12eb653081b426debf2c8", - "url": "https://gist.github.com/superboy-zjc/56502343bcb12eb653081b426debf2c8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5148", - "type": "advisory" - }, - { - "title": "GHSA-pgp9-g5q8-j3wp", - "url": "https://github.com/advisories/GHSA-pgp9-g5q8-j3wp", - "type": "advisory" - }, - { - "title": "https://github.com/FunAudioLLM/InspireMusic/issues/53", - "url": "https://github.com/FunAudioLLM/InspireMusic/issues/53", - "type": "reference" - }, - { - "title": "https://github.com/FunAudioLLM/InspireMusic/commit/784cbf8dde2cf1456ff808aeba23177e1810e7a9", - "url": "https://github.com/FunAudioLLM/InspireMusic/commit/784cbf8dde2cf1456ff808aeba23177e1810e7a9", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3121", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149800", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-196", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3136", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149821", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-197", - "type": "advisory" - }, - { - "title": "https://github.com/ARPANET-cybersecurity/vuldb/issues/2", - "url": "https://github.com/ARPANET-cybersecurity/vuldb/issues/2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3730", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/150835", - "type": "vendor" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/pull/150981", - "type": "patch" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/timocafe/tewart-pytorch/commit/46fc5d8e360127361211cb237d5f9eef0223e567", - "type": "patch" - }, - { - "title": "GHSA-887c-mr87-cxwp", - "url": "https://github.com/advisories/GHSA-887c-mr87-cxwp", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-887c-mr87-cxwp", - "type": "advisory" - }, - { - "title": "https://github.com/pytorch/pytorch/commit/01f226bfb8f2c343f5c614a6bbf685d91160f3af", - "url": "https://github.com/pytorch/pytorch/commit/01f226bfb8f2c343f5c614a6bbf685d91160f3af", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3162", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/InternLM/lmdeploy/issues/3255", - "type": "vendor" - }, - { - "title": "GHSA-7vc5-mjwp-c8fq", - "url": "https://github.com/advisories/GHSA-7vc5-mjwp-c8fq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3163", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/InternLM/lmdeploy/issues/3254", - "type": "exploit" - }, - { - "title": "GHSA-jfvg-qm4p-473x", - "url": "https://github.com/advisories/GHSA-jfvg-qm4p-473x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-4032", - "type": "advisory" - }, - { - "title": "GHSA-jmjf-mfhm-j3gf", - "url": "https://github.com/advisories/GHSA-jmjf-mfhm-j3gf", - "type": "advisory" - }, - { - "title": "https://github.com/inclusionAI/AWorld/issues/38", - "url": "https://github.com/inclusionAI/AWorld/issues/38", - "type": "reference" - }, - { - "title": "GHSA-ggpf-24jw-3fcw", - "url": "https://github.com/advisories/GHSA-ggpf-24jw-3fcw", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-ggpf-24jw-3fcw", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-ggpf-24jw-3fcw", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-rh4j-5rhw-hr54", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-rh4j-5rhw-hr54", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-ggpf-24jw-3fcw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48887", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/4fc1bf813ad80172c1db31264beaef7d93fe0601", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/18454", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-w6q7-j642-7c25", - "type": "vendor" - }, - { - "title": "GHSA-w6q7-j642-7c25", - "url": "https://github.com/advisories/GHSA-w6q7-j642-7c25", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-50.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-50.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w6q7-j642-7c25", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-50", - "type": "advisory" - }, - { - "title": "GHSA-j828-28rj-hfhp", - "url": "https://github.com/advisories/GHSA-j828-28rj-hfhp", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-j828-28rj-hfhp", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-j828-28rj-hfhp", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j828-28rj-hfhp", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48942", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/08bf7840780980c7568c573c70a6a8db94fd45ff", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/issues/17248", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/17623", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-6qc9-v4r8-22xg", - "type": "vendor" - }, - { - "title": "GHSA-6qc9-v4r8-22xg", - "url": "https://github.com/advisories/GHSA-6qc9-v4r8-22xg", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6qc9-v4r8-22xg", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-54", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48943", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/issues/17313", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-9hcf-v7m4-6m2j", - "type": "vendor" - }, - { - "title": "GHSA-9hcf-v7m4-6m2j", - "url": "https://github.com/advisories/GHSA-9hcf-v7m4-6m2j", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9hcf-v7m4-6m2j", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-55", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48944", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-vrq3-r879-7m65", - "type": "vendor" - }, - { - "title": "GHSA-vrq3-r879-7m65", - "url": "https://github.com/advisories/GHSA-vrq3-r879-7m65", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-vrq3-r879-7m65", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-30165", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/c21b99b91241409c2fdf9f3f8c542e8748b317be/vllm/distributed/device_communicators/shm_broadcast.py#L295-L301", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-9pcc-gvx5-r5wm", - "type": "vendor" - }, - { - "title": "GHSA-9pcc-gvx5-r5wm", - "url": "https://github.com/advisories/GHSA-9pcc-gvx5-r5wm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9pcc-gvx5-r5wm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62164", - "type": "advisory" - }, - { - "title": "ZeroPath", - "url": "https://zeropath.com/blog/cve-2025-62164-vllm-memory-corruption-summary", - "type": "advisory" - }, - { - "title": "GHSA-mrw7-hf4f-83pf", - "url": "https://github.com/advisories/GHSA-mrw7-hf4f-83pf", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/58fab50d82838d5014f4a14d991fdb9352c9c84b", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/27204", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-mrw7-hf4f-83pf", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mrw7-hf4f-83pf", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-66448", - "type": "advisory" - }, - { - "title": "ZeroPath", - "url": "https://zeropath.com/blog/cve-2025-66448-vllm-rce-automap", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/ffb08379d8870a1a81ba82b72797f196838d0c86", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/28126", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-8fr4-5q9j-m8gm", - "type": "vendor" - }, - { - "title": "GHSA-8fr4-5q9j-m8gm", - "url": "https://github.com/advisories/GHSA-8fr4-5q9j-m8gm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8fr4-5q9j-m8gm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25960", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/6f3b2047abd4a748e3db4a68543f8221358002c0", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/34743", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-qh4c-xf7m-gxfc", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-v359-jj2v-j536", - "type": "vendor" - }, - { - "title": "GHSA-v359-jj2v-j536", - "url": "https://github.com/advisories/GHSA-v359-jj2v-j536", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v359-jj2v-j536", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24779", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/f46d576c54fb8aeec5fc70560e850bed38ef17d7", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/32746", - "type": "patch" - }, - { - "title": "GHSA-qh4c-xf7m-gxfc", - "url": "https://github.com/advisories/GHSA-qh4c-xf7m-gxfc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-qh4c-xf7m-gxfc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22778", - "type": "advisory" - }, - { - "title": "OX Security", - "url": "https://www.ox.security/blog/cve-2026-22778-vllm-rce-vulnerability/", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/31987", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/32319", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/releases/tag/v0.14.1", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-4r2x-xpjr-7cvv", - "type": "vendor" - }, - { - "title": "GHSA-4r2x-xpjr-7cvv", - "url": "https://github.com/advisories/GHSA-4r2x-xpjr-7cvv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-4r2x-xpjr-7cvv", - "type": "advisory" - }, - { - "title": "TheHackerWire", - "url": "https://www.thehackerwire.com/vllm-rce-via-trust-remote-code-bypass-cve-2026-27893/", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27893", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/00bd08edeee5dd4d4c13277c0114a464011acf72", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/36192", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-7972-pg2x-xr59", - "type": "vendor" - }, - { - "title": "GHSA-7972-pg2x-xr59", - "url": "https://github.com/advisories/GHSA-7972-pg2x-xr59", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7972-pg2x-xr59", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-47155", - "type": "advisory" - }, - { - "title": "GHSA-3ww4-5jv9-j5gm", - "url": "https://github.com/advisories/GHSA-3ww4-5jv9-j5gm", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3ww4-5jv9-j5gm", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3ww4-5jv9-j5gm", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3ww4-5jv9-j5gm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44222", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/issues/32656", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-hpv8-x276-m59f", - "type": "vendor" - }, - { - "title": "GHSA-hpv8-x276-m59f", - "url": "https://github.com/advisories/GHSA-hpv8-x276-m59f", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hpv8-x276-m59f", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44223", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/38610", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-83vm-p52w-f9pw", - "type": "vendor" - }, - { - "title": "GHSA-83vm-p52w-f9pw", - "url": "https://github.com/advisories/GHSA-83vm-p52w-f9pw", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2026-145.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2026-145.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-83vm-p52w-f9pw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-145", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-9540", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/vllm/issues/37343", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/vllm/pull/37594", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://ingero.io/debugging-vllm-latency-minimax-ollama-mcp/", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/submit/814645", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34753", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-pf3h-qjgv-vcpr", - "type": "vendor" - }, - { - "title": "GHSA-pf3h-qjgv-vcpr", - "url": "https://github.com/advisories/GHSA-pf3h-qjgv-vcpr", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/pull/38482", - "url": "https://github.com/vllm-project/vllm/pull/38482", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/57861ae48d3493fa48b4d7d830b7ec9f995783e7", - "url": "https://github.com/vllm-project/vllm/commit/57861ae48d3493fa48b4d7d830b7ec9f995783e7", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pf3h-qjgv-vcpr", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34756", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/b111f8a61f100fdca08706f41f29ef3548de7380", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/37952", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-3mwp-wvh9-7528", - "type": "vendor" - }, - { - "title": "GHSA-3mwp-wvh9-7528", - "url": "https://github.com/advisories/GHSA-3mwp-wvh9-7528", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3mwp-wvh9-7528", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22807", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/78d13ea9de4b1ce5e4d8a5af9738fea71fb024e5", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/32194", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/releases/tag/v0.14.0", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-2pc9-4j83-qjmr", - "type": "vendor" - }, - { - "title": "GHSA-2pc9-4j83-qjmr", - "url": "https://github.com/advisories/GHSA-2pc9-4j83-qjmr", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2pc9-4j83-qjmr", - "type": "advisory" - }, - { - "title": "GHSA-mcmc-2m55-j8jj", - "url": "https://github.com/advisories/GHSA-mcmc-2m55-j8jj", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-mcmc-2m55-j8jj", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-mcmc-2m55-j8jj", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/pull/30649", - "url": "https://github.com/vllm-project/vllm/pull/30649", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mcmc-2m55-j8jj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62372", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/6613", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-pmqf-x6x8-p7qw", - "type": "vendor" - }, - { - "title": "GHSA-pmqf-x6x8-p7qw", - "url": "https://github.com/advisories/GHSA-pmqf-x6x8-p7qw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pmqf-x6x8-p7qw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62426", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/2a6dc67eb520ddb9c4138d8b35ed6fe6226997fb/vllm/entrypoints/chat_utils.py#L1602-L1610", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/2a6dc67eb520ddb9c4138d8b35ed6fe6226997fb/vllm/entrypoints/openai/serving_engine.py#L809-L814", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/3ada34f9cb4d1af763fdfa3b481862a93eb6bd2b", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/27205", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-69j4-grxj-j64p", - "type": "vendor" - }, - { - "title": "GHSA-69j4-grxj-j64p", - "url": "https://github.com/advisories/GHSA-69j4-grxj-j64p", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-69j4-grxj-j64p", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59425", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/4b946d693e0af15740e9ca9c0e059d5f333b1083/vllm/entrypoints/openai/api_server.py#L1270-L1274", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/ee10d7e6ff5875386c7f136ce8b5f525c8fcef48", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/releases/tag/v0.11.0", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-wr9h-g72x-mwhm", - "type": "vendor" - }, - { - "title": "GHSA-wr9h-g72x-mwhm", - "url": "https://github.com/advisories/GHSA-wr9h-g72x-mwhm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wr9h-g72x-mwhm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61620", - "type": "advisory" - }, - { - "title": "GHSA-6fvq-23cw-5628", - "url": "https://github.com/advisories/GHSA-6fvq-23cw-5628", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-6fvq-23cw-5628", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-6fvq-23cw-5628", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/pull/25794", - "url": "https://github.com/vllm-project/vllm/pull/25794", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/7977e5027c2250a4abc1f474c5619c40b4e5682f", - "url": "https://github.com/vllm-project/vllm/commit/7977e5027c2250a4abc1f474c5619c40b4e5682f", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6fvq-23cw-5628", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48956", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/d8b736f913a59117803d6701521d2e4861701944", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/23267", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-rxc4-3w6r-4v47", - "type": "vendor" - }, - { - "title": "GHSA-rxc4-3w6r-4v47", - "url": "https://github.com/advisories/GHSA-rxc4-3w6r-4v47", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rxc4-3w6r-4v47", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-9141", - "type": "advisory" - }, - { - "title": "GHSA-79j6-g2m3-jgfw", - "url": "https://github.com/advisories/GHSA-79j6-g2m3-jgfw", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/security/advisories/GHSA-79j6-g2m3-jgfw", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-79j6-g2m3-jgfw", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/pull/21396", - "url": "https://github.com/vllm-project/vllm/pull/21396", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/4594fc3b281713bd3d7634405b4a1393af40d294", - "url": "https://github.com/vllm-project/vllm/commit/4594fc3b281713bd3d7634405b4a1393af40d294", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-79j6-g2m3-jgfw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46560", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/8cac35ba435906fb7eb07e44fe1a8c26e8744f4e/vllm/model_executor/models/phi4mm.py#L1182-L1197", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-vc6m-hm49-g9qg", - "type": "vendor" - }, - { - "title": "GHSA-vc6m-hm49-g9qg", - "url": "https://github.com/advisories/GHSA-vc6m-hm49-g9qg", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-vc6m-hm49-g9qg", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29770", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/blob/53be4a863486d02bd96a59c674bbec23eec508f6/vllm/model_executor/guided_decoding/outlines_logits_processors.py", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/14837", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/security/advisories/GHSA-mgrm-fgjv-mhv8", - "type": "vendor" - }, - { - "title": "GHSA-mgrm-fgjv-mhv8", - "url": "https://github.com/advisories/GHSA-mgrm-fgjv-mhv8", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-223.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-223.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mgrm-fgjv-mhv8", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-223", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2733", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://magnificent-dill-351.notion.site/Command-Execution-in-Openmanus-2025-3-13-1b6c693918ed80b2826ef6bb385693fa", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1953", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/aibrix/issues/749", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/aibrix/pull/752", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/vllm-project/aibrix/pull/752/commits/3d25d95aebd66f24a549200edcebc5ea423b317a", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11041", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/00136195-11e0-4ad0-98d5-72db066e867f", - "type": "exploit" - }, - { - "title": "GHSA-5vqr-wprc-cpp7", - "url": "https://github.com/advisories/GHSA-5vqr-wprc-cpp7", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/blob/7193774b1ff8603ad5bf4598e5efba0d9a39b436/vllm/distributed/device_communicators/shm_broadcast.py#L441-L443", - "url": "https://github.com/vllm-project/vllm/blob/7193774b1ff8603ad5bf4598e5efba0d9a39b436/vllm/distributed/device_communicators/shm_broadcast.py#L441-L443", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5vqr-wprc-cpp7", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9053", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/75a544f3-34a3-4da0-b5a3-1495cb031e09", - "type": "exploit" - }, - { - "title": "GHSA-cj47-qj6g-x7r4", - "url": "https://github.com/advisories/GHSA-cj47-qj6g-x7r4", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-222.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-222.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cj47-qj6g-x7r4", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-222", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2148", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/147722", - "type": "reference" - }, - { - "title": "GHSA-c678-jfcj-6jmf", - "url": "https://github.com/advisories/GHSA-c678-jfcj-6jmf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-c678-jfcj-6jmf", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-189.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-189.yaml", - "type": "reference" - }, - { - "title": "https://github.com/pytorch/pytorch/blob/b0a67c7495bb11ecb23e556058db059ba48354af/torch/autograd/profiler.py#L990", - "url": "https://github.com/pytorch/pytorch/blob/b0a67c7495bb11ecb23e556058db059ba48354af/torch/autograd/profiler.py#L990", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-189", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2149", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/147818", - "type": "reference" - }, - { - "title": "GHSA-x3gm-94wq-g975", - "url": "https://github.com/advisories/GHSA-x3gm-94wq-g975", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x3gm-94wq-g975", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-190.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-190.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-190", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2953", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/blob/main/SECURITY.md#untrusted-models", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149274", - "type": "exploit" - }, - { - "title": "GHSA-3749-ghw9-m3mg", - "url": "https://github.com/advisories/GHSA-3749-ghw9-m3mg", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3749-ghw9-m3mg", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-191.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-191.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-191", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2998", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149622", - "type": "vendor" - }, - { - "title": "GHSA-f4hp-rmr7-r7v8", - "url": "https://github.com/advisories/GHSA-f4hp-rmr7-r7v8", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f4hp-rmr7-r7v8", - "type": "advisory" - }, - { - "title": "https://github.com/pytorch/pytorch/commit/494518046816d29099b7d056a74ffa5c244fdcdd", - "url": "https://github.com/pytorch/pytorch/commit/494518046816d29099b7d056a74ffa5c244fdcdd", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-192.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-192.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-192", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2999", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-vgrw-7cvw-pwgx", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-193.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2025-193.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-193", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3000", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149623", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-194", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3001", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/pytorch/pytorch/issues/149626", - "type": "vendor" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-195", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10569", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/7192bcbb-08a3-4d22-a321-9c6d19dbfc74", - "type": "exploit" - }, - { - "title": "GHSA-7xmc-vhjp-qv5q", - "url": "https://github.com/advisories/GHSA-7xmc-vhjp-qv5q", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/blob/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/components/dataframe.py#L263", - "url": "https://github.com/gradio-app/gradio/blob/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/components/dataframe.py#L263", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7xmc-vhjp-qv5q", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10624", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/e8d0b248-8feb-4c23-9ef9-be4d1e868374", - "type": "exploit" - }, - { - "title": "GHSA-rvgh-pr46-x7gg", - "url": "https://github.com/advisories/GHSA-rvgh-pr46-x7gg", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/blob/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/components/datetime.py#L133-L136", - "url": "https://github.com/gradio-app/gradio/blob/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/components/datetime.py#L133-L136", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rvgh-pr46-x7gg", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10648", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/667d664d-8189-458c-8ed7-483fe8f33c76", - "type": "exploit" - }, - { - "title": "GHSA-pgfv-gvc5-prfg", - "url": "https://github.com/advisories/GHSA-pgfv-gvc5-prfg", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/blame/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/processing_utils.py#L234", - "url": "https://github.com/gradio-app/gradio/blame/98cbcaef827de7267462ccba180c7b2ffb1e825d/gradio/processing_utils.py#L234", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pgfv-gvc5-prfg", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12217", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/0439bf3d-cb38-43a5-8314-0fadf85cc5a0", - "type": "reference" - }, - { - "title": "GHSA-prpg-p95c-32fv", - "url": "https://github.com/advisories/GHSA-prpg-p95c-32fv", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/blob/67e4044c9ca8358eceeb1fa72fa415df03397d20/gradio/utils.py#L1061-L1074", - "url": "https://github.com/gradio-app/gradio/blob/67e4044c9ca8358eceeb1fa72fa415df03397d20/gradio/utils.py#L1061-L1074", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-prpg-p95c-32fv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8021", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/adc23067-ec04-47ef-9265-afd452071888", - "type": "exploit" - }, - { - "title": "GHSA-7v2w-h4gh-w5cv", - "url": "https://github.com/advisories/GHSA-7v2w-h4gh-w5cv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7v2w-h4gh-w5cv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8966", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/f1718c47137f9c60240da7afe5e3290aa0f1cb47", - "type": "reference" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/7b5932bb-58d1-4e71-b85c-43dc40522ff2", - "type": "exploit" - }, - { - "title": "GHSA-5cpq-9538-jm2j", - "url": "https://github.com/advisories/GHSA-5cpq-9538-jm2j", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5cpq-9538-jm2j", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2967", - "type": "advisory" - }, - { - "title": "GHSA-xfqf-5rhg-5c73", - "url": "https://github.com/advisories/GHSA-xfqf-5rhg-5c73", - "type": "advisory" - }, - { - "title": "https://github.com/yaowenxiao721/Poc/blob/main/Concretecms/Concretecms-poc5.md", - "url": "https://github.com/yaowenxiao721/Poc/blob/main/Concretecms/Concretecms-poc5.md", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9052", - "type": "advisory" - }, - { - "title": "GHSA-pgr7-mhp5-fgjp", - "url": "https://github.com/advisories/GHSA-pgr7-mhp5-fgjp", - "type": "advisory" - }, - { - "title": "https://huntr.com/bounties/ea75728f-4efe-4a3d-9f53-33f2c908e9f8", - "url": "https://huntr.com/bounties/ea75728f-4efe-4a3d-9f53-33f2c908e9f8", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/blob/32e7db25365415841ebc7c4215851743fbb1bad1/vllm/distributed/parallel_state.py#L480", - "url": "https://github.com/vllm-project/vllm/blob/32e7db25365415841ebc7c4215851743fbb1bad1/vllm/distributed/parallel_state.py#L480", - "type": "reference" - }, - { - "title": "https://github.com/vllm-project/vllm/blob/v0.8.1/vllm/distributed/parallel_state.py#L457", - "url": "https://github.com/vllm-project/vllm/blob/v0.8.1/vllm/distributed/parallel_state.py#L457", - "type": "reference" - }, - { - "title": "https://github.com/github/advisory-database/pull/5444", - "url": "https://github.com/github/advisory-database/pull/5444", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pgr7-mhp5-fgjp", - "type": "advisory" - }, - { - "title": "GHSA-hh3j-9m59-p8vc", - "url": "https://github.com/advisories/GHSA-hh3j-9m59-p8vc", - "type": "advisory" - }, - { - "title": "https://huntr.com/bounties/e467ec92-0ad1-4461-8468-1beabf701b9f", - "url": "https://huntr.com/bounties/e467ec92-0ad1-4461-8468-1beabf701b9f", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hh3j-9m59-p8vc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4940", - "type": "advisory" - }, - { - "title": "GHSA-g6c9-f4xm-9j4x", - "url": "https://github.com/advisories/GHSA-g6c9-f4xm-9j4x", - "type": "advisory" - }, - { - "title": "GHSA-564p-rx2q-4c8v", - "url": "https://github.com/advisories/GHSA-564p-rx2q-4c8v", - "type": "advisory" - }, - { - "title": "https://huntr.com/bounties/2a284ff6-cc6c-4a10-b72e-1bb31c842bca", - "url": "https://huntr.com/bounties/2a284ff6-cc6c-4a10-b72e-1bb31c842bca", - "type": "reference" - }, - { - "title": "https://huntr.com/bounties/35aaea93-6895-4f03-9c1b-cd992665aa60", - "url": "https://huntr.com/bounties/35aaea93-6895-4f03-9c1b-cd992665aa60", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-564p-rx2q-4c8v", - "type": "advisory" - }, - { - "title": "ZeroPath analysis", - "url": "https://zeropath.com/blog/critical-rce-bentoml-cve-2025-32375", - "type": "analysis" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32375", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-7v4r-c989-xh26", - "type": "vendor" - }, - { - "title": "GHSA-7v4r-c989-xh26", - "url": "https://github.com/advisories/GHSA-7v4r-c989-xh26", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2025-32.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2025-32.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7v4r-c989-xh26", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-32", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27520", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/b35f4f4fcc53a8c3fe8ed9c18a013fe0a728e194", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-33xw-247w-6hmc", - "type": "exploit" - }, - { - "title": "GHSA-33xw-247w-6hmc", - "url": "https://github.com/advisories/GHSA-33xw-247w-6hmc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-33xw-247w-6hmc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40610", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/5fb7cd41f92e2a56b45391284cf15b9ac9963a1f", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/releases/tag/v1.4.39", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-mcfx-4vc6-qgxv", - "type": "vendor" - }, - { - "title": "GHSA-mcfx-4vc6-qgxv", - "url": "https://github.com/advisories/GHSA-mcfx-4vc6-qgxv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mcfx-4vc6-qgxv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44345", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-78f9-r8mh-4xm2", - "type": "vendor" - }, - { - "title": "GHSA-78f9-r8mh-4xm2", - "url": "https://github.com/advisories/GHSA-78f9-r8mh-4xm2", - "type": "advisory" - }, - { - "title": "https://github.com/bentoml/BentoML/security/advisories/GHSA-w2pm-x38x-jp44", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-w2pm-x38x-jp44", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-189.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-189.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-78f9-r8mh-4xm2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-189", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44346", - "type": "advisory" - }, - { - "title": "GHSA-w2pm-x38x-jp44", - "url": "https://github.com/advisories/GHSA-w2pm-x38x-jp44", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-190.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-190.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w2pm-x38x-jp44", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-190", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-35043", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-fgv4-6jr3-jgfw", - "type": "vendor" - }, - { - "title": "GHSA-fgv4-6jr3-jgfw", - "url": "https://github.com/advisories/GHSA-fgv4-6jr3-jgfw", - "type": "advisory" - }, - { - "title": "https://nvd.nist.gov/vuln/detail/CVE-2026-33744", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-33744", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-158.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-158.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fgv4-6jr3-jgfw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-158", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-35044", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-v959-cwq9-7hr6", - "type": "vendor" - }, - { - "title": "GHSA-v959-cwq9-7hr6", - "url": "https://github.com/advisories/GHSA-v959-cwq9-7hr6", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-159.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-159.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v959-cwq9-7hr6", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-159", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27905", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/4e0eb007765ac04c7924220d643f264715cc9670", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-m6w7-qv66-g3mf", - "type": "vendor" - }, - { - "title": "GHSA-m6w7-qv66-g3mf", - "url": "https://github.com/advisories/GHSA-m6w7-qv66-g3mf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m6w7-qv66-g3mf", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-jfjg-vc52-wqvf", - "type": "vendor" - }, - { - "title": "GHSA-jfjg-vc52-wqvf", - "url": "https://github.com/advisories/GHSA-jfjg-vc52-wqvf", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-157.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/bentoml/PYSEC-2026-157.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jfjg-vc52-wqvf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-157", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24123", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/84d08cfeb40c5f2ce71b3d3444bbaa0fb16b5ca4", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/releases/tag/v1.4.34", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-6r62-w2q3-48hf", - "type": "vendor" - }, - { - "title": "GHSA-6r62-w2q3-48hf", - "url": "https://github.com/advisories/GHSA-6r62-w2q3-48hf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6r62-w2q3-48hf", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54381", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/commit/534c3584621da4ab954bdc3d814cc66b95ae5fb8", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/bentoml/BentoML/security/advisories/GHSA-mrmq-3q62-6cc8", - "type": "vendor" - }, - { - "title": "GHSA-mrmq-3q62-6cc8", - "url": "https://github.com/advisories/GHSA-mrmq-3q62-6cc8", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mrmq-3q62-6cc8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9056", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/a24a13c2-0300-4a95-b26a-ac7fe8f6521b", - "type": "reference" - }, - { - "title": "GHSA-hw8j-hw49-752c", - "url": "https://github.com/advisories/GHSA-hw8j-hw49-752c", - "type": "advisory" - }, - { - "title": "https://github.com/bentoml/BentoML/blob/a6f5f937be6ec278f3d4f3bbc6f3c8f9564820d7/src/bentoml/_internal/io_descriptors/file.py#L293", - "url": "https://github.com/bentoml/BentoML/blob/a6f5f937be6ec278f3d4f3bbc6f3c8f9564820d7/src/bentoml/_internal/io_descriptors/file.py#L293", - "type": "reference" - }, - { - "title": "https://github.com/bentoml/BentoML/blob/v1.4.5/src/bentoml/_internal/io_descriptors/file.py#L293C9-L293C66", - "url": "https://github.com/bentoml/BentoML/blob/v1.4.5/src/bentoml/_internal/io_descriptors/file.py#L293C9-L293C66", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hw8j-hw49-752c", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9070", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/7be6fc22-be18-44ee-a001-ac7158d5e1a5", - "type": "reference" - }, - { - "title": "GHSA-9g44-gwvm-hc44", - "url": "https://github.com/advisories/GHSA-9g44-gwvm-hc44", - "type": "advisory" - }, - { - "title": "https://github.com/bentoml/BentoML/blob/a6f5f937be6ec278f3d4f3bbc6f3c8f9564820d7/src/bentoml/_internal/server/runner_app.py#L297", - "url": "https://github.com/bentoml/BentoML/blob/a6f5f937be6ec278f3d4f3bbc6f3c8f9564820d7/src/bentoml/_internal/server/runner_app.py#L297", - "type": "reference" - }, - { - "title": "https://github.com/bentoml/BentoML/blob/v1.4.5/src/bentoml/_internal/server/runner_app.py#L301", - "url": "https://github.com/bentoml/BentoML/blob/v1.4.5/src/bentoml/_internal/server/runner_app.py#L301", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9g44-gwvm-hc44", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24357", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/commit/d3d6bb13fb62da3234addf6574922a4ec0513d04", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/vllm-project/vllm/pull/12366", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://pytorch.org/docs/stable/generated/torch.load.html", - "type": "reference" - }, - { - "title": "GHSA-rh4j-5rhw-hr54", - "url": "https://github.com/advisories/GHSA-rh4j-5rhw-hr54", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/releases/tag/v0.7.0", - "url": "https://github.com/vllm-project/vllm/releases/tag/v0.7.0", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rh4j-5rhw-hr54", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-58.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/vllm/PYSEC-2025-58.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-58", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-45146", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/EDMPL/Vulnerability-Research/blob/main/CVE-2025-45146/README.md", - "type": "exploit" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/codefuse-ai/ModelCache/blob/e053e0d57b532d4ad9378d2f31bb85a009b77d64/modelcache/manager/data_manager.py#L84C1-L84C43", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/codefuse-ai/ModelCache/blob/e053e0d57b532d4ad9378d2f31bb85a009b77d64/modelcache/manager/factory.py#L18C1-L18C71", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23042", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-j2jg-fq62-7c3h", - "type": "exploit" - }, - { - "title": "GHSA-j2jg-fq62-7c3h", - "url": "https://github.com/advisories/GHSA-j2jg-fq62-7c3h", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/6b63fdec441b5c9bf910f910a2505d8defbb6bf8", - "url": "https://github.com/gradio-app/gradio/commit/6b63fdec441b5c9bf910f910a2505d8defbb6bf8", - "type": "reference" - }, - { - "title": "https://github.com/gradio-app/gradio/releases/tag/gradio%405.11.0", - "url": "https://github.com/gradio-app/gradio/releases/tag/gradio%405.11.0", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2025-118.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2025-118.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j2jg-fq62-7c3h", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2025-118", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11954", - "type": "advisory" - }, - { - "title": "GHSA-xr3m-6gq6-22cg", - "url": "https://github.com/advisories/GHSA-xr3m-6gq6-22cg", - "type": "advisory" - }, - { - "title": "https://github.com/pimcore/pimcore/security/advisories/GHSA-xr3m-6gq6-22cg", - "url": "https://github.com/pimcore/pimcore/security/advisories/GHSA-xr3m-6gq6-22cg", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10761", - "type": "advisory" - }, - { - "title": "GHSA-69cg-w8vm-h229", - "url": "https://github.com/advisories/GHSA-69cg-w8vm-h229", - "type": "advisory" - }, - { - "title": "https://github.com/umbraco/Umbraco-CMS/security/advisories/GHSA-69cg-w8vm-h229", - "url": "https://github.com/umbraco/Umbraco-CMS/security/advisories/GHSA-69cg-w8vm-h229", - "type": "reference" - }, - { - "title": "https://drive.google.com/file/d/1YoZgdlS3QT7Xu005j9RO-FFUT8RbB0Da/view?usp=sharing", - "url": "https://drive.google.com/file/d/1YoZgdlS3QT7Xu005j9RO-FFUT8RbB0Da/view?usp=sharing", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48052", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://gist.github.com/AfterSnows/45ffc23797f9127e00755376cc610e12", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://rumbling-slice-eb0.notion.site/FULL-SSRF-in-gr-DownloadButton-in-gradio-app-gradio-870b21e0908b48cbafd914719ac1a4e6?pvs=4", - "type": "exploit" - }, - { - "title": "GHSA-3gf9-wv65-gwh9", - "url": "https://github.com/advisories/GHSA-3gf9-wv65-gwh9", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3gf9-wv65-gwh9", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51751", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-rhm9-gp5p-5248", - "type": "exploit" - }, - { - "title": "GHSA-rhm9-gp5p-5248", - "url": "https://github.com/advisories/GHSA-rhm9-gp5p-5248", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-275.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-275.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rhm9-gp5p-5248", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-275", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47164", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-77xq-6g77-h274", - "type": "advisory" - }, - { - "title": "GHSA-77xq-6g77-h274", - "url": "https://github.com/advisories/GHSA-77xq-6g77-h274", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/08b51590163b306fd874f543f6fcaf23ac7d2646", - "url": "https://github.com/gradio-app/gradio/commit/08b51590163b306fd874f543f6fcaf23ac7d2646", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-213.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-213.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-77xq-6g77-h274", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-213", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47166", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-37qc-qgx6-9xjv", - "type": "advisory" - }, - { - "title": "GHSA-37qc-qgx6-9xjv", - "url": "https://github.com/advisories/GHSA-37qc-qgx6-9xjv", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-197.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-197.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-37qc-qgx6-9xjv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-197", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47167", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-576c-3j53-r9jj", - "type": "advisory" - }, - { - "title": "GHSA-576c-3j53-r9jj", - "url": "https://github.com/advisories/GHSA-576c-3j53-r9jj", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-215.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-215.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-576c-3j53-r9jj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-215", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47168", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-hm3c-93pg-4cxw", - "type": "advisory" - }, - { - "title": "GHSA-hm3c-93pg-4cxw", - "url": "https://github.com/advisories/GHSA-hm3c-93pg-4cxw", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-198.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-198.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hm3c-93pg-4cxw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-198", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47867", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-8c87-gvhj-xm8m", - "type": "vendor" - }, - { - "title": "GHSA-8c87-gvhj-xm8m", - "url": "https://github.com/advisories/GHSA-8c87-gvhj-xm8m", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-216.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-216.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8c87-gvhj-xm8m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-216", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47869", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-j757-pf57-f8r4", - "type": "advisory" - }, - { - "title": "GHSA-j757-pf57-f8r4", - "url": "https://github.com/advisories/GHSA-j757-pf57-f8r4", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-199.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-199.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j757-pf57-f8r4", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-199", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47870", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-xh2x-3mrm-fwqm", - "type": "advisory" - }, - { - "title": "GHSA-xh2x-3mrm-fwqm", - "url": "https://github.com/advisories/GHSA-xh2x-3mrm-fwqm", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-218.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-218.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-xh2x-3mrm-fwqm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-218", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47871", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-279j-x4gx-hfrh", - "type": "advisory" - }, - { - "title": "GHSA-279j-x4gx-hfrh", - "url": "https://github.com/advisories/GHSA-279j-x4gx-hfrh", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-219.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-219.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-279j-x4gx-hfrh", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-219", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47872", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-gvv6-33j7-884g", - "type": "advisory" - }, - { - "title": "GHSA-gvv6-33j7-884g", - "url": "https://github.com/advisories/GHSA-gvv6-33j7-884g", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-220.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-220.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gvv6-33j7-884g", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-220", - "type": "advisory" - }, - { - "title": "GHSA-26jh-r8g2-6fpr", - "url": "https://github.com/advisories/GHSA-26jh-r8g2-6fpr", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/security/advisories/GHSA-26jh-r8g2-6fpr", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-26jh-r8g2-6fpr", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-26jh-r8g2-6fpr", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8768", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://access.redhat.com/security/cve/CVE-2024-8768", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://github.com/vllm-project/vllm/issues/7632", - "type": "reference" - }, - { - "title": "secalert@redhat.com", - "url": "https://github.com/vllm-project/vllm/pull/7746", - "type": "reference" - }, - { - "title": "GHSA-w2r7-9579-27hf", - "url": "https://github.com/advisories/GHSA-w2r7-9579-27hf", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w2r7-9579-27hf", - "type": "advisory" - }, - { - "title": "https://github.com/vllm-project/vllm/commit/e25fee57c2e69161bd261f5986dc5aeb198bbd42", - "url": "https://github.com/vllm-project/vllm/commit/e25fee57c2e69161bd261f5986dc5aeb198bbd42", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9277", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://rumbling-slice-eb0.notion.site/Remote-Redos-in-https-github-com-langflow-ai-langflow-067159ced0d5494e91b06071384969c4?pvs=4", - "type": "exploit" - }, - { - "title": "GHSA-355v-2rjx-fpx7", - "url": "https://github.com/advisories/GHSA-355v-2rjx-fpx7", - "type": "advisory" - }, - { - "title": "GHSA-4xx7-2cx3-x473", - "url": "https://github.com/advisories/GHSA-4xx7-2cx3-x473", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2024:6878", - "url": "https://access.redhat.com/errata/RHSA-2024:6878", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8863", - "type": "advisory" - }, - { - "title": "GHSA-pmhg-f7wc-c97m", - "url": "https://github.com/advisories/GHSA-pmhg-f7wc-c97m", - "type": "advisory" - }, - { - "title": "https://rumbling-slice-eb0.notion.site/Stored-XSS-through-TEXT-EXPLORER-in-aimhubio-aim-d0f07b7194724950a673498546d80d43?pvs=4", - "url": "https://rumbling-slice-eb0.notion.site/Stored-XSS-through-TEXT-EXPLORER-in-aimhubio-aim-d0f07b7194724950a673498546d80d43?pvs=4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4325", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/b34f084b-7d14-4f00-bc10-048a3a5aaf88", - "type": "exploit" - }, - { - "title": "GHSA-973g-55hp-3frw", - "url": "https://github.com/advisories/GHSA-973g-55hp-3frw", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/pull/8301", - "url": "https://github.com/gradio-app/gradio/pull/8301", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-973g-55hp-3frw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4941", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/ee1e2942e0a1ae84a08a05464e41c8108a03fa9c", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/39889ce1-298d-4568-aecd-7ae40c2ca58e", - "type": "exploit" - }, - { - "title": "GHSA-6v6g-j5fq-hpvw", - "url": "https://github.com/advisories/GHSA-6v6g-j5fq-hpvw", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-184.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-184.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6v6g-j5fq-hpvw", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-184", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-g6c9-f4xm-9j4x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38274", - "type": "advisory" - }, - { - "title": "GHSA-p5cg-6rfr-6mx8", - "url": "https://github.com/advisories/GHSA-p5cg-6rfr-6mx8", - "type": "advisory" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/F7AZYR7EXV6E5SQE2GYTNQE3NOENJCQ6", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/F7AZYR7EXV6E5SQE2GYTNQE3NOENJCQ6", - "type": "reference" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GHTIX55J4Q4LEOMLNEA4OZSWVEENQX7E", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GHTIX55J4Q4LEOMLNEA4OZSWVEENQX7E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34510", - "type": "advisory" - }, - { - "title": "GHSA-rvfh-h6c7-fc3c", - "url": "https://github.com/advisories/GHSA-rvfh-h6c7-fc3c", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-255.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-255.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rvfh-h6c7-fc3c", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-255", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34006", - "type": "advisory" - }, - { - "title": "GHSA-vvh5-7v3m-j3mj", - "url": "https://github.com/advisories/GHSA-vvh5-7v3m-j3mj", - "type": "advisory" - }, - { - "title": "http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-80585", - "url": "http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-80585", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/cd85e090f3feb06e6eff65d1499a67353d82d3cb", - "url": "https://github.com/moodle/moodle/commit/cd85e090f3feb06e6eff65d1499a67353d82d3cb", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4596", - "type": "advisory" - }, - { - "title": "GHSA-6f3v-2r2j-2rpr", - "url": "https://github.com/advisories/GHSA-6f3v-2r2j-2rpr", - "type": "advisory" - }, - { - "title": "https://github.com/kimai/kimai/releases/tag/2.16.0", - "url": "https://github.com/kimai/kimai/releases/tag/2.16.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34511", - "type": "advisory" - }, - { - "title": "GHSA-34rf-p3r3-58x2", - "url": "https://github.com/advisories/GHSA-34rf-p3r3-58x2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-34rf-p3r3-58x2", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31580", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://gist.github.com/1047524396/038c78f2f007345e6f497698ace2aa3d", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/pytorch/pytorch/commit/b5c3a17c2c207ebefcb85043f0cf94be9b2fef81", - "type": "patch" - }, - { - "title": "GHSA-5pcm-hx3q-hm94", - "url": "https://github.com/advisories/GHSA-5pcm-hx3q-hm94", - "type": "advisory" - }, - { - "title": "https://security.snyk.io/vuln/SNYK-PYTHON-TORCH-6649934", - "url": "https://security.snyk.io/vuln/SNYK-PYTHON-TORCH-6649934", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2024-252.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2024-252.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5pcm-hx3q-hm94", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-252", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31583", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://gist.github.com/1047524396/43e19a41f2b36503a4a228c32cdbc176", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/pytorch/pytorch/blob/v2.1.2/torch/csrc/jit/mobile/interpreter.cpp#L132", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/pytorch/pytorch/commit/9c7071b0e324f9fb68ab881283d6b8d388a4bcd2", - "type": "patch" - }, - { - "title": "GHSA-pg7h-5qx3-wjr3", - "url": "https://github.com/advisories/GHSA-pg7h-5qx3-wjr3", - "type": "advisory" - }, - { - "title": "https://security.snyk.io/vuln/SNYK-PYTHON-TORCH-6619806", - "url": "https://security.snyk.io/vuln/SNYK-PYTHON-TORCH-6619806", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-pg7h-5qx3-wjr3", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2024-251.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/torch/PYSEC-2024-251.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-251", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1728", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/16fbe9cd0cffa9f2a824a0165beb43446114eec7", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/9bb33b71-7995-425d-91cc-2c2a2f2a068a", - "type": "exploit" - }, - { - "title": "GHSA-m842-4qm8-7gpq", - "url": "https://github.com/advisories/GHSA-m842-4qm8-7gpq", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/security/advisories/GHSA-m842-4qm8-7gpq", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-m842-4qm8-7gpq", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m842-4qm8-7gpq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1183", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/2ad3d9e7ec6c8eeea59774265b44f11df7394bb4", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/103434f9-87d2-42ea-9907-194a3c25007c", - "type": "exploit" - }, - { - "title": "GHSA-qh6x-j82h-vpf9", - "url": "https://github.com/advisories/GHSA-qh6x-j82h-vpf9", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/commit/7ba8c5da45b004edd12c0460be9222f5b5f5f055", - "url": "https://github.com/gradio-app/gradio/commit/7ba8c5da45b004edd12c0460be9222f5b5f5f055", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-qh6x-j82h-vpf9", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-14316", - "type": "advisory" - }, - { - "title": "GHSA-828r-r2c8-rfw3", - "url": "https://github.com/advisories/GHSA-828r-r2c8-rfw3", - "type": "advisory" - }, - { - "title": "https://github.com/kubevirt/kubevirt/pull/3686", - "url": "https://github.com/kubevirt/kubevirt/pull/3686", - "type": "reference" - }, - { - "title": "GHSA-3f95-mxq2-2f63", - "url": "https://github.com/advisories/GHSA-3f95-mxq2-2f63", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6236", - "type": "advisory" - }, - { - "title": "GHSA-jpmx-996v-48fm", - "url": "https://github.com/advisories/GHSA-jpmx-996v-48fm", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2023-6236", - "url": "https://access.redhat.com/security/cve/CVE-2023-6236", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2024:3580", - "url": "https://access.redhat.com/errata/RHSA-2024:3580", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2024:3581", - "url": "https://access.redhat.com/errata/RHSA-2024:3581", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2206", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/49d9c48537aa706bf72628e3640389470138bdc6", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/2286c1ed-b889-45d6-adda-7014ea06d98e", - "type": "exploit" - }, - { - "title": "GHSA-r364-m2j9-mf4h", - "url": "https://github.com/advisories/GHSA-r364-m2j9-mf4h", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-r364-m2j9-mf4h", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2057", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/bayuncao/vul-cve-16", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/bayuncao/vul-cve-16/tree/main/PoC.pkl", - "type": "reference" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/langchain-ai/langchain/pull/18695", - "type": "patch" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-278", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3078", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/qdrant/qdrant/commit/3ab5172e9c8f14fa1f7b24e7147eac74e2412b62", - "type": "patch" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/qdrant/qdrant/pull/3856", - "type": "patch" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/qdrant/qdrant/releases/tag/v1.8.3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1727", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/84802ee6a4806c25287344dce581f9548a99834a", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/a94d55fb-0770-4cbe-9b20-97a978a2ffff", - "type": "exploit" - }, - { - "title": "GHSA-48cq-79qq-6f7x", - "url": "https://github.com/advisories/GHSA-48cq-79qq-6f7x", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/security/advisories/GHSA-48cq-79qq-6f7x", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-48cq-79qq-6f7x", - "type": "reference" - }, - { - "title": "https://github.com/gradio-app/gradio/pull/7503", - "url": "https://github.com/gradio-app/gradio/pull/7503", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-48cq-79qq-6f7x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1729", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/e329f1fd38935213fe0e73962e8cbd5d3af6e87b", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/f6a10a8d-f538-4cb7-9bb2-85d9f5708124", - "type": "exploit" - }, - { - "title": "GHSA-hmx6-r76c-85g9", - "url": "https://github.com/advisories/GHSA-hmx6-r76c-85g9", - "type": "advisory" - }, - { - "title": "https://github.com/gradio-app/gradio/security/advisories/GHSA-hmx6-r76c-85g9", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-hmx6-r76c-85g9", - "type": "reference" - }, - { - "title": "https://github.com/gradio-app/gradio/releases/tag/gradio%404.19.2", - "url": "https://github.com/gradio-app/gradio/releases/tag/gradio%404.19.2", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hmx6-r76c-85g9", - "type": "advisory" - }, - { - "title": "GHSA-3x9g-xfj5-fq84", - "url": "https://github.com/advisories/GHSA-3x9g-xfj5-fq84", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0964", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/d76bcaaaf0734aaf49a680f94ea9d4d22a602e70", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/25e25501-5918-429c-8541-88832dfd3741", - "type": "exploit" - }, - { - "title": "GHSA-f3h9-8phc-6gvh", - "url": "https://github.com/advisories/GHSA-f3h9-8phc-6gvh", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-261.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2024-261.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f3h9-8phc-6gvh", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-261", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7215", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://github.com/Chanzhaoyu/chatgpt-web/issues/2001", - "type": "exploit" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0960", - "type": "advisory" - }, - { - "title": "GHSA-7mgg-3rq2-hff4", - "url": "https://github.com/advisories/GHSA-7mgg-3rq2-hff4", - "type": "advisory" - }, - { - "title": "https://github.com/bayuncao/vul-cve-8", - "url": "https://github.com/bayuncao/vul-cve-8", - "type": "reference" - }, - { - "title": "https://github.com/bayuncao/vul-cve-8/blob/main/dataset.pkl", - "url": "https://github.com/bayuncao/vul-cve-8/blob/main/dataset.pkl", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51449", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/commit/1b9d4234d6c25ef250d882c7b90e1f4039ed2d76", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-6qm2-wpxq-7qh2", - "type": "advisory" - }, - { - "title": "GHSA-6qm2-wpxq-7qh2", - "url": "https://github.com/advisories/GHSA-6qm2-wpxq-7qh2", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-249.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-249.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6qm2-wpxq-7qh2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-249", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6572", - "type": "advisory" - }, - { - "title": "security@huntr.dev", - "url": "https://github.com/gradio-app/gradio/commit/5b5af1899dd98d63e1f9b48a93601c2db1f56520", - "type": "patch" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/21d2ff0c-d43a-4afd-bb4d-049ee8da5b5c", - "type": "patch" - }, - { - "title": "GHSA-gqvf-3hgp-5hxv", - "url": "https://github.com/advisories/GHSA-gqvf-3hgp-5hxv", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-255.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-255.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gqvf-3hgp-5hxv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-255", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7148", - "type": "advisory" - }, - { - "title": "GHSA-5fpq-3c9p-3r3w", - "url": "https://github.com/advisories/GHSA-5fpq-3c9p-3r3w", - "type": "advisory" - }, - { - "title": "https://drive.google.com/file/d/1ST3dD-iwUBgBNZ8tGaBbqVi1zRh5rLND/view", - "url": "https://drive.google.com/file/d/1ST3dD-iwUBgBNZ8tGaBbqVi1zRh5rLND/view", - "type": "reference" - }, - { - "title": "https://github.com/ShifuML/shifu/blob/20f589158adfc011c505664cf7bdf31e36ed62fa/src/main/java/ml/shifu/shifu/core/DataPurifier.java", - "url": "https://github.com/ShifuML/shifu/blob/20f589158adfc011c505664cf7bdf31e36ed62fa/src/main/java/ml/shifu/shifu/core/DataPurifier.java", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-41626", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://gist.github.com/impose1/590472eb0544ef1ec36c8a5a40122adb", - "type": "advisory" - }, - { - "title": "GHSA-v4q9-qgqf-7jwp", - "url": "https://github.com/advisories/GHSA-v4q9-qgqf-7jwp", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v4q9-qgqf-7jwp", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4245", - "type": "advisory" - }, - { - "title": "GHSA-jcwr-x25h-x5fh", - "url": "https://github.com/advisories/GHSA-jcwr-x25h-x5fh", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2023:3906", - "url": "https://access.redhat.com/errata/RHSA-2023:3906", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2022-4245", - "url": "https://access.redhat.com/security/cve/CVE-2022-4245", - "type": "reference" - }, - { - "title": "https://github.com/codehaus-plexus/plexus-utils/issues/3", - "url": "https://github.com/codehaus-plexus/plexus-utils/issues/3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38201", - "type": "advisory" - }, - { - "title": "GHSA-f4r5-q63f-gcww", - "url": "https://github.com/advisories/GHSA-f4r5-q63f-gcww", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-f4r5-q63f-gcww", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-f4r5-q63f-gcww", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/commit/9e5ac9f25cd400b16d5969f531cee28290543f2a", - "url": "https://github.com/keylime/keylime/commit/9e5ac9f25cd400b16d5969f531cee28290543f2a", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2023-38201", - "url": "https://access.redhat.com/security/cve/CVE-2023-38201", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-3686", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-3691", - "type": "advisory" - }, - { - "title": "GHSA-hx4h-676r-j3qp", - "url": "https://github.com/advisories/GHSA-hx4h-676r-j3qp", - "type": "advisory" - }, - { - "title": "https://gitee.com/layui/layui/issues/I7HDXZ", - "url": "https://gitee.com/layui/layui/issues/I7HDXZ", - "type": "reference" - }, - { - "title": "https://gitee.com/layui/layui/tree/v2.8.0", - "url": "https://gitee.com/layui/layui/tree/v2.8.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4361", - "type": "advisory" - }, - { - "title": "GHSA-3p62-6fjh-3p5h", - "url": "https://github.com/advisories/GHSA-3p62-6fjh-3p5h", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-3p62-6fjh-3p5h", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-3p62-6fjh-3p5h", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/a1cfe6e24e5b34792699a00b8b4a8016a5929e3a", - "url": "https://github.com/keycloak/keycloak/commit/a1cfe6e24e5b34792699a00b8b4a8016a5929e3a", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-3276", - "type": "advisory" - }, - { - "title": "GHSA-p2qf-9vp6-3jjq", - "url": "https://github.com/advisories/GHSA-p2qf-9vp6-3jjq", - "type": "advisory" - }, - { - "title": "https://fbdhhhh47.github.io/2023/06/06/hutool-XXE", - "url": "https://fbdhhhh47.github.io/2023/06/06/hutool-XXE", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-25082", - "type": "advisory" - }, - { - "title": "GHSA-h384-ph77-3699", - "url": "https://github.com/advisories/GHSA-h384-ph77-3699", - "type": "advisory" - }, - { - "title": "https://github.com/zwczou/weixin-python/pull/30", - "url": "https://github.com/zwczou/weixin-python/pull/30", - "type": "reference" - }, - { - "title": "https://github.com/zwczou/weixin-python/commit/e54abadc777715b6dcb545c13214d1dea63df6c9", - "url": "https://github.com/zwczou/weixin-python/commit/e54abadc777715b6dcb545c13214d1dea63df6c9", - "type": "reference" - }, - { - "title": "https://github.com/zwczou/weixin-python/releases/tag/v0.5.5", - "url": "https://github.com/zwczou/weixin-python/releases/tag/v0.5.5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-36401", - "type": "advisory" - }, - { - "title": "GHSA-g6h6-4fp6-w33w", - "url": "https://github.com/advisories/GHSA-g6h6-4fp6-w33w", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-2237", - "type": "advisory" - }, - { - "title": "GHSA-59fq-727j-hm3f", - "url": "https://github.com/advisories/GHSA-59fq-727j-hm3f", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak-nodejs-connect/security/advisories/GHSA-59fq-727j-hm3f", - "url": "https://github.com/keycloak/keycloak-nodejs-connect/security/advisories/GHSA-59fq-727j-hm3f", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak-nodejs-connect/commit/190a9470e234bbd9ac5d5de43f5a19aead9a2c21", - "url": "https://github.com/keycloak/keycloak-nodejs-connect/commit/190a9470e234bbd9ac5d5de43f5a19aead9a2c21", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1274", - "type": "advisory" - }, - { - "title": "GHSA-m4fv-gm5m-4725", - "url": "https://github.com/advisories/GHSA-m4fv-gm5m-4725", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-m4fv-gm5m-4725", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-m4fv-gm5m-4725", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/pull/16764", - "url": "https://github.com/keycloak/keycloak/pull/16764", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/fc3c61235fa30132123c17ed8702ff7b3a672fe9", - "url": "https://github.com/keycloak/keycloak/commit/fc3c61235fa30132123c17ed8702ff7b3a672fe9", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1438", - "type": "advisory" - }, - { - "title": "GHSA-w354-2f3c-qvg9", - "url": "https://github.com/advisories/GHSA-w354-2f3c-qvg9", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-w354-2f3c-qvg9", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-w354-2f3c-qvg9", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2022-1438", - "url": "https://access.redhat.com/security/cve/cve-2022-1438", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/blob/48835576daa158443f69917ac309e1a7c951bc87/services/src/main/java/org/keycloak/authentication/AuthenticationProcessor.java#L1045", - "url": "https://github.com/keycloak/keycloak/blob/48835576daa158443f69917ac309e1a7c951bc87/services/src/main/java/org/keycloak/authentication/AuthenticationProcessor.java#L1045", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25823", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-3x5j-9vwr-8rr5", - "type": "vendor" - }, - { - "title": "GHSA-3x5j-9vwr-8rr5", - "url": "https://github.com/advisories/GHSA-3x5j-9vwr-8rr5", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-16.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2023-16.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3x5j-9vwr-8rr5", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-16", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-15026", - "type": "advisory" - }, - { - "title": "GHSA-4jx2-hvqw-93j9", - "url": "https://github.com/advisories/GHSA-4jx2-hvqw-93j9", - "type": "advisory" - }, - { - "title": "https://github.com/3breadt/dd-plist/pull/26", - "url": "https://github.com/3breadt/dd-plist/pull/26", - "type": "reference" - }, - { - "title": "https://github.com/3breadt/dd-plist/commit/8c954e8d9f6f6863729e50105a8abf3f87fff74c", - "url": "https://github.com/3breadt/dd-plist/commit/8c954e8d9f6f6863729e50105a8abf3f87fff74c", - "type": "reference" - }, - { - "title": "https://github.com/3breadt/dd-plist/releases/tag/dd-plist-1.18", - "url": "https://github.com/3breadt/dd-plist/releases/tag/dd-plist-1.18", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-125087", - "type": "advisory" - }, - { - "title": "GHSA-3vrc-rrpw-r5pw", - "url": "https://github.com/advisories/GHSA-3vrc-rrpw-r5pw", - "type": "advisory" - }, - { - "title": "https://github.com/jmurty/java-xmlbuilder/issues/6", - "url": "https://github.com/jmurty/java-xmlbuilder/issues/6", - "type": "reference" - }, - { - "title": "https://github.com/jmurty/java-xmlbuilder/commit/e6fddca201790abab4f2c274341c0bb8835c3e73", - "url": "https://github.com/jmurty/java-xmlbuilder/commit/e6fddca201790abab4f2c274341c0bb8835c3e73", - "type": "reference" - }, - { - "title": "https://github.com/jmurty/java-xmlbuilder/releases/tag/v1.2", - "url": "https://github.com/jmurty/java-xmlbuilder/releases/tag/v1.2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23921", - "type": "advisory" - }, - { - "title": "GHSA-97qf-pq7x-964m", - "url": "https://github.com/advisories/GHSA-97qf-pq7x-964m", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23922", - "type": "advisory" - }, - { - "title": "GHSA-grmj-gpwm-98ww", - "url": "https://github.com/advisories/GHSA-grmj-gpwm-98ww", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-10073", - "type": "advisory" - }, - { - "title": "GHSA-84mm-prjg-49xm", - "url": "https://github.com/advisories/GHSA-84mm-prjg-49xm", - "type": "advisory" - }, - { - "title": "https://github.com/tinymighty/wiki-seo/pull/21", - "url": "https://github.com/tinymighty/wiki-seo/pull/21", - "type": "reference" - }, - { - "title": "https://github.com/tinymighty/wiki-seo/commit/089a5797be612b18a820f9f1e6593ad9a91b1dba", - "url": "https://github.com/tinymighty/wiki-seo/commit/089a5797be612b18a820f9f1e6593ad9a91b1dba", - "type": "reference" - }, - { - "title": "https://github.com/tinymighty/wiki-seo/releases/tag/1.2.2", - "url": "https://github.com/tinymighty/wiki-seo/releases/tag/1.2.2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-0229", - "type": "advisory" - }, - { - "title": "GHSA-5465-xc2j-6p84", - "url": "https://github.com/advisories/GHSA-5465-xc2j-6p84", - "type": "advisory" - }, - { - "title": "https://github.com/openshift/apiserver-library-go/pull/97", - "url": "https://github.com/openshift/apiserver-library-go/pull/97", - "type": "reference" - }, - { - "title": "https://github.com/openshift/apiserver-library-go/commit/30f75d79e424ca462c6de53ee8b93f91183763e6", - "url": "https://github.com/openshift/apiserver-library-go/commit/30f75d79e424ca462c6de53ee8b93f91183763e6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-10029", - "type": "advisory" - }, - { - "title": "GHSA-rh3m-pr36-xh2f", - "url": "https://github.com/advisories/GHSA-rh3m-pr36-xh2f", - "type": "advisory" - }, - { - "title": "https://github.com/kelvinmo/simplexrd/commit/4c9f2e028523ed705b555eca2c18c64e71f1a35d", - "url": "https://github.com/kelvinmo/simplexrd/commit/4c9f2e028523ed705b555eca2c18c64e71f1a35d", - "type": "reference" - }, - { - "title": "https://github.com/kelvinmo/simplexrd/releases/tag/v3.1.1", - "url": "https://github.com/kelvinmo/simplexrd/releases/tag/v3.1.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-15011", - "type": "advisory" - }, - { - "title": "GHSA-77cc-w3wm-6whp", - "url": "https://github.com/advisories/GHSA-77cc-w3wm-6whp", - "type": "advisory" - }, - { - "title": "https://github.com/e-Contract/dssp/commit/ec4238349691ec66dd30b416ec6eaab02d722302", - "url": "https://github.com/e-Contract/dssp/commit/ec4238349691ec66dd30b416ec6eaab02d722302", - "type": "reference" - }, - { - "title": "https://github.com/e-Contract/dssp/releases/tag/dssp-1.3.2", - "url": "https://github.com/e-Contract/dssp/releases/tag/dssp-1.3.2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-36640", - "type": "advisory" - }, - { - "title": "GHSA-wg99-5vrx-j2gg", - "url": "https://github.com/advisories/GHSA-wg99-5vrx-j2gg", - "type": "advisory" - }, - { - "title": "https://github.com/bonitasoft/bonita-connector-webservice/pull/17", - "url": "https://github.com/bonitasoft/bonita-connector-webservice/pull/17", - "type": "reference" - }, - { - "title": "https://github.com/bonitasoft/bonita-connector-webservice/commit/a12ad691c05af19e9061d7949b6b828ce48815d5", - "url": "https://github.com/bonitasoft/bonita-connector-webservice/commit/a12ad691c05af19e9061d7949b6b828ce48815d5", - "type": "reference" - }, - { - "title": "https://github.com/bonitasoft/bonita-connector-webservice/releases/tag/1.3.1", - "url": "https://github.com/bonitasoft/bonita-connector-webservice/releases/tag/1.3.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-36641", - "type": "advisory" - }, - { - "title": "GHSA-g4r8-28fp-f255", - "url": "https://github.com/advisories/GHSA-g4r8-28fp-f255", - "type": "advisory" - }, - { - "title": "https://github.com/gturri/aXMLRPC/commit/ad6615b3ec41353e614f6ea5fdd5b046442a832b", - "url": "https://github.com/gturri/aXMLRPC/commit/ad6615b3ec41353e614f6ea5fdd5b046442a832b", - "type": "reference" - }, - { - "title": "https://github.com/gturri/aXMLRPC/releases/tag/aXMLRPC-1.12.1", - "url": "https://github.com/gturri/aXMLRPC/releases/tag/aXMLRPC-1.12.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-20151", - "type": "advisory" - }, - { - "title": "GHSA-j69f-fgh5-f7mc", - "url": "https://github.com/advisories/GHSA-j69f-fgh5-f7mc", - "type": "advisory" - }, - { - "title": "https://github.com/itext/rups/commit/ac5590925874ef810018a6b60fec216eee54fb32", - "url": "https://github.com/itext/rups/commit/ac5590925874ef810018a6b60fec216eee54fb32", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-25053", - "type": "advisory" - }, - { - "title": "GHSA-79mp-cxp4-9p6r", - "url": "https://github.com/advisories/GHSA-79mp-cxp4-9p6r", - "type": "advisory" - }, - { - "title": "https://github.com/moappi/json2html/commit/2d3d24d971b19a8ed1fb823596300b9835d55801", - "url": "https://github.com/moappi/json2html/commit/2d3d24d971b19a8ed1fb823596300b9835d55801", - "type": "reference" - }, - { - "title": "https://github.com/moappi/json2html/releases/tag/1.2.0", - "url": "https://github.com/moappi/json2html/releases/tag/1.2.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4725", - "type": "advisory" - }, - { - "title": "GHSA-f5h9-qx38-2hgp", - "url": "https://github.com/advisories/GHSA-f5h9-qx38-2hgp", - "type": "advisory" - }, - { - "title": "https://github.com/aws-amplify/aws-sdk-android/pull/3100", - "url": "https://github.com/aws-amplify/aws-sdk-android/pull/3100", - "type": "reference" - }, - { - "title": "https://github.com/aws-amplify/aws-sdk-android/commit/c3e6d69422e1f0c80fe53f2d757b8df97619af2b", - "url": "https://github.com/aws-amplify/aws-sdk-android/commit/c3e6d69422e1f0c80fe53f2d757b8df97619af2b", - "type": "reference" - }, - { - "title": "https://github.com/aws-amplify/aws-sdk-android/releases/tag/release_v2.59.1", - "url": "https://github.com/aws-amplify/aws-sdk-android/releases/tag/release_v2.59.1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4272", - "type": "advisory" - }, - { - "title": "GHSA-gw62-c7w4-x449", - "url": "https://github.com/advisories/GHSA-gw62-c7w4-x449", - "type": "advisory" - }, - { - "title": "https://github.com/studygolang/studygolang/commit/0fb30f9640bd5fa0cae58922eac6c00bb1a94391", - "url": "https://github.com/studygolang/studygolang/commit/0fb30f9640bd5fa0cae58922eac6c00bb1a94391", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4526", - "type": "advisory" - }, - { - "title": "GHSA-287q-jfcp-9vhv", - "url": "https://github.com/advisories/GHSA-287q-jfcp-9vhv", - "type": "advisory" - }, - { - "title": "https://github.com/richardbarran/django-photologue/issues/223", - "url": "https://github.com/richardbarran/django-photologue/issues/223", - "type": "reference" - }, - { - "title": "https://github.com/richardbarran/django-photologue/commit/960cb060ce5e2964e6d716ff787c72fc18a371e7", - "url": "https://github.com/richardbarran/django-photologue/commit/960cb060ce5e2964e6d716ff787c72fc18a371e7", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/django-photologue/PYSEC-2022-43061.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/django-photologue/PYSEC-2022-43061.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45150", - "type": "advisory" - }, - { - "title": "GHSA-6gx2-g773-hv9h", - "url": "https://github.com/advisories/GHSA-6gx2-g773-hv9h", - "type": "advisory" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2DHYIIAUXUBHMBEDYU7TYNZXEN2W2SA2", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2DHYIIAUXUBHMBEDYU7TYNZXEN2W2SA2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45151", - "type": "advisory" - }, - { - "title": "GHSA-xv72-6pgh-cjj8", - "url": "https://github.com/advisories/GHSA-xv72-6pgh-cjj8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4065", - "type": "advisory" - }, - { - "title": "GHSA-rc2q-x9mf-w3vf", - "url": "https://github.com/advisories/GHSA-rc2q-x9mf-w3vf", - "type": "advisory" - }, - { - "title": "https://github.com/cbeust/testng/pull/2806", - "url": "https://github.com/cbeust/testng/pull/2806", - "type": "reference" - }, - { - "title": "https://github.com/cbeust/testng/commit/9150736cd2c123a6a3b60e6193630859f9f0422b", - "url": "https://github.com/cbeust/testng/commit/9150736cd2c123a6a3b60e6193630859f9f0422b", - "type": "reference" - }, - { - "title": "https://github.com/cbeust/testng/releases/tag/7.7.0", - "url": "https://github.com/cbeust/testng/releases/tag/7.7.0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-2668", - "type": "advisory" - }, - { - "title": "GHSA-wf7g-7h6h-678v", - "url": "https://github.com/advisories/GHSA-wf7g-7h6h-678v", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-wf7g-7h6h-678v", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-wf7g-7h6h-678v", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/e2ae7eef39b27e48ffa4764995d558555f02838c", - "url": "https://github.com/keycloak/keycloak/commit/e2ae7eef39b27e48ffa4764995d558555f02838c", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2022-2668", - "url": "https://access.redhat.com/security/cve/CVE-2022-2668", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23451", - "type": "advisory" - }, - { - "title": "GHSA-p2jg-q8hw-p7gc", - "url": "https://github.com/advisories/GHSA-p2jg-q8hw-p7gc", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2022-23451", - "url": "https://access.redhat.com/security/cve/CVE-2022-23451", - "type": "reference" - }, - { - "title": "https://review.opendev.org/c/openstack/barbican/+/811236", - "url": "https://review.opendev.org/c/openstack/barbican/+/811236", - "type": "reference" - }, - { - "title": "GHSA-q2gp-gph3-88x9", - "url": "https://github.com/advisories/GHSA-q2gp-gph3-88x9", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-35653", - "type": "advisory" - }, - { - "title": "GHSA-62wh-m4jr-233r", - "url": "https://github.com/advisories/GHSA-62wh-m4jr-233r", - "type": "advisory" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6MOKYVRNFNAODP2XSMGJ5CRDUZCZKAR3", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6MOKYVRNFNAODP2XSMGJ5CRDUZCZKAR3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-35651", - "type": "advisory" - }, - { - "title": "GHSA-wwv7-h477-wrv7", - "url": "https://github.com/advisories/GHSA-wwv7-h477-wrv7", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4178", - "type": "advisory" - }, - { - "title": "GHSA-98g7-rxmf-rrxm", - "url": "https://github.com/advisories/GHSA-98g7-rxmf-rrxm", - "type": "advisory" - }, - { - "title": "https://github.com/fabric8io/kubernetes-client/issues/3653", - "url": "https://github.com/fabric8io/kubernetes-client/issues/3653", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2021-4178", - "url": "https://access.redhat.com/security/cve/cve-2021-4178", - "type": "reference" - }, - { - "title": "https://www.mend.io/vulnerability-database/CVE-2021-4178", - "url": "https://www.mend.io/vulnerability-database/CVE-2021-4178", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1708", - "type": "advisory" - }, - { - "title": "GHSA-fcm2-6c3h-pg6j", - "url": "https://github.com/advisories/GHSA-fcm2-6c3h-pg6j", - "type": "advisory" - }, - { - "title": "https://github.com/cri-o/cri-o/security/advisories/GHSA-fcm2-6c3h-pg6j", - "url": "https://github.com/cri-o/cri-o/security/advisories/GHSA-fcm2-6c3h-pg6j", - "type": "reference" - }, - { - "title": "https://github.com/cri-o/cri-o/commit/f032cf649ecc7e0c46718bd9e7814bfb317cb544", - "url": "https://github.com/cri-o/cri-o/commit/f032cf649ecc7e0c46718bd9e7814bfb317cb544", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3599", - "type": "advisory" - }, - { - "title": "GHSA-xrh2-c3rm-35jr", - "url": "https://github.com/advisories/GHSA-xrh2-c3rm-35jr", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2014-3599", - "url": "https://access.redhat.com/security/cve/cve-2014-3599", - "type": "reference" - }, - { - "title": "https://github.com/hornetq/hornetq/commit/b3a63576371828d5f8e64ba7ccbcecb1da8111d2", - "url": "https://github.com/hornetq/hornetq/commit/b3a63576371828d5f8e64ba7ccbcecb1da8111d2", - "type": "reference" - }, - { - "title": "https://github.com/victims/victims-cve-db/blob/master/database/java/2014/3599.yaml", - "url": "https://github.com/victims/victims-cve-db/blob/master/database/java/2014/3599.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-1742", - "type": "advisory" - }, - { - "title": "GHSA-jw82-xjgr-g6f8", - "url": "https://github.com/advisories/GHSA-jw82-xjgr-g6f8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-3517", - "type": "advisory" - }, - { - "title": "GHSA-jw9f-hh49-cvp9", - "url": "https://github.com/advisories/GHSA-jw9f-hh49-cvp9", - "type": "advisory" - }, - { - "title": "https://lists.debian.org/debian-lts-announce/2021/05/msg00008.html", - "url": "https://lists.debian.org/debian-lts-announce/2021/05/msg00008.html", - "type": "reference" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BZOMV5J4PMZAORVT64BKLV6YIZAFDGX6/", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/BZOMV5J4PMZAORVT64BKLV6YIZAFDGX6/", - "type": "reference" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QVM4UJ3376I6ZVOYMHBNX4GY3NIV52WV/", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QVM4UJ3376I6ZVOYMHBNX4GY3NIV52WV/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-3537", - "type": "advisory" - }, - { - "title": "GHSA-286v-pcf5-25rc", - "url": "https://github.com/advisories/GHSA-286v-pcf5-25rc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-10721", - "type": "advisory" - }, - { - "title": "GHSA-w7gj-h6f2-x4c6", - "url": "https://github.com/advisories/GHSA-w7gj-h6f2-x4c6", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1811", - "type": "advisory" - }, - { - "title": "GHSA-qg7x-4h4q-3m49", - "url": "https://github.com/advisories/GHSA-qg7x-4h4q-3m49", - "type": "advisory" - }, - { - "title": "https://jenkins.io/security/advisory/2015-02-27/", - "url": "https://jenkins.io/security/advisory/2015-02-27/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1809", - "type": "advisory" - }, - { - "title": "GHSA-qj27-w92h-fc9r", - "url": "https://github.com/advisories/GHSA-qj27-w92h-fc9r", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-14856", - "type": "advisory" - }, - { - "title": "GHSA-6fq2-x65v-v9h7", - "url": "https://github.com/advisories/GHSA-6fq2-x65v-v9h7", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2020:0756", - "url": "https://access.redhat.com/errata/RHSA-2020:0756", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00021.html", - "url": "http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00021.html", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00026.html", - "url": "http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00026.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10206", - "type": "advisory" - }, - { - "title": "GHSA-cqmr-rcpr-cxh3", - "url": "https://github.com/advisories/GHSA-cqmr-rcpr-cxh3", - "type": "advisory" - }, - { - "title": "https://www.debian.org/security/2021/dsa-4950", - "url": "https://www.debian.org/security/2021/dsa-4950", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10202", - "type": "advisory" - }, - { - "title": "GHSA-c27h-mcmw-48hv", - "url": "https://github.com/advisories/GHSA-c27h-mcmw-48hv", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/r0fbf2c60967bc9f73d7f5a62ad3b955789f9a14b950f42e99fca9b4e@%3Cissues.hive.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r0fbf2c60967bc9f73d7f5a62ad3b955789f9a14b950f42e99fca9b4e@%3Cissues.hive.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/r1edabcfacdad42d3c830464e9cf07a9a489059a7b7a8642cf055542d@%3Cissues.hive.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r1edabcfacdad42d3c830464e9cf07a9a489059a7b7a8642cf055542d@%3Cissues.hive.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/r356592d9874ab4bc9da4754592f8aa6edc894c95e17e58484bc2af7a@%3Cissues.hive.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r356592d9874ab4bc9da4754592f8aa6edc894c95e17e58484bc2af7a@%3Cissues.hive.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10189", - "type": "advisory" - }, - { - "title": "GHSA-h7xp-7fjp-ghhc", - "url": "https://github.com/advisories/GHSA-h7xp-7fjp-ghhc", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/109271", - "url": "http://www.securityfocus.com/bid/109271", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10188", - "type": "advisory" - }, - { - "title": "GHSA-92q5-2h76-vgmj", - "url": "https://github.com/advisories/GHSA-92q5-2h76-vgmj", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/109178", - "url": "http://www.securityfocus.com/bid/109178", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10186", - "type": "advisory" - }, - { - "title": "GHSA-wv9c-pfpm-4wc5", - "url": "https://github.com/advisories/GHSA-wv9c-pfpm-4wc5", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/ea1ac3c7efbddbdb210ea4c75e7156c7d7ee914b", - "url": "https://github.com/moodle/moodle/commit/ea1ac3c7efbddbdb210ea4c75e7156c7d7ee914b", - "type": "reference" - }, - { - "title": "https://web.archive.org/web/20210125055044/https://www.securityfocus.com/bid/109175/", - "url": "https://web.archive.org/web/20210125055044/https://www.securityfocus.com/bid/109175/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3656", - "type": "advisory" - }, - { - "title": "GHSA-px42-mr8m-cpgh", - "url": "https://github.com/advisories/GHSA-px42-mr8m-cpgh", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2014-3656", - "url": "https://access.redhat.com/security/cve/cve-2014-3656", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/63b41e2548cbc20bd3758e34a82d880e177bf24c", - "url": "https://github.com/keycloak/keycloak/commit/63b41e2548cbc20bd3758e34a82d880e177bf24c", - "type": "reference" - }, - { - "title": "https://issues.jboss.org/browse/KEYCLOAK-703", - "url": "https://issues.jboss.org/browse/KEYCLOAK-703", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3708", - "type": "advisory" - }, - { - "title": "GHSA-qvq6-cw53-rmwg", - "url": "https://github.com/advisories/GHSA-qvq6-cw53-rmwg", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/SOA-2319", - "url": "https://issues.jboss.org/browse/SOA-2319", - "type": "reference" - }, - { - "title": "http://www.redhat.com/support/errata/RHSA-2010-0937.html", - "url": "http://www.redhat.com/support/errata/RHSA-2010-0937.html", - "type": "reference" - }, - { - "title": "http://www.redhat.com/support/errata/RHSA-2010-0938.html", - "url": "http://www.redhat.com/support/errata/RHSA-2010-0938.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2491", - "type": "advisory" - }, - { - "title": "GHSA-frgf-rv99-862x", - "url": "https://github.com/advisories/GHSA-frgf-rv99-862x", - "type": "advisory" - }, - { - "title": "http://bugs.gentoo.org/show_bug.cgi?id=326395", - "url": "http://bugs.gentoo.org/show_bug.cgi?id=326395", - "type": "reference" - }, - { - "title": "http://issues.roundup-tracker.org/issue2550654", - "url": "http://issues.roundup-tracker.org/issue2550654", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2010-September/048018.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2010-September/048018.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4418", - "type": "advisory" - }, - { - "title": "GHSA-88r4-38gc-97p4", - "url": "https://github.com/advisories/GHSA-88r4-38gc-97p4", - "type": "advisory" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/09/12/1", - "url": "http://www.openwall.com/lists/oss-security/2012/09/12/1", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/09/13/1", - "url": "http://www.openwall.com/lists/oss-security/2012/09/13/1", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3363", - "type": "advisory" - }, - { - "title": "GHSA-7pg4-5233-82jv", - "url": "https://github.com/advisories/GHSA-7pg4-5233-82jv", - "type": "advisory" - }, - { - "title": "https://www.sec-consult.com/files/20120626-0_zend_framework_xxe_injection.txt", - "url": "https://www.sec-consult.com/files/20120626-0_zend_framework_xxe_injection.txt", - "type": "reference" - }, - { - "title": "http://framework.zend.com/security/advisory/ZF2012-01", - "url": "http://framework.zend.com/security/advisory/ZF2012-01", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6531", - "type": "advisory" - }, - { - "title": "GHSA-h5p3-7mg6-hgj4", - "url": "https://github.com/advisories/GHSA-h5p3-7mg6-hgj4", - "type": "advisory" - }, - { - "title": "http://www.debian.org/security/2012/dsa-2505", - "url": "http://www.debian.org/security/2012/dsa-2505", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/06/26/2", - "url": "http://www.openwall.com/lists/oss-security/2012/06/26/2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-2125", - "type": "advisory" - }, - { - "title": "GHSA-228f-g3h7-3fj3", - "url": "https://github.com/advisories/GHSA-228f-g3h7-3fj3", - "type": "advisory" - }, - { - "title": "https://github.com/rubygems/rubygems/blob/1.8/History.txt", - "url": "https://github.com/rubygems/rubygems/blob/1.8/History.txt", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-1203.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-1203.html", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-1441.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-1441.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-2126", - "type": "advisory" - }, - { - "title": "GHSA-5mgj-mvv8-46mw", - "url": "https://github.com/advisories/GHSA-5mgj-mvv8-46mw", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4190", - "type": "advisory" - }, - { - "title": "GHSA-89rq-27xp-vgv7", - "url": "https://github.com/advisories/GHSA-89rq-27xp-vgv7", - "type": "advisory" - }, - { - "title": "http://plone.org/products/plone-hotfix/releases/20130618", - "url": "http://plone.org/products/plone-hotfix/releases/20130618", - "type": "reference" - }, - { - "title": "http://plone.org/products/plone/security/advisories/20130618-announcement", - "url": "http://plone.org/products/plone/security/advisories/20130618-announcement", - "type": "reference" - }, - { - "title": "http://seclists.org/oss-sec/2013/q3/261", - "url": "http://seclists.org/oss-sec/2013/q3/261", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4197", - "type": "advisory" - }, - { - "title": "GHSA-jjvw-3h9j-p7jf", - "url": "https://github.com/advisories/GHSA-jjvw-3h9j-p7jf", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2209", - "type": "advisory" - }, - { - "title": "GHSA-6g7x-4c7m-g63m", - "url": "https://github.com/advisories/GHSA-6g7x-4c7m-g63m", - "type": "advisory" - }, - { - "title": "https://github.com/reviewboard/reviewboard/commit/4aaacbb1e628a80803ba1a55703db38fccdf7dbf", - "url": "https://github.com/reviewboard/reviewboard/commit/4aaacbb1e628a80803ba1a55703db38fccdf7dbf", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2013/06/24/2", - "url": "http://www.openwall.com/lists/oss-security/2013/06/24/2", - "type": "reference" - }, - { - "title": "http://www.reviewboard.org/docs/releasenotes/reviewboard/1.6.17/", - "url": "http://www.reviewboard.org/docs/releasenotes/reviewboard/1.6.17/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-3591", - "type": "advisory" - }, - { - "title": "GHSA-3p87-w3c5-27gf", - "url": "https://github.com/advisories/GHSA-3p87-w3c5-27gf", - "type": "advisory" - }, - { - "title": "https://github.com/phpmyadmin/phpmyadmin/commit/bda213c58aec44925be661acb0e76c19483ea170", - "url": "https://github.com/phpmyadmin/phpmyadmin/commit/bda213c58aec44925be661acb0e76c19483ea170", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2011/09/30/8", - "url": "http://www.openwall.com/lists/oss-security/2011/09/30/8", - "type": "reference" - }, - { - "title": "http://www.phpmyadmin.net/home_page/security/PMASA-2011-14.php", - "url": "http://www.phpmyadmin.net/home_page/security/PMASA-2011-14.php", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-3592", - "type": "advisory" - }, - { - "title": "GHSA-5p69-rmx8-7gw7", - "url": "https://github.com/advisories/GHSA-5p69-rmx8-7gw7", - "type": "advisory" - }, - { - "title": "https://github.com/phpmyadmin/phpmyadmin/commit/2f28ce9c800274190418da0945ce3647d36e1db6", - "url": "https://github.com/phpmyadmin/phpmyadmin/commit/2f28ce9c800274190418da0945ce3647d36e1db6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-8125", - "type": "advisory" - }, - { - "title": "GHSA-6qx9-rf9g-7jmr", - "url": "https://github.com/advisories/GHSA-6qx9-rf9g-7jmr", - "type": "advisory" - }, - { - "title": "https://github.com/droolsjbpm/drools/commit/c48464c3b246e6ef0d4cd0dbf67e83ccd532c6d3", - "url": "https://github.com/droolsjbpm/drools/commit/c48464c3b246e6ef0d4cd0dbf67e83ccd532c6d3", - "type": "reference" - }, - { - "title": "https://github.com/droolsjbpm/jbpm/commit/713e8073ecf45623cfc5c918c5cbf700203f46e5", - "url": "https://github.com/droolsjbpm/jbpm/commit/713e8073ecf45623cfc5c918c5cbf700203f46e5", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2015-0850.html", - "url": "http://rhn.redhat.com/errata/RHSA-2015-0850.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-7839", - "type": "advisory" - }, - { - "title": "GHSA-pc54-pchm-xcw6", - "url": "https://github.com/advisories/GHSA-pc54-pchm-xcw6", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/RESTEASY-1130", - "url": "https://issues.jboss.org/browse/RESTEASY-1130", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2015-0675.html", - "url": "http://rhn.redhat.com/errata/RHSA-2015-0675.html", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2015-0773.html", - "url": "http://rhn.redhat.com/errata/RHSA-2015-0773.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-2853", - "type": "advisory" - }, - { - "title": "GHSA-6h86-9r5g-f2h5", - "url": "https://github.com/advisories/GHSA-6h86-9r5g-f2h5", - "type": "advisory" - }, - { - "title": "https://github.com/wikimedia/mediawiki-core/commit/0b695ae09aada343ab59be4a3c9963995a1143b6", - "url": "https://github.com/wikimedia/mediawiki-core/commit/0b695ae09aada343ab59be4a3c9963995a1143b6", - "type": "reference" - }, - { - "title": "https://bugzilla.wikimedia.org/show_bug.cgi?id=63251", - "url": "https://bugzilla.wikimedia.org/show_bug.cgi?id=63251", - "type": "reference" - }, - { - "title": "https://www.mediawiki.org/wiki/Release_notes/1.21#Changes_since_1.21.8", - "url": "https://www.mediawiki.org/wiki/Release_notes/1.21#Changes_since_1.21.8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1813", - "type": "advisory" - }, - { - "title": "GHSA-9h85-v6xf-h26q", - "url": "https://github.com/advisories/GHSA-9h85-v6xf-h26q", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2016:0070", - "url": "https://access.redhat.com/errata/RHSA-2016:0070", - "type": "reference" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-03-23", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-03-23", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2015-1844.html", - "url": "http://rhn.redhat.com/errata/RHSA-2015-1844.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-1812", - "type": "advisory" - }, - { - "title": "GHSA-w5v7-q2j4-fvpf", - "url": "https://github.com/advisories/GHSA-w5v7-q2j4-fvpf", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1880", - "type": "advisory" - }, - { - "title": "GHSA-c9gx-27hq-wcvj", - "url": "https://github.com/advisories/GHSA-c9gx-27hq-wcvj", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/jira/browse/AMQ-4398", - "url": "https://issues.apache.org/jira/browse/AMQ-4398", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-1029.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-1029.html", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/65615", - "url": "http://www.securityfocus.com/bid/65615", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4221", - "type": "advisory" - }, - { - "title": "GHSA-92j2-5r7p-6hjw", - "url": "https://github.com/advisories/GHSA-92j2-5r7p-6hjw", - "type": "advisory" - }, - { - "title": "https://github.com/restlet/restlet-framework-java/issues/774", - "url": "https://github.com/restlet/restlet-framework-java/issues/774", - "type": "reference" - }, - { - "title": "http://blog.diniscruz.com/2013/08/using-xmldecoder-to-execute-server-side.html", - "url": "http://blog.diniscruz.com/2013/08/using-xmldecoder-to-execute-server-side.html", - "type": "reference" - }, - { - "title": "http://restlet.org/learn/2.1/changes", - "url": "http://restlet.org/learn/2.1/changes", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1821", - "type": "advisory" - }, - { - "title": "GHSA-hgg7-cghq-xhf4", - "url": "https://github.com/advisories/GHSA-hgg7-cghq-xhf4", - "type": "advisory" - }, - { - "title": "https://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0092", - "url": "https://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0092", - "type": "reference" - }, - { - "title": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=702525", - "url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=702525", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00001.html", - "url": "http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00001.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-4172", - "type": "advisory" - }, - { - "title": "GHSA-9fc5-q25c-r2wr", - "url": "https://github.com/advisories/GHSA-9fc5-q25c-r2wr", - "type": "advisory" - }, - { - "title": "https://github.com/Jasig/phpCAS/pull/125", - "url": "https://github.com/Jasig/phpCAS/pull/125", - "type": "reference" - }, - { - "title": "https://github.com/Jasig/dotnet-cas-client/commit/f0e030014fb7a39e5f38469f43199dc590fd0e8d", - "url": "https://github.com/Jasig/dotnet-cas-client/commit/f0e030014fb7a39e5f38469f43199dc590fd0e8d", - "type": "reference" - }, - { - "title": "https://github.com/Jasig/java-cas-client/commit/ae37092100c8eaec610dab6d83e5e05a8ee58814", - "url": "https://github.com/Jasig/java-cas-client/commit/ae37092100c8eaec610dab6d83e5e05a8ee58814", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2487", - "type": "advisory" - }, - { - "title": "GHSA-5m2m-27cg-7v4v", - "url": "https://github.com/advisories/GHSA-5m2m-27cg-7v4v", - "type": "advisory" - }, - { - "title": "http://hg.moinmo.in/moin/1.7/rev/37306fba2189", - "url": "http://hg.moinmo.in/moin/1.7/rev/37306fba2189", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.8/raw-file/1.8.8/docs/CHANGES", - "url": "http://hg.moinmo.in/moin/1.8/raw-file/1.8.8/docs/CHANGES", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.8/rev/4238b0c90871", - "url": "http://hg.moinmo.in/moin/1.8/rev/4238b0c90871", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2970", - "type": "advisory" - }, - { - "title": "GHSA-gxh5-r8gp-pjc3", - "url": "https://github.com/advisories/GHSA-gxh5-r8gp-pjc3", - "type": "advisory" - }, - { - "title": "http://hg.moinmo.in/moin/1.9/raw-file/1.9.3/docs/CHANGES", - "url": "http://hg.moinmo.in/moin/1.9/raw-file/1.9.3/docs/CHANGES", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.9/rev/4fe9951788cb", - "url": "http://hg.moinmo.in/moin/1.9/rev/4fe9951788cb", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.9/rev/e50b087c4572", - "url": "http://hg.moinmo.in/moin/1.9/rev/e50b087c4572", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2969", - "type": "advisory" - }, - { - "title": "GHSA-2j76-26qq-7rvv", - "url": "https://github.com/advisories/GHSA-2j76-26qq-7rvv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-5992", - "type": "advisory" - }, - { - "title": "GHSA-chqf-hx79-gxc6", - "url": "https://github.com/advisories/GHSA-chqf-hx79-gxc6", - "type": "advisory" - }, - { - "title": "https://bitbucket.org/openpyxl/openpyxl/commits/3b4905f428e1", - "url": "https://bitbucket.org/openpyxl/openpyxl/commits/3b4905f428e1", - "type": "reference" - }, - { - "title": "https://bitbucket.org/openpyxl/openpyxl/issues/749", - "url": "https://bitbucket.org/openpyxl/openpyxl/issues/749", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2017/02/07/5", - "url": "http://www.openwall.com/lists/oss-security/2017/02/07/5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-10127", - "type": "advisory" - }, - { - "title": "GHSA-m269-wj6g-c459", - "url": "https://github.com/advisories/GHSA-m269-wj6g-c459", - "type": "advisory" - }, - { - "title": "https://github.com/rohe/pysaml2/issues/366", - "url": "https://github.com/rohe/pysaml2/issues/366", - "type": "reference" - }, - { - "title": "https://github.com/rohe/pysaml2/pull/379", - "url": "https://github.com/rohe/pysaml2/pull/379", - "type": "reference" - }, - { - "title": "https://github.com/rohe/pysaml2/commit/6e09a25d9b4b7aa7a506853210a9a14100b8bc9b", - "url": "https://github.com/rohe/pysaml2/commit/6e09a25d9b4b7aa7a506853210a9a14100b8bc9b", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-6347", - "type": "advisory" - }, - { - "title": "GHSA-r346-rmrg-qpgh", - "url": "https://github.com/advisories/GHSA-r346-rmrg-qpgh", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/92759", - "url": "http://www.securityfocus.com/bid/92759", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-4338", - "type": "advisory" - }, - { - "title": "GHSA-5pjj-7m4p-wfh2", - "url": "https://github.com/advisories/GHSA-5pjj-7m4p-wfh2", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/64892", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/64892", - "type": "reference" - }, - { - "title": "https://web.archive.org/web/20200229160520/http://www.securityfocus.com/bid/45234", - "url": "https://web.archive.org/web/20200229160520/http://www.securityfocus.com/bid/45234", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3156", - "type": "advisory" - }, - { - "title": "GHSA-98c8-36p9-gw66", - "url": "https://github.com/advisories/GHSA-98c8-36p9-gw66", - "type": "advisory" - }, - { - "title": "https://bugs.launchpad.net/trove/+bug/1398195", - "url": "https://bugs.launchpad.net/trove/+bug/1398195", - "type": "reference" - }, - { - "title": "https://github.com/openstack/trove/blob/master/trove/guestagent/datastore/experimental/cassandra/service.py#L230", - "url": "https://github.com/openstack/trove/blob/master/trove/guestagent/datastore/experimental/cassandra/service.py#L230", - "type": "reference" - }, - { - "title": "https://github.com/openstack/trove/blob/master/trove/guestagent/datastore/experimental/mongodb/service.py#L176", - "url": "https://github.com/openstack/trove/blob/master/trove/guestagent/datastore/experimental/mongodb/service.py#L176", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4107", - "type": "advisory" - }, - { - "title": "GHSA-q4mm-89q2-xffg", - "url": "https://github.com/advisories/GHSA-q4mm-89q2-xffg", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71108", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71108", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069625.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069625.html", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069635.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2011-November/069635.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-5245", - "type": "advisory" - }, - { - "title": "GHSA-g4jg-gpwv-p7wv", - "url": "https://github.com/advisories/GHSA-g4jg-gpwv-p7wv", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/72808", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/72808", - "type": "reference" - }, - { - "title": "https://issues.jboss.org/browse/RESTEASY-647", - "url": "https://issues.jboss.org/browse/RESTEASY-647", - "type": "reference" - }, - { - "title": "https://issues.jboss.org/browse/RESTEASY/fixforversion/12318708", - "url": "https://issues.jboss.org/browse/RESTEASY/fixforversion/12318708", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-0818", - "type": "advisory" - }, - { - "title": "GHSA-wrrh-g7h3-gqmx", - "url": "https://github.com/advisories/GHSA-wrrh-g7h3-gqmx", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/RESTEASY-637", - "url": "https://issues.jboss.org/browse/RESTEASY-637", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2012-0441.html", - "url": "http://rhn.redhat.com/errata/RHSA-2012-0441.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4314", - "type": "advisory" - }, - { - "title": "GHSA-j473-c3rr-rx9p", - "url": "https://github.com/advisories/GHSA-j473-c3rr-rx9p", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/JBEPP-1368", - "url": "https://issues.jboss.org/browse/JBEPP-1368", - "type": "reference" - }, - { - "title": "https://issues.jboss.org/browse/SOA-3597", - "url": "https://issues.jboss.org/browse/SOA-3597", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2012-0519.html", - "url": "http://rhn.redhat.com/errata/RHSA-2012-0519.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6130", - "type": "advisory" - }, - { - "title": "GHSA-mccq-3m7h-fjxg", - "url": "https://github.com/advisories/GHSA-mccq-3m7h-fjxg", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84189", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84189", - "type": "reference" - }, - { - "title": "https://pypi.python.org/pypi/roundup/1.4.20", - "url": "https://pypi.python.org/pypi/roundup/1.4.20", - "type": "reference" - }, - { - "title": "http://issues.roundup-tracker.org/issue2550684", - "url": "http://issues.roundup-tracker.org/issue2550684", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6132", - "type": "advisory" - }, - { - "title": "GHSA-5v6q-xqq8-g4xj", - "url": "https://github.com/advisories/GHSA-5v6q-xqq8-g4xj", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84191", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84191", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/11/10/2", - "url": "http://www.openwall.com/lists/oss-security/2012/11/10/2", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2013/02/13/8", - "url": "http://www.openwall.com/lists/oss-security/2013/02/13/8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6131", - "type": "advisory" - }, - { - "title": "GHSA-gw2q-cgvq-9g3v", - "url": "https://github.com/advisories/GHSA-gw2q-cgvq-9g3v", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84190", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84190", - "type": "reference" - }, - { - "title": "http://issues.roundup-tracker.org/issue2550711", - "url": "http://issues.roundup-tracker.org/issue2550711", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1879", - "type": "advisory" - }, - { - "title": "GHSA-mfhr-3xmc-r2gg", - "url": "https://github.com/advisories/GHSA-mfhr-3xmc-r2gg", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/85586", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/85586", - "type": "reference" - }, - { - "title": "https://issues.apache.org/jira/browse/AMQ-4397", - "url": "https://issues.apache.org/jira/browse/AMQ-4397", - "type": "reference" - }, - { - "title": "http://secunia.com/advisories/54073", - "url": "http://secunia.com/advisories/54073", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2100", - "type": "advisory" - }, - { - "title": "GHSA-8823-xphr-qw9v", - "url": "https://github.com/advisories/GHSA-8823-xphr-qw9v", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84315", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/84315", - "type": "reference" - }, - { - "title": "https://security.gentoo.org/glsa/201507-16", - "url": "https://security.gentoo.org/glsa/201507-16", - "type": "reference" - }, - { - "title": "http://openwall.com/lists/oss-security/2013/05/15/5", - "url": "http://openwall.com/lists/oss-security/2013/05/15/5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-4706", - "type": "advisory" - }, - { - "title": "GHSA-q326-jhw3-699g", - "url": "https://github.com/advisories/GHSA-q326-jhw3-699g", - "type": "advisory" - }, - { - "title": "https://github.com/ipython/ipython/commit/7222bd53ad089a65fd610fab4626f9d0ab47dfce", - "url": "https://github.com/ipython/ipython/commit/7222bd53ad089a65fd610fab4626f9d0ab47dfce", - "type": "reference" - }, - { - "title": "https://github.com/ipython/ipython/commit/c2078a53543ed502efd968649fee1125e0eb549c", - "url": "https://github.com/ipython/ipython/commit/c2078a53543ed502efd968649fee1125e0eb549c", - "type": "reference" - }, - { - "title": "https://ipython.org/ipython-doc/3/whatsnew/version3.html", - "url": "https://ipython.org/ipython-doc/3/whatsnew/version3.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-7316", - "type": "advisory" - }, - { - "title": "GHSA-vf8g-m3vq-6p4p", - "url": "https://github.com/advisories/GHSA-vf8g-m3vq-6p4p", - "type": "advisory" - }, - { - "title": "https://github.com/plone/Products.CMFPlone/commit/3da710a2cd68587f0bf34f2e7ea1167d6eeee087", - "url": "https://github.com/plone/Products.CMFPlone/commit/3da710a2cd68587f0bf34f2e7ea1167d6eeee087", - "type": "reference" - }, - { - "title": "https://plone.org/security/hotfix/20150910/non-persistent-xss-in-plone", - "url": "https://plone.org/security/hotfix/20150910/non-persistent-xss-in-plone", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2015/09/22/14", - "url": "http://www.openwall.com/lists/oss-security/2015/09/22/14", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-4172", - "type": "advisory" - }, - { - "title": "GHSA-c78g-qwpw-2jgv", - "url": "https://github.com/advisories/GHSA-c78g-qwpw-2jgv", - "type": "advisory" - }, - { - "title": "https://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html", - "url": "https://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html", - "type": "reference" - }, - { - "title": "https://marc.info/?l=bugtraq&m=139344343412337&w=2", - "url": "https://marc.info/?l=bugtraq&m=139344343412337&w=2", - "type": "reference" - }, - { - "title": "https://www.redhat.com/support/errata/RHSA-2011-0896.html", - "url": "https://www.redhat.com/support/errata/RHSA-2011-0896.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3094", - "type": "advisory" - }, - { - "title": "GHSA-pjmx-4gc6-hwv8", - "url": "https://github.com/advisories/GHSA-pjmx-4gc6-hwv8", - "type": "advisory" - }, - { - "title": "http://drupal.org/node/880476", - "url": "http://drupal.org/node/880476", - "type": "reference" - }, - { - "title": "http://www.debian.org/security/2010/dsa-2113", - "url": "http://www.debian.org/security/2010/dsa-2113", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2477", - "type": "advisory" - }, - { - "title": "GHSA-7gfc-2v6g-6w9f", - "url": "https://github.com/advisories/GHSA-7gfc-2v6g-6w9f", - "type": "advisory" - }, - { - "title": "http://bitbucket.org/ianb/paste/changeset/fcae59df8b56", - "url": "http://bitbucket.org/ianb/paste/changeset/fcae59df8b56", - "type": "reference" - }, - { - "title": "http://groups.google.com/group/paste-users/browse_thread/thread/3b3fff3dadd0b1e5?pli=1", - "url": "http://groups.google.com/group/paste-users/browse_thread/thread/3b3fff3dadd0b1e5?pli=1", - "type": "reference" - }, - { - "title": "http://groups.google.com/group/pylons-discuss/msg/8c256dc076a408d8?dmode=source&output=gplain", - "url": "http://groups.google.com/group/pylons-discuss/msg/8c256dc076a408d8?dmode=source&output=gplain", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2022", - "type": "advisory" - }, - { - "title": "GHSA-3jcq-cwr7-6332", - "url": "https://github.com/advisories/GHSA-3jcq-cwr7-6332", - "type": "advisory" - }, - { - "title": "https://github.com/happyworm/jPlayer/commit/c5fe17bb4459164bd59153b57248cf94b8867373", - "url": "https://github.com/happyworm/jPlayer/commit/c5fe17bb4459164bd59153b57248cf94b8867373", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-2481", - "type": "advisory" - }, - { - "title": "GHSA-r7c8-hghc-2mp8", - "url": "https://github.com/advisories/GHSA-r7c8-hghc-2mp8", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/bugzilla/show_bug.cgi?id=51395", - "url": "https://issues.apache.org/bugzilla/show_bug.cgi?id=51395", - "type": "reference" - }, - { - "title": "http://svn.apache.org/viewvc?view=revision&revision=1137753", - "url": "http://svn.apache.org/viewvc?view=revision&revision=1137753", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-1419", - "type": "advisory" - }, - { - "title": "GHSA-vch7-92vf-jm44", - "url": "https://github.com/advisories/GHSA-vch7-92vf-jm44", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/65971", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/65971", - "type": "reference" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66154", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66154", - "type": "reference" - }, - { - "title": "http://mail-archives.apache.org/mod_mbox/www-announce/201103.mbox/%3C4D6E74FF.7050106@apache.org%3E", - "url": "http://mail-archives.apache.org/mod_mbox/www-announce/201103.mbox/%3C4D6E74FF.7050106@apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3208", - "type": "advisory" - }, - { - "title": "GHSA-x6rc-54xp-ccxx", - "url": "https://github.com/advisories/GHSA-x6rc-54xp-ccxx", - "type": "advisory" - }, - { - "title": "https://github.com/apache/activemq-artemis/commit/48d9951d879e0c8cbb59d4b64ab59d53ef88310d", - "url": "https://github.com/apache/activemq-artemis/commit/48d9951d879e0c8cbb59d4b64ab59d53ef88310d", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2018:2927", - "url": "https://access.redhat.com/errata/RHSA-2018:2927", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2015/07/24/2", - "url": "http://www.openwall.com/lists/oss-security/2015/07/24/2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6074", - "type": "advisory" - }, - { - "title": "GHSA-9hr6-5x6g-gg5g", - "url": "https://github.com/advisories/GHSA-9hr6-5x6g-gg5g", - "type": "advisory" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2012-11-20", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2012-11-20", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-0220.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-0220.html", - "type": "reference" - }, - { - "title": "http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2012-11-20.cb", - "url": "http://www.cloudbees.com/jenkins-advisory/jenkins-security-advisory-2012-11-20.cb", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-1934", - "type": "advisory" - }, - { - "title": "GHSA-4r2w-w73w-36jm", - "url": "https://github.com/advisories/GHSA-4r2w-w73w-36jm", - "type": "advisory" - }, - { - "title": "http://lists.opensuse.org/opensuse-updates/2014-05/msg00027.html", - "url": "http://lists.opensuse.org/opensuse-updates/2014-05/msg00027.html", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-updates/2014-05/msg00028.html", - "url": "http://lists.opensuse.org/opensuse-updates/2014-05/msg00028.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3681", - "type": "advisory" - }, - { - "title": "GHSA-cwh9-f8m6-6r63", - "url": "https://github.com/advisories/GHSA-cwh9-f8m6-6r63", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/96975", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/96975", - "type": "reference" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2014-10-01", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2014-10-01", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3678", - "type": "advisory" - }, - { - "title": "GHSA-ghjw-fc9q-jj8c", - "url": "https://github.com/advisories/GHSA-ghjw-fc9q-jj8c", - "type": "advisory" - }, - { - "title": "https://wiki.jenkins-ci.org/display/JENKINS/Monitoring", - "url": "https://wiki.jenkins-ci.org/display/JENKINS/Monitoring", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHBA-2014:1630", - "url": "https://access.redhat.com/errata/RHBA-2014:1630", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2014-3678", - "url": "https://access.redhat.com/security/cve/CVE-2014-3678", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3603", - "type": "advisory" - }, - { - "title": "GHSA-rm7v-gqfg-p2wc", - "url": "https://github.com/advisories/GHSA-rm7v-gqfg-p2wc", - "type": "advisory" - }, - { - "title": "http://shibboleth.net/community/advisories/secadv_20140813.txt", - "url": "http://shibboleth.net/community/advisories/secadv_20140813.txt", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4590", - "type": "advisory" - }, - { - "title": "GHSA-87w9-x2c3-hrjj", - "url": "https://github.com/advisories/GHSA-87w9-x2c3-hrjj", - "type": "advisory" - }, - { - "title": "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04851013", - "url": "https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04851013", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/37220405a377c0182d2afdbc36461c4783b2930fbeae3a17f1333113@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/37220405a377c0182d2afdbc36461c4783b2930fbeae3a17f1333113@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/39ae1f0bd5867c15755a6f959b271ade1aea04ccdc3b2e639dcd903b@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/39ae1f0bd5867c15755a6f959b271ade1aea04ccdc3b2e639dcd903b@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0096", - "type": "advisory" - }, - { - "title": "GHSA-qprx-q2r7-3rx6", - "url": "https://github.com/advisories/GHSA-qprx-q2r7-3rx6", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/b84ad1258a89de5c9c853c7f2d3ad77e5b8b2930be9e132d5cef6b95@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/b84ad1258a89de5c9c853c7f2d3ad77e5b8b2930be9e132d5cef6b95@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0119", - "type": "advisory" - }, - { - "title": "GHSA-prc3-7f44-w48j", - "url": "https://github.com/advisories/GHSA-prc3-7f44-w48j", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-5823", - "type": "advisory" - }, - { - "title": "GHSA-8gwc-x7mg-7p7p", - "url": "https://github.com/advisories/GHSA-8gwc-x7mg-7p7p", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2014:0414", - "url": "https://access.redhat.com/errata/RHSA-2014:0414", - "type": "reference" - }, - { - "title": "https://github.com/apache/santuario-java/commit/cea3c91106fb8be35e2f1bb3f1fe0cfddd0ec710", - "url": "https://github.com/apache/santuario-java/commit/cea3c91106fb8be35e2f1bb3f1fe0cfddd0ec710", - "type": "reference" - }, - { - "title": "https://lists.opensuse.org/opensuse-updates/2013-11/msg00023.html", - "url": "https://lists.opensuse.org/opensuse-updates/2013-11/msg00023.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1136", - "type": "advisory" - }, - { - "title": "GHSA-xhfw-wjjc-4j5h", - "url": "https://github.com/advisories/GHSA-xhfw-wjjc-4j5h", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/104307", - "url": "http://www.securityfocus.com/bid/104307", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-1483", - "type": "advisory" - }, - { - "title": "GHSA-rj4p-7mm6-gm9j", - "url": "https://github.com/advisories/GHSA-rj4p-7mm6-gm9j", - "type": "advisory" - }, - { - "title": "http://source.jboss.org/changelog/JBossWS/?cs=13996", - "url": "http://source.jboss.org/changelog/JBossWS/?cs=13996", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2602", - "type": "advisory" - }, - { - "title": "GHSA-ffgg-vphh-v273", - "url": "https://github.com/advisories/GHSA-ffgg-vphh-v273", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/414ff7e30aba66bed18c4ee8a8660fb36fc8c655", - "url": "https://github.com/jenkinsci/jenkins/commit/414ff7e30aba66bed18c4ee8a8660fb36fc8c655", - "type": "reference" - }, - { - "title": "https://jenkins.io/security/advisory/2017-02-01/", - "url": "https://jenkins.io/security/advisory/2017-02-01/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2603", - "type": "advisory" - }, - { - "title": "GHSA-x55p-6526-xmmp", - "url": "https://github.com/advisories/GHSA-x55p-6526-xmmp", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/3cd946cbef82c6da5ccccf3890d0ae4e091c4265", - "url": "https://github.com/jenkinsci/jenkins/commit/3cd946cbef82c6da5ccccf3890d0ae4e091c4265", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2607", - "type": "advisory" - }, - { - "title": "GHSA-42m6-7xff-9v9m", - "url": "https://github.com/advisories/GHSA-42m6-7xff-9v9m", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/95963", - "url": "http://www.securityfocus.com/bid/95963", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2638", - "type": "advisory" - }, - { - "title": "GHSA-mvxp-3j62-jqr6", - "url": "https://github.com/advisories/GHSA-mvxp-3j62-jqr6", - "type": "advisory" - }, - { - "title": "https://issues.jboss.org/browse/ISPN-7485", - "url": "https://issues.jboss.org/browse/ISPN-7485", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2017-1097.html", - "url": "http://rhn.redhat.com/errata/RHSA-2017-1097.html", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/97964", - "url": "http://www.securityfocus.com/bid/97964", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2648", - "type": "advisory" - }, - { - "title": "GHSA-x654-4wjh-74q6", - "url": "https://github.com/advisories/GHSA-x654-4wjh-74q6", - "type": "advisory" - }, - { - "title": "https://jenkins.io/security/advisory/2017-03-20/", - "url": "https://jenkins.io/security/advisory/2017-03-20/", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/96985", - "url": "http://www.securityfocus.com/bid/96985", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-7545", - "type": "advisory" - }, - { - "title": "GHSA-vc3x-72q4-g3p5", - "url": "https://github.com/advisories/GHSA-vc3x-72q4-g3p5", - "type": "advisory" - }, - { - "title": "https://github.com/kiegroup/jbpm-designer/commit/a143f3b92a6a5a527d929d68c02a0c5d914ab81d", - "url": "https://github.com/kiegroup/jbpm-designer/commit/a143f3b92a6a5a527d929d68c02a0c5d914ab81d", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2017:3354", - "url": "https://access.redhat.com/errata/RHSA-2017:3354", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2017:3355", - "url": "https://access.redhat.com/errata/RHSA-2017:3355", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-14630", - "type": "advisory" - }, - { - "title": "GHSA-c3pr-h96w-2jjg", - "url": "https://github.com/advisories/GHSA-c3pr-h96w-2jjg", - "type": "advisory" - }, - { - "title": "https://seclists.org/fulldisclosure/2018/Sep/28", - "url": "https://seclists.org/fulldisclosure/2018/Sep/28", - "type": "reference" - }, - { - "title": "https://www.sec-consult.com/en/blog/advisories/remote-code-execution-php-unserialize-moodle-open-source-learning-platform-cve-2018-14630/", - "url": "https://www.sec-consult.com/en/blog/advisories/remote-code-execution-php-unserialize-moodle-open-source-learning-platform-cve-2018-14630/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-16849", - "type": "advisory" - }, - { - "title": "GHSA-fqw7-c6vr-q29m", - "url": "https://github.com/advisories/GHSA-fqw7-c6vr-q29m", - "type": "advisory" - }, - { - "title": "https://bugs.launchpad.net/mistral/+bug/1783708", - "url": "https://bugs.launchpad.net/mistral/+bug/1783708", - "type": "reference" - }, - { - "title": "https://github.com/openstack/mistral/commit/c93b45a61f49d4633f76d8e117cd89063e7759c4", - "url": "https://github.com/openstack/mistral/commit/c93b45a61f49d4633f76d8e117cd89063e7759c4", - "type": "reference" - }, - { - "title": "https://github.com/openstack/mistral/commit/2309e5265a1d5f28480ae872817b5de05f66e83c", - "url": "https://github.com/openstack/mistral/commit/2309e5265a1d5f28480ae872817b5de05f66e83c", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1051", - "type": "advisory" - }, - { - "title": "GHSA-m2fv-3rqm-g7p5", - "url": "https://github.com/advisories/GHSA-m2fv-3rqm-g7p5", - "type": "advisory" - }, - { - "title": "https://github.com/resteasy/resteasy/pull/1555", - "url": "https://github.com/resteasy/resteasy/pull/1555", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1131", - "type": "advisory" - }, - { - "title": "GHSA-qqfc-m9hc-pqv3", - "url": "https://github.com/advisories/GHSA-qqfc-m9hc-pqv3", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2018:1833", - "url": "https://access.redhat.com/errata/RHSA-2018:1833", - "type": "reference" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2019:3892", - "url": "https://access.redhat.com/errata/RHSA-2019:3892", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/104218", - "url": "http://www.securityfocus.com/bid/104218", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-3850", - "type": "advisory" - }, - { - "title": "GHSA-3fj7-9j8m-7r8g", - "url": "https://github.com/advisories/GHSA-3fj7-9j8m-7r8g", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/1fc481dd7b09e08e85824c1fe6733b303a36bdce", - "url": "https://github.com/moodle/moodle/commit/1fc481dd7b09e08e85824c1fe6733b303a36bdce", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/772c908d40a944efd91d897d524b255626d330d4", - "url": "https://github.com/moodle/moodle/commit/772c908d40a944efd91d897d524b255626d330d4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-4707", - "type": "advisory" - }, - { - "title": "GHSA-66gw-5xpf-gfp5", - "url": "https://github.com/advisories/GHSA-66gw-5xpf-gfp5", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5319", - "type": "advisory" - }, - { - "title": "GHSA-3j9c-cp7m-8w8g", - "url": "https://github.com/advisories/GHSA-3j9c-cp7m-8w8g", - "type": "advisory" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-11-11", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2015-11-11", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2016-0489.html", - "url": "http://rhn.redhat.com/errata/RHSA-2016-0489.html", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/e78e9e8144f7304cf274cd4b756f458cf63a3556", - "url": "https://github.com/jenkinsci/jenkins/commit/e78e9e8144f7304cf274cd4b756f458cf63a3556", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5326", - "type": "advisory" - }, - { - "title": "GHSA-5mwr-jg3r-jv66", - "url": "https://github.com/advisories/GHSA-5mwr-jg3r-jv66", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/abe561499bbba2e725804c1117fc957028bbd608", - "url": "https://github.com/jenkinsci/jenkins/commit/abe561499bbba2e725804c1117fc957028bbd608", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2611", - "type": "advisory" - }, - { - "title": "GHSA-3297-944x-j7x7", - "url": "https://github.com/advisories/GHSA-3297-944x-j7x7", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/97a61a9fe55f4c16168c123f98301a5173b9fa86", - "url": "https://github.com/jenkinsci/jenkins/commit/97a61a9fe55f4c16168c123f98301a5173b9fa86", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/95956", - "url": "http://www.securityfocus.com/bid/95956", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-3849", - "type": "advisory" - }, - { - "title": "GHSA-5wg9-5w3f-hxmh", - "url": "https://github.com/advisories/GHSA-5wg9-5w3f-hxmh", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/427463a52574e4b3bcbe1c65c49066438770641e", - "url": "https://github.com/moodle/moodle/commit/427463a52574e4b3bcbe1c65c49066438770641e", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/430f685834cef190bdf58afabe79e765d596890d", - "url": "https://github.com/moodle/moodle/commit/430f685834cef190bdf58afabe79e765d596890d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-3830", - "type": "advisory" - }, - { - "title": "GHSA-2cvf-r9jm-4qm9", - "url": "https://github.com/advisories/GHSA-2cvf-r9jm-4qm9", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2019:0919", - "url": "https://access.redhat.com/errata/RHSA-2019:0919", - "type": "reference" - }, - { - "title": "https://github.com/openstack/ceilometer/commit/8881a42af169a2d7c912b1434911f978883c83f3#diff-f2d2273521cce7e69f7032c6185936736a5acc70b2b2f90d956b9a7998b087cd", - "url": "https://github.com/openstack/ceilometer/commit/8881a42af169a2d7c912b1434911f978883c83f3#diff-f2d2273521cce7e69f7032c6185936736a5acc70b2b2f90d956b9a7998b087cd", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4280", - "type": "advisory" - }, - { - "title": "GHSA-mx5g-3vxh-rgm8", - "url": "https://github.com/advisories/GHSA-mx5g-3vxh-rgm8", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2011/11/14/1", - "url": "http://openwall.com/lists/oss-security/2011/11/14/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/bd654f0ced8af925c27b7c94321f0c299b50b38e", - "url": "https://github.com/moodle/moodle/commit/bd654f0ced8af925c27b7c94321f0c299b50b38e", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4282", - "type": "advisory" - }, - { - "title": "GHSA-6xqg-f34f-5fjx", - "url": "https://github.com/advisories/GHSA-6xqg-f34f-5fjx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4299", - "type": "advisory" - }, - { - "title": "GHSA-h6px-pvfh-q2jv", - "url": "https://github.com/advisories/GHSA-h6px-pvfh-q2jv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4298", - "type": "advisory" - }, - { - "title": "GHSA-8hxm-42v5-66hm", - "url": "https://github.com/advisories/GHSA-8hxm-42v5-66hm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4306", - "type": "advisory" - }, - { - "title": "GHSA-r729-mx2r-j26j", - "url": "https://github.com/advisories/GHSA-r729-mx2r-j26j", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4301", - "type": "advisory" - }, - { - "title": "GHSA-jcrj-gmr6-p5j8", - "url": "https://github.com/advisories/GHSA-jcrj-gmr6-p5j8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4278", - "type": "advisory" - }, - { - "title": "GHSA-6656-6qwx-4c2m", - "url": "https://github.com/advisories/GHSA-6656-6qwx-4c2m", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/34b93e39a64a68e4a676b93ccf2bd87a1d3b5ef8", - "url": "https://github.com/moodle/moodle/commit/34b93e39a64a68e4a676b93ccf2bd87a1d3b5ef8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4286", - "type": "advisory" - }, - { - "title": "GHSA-86v9-gqh9-8268", - "url": "https://github.com/advisories/GHSA-86v9-gqh9-8268", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4133", - "type": "advisory" - }, - { - "title": "GHSA-7cvw-wrj9-q5fp", - "url": "https://github.com/advisories/GHSA-7cvw-wrj9-q5fp", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-2230", - "type": "advisory" - }, - { - "title": "GHSA-3gm8-32vv-q8mp", - "url": "https://github.com/advisories/GHSA-3gm8-32vv-q8mp", - "type": "advisory" - }, - { - "title": "http://cvs.moodle.org/moodle/lib/weblib.php?r1=1.812.2.114&r2=1.812.2.115", - "url": "http://cvs.moodle.org/moodle/lib/weblib.php?r1=1.812.2.114&r2=1.812.2.115", - "type": "reference" - }, - { - "title": "http://docs.moodle.org/en/Moodle_1.8.13_release_notes", - "url": "http://docs.moodle.org/en/Moodle_1.8.13_release_notes", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1833", - "type": "advisory" - }, - { - "title": "GHSA-89f3-74m6-g27g", - "url": "https://github.com/advisories/GHSA-89f3-74m6-g27g", - "type": "advisory" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101310.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101310.html", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101358.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101358.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-1836", - "type": "advisory" - }, - { - "title": "GHSA-664q-mrxx-2x2v", - "url": "https://github.com/advisories/GHSA-664q-mrxx-2x2v", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4942", - "type": "advisory" - }, - { - "title": "GHSA-9ww8-j8j2-3788", - "url": "https://github.com/advisories/GHSA-9ww8-j8j2-3788", - "type": "advisory" - }, - { - "title": "https://web.archive.org/web/20130909203912/http://yuilibrary.com/support/20130515-vulnerability", - "url": "https://web.archive.org/web/20130909203912/http://yuilibrary.com/support/20130515-vulnerability", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4940", - "type": "advisory" - }, - { - "title": "GHSA-x5hj-47vv-53p8", - "url": "https://github.com/advisories/GHSA-x5hj-47vv-53p8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4941", - "type": "advisory" - }, - { - "title": "GHSA-64r3-582j-frqm", - "url": "https://github.com/advisories/GHSA-64r3-582j-frqm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0218", - "type": "advisory" - }, - { - "title": "GHSA-ch68-5r37-p7c3", - "url": "https://github.com/advisories/GHSA-ch68-5r37-p7c3", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2014/05/19/1", - "url": "http://openwall.com/lists/oss-security/2014/05/19/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/5c276a4c324b5137064496d6dd68e71476015fcd", - "url": "https://github.com/moodle/moodle/commit/5c276a4c324b5137064496d6dd68e71476015fcd", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-2571", - "type": "advisory" - }, - { - "title": "GHSA-75c6-xqwr-v2r9", - "url": "https://github.com/advisories/GHSA-75c6-xqwr-v2r9", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2014/03/17/1", - "url": "http://openwall.com/lists/oss-security/2014/03/17/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/217d839ded7026ed1b1280e1c296bc80a4036023", - "url": "https://github.com/moodle/moodle/commit/217d839ded7026ed1b1280e1c296bc80a4036023", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-2572", - "type": "advisory" - }, - { - "title": "GHSA-267j-cwvg-j28c", - "url": "https://github.com/advisories/GHSA-267j-cwvg-j28c", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/695a18b6aa9661f812a1a745a888df5acdbd7bc6", - "url": "https://github.com/moodle/moodle/commit/695a18b6aa9661f812a1a745a888df5acdbd7bc6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0216", - "type": "advisory" - }, - { - "title": "GHSA-8rc7-4qfv-4484", - "url": "https://github.com/advisories/GHSA-8rc7-4qfv-4484", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/40ad22fdd0d9ed569b2ad0ff6ad02814bfa014b8", - "url": "https://github.com/moodle/moodle/commit/40ad22fdd0d9ed569b2ad0ff6ad02814bfa014b8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0215", - "type": "advisory" - }, - { - "title": "GHSA-2fmv-j5xj-4fmq", - "url": "https://github.com/advisories/GHSA-2fmv-j5xj-4fmq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0129", - "type": "advisory" - }, - { - "title": "GHSA-5rr5-fxhc-jv64", - "url": "https://github.com/advisories/GHSA-5rr5-fxhc-jv64", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/100ec861820ce763d4f25a9f98649bb1ae17e7a5", - "url": "https://github.com/moodle/moodle/commit/100ec861820ce763d4f25a9f98649bb1ae17e7a5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-7341", - "type": "advisory" - }, - { - "title": "GHSA-j6c3-3c4w-qv8p", - "url": "https://github.com/advisories/GHSA-j6c3-3c4w-qv8p", - "type": "advisory" - }, - { - "title": "https://github.com/flowplayer/flash/issues/121", - "url": "https://github.com/flowplayer/flash/issues/121", - "type": "reference" - }, - { - "title": "http://flash.flowplayer.org/documentation/version-history.html", - "url": "http://flash.flowplayer.org/documentation/version-history.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5269", - "type": "advisory" - }, - { - "title": "GHSA-5729-822w-j342", - "url": "https://github.com/advisories/GHSA-5729-822w-j342", - "type": "advisory" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2015/09/21/1", - "url": "http://www.openwall.com/lists/oss-security/2015/09/21/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/45f3b5302d645ba13ca8b68b0106a638ebd21980", - "url": "https://github.com/moodle/moodle/commit/45f3b5302d645ba13ca8b68b0106a638ebd21980", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3275", - "type": "advisory" - }, - { - "title": "GHSA-6922-5v25-p8jg", - "url": "https://github.com/advisories/GHSA-6922-5v25-p8jg", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2015/07/13/2", - "url": "http://openwall.com/lists/oss-security/2015/07/13/2", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/46460a23035ad35caa50c2083ce6327f7723002e", - "url": "https://github.com/moodle/moodle/commit/46460a23035ad35caa50c2083ce6327f7723002e", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5336", - "type": "advisory" - }, - { - "title": "GHSA-grvw-qq2j-r898", - "url": "https://github.com/advisories/GHSA-grvw-qq2j-r898", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/12c232df76885effa5ebac08e3094d6db5aa9223", - "url": "https://github.com/moodle/moodle/commit/12c232df76885effa5ebac08e3094d6db5aa9223", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/31d0bf81af079bc285ea439ac5160f9e45697c88", - "url": "https://github.com/moodle/moodle/commit/31d0bf81af079bc285ea439ac5160f9e45697c88", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3274", - "type": "advisory" - }, - { - "title": "GHSA-f7qm-q26p-6rr2", - "url": "https://github.com/advisories/GHSA-f7qm-q26p-6rr2", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/7b15a363201109354bbd6d51a7c70f50dac7b9d8", - "url": "https://github.com/moodle/moodle/commit/7b15a363201109354bbd6d51a7c70f50dac7b9d8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-3178", - "type": "advisory" - }, - { - "title": "GHSA-9fmw-m4qx-6cq8", - "url": "https://github.com/advisories/GHSA-9fmw-m4qx-6cq8", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2015/05/18/1", - "url": "http://openwall.com/lists/oss-security/2015/05/18/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/28947c1d7d9c53781989b9da7ceb2cafdd144749", - "url": "https://github.com/moodle/moodle/commit/28947c1d7d9c53781989b9da7ceb2cafdd144749", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-2266", - "type": "advisory" - }, - { - "title": "GHSA-35pr-gqm6-r366", - "url": "https://github.com/advisories/GHSA-35pr-gqm6-r366", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2015/03/16/1", - "url": "http://openwall.com/lists/oss-security/2015/03/16/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/2924ba1c73f9ed3d525987807f9d289b3eb38154", - "url": "https://github.com/moodle/moodle/commit/2924ba1c73f9ed3d525987807f9d289b3eb38154", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-2269", - "type": "advisory" - }, - { - "title": "GHSA-cp39-43xr-2wrp", - "url": "https://github.com/advisories/GHSA-cp39-43xr-2wrp", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/ead8b28f92da72fb836cf9183aaf6f11a7eb1a21", - "url": "https://github.com/moodle/moodle/commit/ead8b28f92da72fb836cf9183aaf6f11a7eb1a21", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-2273", - "type": "advisory" - }, - { - "title": "GHSA-w77v-xpxr-c6pv", - "url": "https://github.com/advisories/GHSA-w77v-xpxr-c6pv", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/71aeb8a9cb4cf06f0b4aa49daf527e5c866db30e", - "url": "https://github.com/moodle/moodle/commit/71aeb8a9cb4cf06f0b4aa49daf527e5c866db30e", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0212", - "type": "advisory" - }, - { - "title": "GHSA-jj3j-mhgc-g4m4", - "url": "https://github.com/advisories/GHSA-jj3j-mhgc-g4m4", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2015/01/19/1", - "url": "http://openwall.com/lists/oss-security/2015/01/19/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/38ca8793b6faa6c35176537c8015cc4e76ce73f5", - "url": "https://github.com/moodle/moodle/commit/38ca8793b6faa6c35176537c8015cc4e76ce73f5", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-0213", - "type": "advisory" - }, - { - "title": "GHSA-hhq7-jf2p-hw9c", - "url": "https://github.com/advisories/GHSA-hhq7-jf2p-hw9c", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/5770e5147838aa06a3ecdff6fc3aebbbd17fff90", - "url": "https://github.com/moodle/moodle/commit/5770e5147838aa06a3ecdff6fc3aebbbd17fff90", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3548", - "type": "advisory" - }, - { - "title": "GHSA-f66h-6mj2-rwj2", - "url": "https://github.com/advisories/GHSA-f66h-6mj2-rwj2", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2014/07/21/1", - "url": "http://openwall.com/lists/oss-security/2014/07/21/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/166e18d7cbb36d58d08a2783edd98284d5a3b98a", - "url": "https://github.com/moodle/moodle/commit/166e18d7cbb36d58d08a2783edd98284d5a3b98a", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3551", - "type": "advisory" - }, - { - "title": "GHSA-m8f5-9wg8-2c3h", - "url": "https://github.com/advisories/GHSA-m8f5-9wg8-2c3h", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/1f8eb0842835bcd1ea72b2d2982e0b5c8bc133bb", - "url": "https://github.com/moodle/moodle/commit/1f8eb0842835bcd1ea72b2d2982e0b5c8bc133bb", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-7830", - "type": "advisory" - }, - { - "title": "GHSA-j4mr-vc54-h5pc", - "url": "https://github.com/advisories/GHSA-j4mr-vc54-h5pc", - "type": "advisory" - }, - { - "title": "http://openwall.com/lists/oss-security/2014/11/17/11", - "url": "http://openwall.com/lists/oss-security/2014/11/17/11", - "type": "reference" - }, - { - "title": "http://www.securitytracker.com/id/1031215", - "url": "http://www.securitytracker.com/id/1031215", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3544", - "type": "advisory" - }, - { - "title": "GHSA-c9jp-244j-vh78", - "url": "https://github.com/advisories/GHSA-c9jp-244j-vh78", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/ce5a785b0962c3c94c7a7b0d36176482d21db95d", - "url": "https://github.com/moodle/moodle/commit/ce5a785b0962c3c94c7a7b0d36176482d21db95d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3547", - "type": "advisory" - }, - { - "title": "GHSA-hwjv-mc78-cccj", - "url": "https://github.com/advisories/GHSA-hwjv-mc78-cccj", - "type": "advisory" - }, - { - "title": "http://www.securityfocus.com/bid/68758", - "url": "http://www.securityfocus.com/bid/68758", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3542", - "type": "advisory" - }, - { - "title": "GHSA-xmwv-mqh8-4xgw", - "url": "https://github.com/advisories/GHSA-xmwv-mqh8-4xgw", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/78ed99ec7e5e75b283e844adb058140d6ba0ff14", - "url": "https://github.com/moodle/moodle/commit/78ed99ec7e5e75b283e844adb058140d6ba0ff14", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3543", - "type": "advisory" - }, - { - "title": "GHSA-27j2-c838-c3qg", - "url": "https://github.com/advisories/GHSA-27j2-c838-c3qg", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/595ef4772d330a20c757635ab090acdcc9b2a2fa", - "url": "https://github.com/moodle/moodle/commit/595ef4772d330a20c757635ab090acdcc9b2a2fa", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-0725", - "type": "advisory" - }, - { - "title": "GHSA-gj2j-ppjq-9pjg", - "url": "https://github.com/advisories/GHSA-gj2j-ppjq-9pjg", - "type": "advisory" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2016-February/176502.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2016-February/176502.html", - "type": "reference" - }, - { - "title": "http://lists.fedoraproject.org/pipermail/package-announce/2016-January/176436.html", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2016-January/176436.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-2153", - "type": "advisory" - }, - { - "title": "GHSA-mj85-3hqq-r6r9", - "url": "https://github.com/advisories/GHSA-mj85-3hqq-r6r9", - "type": "advisory" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2016/03/21/1", - "url": "http://www.openwall.com/lists/oss-security/2016/03/21/1", - "type": "reference" - }, - { - "title": "https://github.com/moodle/moodle/commit/87e60e529939c60ef5b07d70c37426d359b2e8a2", - "url": "https://github.com/moodle/moodle/commit/87e60e529939c60ef5b07d70c37426d359b2e8a2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-2152", - "type": "advisory" - }, - { - "title": "GHSA-6mxm-wpqv-675h", - "url": "https://github.com/advisories/GHSA-6mxm-wpqv-675h", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/3b214760fb51ae2b0c85bbb2b272b9bc7c164657", - "url": "https://github.com/moodle/moodle/commit/3b214760fb51ae2b0c85bbb2b272b9bc7c164657", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-2155", - "type": "advisory" - }, - { - "title": "GHSA-32hg-73hp-vwc8", - "url": "https://github.com/advisories/GHSA-32hg-73hp-vwc8", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/3328dc32a75d6aa4bc92865fa236dc6d52dcb7bf", - "url": "https://github.com/moodle/moodle/commit/3328dc32a75d6aa4bc92865fa236dc6d52dcb7bf", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-5575", - "type": "advisory" - }, - { - "title": "GHSA-7v5v-9v8r-w864", - "url": "https://github.com/advisories/GHSA-7v5v-9v8r-w864", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/r36e44ffc1a9b365327df62cdfaabe85b9a5637de102cea07d79b2dbf@%3Ccommits.cxf.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r36e44ffc1a9b365327df62cdfaabe85b9a5637de102cea07d79b2dbf@%3Ccommits.cxf.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/rc774278135816e7afc943dc9fc78eb0764f2c84a2b96470a0187315c@%3Ccommits.cxf.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rc774278135816e7afc943dc9fc78eb0764f2c84a2b96470a0187315c@%3Ccommits.cxf.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/rd49aabd984ed540c8ff7916d4d79405f3fa311d2fdbcf9ed307839a6@%3Ccommits.cxf.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rd49aabd984ed540c8ff7916d4d79405f3fa311d2fdbcf9ed307839a6@%3Ccommits.cxf.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-2379", - "type": "advisory" - }, - { - "title": "GHSA-2g99-c67p-56hm", - "url": "https://github.com/advisories/GHSA-2g99-c67p-56hm", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/rec7160382badd3ef4ad017a22f64a266c7188b9ba71394f0d321e2d4@%3Ccommits.cxf.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rec7160382badd3ef4ad017a22f64a266c7188b9ba71394f0d321e2d4@%3Ccommits.cxf.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0034", - "type": "advisory" - }, - { - "title": "GHSA-38x2-fp9m-87mx", - "url": "https://github.com/advisories/GHSA-38x2-fp9m-87mx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3623", - "type": "advisory" - }, - { - "title": "GHSA-99v3-9x35-c5vf", - "url": "https://github.com/advisories/GHSA-99v3-9x35-c5vf", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97754", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97754", - "type": "reference" - }, - { - "title": "https://issues.apache.org/jira/browse/WSS-511", - "url": "https://issues.apache.org/jira/browse/WSS-511", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-2160", - "type": "advisory" - }, - { - "title": "GHSA-254q-rp36-v2m8", - "url": "https://github.com/advisories/GHSA-254q-rp36-v2m8", - "type": "advisory" - }, - { - "title": "https://cxf.apache.org/security-advisories.data/CVE-2013-2160.txt.asc", - "url": "https://cxf.apache.org/security-advisories.data/CVE-2013-2160.txt.asc", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-8739", - "type": "advisory" - }, - { - "title": "GHSA-x7xf-253v-x3w8", - "url": "https://github.com/advisories/GHSA-x7xf-253v-x3w8", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2017:0868", - "url": "https://access.redhat.com/errata/RHSA-2017:0868", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-5253", - "type": "advisory" - }, - { - "title": "GHSA-3336-h95j-hvvf", - "url": "https://github.com/advisories/GHSA-3336-h95j-hvvf", - "type": "advisory" - }, - { - "title": "https://git-wip-us.apache.org/repos/asf?p=cxf.git;a=commitdiff;h=845eccb6484b43ba02875c71e824db23ae4f20c0", - "url": "https://git-wip-us.apache.org/repos/asf?p=cxf.git;a=commitdiff;h=845eccb6484b43ba02875c71e824db23ae4f20c0", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3584", - "type": "advisory" - }, - { - "title": "GHSA-gw5j-77f9-v2g2", - "url": "https://github.com/advisories/GHSA-gw5j-77f9-v2g2", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97753", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/97753", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-6812", - "type": "advisory" - }, - { - "title": "GHSA-vw2c-5wph-v92r", - "url": "https://github.com/advisories/GHSA-vw2c-5wph-v92r", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/jira/browse/CXF-6216", - "url": "https://issues.apache.org/jira/browse/CXF-6216", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-0109", - "type": "advisory" - }, - { - "title": "GHSA-5wqf-h3r3-gxvh", - "url": "https://github.com/advisories/GHSA-5wqf-h3r3-gxvh", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-5653", - "type": "advisory" - }, - { - "title": "GHSA-hgg6-8x62-m9gf", - "url": "https://github.com/advisories/GHSA-hgg6-8x62-m9gf", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/errata/RHSA-2017:1832", - "url": "https://access.redhat.com/errata/RHSA-2017:1832", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-6519", - "type": "advisory" - }, - { - "title": "GHSA-vq76-5ghr-9p4v", - "url": "https://github.com/advisories/GHSA-vq76-5ghr-9p4v", - "type": "advisory" - }, - { - "title": "https://bugs.launchpad.net/manila-ui/+bug/1597738", - "url": "https://bugs.launchpad.net/manila-ui/+bug/1597738", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2016-2115.html", - "url": "http://rhn.redhat.com/errata/RHSA-2016-2115.html", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2016-2116.html", - "url": "http://rhn.redhat.com/errata/RHSA-2016-2116.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-6440", - "type": "advisory" - }, - { - "title": "GHSA-v723-58jv-2qc4", - "url": "https://github.com/advisories/GHSA-v723-58jv-2qc4", - "type": "advisory" - }, - { - "title": "https://www.oracle.com/security-alerts/cpujan2022.html", - "url": "https://www.oracle.com/security-alerts/cpujan2022.html", - "type": "reference" - }, - { - "title": "http://blog.sendsafely.com/post/69590974866/web-based-single-sign-on-and-the-dangers-of-saml-xml", - "url": "http://blog.sendsafely.com/post/69590974866/web-based-single-sign-on-and-the-dangers-of-saml-xml", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2014-0170.html", - "url": "http://rhn.redhat.com/errata/RHSA-2014-0170.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4002", - "type": "advisory" - }, - { - "title": "GHSA-7j4h-8wpf-rqfh", - "url": "https://github.com/advisories/GHSA-7j4h-8wpf-rqfh", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/85260", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/85260", - "type": "reference" - }, - { - "title": "https://issues.apache.org/jira/browse/XERCESJ-1679", - "url": "https://issues.apache.org/jira/browse/XERCESJ-1679", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/49dc6702104a86ecbb40292dcd329ce9ae4c32b74733199ecab14a73@%3Cj-users.xerces.apache.org%3E", - "url": "https://lists.apache.org/thread.html/49dc6702104a86ecbb40292dcd329ce9ae4c32b74733199ecab14a73@%3Cj-users.xerces.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1999004", - "type": "advisory" - }, - { - "title": "GHSA-wmr8-25ff-ggpj", - "url": "https://github.com/advisories/GHSA-wmr8-25ff-ggpj", - "type": "advisory" - }, - { - "title": "https://jenkins.io/security/advisory/2018-07-18/#SECURITY-892", - "url": "https://jenkins.io/security/advisory/2018-07-18/#SECURITY-892", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/40250f08aca7f3f8816f21870ee23463a52ef2f2", - "url": "https://github.com/jenkinsci/jenkins/commit/40250f08aca7f3f8816f21870ee23463a52ef2f2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1999001", - "type": "advisory" - }, - { - "title": "GHSA-j8qv-mj4r-6fw4", - "url": "https://github.com/advisories/GHSA-j8qv-mj4r-6fw4", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/jenkins/commit/5f4d014b3b7f89e206c6c8509540ed559f604959", - "url": "https://github.com/jenkinsci/jenkins/commit/5f4d014b3b7f89e206c6c8509540ed559f604959", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-1053", - "type": "advisory" - }, - { - "title": "GHSA-jf66-3q76-h5p5", - "url": "https://github.com/advisories/GHSA-jf66-3q76-h5p5", - "type": "advisory" - }, - { - "title": "https://github.com/keylime/keylime/security/advisories/GHSA-jf66-3q76-h5p5", - "url": "https://github.com/keylime/keylime/security/advisories/GHSA-jf66-3q76-h5p5", - "type": "reference" - }, - { - "title": "https://github.com/keylime/keylime/commit/bd5de712acdd77860e7dc58969181e16c7a8dc5d", - "url": "https://github.com/keylime/keylime/commit/bd5de712acdd77860e7dc58969181e16c7a8dc5d", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/keylime/PYSEC-2022-184.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/keylime/PYSEC-2022-184.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-0328", - "type": "advisory" - }, - { - "title": "GHSA-q5f8-fxrx-pw6f", - "url": "https://github.com/advisories/GHSA-q5f8-fxrx-pw6f", - "type": "advisory" - }, - { - "title": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-02-16", - "url": "https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-02-16", - "type": "reference" - }, - { - "title": "http://rhn.redhat.com/errata/RHSA-2013-0638.html", - "url": "http://rhn.redhat.com/errata/RHSA-2013-0638.html", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2013/02/21/7", - "url": "http://www.openwall.com/lists/oss-security/2013/02/21/7", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-6461", - "type": "advisory" - }, - { - "title": "GHSA-jmhh-w7xp-wg39", - "url": "https://github.com/advisories/GHSA-jmhh-w7xp-wg39", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2013-6461", - "url": "https://access.redhat.com/security/cve/cve-2013-6461", - "type": "reference" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/90059", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/90059", - "type": "reference" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2013-6461", - "url": "https://security-tracker.debian.org/tracker/CVE-2013-6461", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-6460", - "type": "advisory" - }, - { - "title": "GHSA-62qp-3fxm-9wxf", - "url": "https://github.com/advisories/GHSA-62qp-3fxm-9wxf", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2013-6460", - "url": "https://access.redhat.com/security/cve/cve-2013-6460", - "type": "reference" - }, - { - "title": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-6460", - "url": "https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-6460", - "type": "reference" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/90058", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/90058", - "type": "reference" - }, - { - "title": "GHSA-x7xj-jvwp-97rv", - "url": "https://github.com/advisories/GHSA-x7xj-jvwp-97rv", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-7h8m-pvw3-5gh4", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-7h8m-pvw3-5gh4", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rke2/security/advisories/GHSA-x7xj-jvwp-97rv", - "url": "https://github.com/rancher/rke2/security/advisories/GHSA-x7xj-jvwp-97rv", - "type": "reference" - }, - { - "title": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32197", - "url": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-32197", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32197", - "type": "advisory" - }, - { - "title": "GHSA-7h8m-pvw3-5gh4", - "url": "https://github.com/advisories/GHSA-7h8m-pvw3-5gh4", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-64jq-m7rq-768h", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-64jq-m7rq-768h", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41050", - "type": "advisory" - }, - { - "title": "GHSA-765j-qfrp-hm3j", - "url": "https://github.com/advisories/GHSA-765j-qfrp-hm3j", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/fleet/security/advisories/GHSA-765j-qfrp-hm3j", - "url": "https://github.com/rancher/fleet/security/advisories/GHSA-765j-qfrp-hm3j", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58269", - "type": "advisory" - }, - { - "title": "GHSA-mw39-9qc2-f7mg", - "url": "https://github.com/advisories/GHSA-mw39-9qc2-f7mg", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-mw39-9qc2-f7mg", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-mw39-9qc2-f7mg", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/commit/26ad9216e94f77b5471f638256a6989030572adc", - "url": "https://github.com/rancher/rancher/commit/26ad9216e94f77b5471f638256a6989030572adc", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/commit/50dc516a19ea216e270f738912dc8d0c9ca99d5d", - "url": "https://github.com/rancher/rancher/commit/50dc516a19ea216e270f738912dc8d0c9ca99d5d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54471", - "type": "advisory" - }, - { - "title": "GHSA-h773-7gf7-9m2x", - "url": "https://github.com/advisories/GHSA-h773-7gf7-9m2x", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-h773-7gf7-9m2x", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-h773-7gf7-9m2x", - "type": "reference" - }, - { - "title": "https://github.com/neuvector/neuvector/commit/084a437033b491eeea11bdba1a09dd84ed12ea88", - "url": "https://github.com/neuvector/neuvector/commit/084a437033b491eeea11bdba1a09dd84ed12ea88", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54470", - "type": "advisory" - }, - { - "title": "GHSA-qqj3-g7mx-5p4w", - "url": "https://github.com/advisories/GHSA-qqj3-g7mx-5p4w", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-qqj3-g7mx-5p4w", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-qqj3-g7mx-5p4w", - "type": "reference" - }, - { - "title": "https://github.com/neuvector/neuvector/commit/06424701e69bf1eb76ff90180d78853fded93021", - "url": "https://github.com/neuvector/neuvector/commit/06424701e69bf1eb76ff90180d78853fded93021", - "type": "reference" - }, - { - "title": "https://github.com/neuvector/neuvector/commit/415737cbec581a5dc5f204fac1c78b7f29ad7dc2", - "url": "https://github.com/neuvector/neuvector/commit/415737cbec581a5dc5f204fac1c78b7f29ad7dc2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58260", - "type": "advisory" - }, - { - "title": "GHSA-q82v-h4rq-5c86", - "url": "https://github.com/advisories/GHSA-q82v-h4rq-5c86", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-q82v-h4rq-5c86", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-q82v-h4rq-5c86", - "type": "reference" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2025-3983", - "url": "https://pkg.go.dev/vuln/GO-2025-3983", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58267", - "type": "advisory" - }, - { - "title": "GHSA-v3vj-5868-2ch2", - "url": "https://github.com/advisories/GHSA-v3vj-5868-2ch2", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-v3vj-5868-2ch2", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-v3vj-5868-2ch2", - "type": "reference" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2025-3984", - "url": "https://pkg.go.dev/vuln/GO-2025-3984", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54467", - "type": "advisory" - }, - { - "title": "GHSA-w54x-xfxg-4gxq", - "url": "https://github.com/advisories/GHSA-w54x-xfxg-4gxq", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-w54x-xfxg-4gxq", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-w54x-xfxg-4gxq", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53884", - "type": "advisory" - }, - { - "title": "GHSA-8ff6-pc43-jwv3", - "url": "https://github.com/advisories/GHSA-8ff6-pc43-jwv3", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-8ff6-pc43-jwv3", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-8ff6-pc43-jwv3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23389", - "type": "advisory" - }, - { - "title": "GHSA-mq23-vvg7-xfm4", - "url": "https://github.com/advisories/GHSA-mq23-vvg7-xfm4", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-mq23-vvg7-xfm4", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-mq23-vvg7-xfm4", - "type": "reference" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2025-3490", - "url": "https://pkg.go.dev/vuln/GO-2025-3490", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/pull/48964", - "url": "https://github.com/rancher/rancher/pull/48964", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-52281", - "type": "advisory" - }, - { - "title": "GHSA-2v2w-8v8c-wcm9", - "url": "https://github.com/advisories/GHSA-2v2w-8v8c-wcm9", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-2v2w-8v8c-wcm9", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-2v2w-8v8c-wcm9", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-45157", - "type": "advisory" - }, - { - "title": "GHSA-xj7w-r753-vj8v", - "url": "https://github.com/advisories/GHSA-xj7w-r753-vj8v", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-xj7w-r753-vj8v", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-xj7w-r753-vj8v", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22649", - "type": "advisory" - }, - { - "title": "GHSA-xfj7-qf8w-2gcr", - "url": "https://github.com/advisories/GHSA-xfj7-qf8w-2gcr", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-xfj7-qf8w-2gcr", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-xfj7-qf8w-2gcr", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32188", - "type": "advisory" - }, - { - "title": "GHSA-622h-h2p8-743x", - "url": "https://github.com/advisories/GHSA-622h-h2p8-743x", - "type": "advisory" - }, - { - "title": "https://github.com/neuvector/neuvector/security/advisories/GHSA-622h-h2p8-743x", - "url": "https://github.com/neuvector/neuvector/security/advisories/GHSA-622h-h2p8-743x", - "type": "reference" - }, - { - "title": "https://open-docs.neuvector.com/releasenotes/5x", - "url": "https://open-docs.neuvector.com/releasenotes/5x", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32186", - "type": "advisory" - }, - { - "title": "GHSA-p45j-vfv5-wprq", - "url": "https://github.com/advisories/GHSA-p45j-vfv5-wprq", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rke2/security/advisories/GHSA-p45j-vfv5-wprq", - "url": "https://github.com/rancher/rke2/security/advisories/GHSA-p45j-vfv5-wprq", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32187", - "type": "advisory" - }, - { - "title": "GHSA-m4hf-6vgr-75r2", - "url": "https://github.com/advisories/GHSA-m4hf-6vgr-75r2", - "type": "advisory" - }, - { - "title": "https://github.com/k3s-io/k3s/security/advisories/GHSA-m4hf-6vgr-75r2", - "url": "https://github.com/k3s-io/k3s/security/advisories/GHSA-m4hf-6vgr-75r2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-43758", - "type": "advisory" - }, - { - "title": "GHSA-34p5-jp77-fcrc", - "url": "https://github.com/advisories/GHSA-34p5-jp77-fcrc", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-34p5-jp77-fcrc", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-34p5-jp77-fcrc", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-43755", - "type": "advisory" - }, - { - "title": "GHSA-8c69-r38j-rpfj", - "url": "https://github.com/advisories/GHSA-8c69-r38j-rpfj", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-8c69-r38j-rpfj", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-8c69-r38j-rpfj", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-0013", - "type": "advisory" - }, - { - "title": "GHSA-3p86-xgrq-m6p6", - "url": "https://github.com/advisories/GHSA-3p86-xgrq-m6p6", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/06cfb634bc7bf37af7d8f760f118018746ad8efbd519c4b789ac9c2e@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/06cfb634bc7bf37af7d8f760f118018746ad8efbd519c4b789ac9c2e@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/8dcaf7c3894d66cb717646ea1504ea6e300021c85bb4e677dc16b1aa@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/8dcaf7c3894d66cb717646ea1504ea6e300021c85bb4e677dc16b1aa@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/r3aacc40356defc3f248aa504b1e48e819dd0471a0a83349080c6bcbf@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/r3aacc40356defc3f248aa504b1e48e819dd0471a0a83349080c6bcbf@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-36784", - "type": "advisory" - }, - { - "title": "GHSA-jwvr-vv7p-gpwq", - "url": "https://github.com/advisories/GHSA-jwvr-vv7p-gpwq", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-jwvr-vv7p-gpwq", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-jwvr-vv7p-gpwq", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/releases/tag/v2.5.13", - "url": "https://github.com/rancher/rancher/releases/tag/v2.5.13", - "type": "reference" - }, - { - "title": "https://github.com/rancher/rancher/releases/tag/v2.6.4", - "url": "https://github.com/rancher/rancher/releases/tag/v2.6.4", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4200", - "type": "advisory" - }, - { - "title": "GHSA-hx8w-ghh8-r4xf", - "url": "https://github.com/advisories/GHSA-hx8w-ghh8-r4xf", - "type": "advisory" - }, - { - "title": "https://github.com/rancher/rancher/security/advisories/GHSA-hx8w-ghh8-r4xf", - "url": "https://github.com/rancher/rancher/security/advisories/GHSA-hx8w-ghh8-r4xf", - "type": "reference" - }, - { - "title": "https://rancher.com/docs/rancher/v2.6/en/admin-settings/rbac/global-permissions/#restricted-admin", - "url": "https://rancher.com/docs/rancher/v2.6/en/admin-settings/rbac/global-permissions/#restricted-admin", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-0828", - "type": "advisory" - }, - { - "title": "GHSA-fc72-v54c-x9jg", - "url": "https://github.com/advisories/GHSA-fc72-v54c-x9jg", - "type": "advisory" - }, - { - "title": "https://bugs.launchpad.net/ubuntu/+source/moin/+bug/538022", - "url": "https://bugs.launchpad.net/ubuntu/+source/moin/+bug/538022", - "type": "reference" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/57435", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/57435", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-5065", - "type": "advisory" - }, - { - "title": "GHSA-3mwg-gp5g-fv3q", - "url": "https://github.com/advisories/GHSA-3mwg-gp5g-fv3q", - "type": "advisory" - }, - { - "title": "http://code.google.com/p/feedparser/issues/detail?id=195", - "url": "http://code.google.com/p/feedparser/issues/detail?id=195", - "type": "reference" - }, - { - "title": "http://lists.opensuse.org/opensuse-updates/2011-04/msg00026.html", - "url": "http://lists.opensuse.org/opensuse-updates/2011-04/msg00026.html", - "type": "reference" - }, - { - "title": "http://support.novell.com/security/cve/CVE-2009-5065.html", - "url": "http://support.novell.com/security/cve/CVE-2009-5065.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-3696", - "type": "advisory" - }, - { - "title": "GHSA-5pvv-f8h3-gw96", - "url": "https://github.com/advisories/GHSA-5pvv-f8h3-gw96", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53742", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53742", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00467.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00467.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00490.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00490.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-3636", - "type": "advisory" - }, - { - "title": "GHSA-c73w-4rcj-2622", - "url": "https://github.com/advisories/GHSA-c73w-4rcj-2622", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53929", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53929", - "type": "reference" - }, - { - "title": "http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-016/", - "url": "http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-016/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-3633", - "type": "advisory" - }, - { - "title": "GHSA-m7rg-85g8-28m9", - "url": "https://github.com/advisories/GHSA-m7rg-85g8-28m9", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53925", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53925", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-3629", - "type": "advisory" - }, - { - "title": "GHSA-g857-p997-wx7w", - "url": "https://github.com/advisories/GHSA-g857-p997-wx7w", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53918", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53918", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2737", - "type": "advisory" - }, - { - "title": "GHSA-9rj9-5wcv-xgf2", - "url": "https://github.com/advisories/GHSA-9rj9-5wcv-xgf2", - "type": "advisory" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2009-March/msg00429.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2009-March/msg00429.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2009-March/msg00439.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2009-March/msg00439.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-0783", - "type": "advisory" - }, - { - "title": "GHSA-hhjg-g8xq-hhr3", - "url": "https://github.com/advisories/GHSA-hhjg-g8xq-hhr3", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51195", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51195", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-0781", - "type": "advisory" - }, - { - "title": "GHSA-j788-fx57-99wp", - "url": "https://github.com/advisories/GHSA-j788-fx57-99wp", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/49213", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/49213", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/29dc6c2b625789e70a9c4756b5a327e6547273ff8bde7e0327af48c5@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-0217", - "type": "advisory" - }, - { - "title": "GHSA-8hfm-837h-hjg5", - "url": "https://github.com/advisories/GHSA-8hfm-837h-hjg5", - "type": "advisory" - }, - { - "title": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-041", - "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-041", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-3909", - "type": "advisory" - }, - { - "title": "GHSA-r5cj-wv24-92p5", - "url": "https://github.com/advisories/GHSA-r5cj-wv24-92p5", - "type": "advisory" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00091.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00091.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00131.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00131.html", - "type": "reference" - }, - { - "title": "http://www.debian.org/security/2008/dsa-1640", - "url": "http://www.debian.org/security/2008/dsa-1640", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-3218", - "type": "advisory" - }, - { - "title": "GHSA-6cj8-c359-p7q9", - "url": "https://github.com/advisories/GHSA-6cj8-c359-p7q9", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/43704", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/43704", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-August/msg00016.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-August/msg00016.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00527.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00527.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-1947", - "type": "advisory" - }, - { - "title": "GHSA-f98p-9pp6-7q6c", - "url": "https://github.com/advisories/GHSA-f98p-9pp6-7q6c", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/42816", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/42816", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-1232", - "type": "advisory" - }, - { - "title": "GHSA-q74x-qqhr-f8rx", - "url": "https://github.com/advisories/GHSA-q74x-qqhr-f8rx", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/44155", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/44155", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-0781", - "type": "advisory" - }, - { - "title": "GHSA-775g-4482-pm94", - "url": "https://github.com/advisories/GHSA-775g-4482-pm94", - "type": "advisory" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00726.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00726.html", - "type": "reference" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00752.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00752.html", - "type": "reference" - }, - { - "title": "http://hg.moinmo.in/moin/1.5/rev/db212dfc58ef", - "url": "http://hg.moinmo.in/moin/1.5/rev/db212dfc58ef", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-0780", - "type": "advisory" - }, - { - "title": "GHSA-53wj-6m7w-j6mj", - "url": "https://github.com/advisories/GHSA-53wj-6m7w-j6mj", - "type": "advisory" - }, - { - "title": "http://hg.moinmo.in/moin/1.5/rev/2f952fa361c7", - "url": "http://hg.moinmo.in/moin/1.5/rev/2f952fa361c7", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-5342", - "type": "advisory" - }, - { - "title": "GHSA-w65j-cmqc-37p2", - "url": "https://github.com/advisories/GHSA-w65j-cmqc-37p2", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/39201", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/39201", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-3383", - "type": "advisory" - }, - { - "title": "GHSA-wjwr-3jch-479j", - "url": "https://github.com/advisories/GHSA-wjwr-3jch-479j", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35536", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/35536", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/c62b0e3a7bf23342352a5810c640a94b6db69957c5c19db507004d74@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread.html/rb71997f506c6cc8b530dd845c084995a9878098846c7b4eacfae8db3@%3Cdev.tomcat.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rb71997f506c6cc8b530dd845c084995a9878098846c7b4eacfae8db3@%3Cdev.tomcat.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-2450", - "type": "advisory" - }, - { - "title": "GHSA-5c5p-jxvx-x7j2", - "url": "https://github.com/advisories/GHSA-5c5p-jxvx-x7j2", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34868", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34868", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-2449", - "type": "advisory" - }, - { - "title": "GHSA-hc39-rjwp-qffq", - "url": "https://github.com/advisories/GHSA-hc39-rjwp-qffq", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34869", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34869", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-1358", - "type": "advisory" - }, - { - "title": "GHSA-xmc9-6p56-3c4v", - "url": "https://github.com/advisories/GHSA-xmc9-6p56-3c4v", - "type": "advisory" - }, - { - "title": "https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00525.html", - "url": "https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00525.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-1355", - "type": "advisory" - }, - { - "title": "GHSA-4c6x-gfc8-c26r", - "url": "https://github.com/advisories/GHSA-4c6x-gfc8-c26r", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34377", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34377", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-7196", - "type": "advisory" - }, - { - "title": "GHSA-pm78-wxxf-fw98", - "url": "https://github.com/advisories/GHSA-pm78-wxxf-fw98", - "type": "advisory" - }, - { - "title": "http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx", - "url": "http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4206", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://lists.debian.org/debian-lts-announce/2022/09/msg00008.html", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://security.gentoo.org/glsa/202208-27", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://starlabs.sg/advisories/21-4206/", - "type": "exploit" - }, - { - "title": "secalert@redhat.com", - "url": "https://www.debian.org/security/2022/dsa-5133", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-4207", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://starlabs.sg/advisories/21-4207/", - "type": "exploit" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2004-1177", - "type": "advisory" - }, - { - "title": "GHSA-rh6c-jh4c-9fg3", - "url": "https://github.com/advisories/GHSA-rh6c-jh4c-9fg3", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/18854", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/18854", - "type": "reference" - }, - { - "title": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11113", - "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11113", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2003-0038", - "type": "advisory" - }, - { - "title": "GHSA-82rm-28q9-435p", - "url": "https://github.com/advisories/GHSA-82rm-28q9-435p", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11152", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11152", - "type": "reference" - }, - { - "title": "http://telia.dl.sourceforge.net/sourceforge/mailman/xss-2.1.0-patch.txt", - "url": "http://telia.dl.sourceforge.net/sourceforge/mailman/xss-2.1.0-patch.txt", - "type": "reference" - }, - { - "title": "http://www.debian.org/security/2004/dsa-436", - "url": "http://www.debian.org/security/2004/dsa-436", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2003-0042", - "type": "advisory" - }, - { - "title": "GHSA-qfw2-wvrw-mvw4", - "url": "https://github.com/advisories/GHSA-qfw2-wvrw-mvw4", - "type": "advisory" - }, - { - "title": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11194", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/11194", - "type": "reference" - }, - { - "title": "http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/", - "url": "http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/", - "type": "reference" - }, - { - "title": "http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/RELEASE-NOTES-3.3.1a.txt", - "url": "http://jakarta.apache.org/builds/jakarta-tomcat/release/v3.3.1a/RELEASE-NOTES-3.3.1a.txt", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-3827", - "type": "advisory" - }, - { - "title": "GHSA-4pc7-vqv5-5r3v", - "url": "https://github.com/advisories/GHSA-4pc7-vqv5-5r3v", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/security/advisories/GHSA-4pc7-vqv5-5r3v", - "url": "https://github.com/keycloak/keycloak/security/advisories/GHSA-4pc7-vqv5-5r3v", - "type": "reference" - }, - { - "title": "https://github.com/keycloak/keycloak/commit/44000caaf5051d7f218d1ad79573bd3d175cad0d", - "url": "https://github.com/keycloak/keycloak/commit/44000caaf5051d7f218d1ad79573bd3d175cad0d", - "type": "reference" - }, - { - "title": "https://access.redhat.com/security/cve/CVE-2021-3827", - "url": "https://access.redhat.com/security/cve/CVE-2021-3827", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6685", - "type": "advisory" - }, - { - "title": "GHSA-6wj9-77wq-jq7p", - "url": "https://github.com/advisories/GHSA-6wj9-77wq-jq7p", - "type": "advisory" - }, - { - "title": "https://github.com/sparklemotion/nokogiri/issues/693", - "url": "https://github.com/sparklemotion/nokogiri/issues/693", - "type": "reference" - }, - { - "title": "https://nokogiri.org/CHANGELOG.html#154-2012-06-12", - "url": "https://nokogiri.org/CHANGELOG.html#154-2012-06-12", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-6133", - "type": "advisory" - }, - { - "title": "GHSA-5jq3-8437-x35p", - "url": "https://github.com/advisories/GHSA-5jq3-8437-x35p", - "type": "advisory" - }, - { - "title": "http://issues.roundup-tracker.org/issue2550724", - "url": "http://issues.roundup-tracker.org/issue2550724", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4439", - "type": "advisory" - }, - { - "title": "GHSA-x97g-3gp9-cf2p", - "url": "https://github.com/advisories/GHSA-x97g-3gp9-cf2p", - "type": "advisory" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2012-4439", - "url": "https://security-tracker.debian.org/tracker/CVE-2012-4439", - "type": "reference" - }, - { - "title": "https://www.cloudbees.com/jenkins-security-advisory-2012-09-17", - "url": "https://www.cloudbees.com/jenkins-security-advisory-2012-09-17", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/09/21/2", - "url": "http://www.openwall.com/lists/oss-security/2012/09/21/2", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4441", - "type": "advisory" - }, - { - "title": "GHSA-3qxr-q72q-hmwp", - "url": "https://github.com/advisories/GHSA-3qxr-q72q-hmwp", - "type": "advisory" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2012-4441", - "url": "https://security-tracker.debian.org/tracker/CVE-2012-4441", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/ci-game-plugin/commit/9ef03da36524038322a7b9c14370a4c497e708f8", - "url": "https://github.com/jenkinsci/ci-game-plugin/commit/9ef03da36524038322a7b9c14370a4c497e708f8", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-4440", - "type": "advisory" - }, - { - "title": "GHSA-5qpv-27q3-6484", - "url": "https://github.com/advisories/GHSA-5qpv-27q3-6484", - "type": "advisory" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2012-4440", - "url": "https://security-tracker.debian.org/tracker/CVE-2012-4440", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/violations-plugin/commit/6dcbef2114adb0f9c01a0a927105fcf80a414e4d", - "url": "https://github.com/jenkinsci/violations-plugin/commit/6dcbef2114adb0f9c01a0a927105fcf80a414e4d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-27652", - "type": "advisory" - }, - { - "title": "GHSA-4hj2-r2pm-3hc6", - "url": "https://github.com/advisories/GHSA-4hj2-r2pm-3hc6", - "type": "advisory" - }, - { - "title": "https://github.com/cri-o/cri-o/security/advisories/GHSA-4hj2-r2pm-3hc6", - "url": "https://github.com/cri-o/cri-o/security/advisories/GHSA-4hj2-r2pm-3hc6", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4924", - "type": "advisory" - }, - { - "title": "GHSA-vh6g-786f-hxxp", - "url": "https://github.com/advisories/GHSA-vh6g-786f-hxxp", - "type": "advisory" - }, - { - "title": "https://access.redhat.com/security/cve/cve-2011-4924", - "url": "https://access.redhat.com/security/cve/cve-2011-4924", - "type": "reference" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2011-4924", - "url": "https://security-tracker.debian.org/tracker/CVE-2011-4924", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2012/01/19/16", - "url": "http://www.openwall.com/lists/oss-security/2012/01/19/16", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3673", - "type": "advisory" - }, - { - "title": "GHSA-5f2f-hr23-j59j", - "url": "https://github.com/advisories/GHSA-5f2f-hr23-j59j", - "type": "advisory" - }, - { - "title": "https://security-tracker.debian.org/tracker/CVE-2010-3673", - "url": "https://security-tracker.debian.org/tracker/CVE-2010-3673", - "type": "reference" - }, - { - "title": "https://typo3.org/security/advisory/typo3-sa-2010-012/#Information_Disclosure", - "url": "https://typo3.org/security/advisory/typo3-sa-2010-012/#Information_Disclosure", - "type": "reference" - }, - { - "title": "https://github.com/TYPO3/typo3/commit/3e24a0fff04897826a12e5cac16b5b0a3848cf2d", - "url": "https://github.com/TYPO3/typo3/commit/3e24a0fff04897826a12e5cac16b5b0a3848cf2d", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-3461", - "type": "advisory" - }, - { - "title": "GHSA-cm29-6wx7-p874", - "url": "https://github.com/advisories/GHSA-cm29-6wx7-p874", - "type": "advisory" - }, - { - "title": "https://github.com/keycloak/keycloak/issues/11203", - "url": "https://github.com/keycloak/keycloak/issues/11203", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24770", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/commit/80fea89117358ee105973453fdc402398ae20239", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/pull/817", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-f8xq-q7px-wg8c", - "type": "advisory" - }, - { - "title": "GHSA-f8xq-q7px-wg8c", - "url": "https://github.com/advisories/GHSA-f8xq-q7px-wg8c", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2022-229.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2022-229.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f8xq-q7px-wg8c", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2022-229", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-45083", - "type": "advisory" - }, - { - "title": "GHSA-5946-mpw5-pqxx", - "url": "https://github.com/advisories/GHSA-5946-mpw5-pqxx", - "type": "advisory" - }, - { - "title": "https://github.com/cobbler/cobbler/releases", - "url": "https://github.com/cobbler/cobbler/releases", - "type": "reference" - }, - { - "title": "https://www.openwall.com/lists/oss-security/2022/02/18/3", - "url": "https://www.openwall.com/lists/oss-security/2022/02/18/3", - "type": "reference" - }, - { - "title": "https://github.com/cobbler/cobbler/pull/2945", - "url": "https://github.com/cobbler/cobbler/pull/2945", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-1098", - "type": "advisory" - }, - { - "title": "GHSA-5gjm-fj42-x983", - "url": "https://github.com/advisories/GHSA-5gjm-fj42-x983", - "type": "advisory" - }, - { - "title": "https://github.com/coreos/etcd/issues/9353", - "url": "https://github.com/coreos/etcd/issues/9353", - "type": "reference" - }, - { - "title": "https://github.com/coreos/etcd/commit/a7e5790c82039945639798ae9a3289fe787f5e56", - "url": "https://github.com/coreos/etcd/commit/a7e5790c82039945639798ae9a3289fe787f5e56", - "type": "reference" - }, - { - "title": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JX7QTIT465BQGRGNCE74RATRQLKT2QE4/", - "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JX7QTIT465BQGRGNCE74RATRQLKT2QE4/", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-14338", - "type": "advisory" - }, - { - "title": "GHSA-w4jq-qh47-hvjq", - "url": "https://github.com/advisories/GHSA-w4jq-qh47-hvjq", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/thread.html/rf96c5afb26b596b4b97883aa90b6c0b0fc4c26aaeea7123c21912103@%3Cj-users.xerces.apache.org%3E", - "url": "https://lists.apache.org/thread.html/rf96c5afb26b596b4b97883aa90b6c0b0fc4c26aaeea7123c21912103@%3Cj-users.xerces.apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-0333", - "type": "advisory" - }, - { - "title": "GHSA-m434-m5pv-p35w", - "url": "https://github.com/advisories/GHSA-m434-m5pv-p35w", - "type": "advisory" - }, - { - "title": "https://github.com/moodle/moodle/commit/2ee27313cea0d7073f5a6a35eccdfddcb3a9adad", - "url": "https://github.com/moodle/moodle/commit/2ee27313cea0d7073f5a6a35eccdfddcb3a9adad", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-20615", - "type": "advisory" - }, - { - "title": "GHSA-vqwg-4v6f-h6x5", - "url": "https://github.com/advisories/GHSA-vqwg-4v6f-h6x5", - "type": "advisory" - }, - { - "title": "https://www.jenkins.io/security/advisory/2022-01-12/#SECURITY-2017", - "url": "https://www.jenkins.io/security/advisory/2022-01-12/#SECURITY-2017", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2022/01/12/6", - "url": "http://www.openwall.com/lists/oss-security/2022/01/12/6", - "type": "reference" - }, - { - "title": "https://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20615.json", - "url": "https://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20615.json", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-20620", - "type": "advisory" - }, - { - "title": "GHSA-9wxh-jjj5-67cv", - "url": "https://github.com/advisories/GHSA-9wxh-jjj5-67cv", - "type": "advisory" - }, - { - "title": "https://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20620.jsonhttps://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20620.json", - "url": "https://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20620.jsonhttps://github.com/CVEProject/cvelist/blob/2d78eb36f4d084db7fb35f1535d8d84fdcb7d859/2022/20xxx/CVE-2022-20620.json", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/ssh-agent-plugin/commit/04f526d2f73a6fc24b59df20ba03d95265114835", - "url": "https://github.com/jenkinsci/ssh-agent-plugin/commit/04f526d2f73a6fc24b59df20ba03d95265114835", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23117", - "type": "advisory" - }, - { - "title": "GHSA-cw68-xmm4-c83r", - "url": "https://github.com/advisories/GHSA-cw68-xmm4-c83r", - "type": "advisory" - }, - { - "title": "https://github.com/jenkinsci/conjur-credentials-plugin/pull/19", - "url": "https://github.com/jenkinsci/conjur-credentials-plugin/pull/19", - "type": "reference" - }, - { - "title": "https://github.com/jenkinsci/conjur-credentials-plugin/releases/tag/conjur-credentials-1.0.10", - "url": "https://github.com/jenkinsci/conjur-credentials-plugin/releases/tag/conjur-credentials-1.0.10", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23116", - "type": "advisory" - }, - { - "title": "GHSA-g7fx-mmjc-r7gv", - "url": "https://github.com/advisories/GHSA-g7fx-mmjc-r7gv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-23118", - "type": "advisory" - }, - { - "title": "GHSA-8xjp-rp29-v5j8", - "url": "https://github.com/advisories/GHSA-8xjp-rp29-v5j8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-10196", - "type": "advisory" - }, - { - "title": "GHSA-86wf-436m-h424", - "url": "https://github.com/advisories/GHSA-86wf-436m-h424", - "type": "advisory" - }, - { - "title": "https://github.com/TooTallNate/node-http-proxy-agent/commit/b7b7cc793c3226aa83f820ce5c277e81862d32eb", - "url": "https://github.com/TooTallNate/node-http-proxy-agent/commit/b7b7cc793c3226aa83f820ce5c277e81862d32eb", - "type": "reference" - }, - { - "title": "https://www.npmjs.com/advisories/607", - "url": "https://www.npmjs.com/advisories/607", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-43831", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/commit/41bd3645bdb616e1248b2167ca83636a2653f781", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/gradio-app/gradio/security/advisories/GHSA-rhq2-3vr9-6mcr", - "type": "exploit" - }, - { - "title": "GHSA-rhq2-3vr9-6mcr", - "url": "https://github.com/advisories/GHSA-rhq2-3vr9-6mcr", - "type": "advisory" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2021-873.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/gradio/PYSEC-2021-873.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rhq2-3vr9-6mcr", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2021-873", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-25017", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-16848", - "type": "advisory" - }, - { - "title": "secalert@redhat.com", - "url": "https://bugs.launchpad.net/mistral/+bug/1785657", - "type": "advisory" - }, - { - "title": "GHSA-443j-6p7g-6v4w", - "url": "https://github.com/advisories/GHSA-443j-6p7g-6v4w", - "type": "advisory" - }, - { - "title": "https://github.com/openstack/mistral/commit/eac23d9e774f658f9d4743c99aa2743eb104c3f9", - "url": "https://github.com/openstack/mistral/commit/eac23d9e774f658f9d4743c99aa2743eb104c3f9", - "type": "reference" - }, - { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/mistral/PYSEC-2020-240.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/mistral/PYSEC-2020-240.yaml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-2627", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-16612", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://security.cucumberlinux.com/security/details.php?id=156", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.openwall.com/lists/oss-security/2017/11/28/6", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.ubuntu.com/usn/USN-3501-1", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://cgit.freedesktop.org/wayland/wayland/commit/?id=5d201df72f3d4f4cb8b8f75f980169b03507da38", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-6938", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-September/166460.html", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-September/166471.html", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://lists.fedoraproject.org/pipermail/package-announce/2015-September/167670.html", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://lists.opensuse.org/opensuse-updates/2015-10/msg00016.html", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://seclists.org/oss-sec/2015/q3/474", - "type": "reference" - }, - { - "title": "GHSA-4vwq-x64q-j4cj", - "url": "https://github.com/advisories/GHSA-4vwq-x64q-j4cj", - "type": "advisory" - }, - { - "title": "https://github.com/ipython/ipython/commit/3ab41641cf6fce3860c73d5cf4645aa12e1e5892", - "url": "https://github.com/ipython/ipython/commit/3ab41641cf6fce3860c73d5cf4645aa12e1e5892", - "type": "reference" - }, - { - "title": "https://github.com/jupyter/notebook/commit/35f32dd2da804d108a3a3585b69ec3295b2677ed", - "url": "https://github.com/jupyter/notebook/commit/35f32dd2da804d108a3a3585b69ec3295b2677ed", - "type": "reference" - }, - { - "title": "https://github.com/jupyter/notebook/commit/dd9876381f0ef09873d8c5f6f2063269172331e3", - "url": "https://github.com/jupyter/notebook/commit/dd9876381f0ef09873d8c5f6f2063269172331e3", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-4160", - "type": "advisory" - }, - { - "title": "hp-security-alert@hp.com", - "url": "http://secunia.com/advisories/46971", - "type": "reference" - }, - { - "title": "hp-security-alert@hp.com", - "url": "http://www.securityfocus.com/bid/50761", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-0339", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/28518", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/28556", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://securitytracker.com/id?1019218", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.oracle.com/technetwork/topics/security/cpujan2008-086860.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-0888", - "type": "advisory" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021732.1-1", - "type": "reference" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.html", - "type": "vendor" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.us-cert.gov/cas/techalerts/TA10-103B.html", - "type": "reference" - }, - { - "title": "secalert_us@oracle.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/57745", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-0851", - "type": "advisory" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://secunia.com/advisories/39438", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-0852", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-4294", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/37284", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.vupen.com/english/advisories/2009/3477", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-4295", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/37285", - "type": "patch" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-4314", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2489", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.vupen.com/english/advisories/2009/1915", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51743", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2490", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/55979", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51741", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2491", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/55978", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/51742", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-5422", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/33108", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://support.avaya.com/elmodocs2/security/ASA-2008-502.htm", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/32769", - "type": "patch" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-5423", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/33119", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37895", - "type": "advisory" - }, - { - "title": "GHSA-q8cm-3v62-jj79", - "url": "https://github.com/advisories/GHSA-q8cm-3v62-jj79", - "type": "advisory" - }, - { - "title": "https://lists.apache.org/list.html?users@jackrabbit.apache.org", - "url": "https://lists.apache.org/list.html?users@jackrabbit.apache.org", - "type": "reference" - }, - { - "title": "https://lists.apache.org/thread/j03b3qdhborc2jrhdc4d765d3jkh8bfw", - "url": "https://lists.apache.org/thread/j03b3qdhborc2jrhdc4d765d3jkh8bfw", - "type": "reference" - }, - { - "title": "http://www.openwall.com/lists/oss-security/2023/07/25/8", - "url": "http://www.openwall.com/lists/oss-security/2023/07/25/8", - "type": "reference" - }, - { - "title": "http://seclists.org/fulldisclosure/2023/Jul/43", - "url": "http://seclists.org/fulldisclosure/2023/Jul/43", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2016-5000", - "type": "advisory" - }, - { - "title": "GHSA-pmqq-7wfv-jfff", - "url": "https://github.com/advisories/GHSA-pmqq-7wfv-jfff", - "type": "advisory" - }, - { - "title": "https://www.oracle.com/security-alerts/cpuoct2020.html", - "url": "https://www.oracle.com/security-alerts/cpuoct2020.html", - "type": "reference" - }, - { - "title": "http://www-01.ibm.com/support/docview.wss?uid=swg21996759", - "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21996759", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-3628", - "type": "advisory" - }, - { - "title": "GHSA-wgw2-gw4v-9w4j", - "url": "https://github.com/advisories/GHSA-wgw2-gw4v-9w4j", - "type": "advisory" - }, - { - "title": "http://mail-archives.us.apache.org/mod_mbox/www-announce/201412.mbox/%3C54A1A7C7.2070804@apache.org%3E", - "url": "http://mail-archives.us.apache.org/mod_mbox/www-announce/201412.mbox/%3C54A1A7C7.2070804@apache.org%3E", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-8795", - "type": "advisory" - }, - { - "title": "GHSA-mx2h-hf7j-2x3p", - "url": "https://github.com/advisories/GHSA-mx2h-hf7j-2x3p", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/jira/browse/SOLR-7346", - "url": "https://issues.apache.org/jira/browse/SOLR-7346", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2015-8797", - "type": "advisory" - }, - { - "title": "GHSA-v6gf-x8fp-532v", - "url": "https://github.com/advisories/GHSA-v6gf-x8fp-532v", - "type": "advisory" - }, - { - "title": "https://issues.apache.org/jira/browse/SOLR-7949", - "url": "https://issues.apache.org/jira/browse/SOLR-7949", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-9096", - "type": "advisory" - }, - { - "title": "GHSA-86p9-x5pw-94qx", - "url": "https://github.com/advisories/GHSA-86p9-x5pw-94qx", - "type": "advisory" - }, - { - "title": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03902en_us", - "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03902en_us", - "type": "reference" - }, - { - "title": "https://www.compass-security.com/fileadmin/Datein/Research/Advisories/CSNC-2017-017_itext_xml_external_entity_attack.txt", - "url": "https://www.compass-security.com/fileadmin/Datein/Research/Advisories/CSNC-2017-017_itext_xml_external_entity_attack.txt", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/archive/1/541483/100/0/threaded", - "url": "http://www.securityfocus.com/archive/1/541483/100/0/threaded", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-5644", - "type": "advisory" - }, - { - "title": "GHSA-78vv-qj73-h9m5", - "url": "https://github.com/advisories/GHSA-78vv-qj73-h9m5", - "type": "advisory" - }, - { - "title": "http://poi.apache.org/#20+March+2017+-+CVE-2017-5644+-+Possible+DOS+%28Denial+of+Service%29+in+Apache+POI+versions+prior+to+3.15", - "url": "http://poi.apache.org/#20+March+2017+-+CVE-2017-5644+-+Possible+DOS+%28Denial+of+Service%29+in+Apache+POI+versions+prior+to+3.15", - "type": "reference" - }, - { - "title": "http://www.securityfocus.com/bid/96983", - "url": "http://www.securityfocus.com/bid/96983", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-5402", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "http://www.securityfocus.com/bid/64333", - "type": "reference" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/87298", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3316", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77813", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3322", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77918", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3327", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/78039", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3328", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/78040", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-0746", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "http://secunia.com/advisories/50551", - "type": "vendor" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/74726", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3313", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77787", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-3326", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77960", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2012-0715", - "type": "advisory" - }, - { - "title": "psirt@us.ibm.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/73587", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-1347", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/63595", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/39194", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/39305", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-3290", - "type": "advisory" - }, - { - "title": "psirt@cisco.com", - "url": "http://secunia.com/advisories/46061", - "type": "reference" - }, - { - "title": "psirt@cisco.com", - "url": "http://www.cisco.com/en/US/products/products_security_advisory09186a0080b95105.shtml", - "type": "vendor" - }, - { - "title": "psirt@cisco.com", - "url": "http://www.securityfocus.com/bid/49703", - "type": "reference" - }, - { - "title": "psirt@cisco.com", - "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/69945", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2011-0657", - "type": "advisory" - }, - { - "title": "secure@microsoft.com", - "url": "http://osvdb.org/71780", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "http://secunia.com/advisories/44161", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "http://www.securityfocus.com/bid/47242", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "http://www.us-cert.gov/cas/techalerts/TA11-102A.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3600", - "type": "advisory" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://secunia.com/advisories/42895", - "type": "vendor" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://secunia.com/advisories/42921", - "type": "vendor" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.oracle.com/technetwork/topics/security/cpujan2011-194091.html", - "type": "vendor" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.securityfocus.com/bid/45883", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-4413", - "type": "advisory" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.securityfocus.com/bid/45845", - "type": "reference" - }, - { - "title": "secalert_us@oracle.com", - "url": "http://www.vupen.com/english/advisories/2011/0139", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2010-3943", - "type": "advisory" - }, - { - "title": "secure@microsoft.com", - "url": "http://www.us-cert.gov/cas/techalerts/TA10-348A.html", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-098", - "type": "reference" - }, - { - "title": "secure@microsoft.com", - "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12317", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2009-2048", - "type": "advisory" - }, - { - "title": "psirt@cisco.com", - "url": "http://osvdb.org/55937", - "type": "reference" - }, - { - "title": "psirt@cisco.com", - "url": "http://secunia.com/advisories/35861", - "type": "reference" - }, - { - "title": "psirt@cisco.com", - "url": "http://www.cisco.com/en/US/products/products_security_advisory09186a0080ae04b2.shtml", - "type": "vendor" - }, - { - "title": "psirt@cisco.com", - "url": "http://www.securityfocus.com/bid/35705", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-6481", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/40845", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/28148", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/26944", - "type": "patch" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-6482", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/40846", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-0482", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://osvdb.org/31671", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/23900", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/22192", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-5968", - "type": "advisory" - }, - { - "title": "PSIRT-CNA@flexerasoftware.com", - "url": "http://secunia.com/advisories/21554", - "type": "reference" - }, - { - "title": "PSIRT-CNA@flexerasoftware.com", - "url": "http://secunia.com/secunia_research/2006-67/advisory/", - "type": "vendor" - }, - { - "title": "PSIRT-CNA@flexerasoftware.com", - "url": "http://securityreason.com/securityalert/1890", - "type": "reference" - }, - { - "title": "PSIRT-CNA@flexerasoftware.com", - "url": "http://www.securityfocus.com/archive/1/451821/100/100/threaded", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-4049", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/21398", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/19394", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.vupen.com/english/advisories/2006/3226", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-1872", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/19712", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/19859", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.oracle.com/technetwork/topics/security/cpuapr2006-090826.html", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/archive/1/432267/100/0/threaded", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-0265", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/18493", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://secunia.com/advisories/18608", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "http://www.kb.cert.org/vuls/id/545804", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.oracle.com/technetwork/topics/security/cpujan2006-082403.html", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2006-0272", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://archives.neohapsis.com/archives/fulldisclosure/2006-01/0893.html", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.argeniss.com/research/ARGENISS-ADV-010601.txt", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2005-0416", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://eeye.com/html/research/advisories/AD20050111.html", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/12233", - "type": "vendor" - }, - { - "title": "cve@mitre.org", - "url": "https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-002", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2004-1305", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.kb.cert.org/vuls/id/177584", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.kb.cert.org/vuls/id/697136", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.us-cert.gov/cas/techalerts/TA05-012A.html", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.xfocus.net/flashsky/icoExp/", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2002-2036", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "http://www.iss.net/security_center/static/9252.php", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "http://www.securityfocus.com/bid/4911", - "type": "patch" - } - ], - "tags": [ - "ai-flow", - "aim", - "aiondadotcom-mcp-ssh", - "ansible", - "auth-bypass", - "aworld", - "barbican", - "be.e-contract.dssp-dssp-client", - "bentoml", - "ceilometer", - "ckeditor4", - "cn.hutool-hutool-core", - "cobbler", - "com.amazonaws-aws-android-sdk-mobile-client", - "com.blackducksoftware.integration-blackduck-hub", - "com.googlecode.plist-dd-plist", - "com.itextpdf-itext-rups", - "com.itextpdf-itextpdf", - "com.jamesmurty.utils-java-xmlbuilder", - "com.lowagie-itext", - "comfyui", - "command-injection", - "concrete5-concrete5", - "cors", - "csrf", - "cursor", - "cve", - "datapizza-ai-core", - "deserialization", - "dify", - "django", - "django-photologue", - "docarray", - "dotnetcasclient", - "drupal-drupal", - "edu.internet2.middleware-shibboleth-identityprovider", - "eyed3", - "feedparser", - "file-read", - "fr.turri-axmlrpc", - "funadmin-funadmin", - "ghsa", - "github.com-cloudflare-circl", - "github.com-containers-podman", - "github.com-containers-podman-v2", - "github.com-containers-podman-v3", - "github.com-containers-podman-v4", - "github.com-containers-podman-v5", - "github.com-cri-o-cri-o", - "github.com-k3s-io-k3s", - "github.com-neuvector-neuvector", - "github.com-nmstate-kubernetes-nmstate", - "github.com-openshift-apiserver-library-go", - "github.com-operator-framework-operator-sdk", - "github.com-rancher-fleet", - "github.com-rancher-rancher", - "github.com-rancher-rke2", - "github.com-redhatinsights-yggdrasil", - "github.com-studygolang-studygolang", - "go.etcd.io-etcd-v3", - "gradio", - "http-proxy-agent", - "huggingface", - "info-disclosure", - "inspiremusic", - "instructlab", - "io.fabric8-fabric8-maven-plugin", - "io.fabric8-kubernetes-client", - "ipython", - "jasig-phpcas", - "jplayer", - "kelvinmo-simplexrd", - "keycloak-connect", - "keylime", - "kimai-kimai", - "kubevirt.io-kubevirt", - "label-studio-ml", - "langchain", - "langchain-chatchat", - "langchain-community", - "langflow", - "layui", - "lightrag-hku", - "lmdeploy", - "magick.net-q8-arm64", - "magick.net-q8-openmp-arm64", - "magick.net-q8-openmp-x64", - "magick.net-q8-x64", - "magick.net-q8-x86", - "mailman", - "manila-ui", - "mediawiki-core", - "memory-corruption", - "metagpt", - "mistral", - "ml-logger", - "ml.shifu-shifu", - "moin", - "moodle-moodle", - "node-json2html", - "nokogiri", - "notebook", - "null-origin", - "nvd", - "ocrodjvu", - "open-redirect", - "openai", - "openpyxl", - "org.apache.activemq-activemq-client", - "org.apache.activemq-activemq-core", - "org.apache.axis2-axis2", - "org.apache.cxf-cxf", - "org.apache.cxf-cxf-core", - "org.apache.cxf-cxf-rt-frontend-jaxrs", - "org.apache.cxf-cxf-rt-rs-security-sso-saml", - "org.apache.cxf-cxf-rt-transports-http", - "org.apache.cxf-cxf-rt-ws-security", - "org.apache.jackrabbit-jackrabbit-standalone", - "org.apache.jackrabbit-jackrabbit-standalone-components", - "org.apache.poi-poi", - "org.apache.poi-poi-examples", - "org.apache.santuario-xmlsec", - "org.apache.solr-solr", - "org.apache.solr-solr-core", - "org.apache.spark-spark-core", - "org.apache.tomcat-servlet-api", - "org.apache.tomcat-tomcat", - "org.apache.tomcat-tomcat-catalina", - "org.apache.tomcat-tomcat-jasper", - "org.apache.tomcat-tomcat-juli", - "org.apache.tomcat.embed-tomcat-embed-core", - "org.apache.ws.security-wss4j", - "org.apache.wss4j-wss4j-ws-security-dom", - "org.bonitasoft.connectors-bonita-connector-webservice", - "org.codehaus.jackson-jackson-mapper-asl", - "org.codehaus.plexus-plexus-utils", - "org.conjur.jenkins-conjur-credentials", - "org.drools-drools-core", - "org.hibernate-hibernate-validator", - "org.hibernate.validator-hibernate-validator", - "org.hornetq.rest-hornetq-rest", - "org.infinispan-infinispan-core", - "org.infinispan-infinispan-server-core", - "org.jasig.cas-cas-client", - "org.jboss.resteasy-resteasy-client", - "org.jboss.resteasy-resteasy-jaxb-provider", - "org.jboss.resteasy-resteasy-jaxrs", - "org.jboss.resteasy-resteasy-yaml-provider", - "org.jboss.ws-jbossws-common", - "org.jbpm-jbpm-bpmn2", - "org.jbpm.jbpm5-jbpmmigration", - "org.jenkins-ci.main-jenkins-core", - "org.jenkins-ci.plugins-ci-game", - "org.jenkins-ci.plugins-matrix-project", - "org.jenkins-ci.plugins-ssh-agent", - "org.jenkins-ci.plugins-ssh-slaves", - "org.jenkins-ci.plugins-violations", - "org.jruby-jruby", - "org.jvnet.hudson.plugins-monitoring", - "org.keycloak-keycloak-account-ui", - "org.keycloak-keycloak-admin-ui", - "org.keycloak-keycloak-broker-saml", - "org.keycloak-keycloak-core", - "org.keycloak-keycloak-parent", - "org.keycloak-keycloak-saml-adapter-core", - "org.keycloak-keycloak-saml-core", - "org.keycloak-keycloak-server-spi-private", - "org.keycloak-keycloak-services", - "org.liquibase-liquibase-core", - "org.nokogiri-nekohtml", - "org.openid4java-openid4java", - "org.opensaml-opensaml", - "org.owasp.antisamy-antisamy", - "org.restlet.jse-org.restlet", - "org.springframework-spring-web", - "org.testng-testng", - "org.wildfly.security-wildfly-elytron-http-oidc", - "osv", - "paste", - "path-traversal", - "phpmyadmin-phpmyadmin", - "pickle", - "pimcore-pimcore", - "plone", - "portage", - "privategpt", - "pysaml2", - "pyspark", - "pyspur", - "python-a2a", - "python-mistralclient", - "pytorch", - "qdrant", - "rce", - "regression", - "reviewboard", - "roundup", - "ru.yandex.jenkins.plugins.debuilder-debian-package-builder", - "rubygems-update", - "runner", - "scio-pypi", - "sequa-ai-sequa-mcp", - "sglang", - "shadowmq", - "simstudio", - "smolagents", - "sql-injection", - "ssrf", - "tinymighty-wiki-seo", - "torch", - "torch.load", - "trove", - "typo3-cms", - "typo3-cms-backend", - "typo3-cms-core", - "typo3-cms-install", - "umbraco.cms.web.common", - "vanna", - "vllm", - "weixin-python", - "wong2-mcp-cli", - "xerces-xercesimpl", - "xgrammar", - "xss", - "zendframework-zendframework1", - "zeromq", - "zope", - "zope2" - ] - }, - { - "id": "INC-00036", - "title": "A2A Protocol -- Agent Card Poisoning Vulnerability", - "date": "2026", - "year": 2026, - "category": "real-world", - "description": "Google's Agent-to-Agent (A2A) protocol has systemic vulnerabilities: agent card poisoning (malicious metadata injection causing data exfiltration), agent impersonation/shadowing, replay attacks, and contagion risk (one compromised agent influencing others in collaborative workflows). The spec delegates credential management entirely to implementers with no built-in protections.", - "owasp_entries": [ - "LLM02", - "LLM04", - "ASI06", - "ASI07", - "ASI08" - ], - "mitre_atlas": [ - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0048", - "AML.T0051", - "AML.T0051.000", - "AML.T0053", - "AML.T0057", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-3.2", - "MANAGE-4.1", - "MAP-2.1", - "MAP-4.1", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "A2A Protocol", - "severity": "Medium", - "references": [ - { - "title": "Palo Alto Networks", - "url": "https://live.paloaltonetworks.com/t5/community-blogs/safeguarding-ai-agents-an-in-depth-look-at-a2a-protocol-risks/ba-p/1235996", - "type": "research" - } - ] - }, - { - "id": "INC-00198", - "title": "AI recommendation poisoning — hidden prompt injections in 'Summarize with AI' buttons across 31 companies", - "date": "2026-02", - "year": 2026, - "category": "research-demonstrated", - "description": "Microsoft researchers discovered that 'Summarize with AI' buttons on websites contain hidden prompt-injection instructions that poison AI assistant memory. Over 60 days, 50 distinct examples found from 31 companies across 12+ industries. Altered memory influences later answers in unrelated conversations.", - "owasp_entries": [ - "LLM01", - "LLM04", - "ASI01", - "ASI06", - "ASI09", - "DSGAI04" - ], - "mitre_atlas": [ - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0011" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ - { - "layer": "L2", - "label": "Data Operations", - "role": "origin", - "notes": "Hidden instructions embedded in web content processed by AI" - }, - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "propagation", - "notes": "Poisoned content persists in AI assistant memory across sessions" - } - ], - "attack_vector": "prompt-injection", - "affected": "AI assistants processing web content — 31 companies, 12+ industries", - "impact": "Cross-session manipulation; persistent behavioral modification; memory-based trust exploitation", - "severity": "High", - "mitigations": [ - "Content integrity verification before memory storage", - "Memory content sanitization", - "Session isolation for AI memory" - ], - "references": [ - { - "title": "AI recommendation poisoning", - "url": "https://www.microsoft.com/en-us/security/blog/2026/02/10/ai-recommendation-poisoning/", - "type": "research" - } - ], - "tags": [ - "cross-session", - "memory-poisoning", - "persistent", - "trust", - "web-content" - ] - }, - { - "id": "INC-00627", - "title": "AnythingLLM Multiple CVEs", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Multiple vulnerabilities in AnythingLLM Desktop v1.11.1 and earlier: CVE-2026-32626 (CVSS 9.7) streaming phase XSS to RCE via LLM response injection in Electron; CVE-2026-32719 Zip Slip path traversal in plugin imports leading to arbitrary code execution; CVE-2026-32617 authentication bypass exposing HTTP/WebSocket endpoints; CVE-2026-24477 Qdrant API key exposed in plaintext via `/api/setup-complete`.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "ASI01", - "ASI02", - "ASI03", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "AnythingLLM Multiple CVEs", - "severity": "Critical", - "references": [ - { - "title": "GitHub Advisory", - "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-rrmw-2j6x-4mf2", - "type": "research" - }, - { - "title": "SentinelOne", - "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-32617/", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32617", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-24qj-pw4h-3jmm", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32626", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/commit/9e2d144dc8be6fab29f560f5bcdaa9ef7dbb4214", - "type": "patch" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32719", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/commit/6a492f038da195a5c9a239d5ca2e9f2151c25f8c", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-rh66-4w74-cf4m", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24477", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-gm94-qc2p-xcwf", - "type": "vendor" - } - ], - "tags": [ - "anythingllm", - "cve", - "nvd", - "path-traversal", - "xss" - ] - }, - { - "id": "INC-00668", - "title": "AWS Bedrock AgentCore \"Agent God Mode\" Privilege Escalation", - "date": "2026", - "year": 2026, - "category": "real-world", - "description": "AgentCore starter toolkit's auto-create logic generates IAM roles with overly broad account-wide permissions. A compromised agent can list all Code Interpreters, pivot to high-privileged targets, pull images from any ECR repository, and create new Code Interpreters running under the agent's IAM role. AWS recommends custom least-privilege IAM roles, but the default path is insecure.", - "owasp_entries": [ - "ASI03", - "ASI08", - "ASI10" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0048", - "AML.T0055" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-4.1", - "MEASURE-2.7" - ], - "attack_vector": "other", - "affected": "AWS Bedrock AgentCore \"Agent God Mode\" Privilege Escalation", - "severity": "High", - "references": [ - { - "title": "Palo Alto Unit42", - "url": "https://unit42.paloaltonetworks.com/exploit-of-aws-agentcore-iam-god-mode/", - "type": "research" - } - ] - }, - { - "id": "INC-00671", - "title": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "North Korean state actor Sapphire Sleet compromised the npm account of an axios maintainer, publishing malicious versions with a hidden dependency deploying a cross-platform RAT via post-install hook. Significant because AI coding agents autonomously run npm install. Active ~3 hours.", - "owasp_entries": [ - "LLM03", - "LLM05", - "LLM06", - "ASI04", - "ASI05", - "DSGAI08" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0048", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "NPM maintainer account compromised by state actor" - }, - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "RAT deployed via post-install hook on developer machines" - } - ], - "attack_vector": "supply-chain", - "affected": "axios npm package — 70M+ weekly downloads; AI coding agents auto-installing", - "impact": "Cross-platform RAT deployment; state-sponsored supply chain attack; AI agent amplification risk", - "severity": "Critical", - "mitigations": [ - "Lock file integrity monitoring", - "Sandbox npm install operations in AI coding agents", - "npm provenance verification" - ], - "references": [ - { - "title": "North Korea targets axios npm package", - "url": "https://cloud.google.com/blog/topics/threat-intelligence/north-korea-threat-actor-targets-axios-npm-package", - "type": "research" - } - ], - "tags": [ - "north-korea", - "npm", - "rat", - "state-sponsored", - "supply-chain" - ] - }, - { - "id": "INC-00739", - "title": "ChainLeak -- Chainlit AI Framework Vulnerabilities (CVE-2026-22218 & CVE-2026-22219)", - "date": "2026-01", - "year": 2026, - "category": "real-world", - "description": "Arbitrary file read (CVE-2026-22218) allows reading /proc/self/environ to steal API keys and credentials. SSRF (CVE-2026-22219) allows requests to internal services or cloud metadata endpoints. On AWS EC2 with IMDSv1, enables cloud account takeover. Fixed in Chainlit v2.9.4.", - "owasp_entries": [ - "ASI02", - "ASI03" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0055" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0005", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", - "MEASURE-2.7" - ], - "attack_vector": "ssrf", - "affected": "ChainLeak", - "severity": "Medium", - "references": [ - { - "title": "NVD", - "url": "https://thehackernews.com/2026/01/chainlit-ai-framework-flaws-enable-data.html", - "type": "research" - }, - { - "title": "Zafran", - "url": "https://www.zafran.io/resources/chainleak-critical-ai-framework-vulnerabilities-expose-data-enable-cloud-takeover", - "type": "research" - } - ] - }, - { - "id": "INC-00740", - "title": "Chat & Ask AI app — 300 million messages from 25 million users exposed via misconfigured Firebase", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "AI chat wrapper app (50M+ users, interfaces to ChatGPT/Claude/Gemini) had misconfigured Firebase backend allowing self-designation as authenticated user. 300 million messages from 25 million users exposed including illegal activity discussions and suicide assistance requests.", - "owasp_entries": [ - "LLM02", - "ASI03", - "ASI09", - "DSGAI01", - "DSGAI02", - "DSGAI15" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0024", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0055", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "origin", - "notes": "Firebase authentication misconfiguration allows self-authentication" - }, - { - "layer": "L2", - "label": "Data Operations", - "role": "impact", - "notes": "300M messages from 25M users exposed" - } - ], - "attack_vector": "auth-bypass", - "affected": "Chat & Ask AI — 25 million users; 300 million messages", - "impact": "Massive privacy breach; exposure of sensitive conversations; regulatory risk", - "severity": "Critical", - "mitigations": [ - "Authentication enforcement validation", - "Data encryption at rest", - "Firebase security rules audit" - ], - "references": [ - { - "title": "AI chat app leak exposes 300 million messages", - "url": "https://www.malwarebytes.com/blog/news/2026/02/ai-chat-app-leak-exposes-300-million-messages-tied-to-25-million-users", - "type": "news" - } - ], - "tags": [ - "authentication-bypass", - "chat-wrapper", - "firebase", - "mass-exposure", - "privacy" - ] - }, - { - "id": "INC-00746", - "title": "ChatGPT Data Exfiltration via DNS Covert Channel", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "A single malicious prompt creates a covert DNS-based exfiltration channel leaking user messages, uploaded files, and conversation content. Bypasses AI guardrails by exploiting the underlying Linux runtime. Fixed by OpenAI February 20, 2026.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM05", - "LLM06", - "ASI01", - "ASI02", - "ASI03", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0025", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.6", - "MEASURE-2.7" - ], - "attack_vector": "data-exfiltration", - "affected": "ChatGPT Data Exfiltration via DNS Covert Channel", - "severity": "Critical", - "references": [ - { - "title": "OpenAI", - "url": "https://thehackernews.com/2026/03/openai-patches-chatgpt-data.html", - "type": "research" - }, - { - "title": "Check Point", - "url": "https://blog.checkpoint.com/research/when-ai-trust-breaks-the-chatgpt-data-leakage-flaw-that-redefined-ai-vendor-security-trust/", - "type": "research" - }, - { - "title": "BeyondTrust", - "url": "https://www.beyondtrust.com/blog/entry/openai-codex-command-injection-vulnerability-github-token", - "type": "research" - }, - { - "title": "ChatGPT Data Leakage via a Hidden Outbound Channel - Check Point Research", - "url": "https://research.checkpoint.com/2026/chatgpt-data-leakage-via-a-hidden-outbound-channel-in-the-code-execution-runtime/", - "type": "research" - } - ], - "tags": [ - "agent", - "chatgpt", - "code-interpreter", - "codex", - "exfiltration", - "github-token", - "sandbox", - "side-channel" - ] - }, - { - "id": "INC-00806", - "title": "Claude AI jailbreak — Mexican government breach, 150GB data theft across 10 agencies", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "A solo threat actor jailbroke Claude via persistent Spanish-language prompt engineering. Claude wrote exploits, built tools, and automated data exfiltration. Over 1,000 prompts. 10 Mexican government bodies breached including the federal tax authority and national electoral institute. 150GB stolen including ~195 million taxpayer records.", - "owasp_entries": [ - "LLM01", - "LLM02", - "ASI01", - "ASI02", - "ASI10", - "DSGAI01" - ], - "mitre_atlas": [ - "AML.T0024", - "AML.T0025", - "AML.T0048", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0054", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0005", - "AML.TA0007", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7" - ], - "maestro_layers": [ - { - "layer": "L1", - "label": "Foundation Models", - "role": "origin", - "notes": "Model jailbroken via persistent prompt engineering" - }, - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "propagation", - "notes": "Agent writes exploits and automates exfiltration" - }, - { - "layer": "L6", - "label": "Security & Compliance", - "role": "impact", - "notes": "10 government agencies breached; 195M records stolen" - } - ], - "attack_vector": "jailbreak", - "affected": "10 Mexican government agencies — 195 million taxpayer records, voter data", - "impact": "Largest known AI-enabled government breach; 150GB data theft; national security implications", - "severity": "Critical", - "mitigations": [ - "Abuse detection for offensive security workflows", - "Multi-lingual jailbreak detection", - "Rate limiting for exploit-generation patterns" - ], - "references": [ - { - "title": "Hacker used Claude to steal sensitive Mexican data", - "url": "https://www.bloomberg.com/news/articles/2026-02-25/hacker-used-anthropic-s-claude-to-steal-sensitive-mexican-data", - "type": "news" - }, - { - "title": "Claude Mexico breach analysis", - "url": "https://venturebeat.com/security/claude-mexico-breach-four-blind-domains-security-stack", - "type": "news" - } - ], - "tags": [ - "autonomous-exploitation", - "data-theft", - "government-breach", - "jailbreak", - "nation-state" - ] - }, - { - "id": "INC-00813", - "title": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "date": "2026-02-25", - "year": 2026, - "category": "real-world", - "description": "CVE-2025-59536: Malicious `.claude/settings.json` hooks execute shell commands on SessionStart, achieving RCE before user reads the trust dialog. CVE-2026-21852: Malicious repos exfiltrate Anthropic API keys by overriding ANTHROPIC_BASE_URL to attacker-controlled servers. A single malicious commit could compromise any developer.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "LLM06", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0048.003", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.1", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", - "severity": "Critical", - "references": [ - { - "title": "Check Point Research", - "url": "https://research.checkpoint.com/2026/rce-and-api-token-exfiltration-through-claude-code-project-files-cve-2025-59536/", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-21852", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-jh7p-qr78-84p7", - "type": "vendor" - }, - { - "title": "GHSA-jh7p-qr78-84p7", - "url": "https://github.com/advisories/GHSA-jh7p-qr78-84p7", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59536", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-4fgq-fpq9-mr3g", - "type": "vendor" - }, - { - "title": "GHSA-4fgq-fpq9-mr3g", - "url": "https://github.com/advisories/GHSA-4fgq-fpq9-mr3g", - "type": "advisory" - }, - { - "title": "Critical Vulnerabilities in Anthropic's Claude Code Expose Developers to Remote Code Execution and API Key Theft", - "url": "https://oecd.ai/en/incidents/2026-02-25-f5cf", - "type": "report" - }, - { - "title": "Claude's collaboration tools allowed remote code execution", - "url": "https://www.theregister.com/2026/02/26/clade_code_cves/", - "type": "news" - }, - { - "title": "Flaws in Claude Code Put Developers' Machines at Risk", - "url": "https://www.darkreading.com/application-security/flaws-claude-code-developer-machines-risk", - "type": "news" - }, - { - "title": "Check Point Researchers Expose Critical Claude Code Flaws - IT Security News", - "url": "https://www.itsecuritynews.info/check-point-researchers-expose-critical-claude-code-flaws/", - "type": "news" - }, - { - "title": "Check Point Research Reveals Critical Claude Code Vulnerabilities Enabling Remote Code Execution and API Key Theft - InfotechLead", - "url": "https://infotechlead.com/security/check-point-research-reveals-critical-claude-code-vulnerabilities-enabling-remote-code-execution-and-api-key-theft-93914", - "type": "news" - }, - { - "title": "Security experts flag multiple issues in Claude Code, warning, 'As AI integration deepens, security controls must evolve to match the new trust boundaries'", - "url": "https://www.techradar.com/pro/security/security-experts-flag-multiple-issues-in-claude-code-warning-as-ai-integration-deepens-security-controls-must-evolve-to-match-the-new-trust-boundaries", - "type": "news" - } - ], - "tags": [ - "anthropic", - "anthropic-ai-claude-code", - "claude-code", - "cve", - "cve-2025-59536", - "cve-2026-21852", - "ghsa", - "hook-rce", - "nvd", - "oecd-aim", - "rce", - "secret-leakage", - "supply-chain" - ] - }, - { - "id": "INC-00827", - "title": "Claude Cowork File Exfiltration", - "date": "2026-01", - "year": 2026, - "category": "real-world", - "description": "Claude Cowork could be tricked via indirect prompt injection into uploading user files to an attacker's Anthropic account using curl to the whitelisted Anthropic Files API. Reused the same exfiltration vector previously reported for Claude Code. Anthropic shipped Cowork with this known vulnerability.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM06", - "LLM08", - "ASI01", - "ASI02", - "ASI06", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0048.001", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0057", - "AML.T0066", - "AML.T0070" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.6", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "attack_vector": "prompt-injection", - "affected": "Claude Cowork File Exfiltration", - "severity": "High", - "references": [ - { - "title": "PromptArmor", - "url": "https://www.promptarmor.com/resources/claude-cowork-exfiltrates-files", - "type": "research" - } - ], - "tags": [ - "claude-cowork", - "exfiltration", - "prompt-injection", - "rag" - ] - }, - { - "id": "INC-00833", - "title": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Three chained vulnerabilities in claude.ai: invisible prompt injection via URL parameters, data exfiltration via Anthropic Files API using attacker-controlled API key, and an open redirect on claude.com. Combined, these enabled silent theft of conversation history from default claude.ai sessions.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM04", - "LLM07", - "ASI01", - "ASI06", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0056", - "AML.T0057", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-3.2", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.6", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "attack_vector": "prompt-injection", - "affected": "Claudy Day", - "severity": "High", - "references": [ - { - "title": "Oasis Security", - "url": "https://www.oasis.security/blog/claude-ai-prompt-injection-data-exfiltration-vulnerability", - "type": "research" - } - ], - "tags": [ - "claude", - "claudy-day", - "exfiltration", - "prompt-injection" - ] - }, - { - "id": "INC-00834", - "title": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "A prompt injection in Cline's Claude-powered GitHub issue triage bot allowed code execution in CI, poisoning of GitHub Actions cache, and theft of npm publish tokens. Attacker published malicious Cline CLI v2.3.0 to npm, silently installing malware on ~4,000 developer machines during an 8-hour window.", - "owasp_entries": [ - "LLM01", - "LLM03", - "LLM04", - "LLM05", - "ASI01", - "ASI04", - "ASI05", - "ASI10" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0048", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0059", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0011" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.2", - "MAP-2.1", - "MAP-4.1", - "MAP-4.2", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "Prompt injection via GitHub issue → CI/CD compromise" - }, - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "4,000 developer machines infected via poisoned npm package" - } - ], - "attack_vector": "prompt-injection", - "affected": "Cline AI coding agent — 4,000 developer machines; npm ecosystem", - "impact": "Supply chain compromise; mass developer infection; CI/CD pipeline weaponization", - "severity": "Critical", - "mitigations": [ - "Isolate AI triage bots from CI/CD execution", - "Package integrity monitoring", - "npm publish token protection (2FA, short-lived)" - ], - "references": [ - { - "title": "Clinejection: CI/CD supply chain attack", - "url": "https://adnanthekhan.com/posts/clinejection/", - "type": "research" - } - ], - "tags": [ - "ci-cd", - "mass-infection", - "npm", - "prompt-injection", - "supply-chain" - ] - }, - { - "id": "INC-00860", - "title": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Four CVEs: sandbox escape via CodeInterpreter Docker fallback, SSRF in RAG search tools, arbitrary local file read in JSON loader. Chained via prompt injection to escape sandbox and execute code on host. Separately, a leaked internal GitHub token (CVSS 9.2) granted full access to CrewAI's private repos. No complete patch available.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "LLM08", - "ASI02", - "ASI03", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060", - "AML.T0066", - "AML.T0070" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "ssrf", - "affected": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", - "severity": "Critical", - "references": [ - { - "title": "CERT/CC VU#221883", - "url": "https://kb.cert.org/vuls/id/221883", - "type": "research" - }, - { - "title": "Noma Security", - "url": "https://noma.security/blog/uncrew-the-risk-behind-a-leaked-internal-github-token-at-crewai/", - "type": "research" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2275", - "type": "advisory" - }, - { - "title": "cret@cert.org", - "url": "https://docs.crewai.com/en/tools/ai-ml/codeinterpretertool", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2285", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2286", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2287", - "type": "advisory" - } - ], - "tags": [ - "crewai", - "cve", - "nvd", - "rce", - "ssrf" - ] - }, - { - "id": "INC-00904", - "title": "Docker MCP Server OS Command Injection (CVE-2026-5741)", - "date": "2026-04", - "year": 2026, - "category": "real-world", - "description": "OS command injection in suvarchal docker-mcp-server (up to 0.1.0) via `stop_container`/`remove_container`/`pull_image` functions. Public exploit available. Unpatched (vendor unresponsive). CVSS 4.0 score: 6.9.", - "owasp_entries": [ - "LLM05", - "ASI02", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0011", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0053", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "Docker MCP Server OS Command Injection (CVE-2026-5741)", - "severity": "Medium", - "references": [ - { - "title": "VulDB", - "url": "https://vuldb.com/vuln/355748", - "type": "research" - }, - { - "title": "RedPacket Security", - "url": "https://www.redpacketsecurity.com/cve-alert-cve-2026-5741-suvarchal-docker-mcp-server/", - "type": "advisory" - } - ] - }, - { - "id": "INC-00924", - "title": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", - "date": "2026-01-15", - "year": 2026, - "category": "research-demonstrated", - "description": "Critical zero-click exploit (CVE-2025-32711) allowing a mere email to trigger Microsoft Copilot leaking confidential data — emails, files, chat logs — outside intended scope. No user interaction required.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM04", - "LLM05", - "LLM06", - "ASI01", - "ASI02", - "ASI04", - "ASI05", - "ASI06", - "ASI08", - "ASI09", - "DSGAI01" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0025", - "AML.T0048", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0054", - "AML.T0057", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0007", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.1", - "MANAGE-2.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.2", - "MANAGE-4.1", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.6", - "MEASURE-2.7" - ], - "maestro_layers": [ - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "Copilot processes email content containing hidden prompt injection" - }, - { - "layer": "L2", - "label": "Data Operations", - "role": "impact", - "notes": "Emails, files, and chat logs exfiltrated" - } - ], - "attack_vector": "prompt-injection", - "affected": "Microsoft Copilot for M365 — enterprise email and file data", - "impact": "Zero-click data exfiltration; enterprise data breach; no user awareness", - "severity": "Critical", - "mitigations": [ - "Anomaly detection for bulk data access patterns", - "Data loss prevention for AI-generated outputs", - "Email content sanitization before AI processing" - ], - "references": [ - { - "title": "EchoLeak: Zero-click Copilot vulnerability", - "url": "https://www.aim.security/post/echoleak-blogpost", - "type": "research" - }, - { - "title": "Microsoft", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-32711", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32711", - "type": "advisory" - }, - { - "title": "Aim Security — EchoLeak disclosure", - "url": "https://www.aim.security/lp/aim-labs-echoleak-blogpost", - "type": "research" - }, - { - "title": "OWASP GenAI Exploit Round-up Q1 2026", - "url": "https://genai.owasp.org/2026/04/14/owasp-genai-exploit-round-up-report-q1-2026/", - "type": "report" - }, - { - "title": "EchoLeak paper", - "url": "https://arxiv.org/abs/2509.10540", - "type": "paper" - }, - { - "title": "EchoLeak in Microsoft Copilot - Varonis", - "url": "https://www.varonis.com/blog/echoleak", - "type": "research" - }, - { - "title": "Inside CVE-2025-32711 (EchoLeak) - HackTheBox", - "url": "https://www.hackthebox.com/blog/cve-2025-32711-echoleak-copilot-vulnerability", - "type": "research" - }, - { - "title": "af854a3a-2127-422b-91ae-364da2661108", - "url": "https://www.aim.security/lp/aim-labs-echoleak-m365", - "type": "reference" - } - ], - "tags": [ - "AI-offensive", - "ASI08", - "ASI09", - "ChatGPT", - "Claude", - "Copilot-Personal", - "Copilot-Studio", - "EchoLeak", - "M365-Copilot", - "Microsoft", - "Varonis", - "agentic", - "cascading-failure", - "command-injection", - "copilot", - "cve", - "cve-2025-32711", - "data-exfiltration", - "echoleak", - "email", - "enterprise", - "indirect-prompt-injection", - "nvd", - "supply-chain", - "trust-exploitation", - "zero-click" - ] - }, - { - "id": "INC-00928", - "title": "Eight Attack Vectors in AWS Bedrock Agents", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Unit42 identified eight validated attack vectors spanning log manipulation, knowledge base compromise, agent hijacking, flow injection, guardrail degradation, and prompt poisoning. An attacker with `bedrock:UpdateAgent` or `bedrock:CreateAgent` permissions can rewrite an agent's base prompt, forcing it to leak internal instructions and tool schemas.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM04", - "LLM08", - "ASI01", - "ASI02", - "ASI06" - ], - "mitre_atlas": [ - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0057", - "AML.T0059", - "AML.T0066", - "AML.T0070" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-3.2", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "Eight Attack Vectors in AWS Bedrock Agents", - "severity": "Medium", - "references": [ - { - "title": "Palo Alto Unit42", - "url": "https://unit42.paloaltonetworks.com/amazon-bedrock-multiagent-applications/", - "type": "research" - } - ] - }, - { - "id": "INC-01015", - "title": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", - "date": "2025-10", - "year": 2025, - "category": "vulnerability-disclosure", - "description": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to insecure use of integrated modules (Puppeteer and Playwright) within the nodevm execution environment. An authenticated attacker able to create or run a tool that leverages Puppeteer/Playwright can specify attacker-controlled browser binary paths and parameters. When the tool executes, the attacker-controlled executable/parameters are run on the host and circumvent the intended nodevm sandbox restrictions, resulting in execution of arbitrary code in the context of the host. This vulnerability was incorrectly assigned as a duplicate CVE-2025-26319 by the developers and should be considered distinct from that identifier.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM04", - "LLM05", - "LLM06", - "ASI01", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI07", - "DSGAI08" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0011", - "AML.T0012", - "AML.T0020", - "AML.T0024", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0053", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MANAGE-3.1", - "MAP-2.1", - "MAP-3.5", - "MAP-4.1", - "MAP-4.2", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "sandbox-escape", - "affected": "flowiseai/flowise", - "impact": "Full system takeover; actively exploited in the wild; CVSS 10.0", - "severity": "Critical", - "mitigations": [ - "Input sanitization for MCP configurations", - "Reduce publicly exposed AI framework instances", - "Sandbox execution for user-provided configurations" - ], - "references": [ - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34267", - "type": "advisory" - }, - { - "title": "https://flowiseai.com", - "url": "https://flowiseai.com", - "type": "reference" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/FlowiseAI/Flowise/pull/5231", - "type": "reference" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5w3r-f6gm-c25w", - "type": "vendor" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://www.vulncheck.com/advisories/flowise-auth-command-execution-and-sandbox-bypass-via-puppeteer-and-playwright-packages", - "type": "advisory" - }, - { - "title": "GHSA-r4hh-pcgx-j5r2", - "url": "https://github.com/advisories/GHSA-r4hh-pcgx-j5r2", - "type": "advisory" - }, - { - "title": "GHSA-5w3r-f6gm-c25w", - "url": "https://github.com/advisories/GHSA-5w3r-f6gm-c25w", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-r4hh-pcgx-j5r2", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31621", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://www.exploit-db.com/exploits/52001", - "type": "exploit" - }, - { - "title": "GHSA-6wp6-22x5-rr3w", - "url": "https://github.com/advisories/GHSA-6wp6-22x5-rr3w", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426", - "url": "https://github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.ts#L143-L147", - "url": "https://github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.ts#L143-L147", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6wp6-22x5-rr3w", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise", - "url": "https://github.com/FlowiseAI/Flowise", - "type": "reference" - }, - { - "title": "FlowiseAI", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-h42x-xx2q-6v6g", - "type": "research" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-26319", - "type": "advisory" - }, - { - "title": "Dor Attias (Medium)", - "url": "https://medium.com/@attias.dor/the-burn-notice-part-2-5-5-flowise-pre-auth-arbitrary-file-upload-cve-2025-26319-0d4194a34183", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/dorattias/CVE-2025-26319", - "type": "patch" - }, - { - "title": "GHSA-69jq-qr7w-j7qh", - "url": "https://github.com/advisories/GHSA-69jq-qr7w-j7qh", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%402.2.6/packages/server/src/index.ts#L165-L190", - "url": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%402.2.6/packages/server/src/index.ts#L165-L190", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-69jq-qr7w-j7qh", - "type": "advisory" - }, - { - "title": "Flowise AI agent builder under active exploitation", - "url": "https://thehackernews.com/2026/04/flowise-ai-agent-builder-under-active.html", - "type": "news" - }, - { - "title": "NVD", - "url": "https://www.bleepingcomputer.com/news/security/max-severity-flowise-rce-vulnerability-now-exploited-in-attacks/", - "type": "research" - }, - { - "title": "GHSA-3gcm-f6qx-ff7p", - "url": "https://github.com/advisories/GHSA-3gcm-f6qx-ff7p", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59528", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/nodes/tools/MCP/CustomMCP/CustomMCP.ts#L132", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/nodes/index.ts#L57-L78", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/routes/node-load-methods/index.ts#L5", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3gcm-f6qx-ff7p", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61913", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/commit/1fb12cd93143592a18995f63b781d25b354d48a3", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.8", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-j44m-5v8f-gc9c", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jv9m-vf54-chjj", - "type": "vendor" - }, - { - "title": "GHSA-jv9m-vf54-chjj", - "url": "https://github.com/advisories/GHSA-jv9m-vf54-chjj", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/5275", - "url": "https://github.com/FlowiseAI/Flowise/pull/5275", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jv9m-vf54-chjj", - "type": "advisory" - }, - { - "title": "GHSA-j44m-5v8f-gc9c", - "url": "https://github.com/advisories/GHSA-j44m-5v8f-gc9c", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j44m-5v8f-gc9c", - "type": "advisory" - }, - { - "title": "GHSA-fjh6-8679-9pch", - "url": "https://github.com/advisories/GHSA-fjh6-8679-9pch", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fjh6-8679-9pch", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fjh6-8679-9pch", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/5294", - "url": "https://github.com/FlowiseAI/Flowise/pull/5294", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.10", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.10", - "type": "reference" - }, - { - "title": "GHSA-x39m-3393-3qp4", - "url": "https://github.com/advisories/GHSA-x39m-3393-3qp4", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x39m-3393-3qp4", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x39m-3393-3qp4", - "type": "reference" - }, - { - "title": "GHSA-x7rp-qj2h-ghgw", - "url": "https://github.com/advisories/GHSA-x7rp-qj2h-ghgw", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x7rp-qj2h-ghgw", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x7rp-qj2h-ghgw", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x7rp-qj2h-ghgw", - "type": "advisory" - }, - { - "title": "OX Security advisory", - "url": "https://www.ox.security/blog/mcp-supply-chain-advisory-rce-vulnerabilities-across-the-ai-ecosystem/", - "type": "analysis" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40933", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c9gw-hvqq-f33r", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://www.ox.security/blog/the-mother-of-all-ai-supply-chains-critical-systemic-vulnerability-at-the-core-of-the-mcp", - "type": "advisory" - }, - { - "title": "GHSA-c9gw-hvqq-f33r", - "url": "https://github.com/advisories/GHSA-c9gw-hvqq-f33r", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-c9gw-hvqq-f33r", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42861", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.1.2", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6fw7-3q8r-m5vj", - "type": "reference" - }, - { - "title": "GHSA-6fw7-3q8r-m5vj", - "url": "https://github.com/advisories/GHSA-6fw7-3q8r-m5vj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6fw7-3q8r-m5vj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42862", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x5v6-pj28-cwwm", - "type": "reference" - }, - { - "title": "GHSA-x5v6-pj28-cwwm", - "url": "https://github.com/advisories/GHSA-x5v6-pj28-cwwm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x5v6-pj28-cwwm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42863", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5wxp-qjgq-fx6m", - "type": "reference" - }, - { - "title": "GHSA-5wxp-qjgq-fx6m", - "url": "https://github.com/advisories/GHSA-5wxp-qjgq-fx6m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5wxp-qjgq-fx6m", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46440", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-php6-83fg-gw3g", - "type": "reference" - }, - { - "title": "GHSA-php6-83fg-gw3g", - "url": "https://github.com/advisories/GHSA-php6-83fg-gw3g", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-php6-83fg-gw3g", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46441", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hp26-q66v-q2w7", - "type": "reference" - }, - { - "title": "GHSA-hp26-q66v-q2w7", - "url": "https://github.com/advisories/GHSA-hp26-q66v-q2w7", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hp26-q66v-q2w7", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46442", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9rvc-vf7m-pgm2", - "type": "reference" - }, - { - "title": "GHSA-9rvc-vf7m-pgm2", - "url": "https://github.com/advisories/GHSA-9rvc-vf7m-pgm2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9rvc-vf7m-pgm2", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46443", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7g73-99r4-m4mj", - "type": "reference" - }, - { - "title": "GHSA-7g73-99r4-m4mj", - "url": "https://github.com/advisories/GHSA-7g73-99r4-m4mj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7g73-99r4-m4mj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46444", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmg2-jjjx-jcp2", - "type": "reference" - }, - { - "title": "GHSA-hmg2-jjjx-jcp2", - "url": "https://github.com/advisories/GHSA-hmg2-jjjx-jcp2", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hmg2-jjjx-jcp2", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46475", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-78pr-c5x5-jggc", - "type": "reference" - }, - { - "title": "GHSA-78pr-c5x5-jggc", - "url": "https://github.com/advisories/GHSA-78pr-c5x5-jggc", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/6128", - "url": "https://github.com/FlowiseAI/Flowise/pull/6128", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/1cf247eab35c7c3d4db381d23e4dca682fba527b", - "url": "https://github.com/FlowiseAI/Flowise/commit/1cf247eab35c7c3d4db381d23e4dca682fba527b", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-78pr-c5x5-jggc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46476", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-728h-4mwj-f2p4", - "type": "reference" - }, - { - "title": "GHSA-728h-4mwj-f2p4", - "url": "https://github.com/advisories/GHSA-728h-4mwj-f2p4", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/6129", - "url": "https://github.com/FlowiseAI/Flowise/pull/6129", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/f64047bdcf4cbd6a30ec348b9e3f2899ff514e89", - "url": "https://github.com/FlowiseAI/Flowise/commit/f64047bdcf4cbd6a30ec348b9e3f2899ff514e89", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-728h-4mwj-f2p4", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46477", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5h9v-837x-m97r", - "type": "reference" - }, - { - "title": "GHSA-5h9v-837x-m97r", - "url": "https://github.com/advisories/GHSA-5h9v-837x-m97r", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/6051", - "url": "https://github.com/FlowiseAI/Flowise/pull/6051", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/49a2259bf2a6b4f3d4b50813cb5161cee0d40040", - "url": "https://github.com/FlowiseAI/Flowise/commit/49a2259bf2a6b4f3d4b50813cb5161cee0d40040", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5h9v-837x-m97r", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46478", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7j65-65cr-6644", - "type": "reference" - }, - { - "title": "GHSA-7j65-65cr-6644", - "url": "https://github.com/advisories/GHSA-7j65-65cr-6644", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7j65-65cr-6644", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46479", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-mq53-pc65-wjc4", - "type": "reference" - }, - { - "title": "GHSA-mq53-pc65-wjc4", - "url": "https://github.com/advisories/GHSA-mq53-pc65-wjc4", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/6050", - "url": "https://github.com/FlowiseAI/Flowise/pull/6050", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/dc07f4062b852033554543a3cff3daf3433b0dac", - "url": "https://github.com/FlowiseAI/Flowise/commit/dc07f4062b852033554543a3cff3daf3433b0dac", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mq53-pc65-wjc4", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46480", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wxrr-jp8m-qq7f", - "type": "vendor" - }, - { - "title": "GHSA-wxrr-jp8m-qq7f", - "url": "https://github.com/advisories/GHSA-wxrr-jp8m-qq7f", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wxrr-jp8m-qq7f", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-43995", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-qqvm-66q4-vf5c", - "type": "vendor" - }, - { - "title": "GHSA-qqvm-66q4-vf5c", - "url": "https://github.com/advisories/GHSA-qqvm-66q4-vf5c", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-qqvm-66q4-vf5c", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-8026", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://gist.github.com/YLChen-007/50a553f09aa1c7c04ce18cec13986a91", - "type": "exploit" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/submit/777656", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/vuln/361273", - "type": "advisory" - }, - { - "title": "cna@vuldb.com", - "url": "https://vuldb.com/vuln/361273/cti", - "type": "reference" - }, - { - "title": "GHSA-8f47-4rh3-x44m", - "url": "https://github.com/advisories/GHSA-8f47-4rh3-x44m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8f47-4rh3-x44m", - "type": "advisory" - }, - { - "title": "GHSA-c2c9-mfw7-p8hw", - "url": "https://github.com/advisories/GHSA-c2c9-mfw7-p8hw", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c2c9-mfw7-p8hw", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c2c9-mfw7-p8hw", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-c2c9-mfw7-p8hw", - "type": "advisory" - }, - { - "title": "GHSA-59fh-9f3p-7m39", - "url": "https://github.com/advisories/GHSA-59fh-9f3p-7m39", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-59fh-9f3p-7m39", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-59fh-9f3p-7m39", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-59fh-9f3p-7m39", - "type": "advisory" - }, - { - "title": "GHSA-m837-xvxr-vqwg", - "url": "https://github.com/advisories/GHSA-m837-xvxr-vqwg", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m837-xvxr-vqwg", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m837-xvxr-vqwg", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m837-xvxr-vqwg", - "type": "advisory" - }, - { - "title": "GHSA-m99r-2hxc-cp3q", - "url": "https://github.com/advisories/GHSA-m99r-2hxc-cp3q", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m99r-2hxc-cp3q", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m99r-2hxc-cp3q", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m99r-2hxc-cp3q", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41264", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3hjv-c53m-58jj", - "type": "vendor" - }, - { - "title": "GHSA-3hjv-c53m-58jj", - "url": "https://github.com/advisories/GHSA-3hjv-c53m-58jj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3hjv-c53m-58jj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41265", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v38x-c887-992f", - "type": "vendor" - }, - { - "title": "GHSA-v38x-c887-992f", - "url": "https://github.com/advisories/GHSA-v38x-c887-992f", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v38x-c887-992f", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41137", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9wc7-mj3f-74xv", - "type": "vendor" - }, - { - "title": "GHSA-9wc7-mj3f-74xv", - "url": "https://github.com/advisories/GHSA-9wc7-mj3f-74xv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9wc7-mj3f-74xv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41138", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-f228-chmx-v6j6", - "type": "vendor" - }, - { - "title": "GHSA-f228-chmx-v6j6", - "url": "https://github.com/advisories/GHSA-f228-chmx-v6j6", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f228-chmx-v6j6", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41266", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4jpm-cgx2-8h37", - "type": "vendor" - }, - { - "title": "GHSA-4jpm-cgx2-8h37", - "url": "https://github.com/advisories/GHSA-4jpm-cgx2-8h37", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-4jpm-cgx2-8h37", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41267", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-48m6-ch88-55mj", - "type": "vendor" - }, - { - "title": "GHSA-48m6-ch88-55mj", - "url": "https://github.com/advisories/GHSA-48m6-ch88-55mj", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-48m6-ch88-55mj", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41268", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cvrr-qhgw-2mm6", - "type": "vendor" - }, - { - "title": "GHSA-cvrr-qhgw-2mm6", - "url": "https://github.com/advisories/GHSA-cvrr-qhgw-2mm6", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cvrr-qhgw-2mm6", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41269", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-rh7v-6w34-w2rr", - "type": "vendor" - }, - { - "title": "GHSA-rh7v-6w34-w2rr", - "url": "https://github.com/advisories/GHSA-rh7v-6w34-w2rr", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rh7v-6w34-w2rr", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41270", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-xhmj-rg95-44hv", - "type": "vendor" - }, - { - "title": "GHSA-xhmj-rg95-44hv", - "url": "https://github.com/advisories/GHSA-xhmj-rg95-44hv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-xhmj-rg95-44hv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41271", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6r77-hqx7-7vw8", - "type": "vendor" - }, - { - "title": "GHSA-6r77-hqx7-7vw8", - "url": "https://github.com/advisories/GHSA-6r77-hqx7-7vw8", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6r77-hqx7-7vw8", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41272", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2x8m-83vc-6wv4", - "type": "vendor" - }, - { - "title": "GHSA-2x8m-83vc-6wv4", - "url": "https://github.com/advisories/GHSA-2x8m-83vc-6wv4", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2x8m-83vc-6wv4", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41273", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6f7g-v4pp-r667", - "type": "vendor" - }, - { - "title": "GHSA-6f7g-v4pp-r667", - "url": "https://github.com/advisories/GHSA-6f7g-v4pp-r667", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6f7g-v4pp-r667", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41275", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x5w6-38gp-mrqh", - "type": "vendor" - }, - { - "title": "security-advisories@github.com", - "url": "https://hackerone.com/reports/1888915", - "type": "exploit" - }, - { - "title": "GHSA-x5w6-38gp-mrqh", - "url": "https://github.com/advisories/GHSA-x5w6-38gp-mrqh", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x5w6-38gp-mrqh", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41276", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-f6hc-c5jr-878p", - "type": "vendor" - }, - { - "title": "GHSA-f6hc-c5jr-878p", - "url": "https://github.com/advisories/GHSA-f6hc-c5jr-878p", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f6hc-c5jr-878p", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41277", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3prp-9gf7-4rxx", - "type": "vendor" - }, - { - "title": "GHSA-3prp-9gf7-4rxx", - "url": "https://github.com/advisories/GHSA-3prp-9gf7-4rxx", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3prp-9gf7-4rxx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41278", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w47f-j8rh-wx87", - "type": "vendor" - }, - { - "title": "GHSA-w47f-j8rh-wx87", - "url": "https://github.com/advisories/GHSA-w47f-j8rh-wx87", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w47f-j8rh-wx87", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41279", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5fw2-mwhh-9947", - "type": "vendor" - }, - { - "title": "GHSA-5fw2-mwhh-9947", - "url": "https://github.com/advisories/GHSA-5fw2-mwhh-9947", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5fw2-mwhh-9947", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41274", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-28g4-38q8-3cwc", - "type": "vendor" - }, - { - "title": "GHSA-28g4-38q8-3cwc", - "url": "https://github.com/advisories/GHSA-28g4-38q8-3cwc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-28g4-38q8-3cwc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30615", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30616", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30617", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30624", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30625", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/Upsonic/Upsonic/commit/855053fce0662227d9246268ff4a0844b481a305", - "type": "reference" - }, - { - "title": "GHSA-cw73-5f7h-m4gv", - "url": "https://github.com/advisories/GHSA-cw73-5f7h-m4gv", - "type": "advisory" - }, - { - "title": "GHSA-9hrv-gvrv-6gf2", - "url": "https://github.com/advisories/GHSA-9hrv-gvrv-6gf2", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9hrv-gvrv-6gf2", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9hrv-gvrv-6gf2", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9hrv-gvrv-6gf2", - "type": "advisory" - }, - { - "title": "GHSA-w6v6-49gh-mc9w", - "url": "https://github.com/advisories/GHSA-w6v6-49gh-mc9w", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-w6v6-49gh-mc9w", - "type": "advisory" - }, - { - "title": "GHSA-m7mq-85xj-9x33", - "url": "https://github.com/advisories/GHSA-m7mq-85xj-9x33", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m7mq-85xj-9x33", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m7mq-85xj-9x33", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-m7mq-85xj-9x33", - "type": "advisory" - }, - { - "title": "GHSA-2qqc-p94c-hxwh", - "url": "https://github.com/advisories/GHSA-2qqc-p94c-hxwh", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2qqc-p94c-hxwh", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2qqc-p94c-hxwh", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2qqc-p94c-hxwh", - "type": "advisory" - }, - { - "title": "GHSA-cc4f-hjpj-g9p8", - "url": "https://github.com/advisories/GHSA-cc4f-hjpj-g9p8", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cc4f-hjpj-g9p8", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cc4f-hjpj-g9p8", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cc4f-hjpj-g9p8", - "type": "advisory" - }, - { - "title": "GHSA-6pcv-j4jx-m4vx", - "url": "https://github.com/advisories/GHSA-6pcv-j4jx-m4vx", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6pcv-j4jx-m4vx", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6pcv-j4jx-m4vx", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6pcv-j4jx-m4vx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30820", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.13", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wvhq-wp8g-c7vq", - "type": "vendor" - }, - { - "title": "GHSA-wvhq-wp8g-c7vq", - "url": "https://github.com/advisories/GHSA-wvhq-wp8g-c7vq", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wvhq-wp8g-c7vq", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30821", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-j8g8-j7fc-43v6", - "type": "vendor" - }, - { - "title": "GHSA-j8g8-j7fc-43v6", - "url": "https://github.com/advisories/GHSA-j8g8-j7fc-43v6", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j8g8-j7fc-43v6", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30822", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-mq4r-h2gh-qv7x", - "type": "vendor" - }, - { - "title": "GHSA-mq4r-h2gh-qv7x", - "url": "https://github.com/advisories/GHSA-mq4r-h2gh-qv7x", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-mq4r-h2gh-qv7x", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30823", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cwc3-p92j-g7qm", - "type": "vendor" - }, - { - "title": "GHSA-cwc3-p92j-g7qm", - "url": "https://github.com/advisories/GHSA-cwc3-p92j-g7qm", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cwc3-p92j-g7qm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30824", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5f53-522j-j454", - "type": "vendor" - }, - { - "title": "GHSA-5f53-522j-j454", - "url": "https://github.com/advisories/GHSA-5f53-522j-j454", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5f53-522j-j454", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-31829", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fvcw-9w9r-pxc7", - "type": "vendor" - }, - { - "title": "GHSA-fvcw-9w9r-pxc7", - "url": "https://github.com/advisories/GHSA-fvcw-9w9r-pxc7", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fvcw-9w9r-pxc7", - "type": "advisory" - }, - { - "title": "GHSA-jc5m-wrp2-qq38", - "url": "https://github.com/advisories/GHSA-jc5m-wrp2-qq38", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jc5m-wrp2-qq38", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jc5m-wrp2-qq38", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jc5m-wrp2-qq38", - "type": "advisory" - }, - { - "title": "GHSA-x2g5-fvc2-gqvp", - "url": "https://github.com/advisories/GHSA-x2g5-fvc2-gqvp", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x2g5-fvc2-gqvp", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x2g5-fvc2-gqvp", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/5665", - "url": "https://github.com/FlowiseAI/Flowise/pull/5665", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-x2g5-fvc2-gqvp", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22688", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Tencent/WeKnora/commit/f7900a5e9a18c99d25cec9589ead9e4e59ce04bb", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/Tencent/WeKnora/security/advisories/GHSA-78h3-63c4-5fqc", - "type": "vendor" - }, - { - "title": "GHSA-78h3-63c4-5fqc", - "url": "https://github.com/advisories/GHSA-78h3-63c4-5fqc", - "type": "advisory" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2026-4292", - "url": "https://pkg.go.dev/vuln/GO-2026-4292", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22252", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/danny-avila/LibreChat/commit/211b39f3113d4e6ecab84be0a83f4e9c9dea127f", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/danny-avila/LibreChat/security/advisories/GHSA-cxhj-j78r-p88f", - "type": "vendor" - }, - { - "title": "GHSA-v5w9-prxf-w882", - "url": "https://github.com/advisories/GHSA-v5w9-prxf-w882", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v5w9-prxf-w882", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v5w9-prxf-w882", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v5w9-prxf-w882", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61687", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/components/src/storageUtils.ts#L1104-L1111", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/server/src/controllers/attachments/index.ts#L4-L11", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/server/src/routes/attachments/index.ts#L8", - "type": "reference" - }, - { - "title": "GHSA-35g6-rrw3-v6xc", - "url": "https://github.com/advisories/GHSA-35g6-rrw3-v6xc", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-35g6-rrw3-v6xc", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-35g6-rrw3-v6xc", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-35g6-rrw3-v6xc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29192", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/pull/4905", - "type": "patch" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.5", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7r4h-vmj9-wg42", - "type": "exploit" - }, - { - "title": "GHSA-7r4h-vmj9-wg42", - "url": "https://github.com/advisories/GHSA-7r4h-vmj9-wg42", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/9a06a85a8ddcbaeca1342827a5fea9087a587d97", - "url": "https://github.com/FlowiseAI/Flowise/commit/9a06a85a8ddcbaeca1342827a5fea9087a587d97", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7r4h-vmj9-wg42", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-50538", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-964p-j4gg-mhwc", - "type": "exploit" - }, - { - "title": "GHSA-964p-j4gg-mhwc", - "url": "https://github.com/advisories/GHSA-964p-j4gg-mhwc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-964p-j4gg-mhwc", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-57164", - "type": "advisory" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/blob/main/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", - "type": "reference" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7944-7c6r-55vv", - "type": "vendor" - }, - { - "title": "GHSA-7944-7c6r-55vv", - "url": "https://github.com/advisories/GHSA-7944-7c6r-55vv", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/blob/flowise%403.0.5/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", - "url": "https://github.com/FlowiseAI/Flowise/blob/flowise%403.0.5/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6", - "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7944-7c6r-55vv", - "type": "advisory" - }, - { - "title": "GHSA-3g4j-r53p-22wx", - "url": "https://github.com/advisories/GHSA-3g4j-r53p-22wx", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55346", - "type": "advisory" - }, - { - "title": "GHSA-hmgh-466j-fx4c", - "url": "https://github.com/advisories/GHSA-hmgh-466j-fx4c", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmgh-466j-fx4c", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmgh-466j-fx4c", - "type": "reference" - }, - { - "title": "https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925", - "url": "https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hmgh-466j-fx4c", - "type": "advisory" - }, - { - "title": "GHSA-7rgr-72hp-9wp3", - "url": "https://github.com/advisories/GHSA-7rgr-72hp-9wp3", - "type": "advisory" - }, - { - "title": "GHSA-wq95-wr7m-26h4", - "url": "https://github.com/advisories/GHSA-wq95-wr7m-26h4", - "type": "advisory" - }, - { - "title": "GHSA-4fr9-3x69-36wv", - "url": "https://github.com/advisories/GHSA-4fr9-3x69-36wv", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4fr9-3x69-36wv", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4fr9-3x69-36wv", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-4fr9-3x69-36wv", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58434", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/commit/9e178d68873eb876073846433a596590d3d9c863", - "type": "patch" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wgpv-6j63-x5ph", - "type": "vendor" - }, - { - "title": "GHSA-wgpv-6j63-x5ph", - "url": "https://github.com/advisories/GHSA-wgpv-6j63-x5ph", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wgpv-6j63-x5ph", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59527", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/src/utils.ts#L474-L478", - "type": "reference" - }, { "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/fetch-links/index.ts#L6-L24", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/services/fetch-links/index.ts#L8-L18", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hr92-4q35-4j3m", + "url": "https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-gm94-qc2p-xcwf", "type": "vendor" - }, - { - "title": "GHSA-hr92-4q35-4j3m", - "url": "https://github.com/advisories/GHSA-hr92-4q35-4j3m", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-hr92-4q35-4j3m", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54994", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/akoskm/create-mcp-server-stdio/blob/main/src/index.ts#L24-L40", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/akoskm/create-mcp-server-stdio/commit/48c26bbe1f8c62764e4592f33c8300d1cadd2eac", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/akoskm/create-mcp-server-stdio/security/advisories/GHSA-3ch2-jxxc-v4xf", - "type": "reference" - }, - { - "title": "GHSA-3ch2-jxxc-v4xf", - "url": "https://github.com/advisories/GHSA-3ch2-jxxc-v4xf", - "type": "advisory" - }, - { - "title": "https://github.com/akoskm/create-mcp-server-stdio/pull/1", - "url": "https://github.com/akoskm/create-mcp-server-stdio/pull/1", - "type": "reference" - }, - { - "title": "GHSA-6933-jpx5-q87q", - "url": "https://github.com/advisories/GHSA-6933-jpx5-q87q", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6933-jpx5-q87q", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6933-jpx5-q87q", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/pull/5201", - "url": "https://github.com/FlowiseAI/Flowise/pull/5201", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/ac7cf30e019cde54905bf09b5d3fe1c6ba42f9b9", - "url": "https://github.com/FlowiseAI/Flowise/commit/ac7cf30e019cde54905bf09b5d3fe1c6ba42f9b9", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6933-jpx5-q87q", - "type": "advisory" - }, - { - "title": "GHSA-q67q-549q-p849", - "url": "https://github.com/advisories/GHSA-q67q-549q-p849", - "type": "advisory" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-q67q-549q-p849", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-q67q-549q-p849", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/8bd3de41533de78e4ef6c980e5704a1f9cb7ae6f", - "url": "https://github.com/FlowiseAI/Flowise/commit/8bd3de41533de78e4ef6c980e5704a1f9cb7ae6f", - "type": "reference" - }, - { - "title": "https://github.com/FlowiseAI/Flowise/commit/c2b830f279e454e8b758da441016b2234f220ac7", - "url": "https://github.com/FlowiseAI/Flowise/commit/c2b830f279e454e8b758da441016b2234f220ac7", - "type": "reference" - }, + } + ], + "tags": [ + "anythingllm", + "cve", + "nvd", + "path-traversal", + "xss" + ] + }, + { + "id": "INC-00668", + "title": "AWS Bedrock AgentCore \"Agent God Mode\" Privilege Escalation", + "date": "2026", + "year": 2026, + "category": "real-world", + "description": "AgentCore starter toolkit's auto-create logic generates IAM roles with overly broad account-wide permissions. A compromised agent can list all Code Interpreters, pivot to high-privileged targets, pull images from any ECR repository, and create new Code Interpreters running under the agent's IAM role. AWS recommends custom least-privilege IAM roles, but the default path is insecure.", + "owasp_entries": [ + "ASI03", + "ASI08", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0048", + "AML.T0055" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MANAGE-4.1", + "MEASURE-2.7" + ], + "attack_vector": "other", + "affected": "AWS Bedrock AgentCore \"Agent God Mode\" Privilege Escalation", + "severity": "High", + "references": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-q67q-549q-p849", - "type": "advisory" - }, + "title": "Palo Alto Unit42", + "url": "https://unit42.paloaltonetworks.com/exploit-of-aws-agentcore-iam-god-mode/", + "type": "research" + } + ] + }, + { + "id": "INC-00671", + "title": "Axios npm supply chain attack — North Korean Sapphire Sleet targets 70M weekly downloads", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "North Korean state actor Sapphire Sleet compromised the npm account of an axios maintainer, publishing malicious versions with a hidden dependency deploying a cross-platform RAT via post-install hook. Significant because AI coding agents autonomously run npm install. Active ~3 hours.", + "owasp_entries": [ + "LLM03", + "LLM04", + "LLM10", + "ASI04", + "ASI05", + "DSGAI08" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0048", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "GHSA-99pg-hqvx-r4gf", - "url": "https://github.com/advisories/GHSA-99pg-hqvx-r4gf", - "type": "advisory" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "NPM maintainer account compromised by state actor" }, { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-99pg-hqvx-r4gf", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-99pg-hqvx-r4gf", - "type": "reference" - }, + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "RAT deployed via post-install hook on developer machines" + } + ], + "attack_vector": "supply-chain", + "affected": "axios npm package — 70M+ weekly downloads; AI coding agents auto-installing", + "impact": "Cross-platform RAT deployment; state-sponsored supply chain attack; AI agent amplification risk", + "severity": "Critical", + "mitigations": [ + "Lock file integrity monitoring", + "Sandbox npm install operations in AI coding agents", + "npm provenance verification" + ], + "references": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-99pg-hqvx-r4gf", - "type": "advisory" - }, + "title": "North Korea targets axios npm package", + "url": "https://cloud.google.com/blog/topics/threat-intelligence/north-korea-threat-actor-targets-axios-npm-package", + "type": "research" + } + ], + "tags": [ + "north-korea", + "npm", + "rat", + "state-sponsored", + "supply-chain" + ] + }, + { + "id": "INC-00739", + "title": "ChainLeak -- Chainlit AI Framework Vulnerabilities (CVE-2026-22218 & CVE-2026-22219)", + "date": "2026-01", + "year": 2026, + "category": "real-world", + "description": "Arbitrary file read (CVE-2026-22218) allows reading /proc/self/environ to steal API keys and credentials. SSRF (CVE-2026-22219) allows requests to internal services or cloud metadata endpoints. On AWS EC2 with IMDSv1, enables cloud account takeover. Fixed in Chainlit v2.9.4.", + "owasp_entries": [ + "ASI02", + "ASI03" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0055" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0005", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.7" + ], + "attack_vector": "ssrf", + "affected": "ChainLeak", + "severity": "Medium", + "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8943", - "type": "advisory" + "url": "https://thehackernews.com/2026/01/chainlit-ai-framework-flaws-enable-data.html", + "type": "research" }, { - "title": "reefs@jfrog.com", - "url": "https://research.jfrog.com/vulnerabilities/flowise-os-command-remote-code-execution-jfsa-2025-001380578/", - "type": "exploit" - }, + "title": "Zafran", + "url": "https://www.zafran.io/resources/chainleak-critical-ai-framework-vulnerabilities-expose-data-enable-cloud-takeover", + "type": "research" + } + ] + }, + { + "id": "INC-00740", + "title": "Chat & Ask AI app — 300 million messages from 25 million users exposed via misconfigured Firebase", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "AI chat wrapper app (50M+ users, interfaces to ChatGPT/Claude/Gemini) had misconfigured Firebase backend allowing self-designation as authenticated user. 300 million messages from 25 million users exposed including illegal activity discussions and suicide assistance requests.", + "owasp_entries": [ + "LLM02", + "ASI03", + "ASI09", + "DSGAI01", + "DSGAI02", + "DSGAI15" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0024", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0055", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "maestro_layers": [ { - "title": "GHSA-2vv2-3x8x-4gv7", - "url": "https://github.com/advisories/GHSA-2vv2-3x8x-4gv7", - "type": "advisory" + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "origin", + "notes": "Firebase authentication misconfiguration allows self-authentication" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2vv2-3x8x-4gv7", - "type": "advisory" - }, + "layer": "L2", + "label": "Data Operations", + "role": "impact", + "notes": "300M messages from 25M users exposed" + } + ], + "attack_vector": "auth-bypass", + "affected": "Chat & Ask AI — 25 million users; 300 million messages", + "impact": "Massive privacy breach; exposure of sensitive conversations; regulatory risk", + "severity": "Critical", + "mitigations": [ + "Authentication enforcement validation", + "Data encryption at rest", + "Firebase security rules audit" + ], + "references": [ + { + "title": "AI chat app leak exposes 300 million messages", + "url": "https://www.malwarebytes.com/blog/news/2026/02/ai-chat-app-leak-exposes-300-million-messages-tied-to-25-million-users", + "type": "news" + } + ], + "tags": [ + "authentication-bypass", + "chat-wrapper", + "firebase", + "mass-exposure", + "privacy" + ] + }, + { + "id": "INC-00746", + "title": "ChatGPT Data Exfiltration via DNS Covert Channel", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "A single malicious prompt creates a covert DNS-based exfiltration channel leaking user messages, uploaded files, and conversation content. Bypasses AI guardrails by exploiting the underlying Linux runtime. Fixed by OpenAI February 20, 2026.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", + "LLM10", + "ASI01", + "ASI02", + "ASI03", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0011", + "AML.T0012", + "AML.T0024", + "AML.T0025", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.6", + "MEASURE-2.7" + ], + "attack_vector": "data-exfiltration", + "affected": "ChatGPT Data Exfiltration via DNS Covert Channel", + "severity": "Critical", + "references": [ { - "title": "GHSA-q4xx-mc3q-23x8", - "url": "https://github.com/advisories/GHSA-q4xx-mc3q-23x8", - "type": "advisory" + "title": "OpenAI", + "url": "https://thehackernews.com/2026/03/openai-patches-chatgpt-data.html", + "type": "research" }, { - "title": "GHSA-9c4c-g95m-c8cp", - "url": "https://github.com/advisories/GHSA-9c4c-g95m-c8cp", - "type": "advisory" + "title": "Check Point", + "url": "https://blog.checkpoint.com/research/when-ai-trust-breaks-the-chatgpt-data-leakage-flaw-that-redefined-ai-vendor-security-trust/", + "type": "research" }, { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9c4c-g95m-c8cp", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9c4c-g95m-c8cp", - "type": "reference" + "title": "BeyondTrust", + "url": "https://www.beyondtrust.com/blog/entry/openai-codex-command-injection-vulnerability-github-token", + "type": "research" }, { - "title": "https://github.com/FlowiseAI/Flowise/pull/4226", - "url": "https://github.com/FlowiseAI/Flowise/pull/4226", - "type": "reference" - }, + "title": "ChatGPT Data Leakage via a Hidden Outbound Channel - Check Point Research", + "url": "https://research.checkpoint.com/2026/chatgpt-data-leakage-via-a-hidden-outbound-channel-in-the-code-execution-runtime/", + "type": "research" + } + ], + "tags": [ + "agent", + "chatgpt", + "code-interpreter", + "codex", + "exfiltration", + "github-token", + "sandbox", + "side-channel" + ] + }, + { + "id": "INC-00806", + "title": "Claude AI jailbreak — Mexican government breach, 150GB data theft across 10 agencies", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "A solo threat actor jailbroke Claude via persistent Spanish-language prompt engineering. Claude wrote exploits, built tools, and automated data exfiltration. Over 1,000 prompts. 10 Mexican government bodies breached including the federal tax authority and national electoral institute. 150GB stolen including ~195 million taxpayer records.", + "owasp_entries": [ + "LLM01", + "LLM02", + "ASI01", + "ASI02", + "ASI10", + "DSGAI01" + ], + "mitre_atlas": [ + "AML.T0024", + "AML.T0025", + "AML.T0048", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0054", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0005", + "AML.TA0007", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-9c4c-g95m-c8cp", - "type": "advisory" + "layer": "L1", + "label": "Foundation Models", + "role": "origin", + "notes": "Model jailbroken via persistent prompt engineering" }, { - "title": "GHSA-8vvx-qvq9-5948", - "url": "https://github.com/advisories/GHSA-8vvx-qvq9-5948", - "type": "advisory" + "layer": "L3", + "label": "Agent Frameworks", + "role": "propagation", + "notes": "Agent writes exploits and automates exfiltration" }, { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-8vvx-qvq9-5948", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-8vvx-qvq9-5948", - "type": "reference" - }, + "layer": "L6", + "label": "Security & Compliance", + "role": "impact", + "notes": "10 government agencies breached; 195M records stolen" + } + ], + "attack_vector": "jailbreak", + "affected": "10 Mexican government agencies — 195 million taxpayer records, voter data", + "impact": "Largest known AI-enabled government breach; 150GB data theft; national security implications", + "severity": "Critical", + "mitigations": [ + "Abuse detection for offensive security workflows", + "Multi-lingual jailbreak detection", + "Rate limiting for exploit-generation patterns" + ], + "references": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8vvx-qvq9-5948", - "type": "advisory" + "title": "Hacker used Claude to steal sensitive Mexican data", + "url": "https://www.bloomberg.com/news/articles/2026-02-25/hacker-used-anthropic-s-claude-to-steal-sensitive-mexican-data", + "type": "news" }, { - "title": "GHSA-h42x-xx2q-6v6g", - "url": "https://github.com/advisories/GHSA-h42x-xx2q-6v6g", - "type": "advisory" - }, + "title": "Claude Mexico breach analysis", + "url": "https://venturebeat.com/security/claude-mexico-breach-four-blind-domains-security-stack", + "type": "news" + } + ], + "tags": [ + "autonomous-exploitation", + "data-theft", + "government-breach", + "jailbreak", + "nation-state" + ] + }, + { + "id": "INC-00813", + "title": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", + "date": "2026-02-25", + "year": 2026, + "category": "real-world", + "description": "CVE-2025-59536: Malicious `.claude/settings.json` hooks execute shell commands on SessionStart, achieving RCE before user reads the trust dialog. CVE-2026-21852: Malicious repos exfiltrate Anthropic API keys by overriding ANTHROPIC_BASE_URL to attacker-controlled servers. A single malicious commit could compromise any developer.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", + "LLM10", + "ASI02", + "ASI03", + "ASI04", + "ASI05", + "ASI09" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0012", + "AML.T0048.003", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "rce", + "affected": "Claude Code Project Files RCE & API Token Exfiltration (CVE-2025-59536 & CVE-2026-21852)", + "severity": "Critical", + "references": [ { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h42x-xx2q-6v6g", + "title": "Check Point Research", + "url": "https://research.checkpoint.com/2026/rce-and-api-token-exfiltration-through-claude-code-project-files-cve-2025-59536/", "type": "advisory" }, { - "title": "GHSA-5cph-wvm9-45gj", - "url": "https://github.com/advisories/GHSA-5cph-wvm9-45gj", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-21852", "type": "advisory" }, { - "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5cph-wvm9-45gj", - "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5cph-wvm9-45gj", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-jh7p-qr78-84p7", + "type": "vendor" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5cph-wvm9-45gj", + "title": "GHSA-jh7p-qr78-84p7", + "url": "https://github.com/advisories/GHSA-jh7p-qr78-84p7", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8181", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59536", "type": "advisory" }, { - "title": "vulnreport@tenable.com", - "url": "https://tenable.com/security/research/tra-2024-33", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-4fgq-fpq9-mr3g", + "type": "vendor" }, { - "title": "GHSA-2q4w-x8h2-2fvh", - "url": "https://github.com/advisories/GHSA-2q4w-x8h2-2fvh", + "title": "GHSA-4fgq-fpq9-mr3g", + "url": "https://github.com/advisories/GHSA-4fgq-fpq9-mr3g", "type": "advisory" }, { - "title": "https://tenable.com/security/research/tra-2024-22-0", - "url": "https://tenable.com/security/research/tra-2024-22-0", + "title": "OECD (2026), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2026-02-25-f5cf (accessed on 2026-05-11)", + "url": "https://oecd.ai/en/incidents/2026-02-25-f5cf", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2q4w-x8h2-2fvh", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8182", - "type": "advisory" + "title": "Claude's collaboration tools allowed remote code execution", + "url": "https://www.theregister.com/2026/02/26/clade_code_cves/", + "type": "news" }, { - "title": "vulnreport@tenable.com", - "url": "https://tenable.com/security/research/tra-2024-34", - "type": "advisory" + "title": "Flaws in Claude Code Put Developers' Machines at Risk", + "url": "https://www.darkreading.com/application-security/flaws-claude-code-developer-machines-risk", + "type": "news" }, { - "title": "GHSA-48x4-mx8f-gr4h", - "url": "https://github.com/advisories/GHSA-48x4-mx8f-gr4h", - "type": "advisory" + "title": "Check Point Researchers Expose Critical Claude Code Flaws - IT Security News", + "url": "https://www.itsecuritynews.info/check-point-researchers-expose-critical-claude-code-flaws/", + "type": "news" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-48x4-mx8f-gr4h", - "type": "advisory" + "title": "Check Point Research Reveals Critical Claude Code Vulnerabilities Enabling Remote Code Execution and API Key Theft - InfotechLead", + "url": "https://infotechlead.com/security/check-point-research-reveals-critical-claude-code-vulnerabilities-enabling-remote-code-execution-and-api-key-theft-93914", + "type": "news" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36420", - "type": "advisory" - }, + "title": "Security experts flag multiple issues in Claude Code, warning, 'As AI integration deepens, security controls must evolve to match the new trust boundaries'", + "url": "https://www.techradar.com/pro/security/security-experts-flag-multiple-issues-in-claude-code-warning-as-ai-integration-deepens-security-controls-must-evolve-to-match-the-new-trust-boundaries", + "type": "news" + } + ], + "tags": [ + "anthropic", + "anthropic-ai-claude-code", + "claude-code", + "cve", + "cve-2025-59536", + "cve-2026-21852", + "ghsa", + "hook-rce", + "nvd", + "oecd-aim" + ] + }, + { + "id": "INC-00827", + "title": "Claude Cowork File Exfiltration", + "date": "2026-01", + "year": 2026, + "category": "real-world", + "description": "Claude Cowork could be tricked via indirect prompt injection into uploading user files to an attacker's Anthropic account using curl to the whitelisted Anthropic Files API. Reused the same exfiltration vector previously reported for Claude Code. Anthropic shipped Cowork with this known vulnerability.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", + "LLM09", + "ASI01", + "ASI02", + "ASI06", + "ASI09" + ], + "mitre_atlas": [ + "AML.T0048.001", + "AML.T0048.003", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057", + "AML.T0066", + "AML.T0070" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.6", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "attack_vector": "prompt-injection", + "affected": "Claude Cowork File Exfiltration", + "severity": "High", + "references": [ { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/e93ce07851cdc0fcde12374f301b8070f2043687/packages/server/src/index.ts#L982", - "type": "reference" - }, + "title": "PromptArmor", + "url": "https://www.promptarmor.com/resources/claude-cowork-exfiltrates-files", + "type": "research" + } + ], + "tags": [ + "claude-cowork", + "exfiltration", + "prompt-injection", + "rag" + ] + }, + { + "id": "INC-00833", + "title": "Claudy Day -- Claude.ai Prompt Injection Attack Chain", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "Three chained vulnerabilities in claude.ai: invisible prompt injection via URL parameters, data exfiltration via Anthropic Files API using attacker-controlled API key, and an open redirect on claude.com. Combined, these enabled silent theft of conversation history from default claude.ai sessions.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM05", + "LLM08", + "ASI01", + "ASI06", + "ASI09" + ], + "mitre_atlas": [ + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0024", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0056", + "AML.T0057", + "AML.T0059", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-3.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.6", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "attack_vector": "prompt-injection", + "affected": "Claudy Day", + "severity": "High", + "references": [ { - "title": "security-advisories@github.com", - "url": "https://securitylab.github.com/advisories/GHSL-2023-232_GHSL-2023-234_Flowise/", - "type": "exploit" - }, + "title": "Oasis Security", + "url": "https://www.oasis.security/blog/claude-ai-prompt-injection-data-exfiltration-vulnerability", + "type": "research" + } + ], + "tags": [ + "claude", + "claudy-day", + "exfiltration", + "prompt-injection" + ] + }, + { + "id": "INC-00834", + "title": "Clinejection — CI/CD pipeline compromise via Cline's issue triage bot, 4,000 machines infected", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "A prompt injection in Cline's Claude-powered GitHub issue triage bot allowed code execution in CI, poisoning of GitHub Actions cache, and theft of npm publish tokens. Attacker published malicious Cline CLI v2.3.0 to npm, silently installing malware on ~4,000 developer machines during an 8-hour window.", + "owasp_entries": [ + "LLM01", + "LLM04", + "LLM05", + "LLM10", + "ASI01", + "ASI04", + "ASI05", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0048", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0059", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0011" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MANAGE-3.2", + "MAP-2.1", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "GHSA-h997-3fxj-p5j8", - "url": "https://github.com/advisories/GHSA-h997-3fxj-p5j8", - "type": "advisory" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "Prompt injection via GitHub issue → CI/CD compromise" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h997-3fxj-p5j8", - "type": "advisory" - }, + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "4,000 developer machines infected via poisoned npm package" + } + ], + "attack_vector": "prompt-injection", + "affected": "Cline AI coding agent — 4,000 developer machines; npm ecosystem", + "impact": "Supply chain compromise; mass developer infection; CI/CD pipeline weaponization", + "severity": "Critical", + "mitigations": [ + "Isolate AI triage bots from CI/CD execution", + "Package integrity monitoring", + "npm publish token protection (2FA, short-lived)" + ], + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36421", - "type": "advisory" - }, + "title": "Clinejection: CI/CD supply chain attack", + "url": "https://adnanthekhan.com/posts/clinejection/", + "type": "research" + } + ], + "tags": [ + "ci-cd", + "mass-infection", + "npm", + "prompt-injection", + "supply-chain" + ] + }, + { + "id": "INC-00860", + "title": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "Four CVEs: sandbox escape via CodeInterpreter Docker fallback, SSRF in RAG search tools, arbitrary local file read in JSON loader. Chained via prompt injection to escape sandbox and execute code on host. Separately, a leaked internal GitHub token (CVSS 9.2) granted full access to CrewAI's private repos. No complete patch available.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", + "LLM09", + "LLM10", + "ASI02", + "ASI03", + "ASI04", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0011", + "AML.T0012", + "AML.T0024", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0060", + "AML.T0066", + "AML.T0070" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "ssrf", + "affected": "CrewAI Critical Vulnerabilities (CVE-2026-2275 et al.)", + "severity": "Critical", + "references": [ { - "title": "GHSA-66f2-xxgm-f6xp", - "url": "https://github.com/advisories/GHSA-66f2-xxgm-f6xp", - "type": "advisory" + "title": "CERT/CC VU#221883", + "url": "https://kb.cert.org/vuls/id/221883", + "type": "research" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-66f2-xxgm-f6xp", - "type": "advisory" + "title": "Noma Security", + "url": "https://noma.security/blog/uncrew-the-risk-behind-a-leaked-internal-github-token-at-crewai/", + "type": "research" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36422", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2275", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%401.4.0/packages/server/src/index.ts#L312-L312", + "title": "cret@cert.org", + "url": "https://docs.crewai.com/en/tools/ai-ml/codeinterpretertool", "type": "reference" }, - { - "title": "GHSA-2jch-qc96-9f5g", - "url": "https://github.com/advisories/GHSA-2jch-qc96-9f5g", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2jch-qc96-9f5g", - "type": "advisory" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36423", - "type": "advisory" - }, - { - "title": "GHSA-fccx-2pwj-hrq7", - "url": "https://github.com/advisories/GHSA-fccx-2pwj-hrq7", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fccx-2pwj-hrq7", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2285", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37145", - "type": "advisory" - }, - { - "title": "GHSA-858c-qxvx-rg9v", - "url": "https://github.com/advisories/GHSA-858c-qxvx-rg9v", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-858c-qxvx-rg9v", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2286", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37146", - "type": "advisory" - }, - { - "title": "GHSA-wxm4-9f8p-gggv", - "url": "https://github.com/advisories/GHSA-wxm4-9f8p-gggv", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wxm4-9f8p-gggv", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2287", "type": "advisory" } ], "tags": [ - "actively-exploited", - "akoskm-create-mcp-server-stdio", - "anthropic", - "auth-bypass", - "code-injection", - "command-injection", + "crewai", "cve", - "cvss-10", - "dify", - "exploited-in-the-wild", - "flowise", - "flowise-components", - "flowise-ui", - "ghsa", - "github.com-tencent-weknora", - "info-disclosure", - "librechat", - "mcp", - "npm", "nvd", - "osv", - "path-traversal", - "prompt-injection", "rce", - "sandbox-escape", - "sql-injection", - "ssrf", - "stdio", - "systemic-vuln", - "upsonic", - "weknora", - "xss" + "ssrf" ] }, { - "id": "INC-01063", - "title": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", - "date": "2026-01", + "id": "INC-00904", + "title": "Docker MCP Server OS Command Injection (CVE-2026-5741)", + "date": "2026-04", "year": 2026, "category": "real-world", - "description": "CVSS 8.8. Insufficient policy enforcement in Chrome's WebView tag allowed malicious browser extensions with only basic permissions to hijack the Gemini Live panel. Access camera/microphone without consent, take screenshots of any website, access local files. Discovered by Palo Alto Unit42. Patched in Chrome 143.0.7499.192.", + "description": "OS command injection in suvarchal docker-mcp-server (up to 0.1.0) via `stop_container`/`remove_container`/`pull_image` functions. Public exploit available. Unpatched (vendor unresponsive). CVSS 4.0 score: 6.9.", "owasp_entries": [ - "LLM05", - "LLM06", + "LLM10", "ASI02", - "ASI03" + "ASI05" ], "mitre_atlas": [ - "AML.T0012", - "AML.T0048", + "AML.T0011", "AML.T0049", "AML.T0050", + "AML.T0051", + "AML.T0051.000", "AML.T0053", - "AML.T0055", "AML.T0060" ], "mitre_atlas_tactics": [ "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" + "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.4", "GOVERN-3.2", "MANAGE-2.3", - "MANAGE-2.4", + "MAP-2.1", "MAP-3.5", "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "rce", - "affected": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", - "severity": "High", + "attack_vector": "prompt-injection", + "affected": "Docker MCP Server OS Command Injection (CVE-2026-5741)", + "severity": "Medium", "references": [ { - "title": "Palo Alto Unit42", - "url": "https://unit42.paloaltonetworks.com/gemini-live-in-chrome-hijacking/", + "title": "VulDB", + "url": "https://vuldb.com/vuln/355748", "type": "research" + }, + { + "title": "RedPacket Security", + "url": "https://www.redpacketsecurity.com/cve-alert-cve-2026-5741-suvarchal-docker-mcp-server/", + "type": "advisory" } ] }, { - "id": "INC-01064", - "title": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", - "date": "2026-01", + "id": "INC-00924", + "title": "EchoLeak — zero-click Microsoft Copilot data exfiltration via email prompt injection", + "date": "2026-01-15", "year": 2026, "category": "research-demonstrated", - "description": "Indirect prompt injection via shared Google Docs, calendar invites, or emails causes Gemini Enterprise to search for sensitive terms and embed results in an external image URL. A single poisoned document could exfiltrate years of email, calendar, and document data with zero clicks, zero warnings, and zero DLP alerts.", + "description": "Critical zero-click exploit (CVE-2025-32711) allowing a mere email to trigger Microsoft Copilot leaking confidential data — emails, files, chat logs — outside intended scope. No user interaction required.", "owasp_entries": [ "LLM01", "LLM02", + "LLM03", "LLM04", - "LLM06", + "LLM05", + "LLM10", "ASI01", "ASI02", + "ASI04", + "ASI05", "ASI06", + "ASI08", "ASI09", - "DSGAI01", - "DSGAI19" + "DSGAI01" ], "mitre_atlas": [ + "AML.T0010", "AML.T0018", "AML.T0019", "AML.T0020", - "AML.T0048.001", + "AML.T0024", + "AML.T0025", + "AML.T0048", "AML.T0048.003", "AML.T0050", "AML.T0051", "AML.T0051.000", "AML.T0051.001", "AML.T0053", + "AML.T0054", "AML.T0057", "AML.T0059", "AML.T0066" @@ -15182,186 +1259,225 @@ window.CROSSWALK_INCIDENTS = [ "mitre_atlas_tactics": [ "AML.TA0001", "AML.TA0003", + "AML.TA0004", "AML.TA0005", "AML.TA0006", + "AML.TA0007", "AML.TA0010", "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-1.1", + "GOVERN-1.4", "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.1", + "MANAGE-2.2", "MANAGE-2.3", "MANAGE-2.4", "MANAGE-3.2", + "MANAGE-4.1", "MAP-2.1", "MAP-3.5", "MAP-4.2", "MEASURE-2.10", "MEASURE-2.6", - "MEASURE-2.7", - "MEASURE-2.8" + "MEASURE-2.7" ], "maestro_layers": [ { "layer": "L3", "label": "Agent Frameworks", "role": "origin", - "notes": "Gemini processes attacker-controlled document content" + "notes": "Copilot processes email content containing hidden prompt injection" }, { "layer": "L2", "label": "Data Operations", "role": "impact", - "notes": "Years of email, calendar, and documents exfiltrated" + "notes": "Emails, files, and chat logs exfiltrated" } ], - "attack_vector": "indirect-prompt-injection", - "affected": "Gemini Enterprise — Google Workspace email, calendar, documents", - "impact": "Silent zero-click exfiltration of enterprise data; invisible to security teams and DLP", + "attack_vector": "prompt-injection", + "affected": "Microsoft Copilot for M365 — enterprise email and file data", + "impact": "Zero-click data exfiltration; enterprise data breach; no user awareness", "severity": "Critical", "mitigations": [ - "Block external image loading in AI-generated content", - "Content sanitization for shared documents", - "DLP monitoring for AI-mediated data access patterns" + "Anomaly detection for bulk data access patterns", + "Data loss prevention for AI-generated outputs", + "Email content sanitization before AI processing" ], "references": [ { - "title": "GeminiJack: Zero-click Gemini vulnerability", - "url": "https://noma.security/blog/geminijack-google-gemini-zero-click-vulnerability/", + "title": "EchoLeak: Zero-click Copilot vulnerability", + "url": "https://www.aim.security/post/echoleak-blogpost", "type": "research" }, { - "title": "Indirect prompt injections & Google's layered defense - Google Workspace", - "url": "https://knowledge.workspace.google.com/admin/security/indirect-prompt-injections-and-googles-layered-defense-strategy-for-gemini", - "type": "vendor" + "title": "Microsoft", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-32711", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32711", + "type": "advisory" + }, + { + "title": "Aim Security — EchoLeak disclosure", + "url": "https://www.aim.security/lp/aim-labs-echoleak-blogpost", + "type": "research" + }, + { + "title": "OWASP GenAI Exploit Round-up Q1 2026", + "url": "https://genai.owasp.org/2026/04/14/owasp-genai-exploit-round-up-report-q1-2026/", + "type": "report" + }, + { + "title": "EchoLeak paper", + "url": "https://arxiv.org/abs/2509.10540", + "type": "paper" + }, + { + "title": "EchoLeak in Microsoft Copilot - Varonis", + "url": "https://www.varonis.com/blog/echoleak", + "type": "research" + }, + { + "title": "Inside CVE-2025-32711 (EchoLeak) - HackTheBox", + "url": "https://www.hackthebox.com/blog/cve-2025-32711-echoleak-copilot-vulnerability", + "type": "research" + }, + { + "title": "af854a3a-2127-422b-91ae-364da2661108", + "url": "https://www.aim.security/lp/aim-labs-echoleak-m365", + "type": "reference" } ], "tags": [ + "AI-offensive", + "ASI08", + "ASI09", + "ChatGPT", + "Claude", + "Copilot-Personal", + "Copilot-Studio", + "EchoLeak", + "M365-Copilot", + "Microsoft", + "Varonis", + "agentic", + "cascading-failure", + "command-injection", + "copilot", + "cve", + "cve-2025-32711", "data-exfiltration", + "echoleak", + "email", "enterprise", - "gemini", - "geminijack", - "google-workspace", "indirect-prompt-injection", - "vertex-ai", + "nvd", + "supply-chain", + "trust-exploitation", "zero-click" ] }, { - "id": "INC-01092", - "title": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", + "id": "INC-00928", + "title": "Eight Attack Vectors in AWS Bedrock Agents", "date": "2026-03", "year": 2026, "category": "real-world", - "description": "Supply chain campaign targeting developers via 72 malicious OpenVSX extensions and 151+ GitHub repositories. 9 million installs. 433 compromised components. Used invisible Unicode characters to encode payloads. Targeted crypto wallets, credentials, SSH keys. Extensions mimicked AI coding assistant tools.", + "description": "Unit42 identified eight validated attack vectors spanning log manipulation, knowledge base compromise, agent hijacking, flow injection, guardrail degradation, and prompt poisoning. An attacker with `bedrock:UpdateAgent` or `bedrock:CreateAgent` permissions can rewrite an agent's base prompt, forcing it to leak internal instructions and tool schemas.", "owasp_entries": [ - "LLM03", + "LLM01", + "LLM02", "LLM05", - "ASI03", - "ASI04", - "ASI05", - "DSGAI08" + "LLM09", + "ASI01", + "ASI02", + "ASI06" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0049", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0024", "AML.T0050", - "AML.T0055", - "AML.T0060" + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057", + "AML.T0059", + "AML.T0066", + "AML.T0070" ], "mitre_atlas_tactics": [ + "AML.TA0001", "AML.TA0003", - "AML.TA0004", "AML.TA0005", - "AML.TA0012", - "AML.TA0013" + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", + "GOVERN-1.1", + "GOVERN-3.2", "MANAGE-2.3", - "MAP-4.1", - "MEASURE-2.5", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.10", "MEASURE-2.7" ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "Malicious extensions published to VSCode/OpenVSX marketplaces" - }, - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "Credential theft, crypto wallet compromise, SSH key exfiltration" - } - ], - "attack_vector": "supply-chain", - "affected": "OpenVSX, GitHub, npm — 9 million installs across 433 components", - "impact": "Mass credential theft; crypto wallet compromise; developer environment compromise at scale", - "severity": "Critical", - "mitigations": [ - "Code signing for marketplace extensions", - "Extension provenance verification", - "Runtime monitoring for extension network activity" - ], + "attack_vector": "prompt-injection", + "affected": "Eight Attack Vectors in AWS Bedrock Agents", + "severity": "Medium", "references": [ { - "title": "GlassWorm: Unicode attack across GitHub, npm, VSCode", - "url": "https://www.aikido.dev/blog/glassworm-returns-unicode-attack-github-npm-vscode", + "title": "Palo Alto Unit42", + "url": "https://unit42.paloaltonetworks.com/amazon-bedrock-multiagent-applications/", "type": "research" } - ], - "tags": [ - "credential-theft", - "extensions", - "supply-chain", - "unicode", - "vscode" ] }, { - "id": "INC-01291", - "title": "LangChain LLMMathChain prompt-injection RCE via Python exec", - "date": "2023-04", - "year": 2023, - "category": "real-world", - "description": "In LangChain through 0.0.131, the LLMMathChain chain allows prompt injection attacks that can execute arbitrary code via the Python exec method. The chain uses insecure exec/eval on LLM-generated math expressions. Disclosed by the NVIDIA AI Red Team; fixed in 0.0.142.", + "id": "INC-01015", + "title": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to ins...", + "date": "2025-10", + "year": 2025, + "category": "vulnerability-disclosure", + "description": "Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to insecure use of integrated modules (Puppeteer and Playwright) within the nodevm execution environment. An authenticated attacker able to create or run a tool that leverages Puppeteer/Playwright can specify attacker-controlled browser binary paths and parameters. When the tool executes, the attacker-controlled executable/parameters are run on the host and circumvent the intended nodevm sandbox restrictions, resulting in execution of arbitrary code in the context of the host. This vulnerability was incorrectly assigned as a duplicate CVE-2025-26319 by the developers and should be considered distinct from that identifier.", "owasp_entries": [ "LLM01", "LLM02", "LLM03", + "LLM04", "LLM05", - "LLM06", "LLM10", "ASI01", "ASI02", "ASI03", "ASI04", "ASI05", - "ASI08" + "ASI07", + "DSGAI08" ], "mitre_atlas": [ "AML.T0010", - "AML.T0010.001", "AML.T0011", "AML.T0012", - "AML.T0029", - "AML.T0034", - "AML.T0048", + "AML.T0020", + "AML.T0024", "AML.T0049", "AML.T0050", "AML.T0051", "AML.T0051.000", - "AML.T0051.001", "AML.T0053", "AML.T0057", "AML.T0060" @@ -15370,2441 +1486,2467 @@ window.CROSSWALK_INCIDENTS = [ "AML.TA0003", "AML.TA0004", "AML.TA0005", + "AML.TA0006", "AML.TA0010", - "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ + "GOVERN-1.1", "GOVERN-1.4", "GOVERN-3.2", "GOVERN-6.1", - "MANAGE-2.1", "MANAGE-2.3", - "MANAGE-4.1", + "MANAGE-3.1", "MAP-2.1", "MAP-3.5", + "MAP-4.1", + "MAP-4.2", "MEASURE-2.10", - "MEASURE-2.4", "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "langchain-ai/langchain <= 0.0.131 (fixed 0.0.142)", - "impact": "Remote code execution on agent host; environment variable exfiltration; reverse shell establishment; full host compromise", + "MEASURE-2.7" + ], + "attack_vector": "sandbox-escape", + "affected": "flowiseai/flowise", + "impact": "Full system takeover; actively exploited in the wild; CVSS 10.0", "severity": "Critical", "mitigations": [ - "Disable code execution tools in production unless strictly required", - "Input validation before any tool invocation — do not pass unvalidated content to execution tools", - "Least-privilege principle — agents should not have host execution capabilities", - "Run code execution in sandboxed environments with no network access (containers, gVisor)", - "Run eval profiles: evals/garak/ASI05_code_execution.yaml — threshold 0%" + "Input sanitization for MCP configurations", + "Reduce publicly exposed AI framework instances", + "Sandbox execution for user-provided configurations" ], "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29374", - "type": "advisory" - }, - { - "title": "GHSA-fprp-p869-w6q2", - "url": "https://github.com/advisories/GHSA-fprp-p869-w6q2", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34267", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/1026", + "title": "https://flowiseai.com", + "url": "https://flowiseai.com", "type": "reference" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/814", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/pull/5231", + "type": "reference" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/pull/1119", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5w3r-f6gm-c25w", + "type": "vendor" }, { - "title": "cve@mitre.org", - "url": "https://twitter.com/rharang/status/1641899743608463365/photo/1", - "type": "exploit" + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-auth-command-execution-and-sandbox-bypass-via-puppeteer-and-playwright-packages", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fprp-p869-w6q2", + "title": "GHSA-r4hh-pcgx-j5r2", + "url": "https://github.com/advisories/GHSA-r4hh-pcgx-j5r2", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain", - "url": "https://github.com/langchain-ai/langchain", - "type": "reference" + "title": "GHSA-5w3r-f6gm-c25w", + "url": "https://github.com/advisories/GHSA-5w3r-f6gm-c25w", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-18", + "url": "https://osv.dev/vulnerability/GHSA-r4hh-pcgx-j5r2", "type": "advisory" }, { - "title": "CVE-2023-36258 — LangChain Python execution vulnerability", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36258", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31621", "type": "advisory" }, { - "title": "Security Advisory: LlamaIndex code execution via prompt injection", - "url": "https://github.com/run-llama/llama_index/security/advisories", + "title": "cve@mitre.org", + "url": "https://www.exploit-db.com/exploits/52001", + "type": "exploit" + }, + { + "title": "GHSA-6wp6-22x5-rr3w", + "url": "https://github.com/advisories/GHSA-6wp6-22x5-rr3w", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/5872", - "type": "exploit" + "title": "https://github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426", + "url": "https://github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426", + "type": "reference" }, { - "title": "GHSA-2qmj-7962-cjq8", - "url": "https://github.com/advisories/GHSA-2qmj-7962-cjq8", + "title": "https://github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.ts#L143-L147", + "url": "https://github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.ts#L143-L147", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6wp6-22x5-rr3w", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-98.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-98.yaml", + "title": "https://github.com/FlowiseAI/Flowise", + "url": "https://github.com/FlowiseAI/Flowise", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/issues/5872", - "url": "https://github.com/langchain-ai/langchain/issues/5872", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58351", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5cph-wvm9-45gj", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/pull/6003", - "url": "https://github.com/langchain-ai/langchain/pull/6003", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-remote-code-execution-via-overrideconfig-parameter", "type": "reference" }, + { + "title": "GHSA-5cph-wvm9-45gj", + "url": "https://github.com/advisories/GHSA-5cph-wvm9-45gj", + "type": "advisory" + }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-2qmj-7962-cjq8", + "url": "https://osv.dev/vulnerability/GHSA-5cph-wvm9-45gj", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/pull/7870", - "url": "https://github.com/langchain-ai/langchain/pull/7870", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71338", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-8vvx-qvq9-5948", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-arbitrary-file-write-to-remote-code-execution-via-document-store-api", + "type": "advisory" + }, + { + "title": "GHSA-8vvx-qvq9-5948", + "url": "https://github.com/advisories/GHSA-8vvx-qvq9-5948", + "type": "advisory" + }, + { + "title": "https://github.com/FlowiseAI/Flowise/commit/c2b830f279e454e8b758da441016b2234f220ac7", + "url": "https://github.com/FlowiseAI/Flowise/commit/c2b830f279e454e8b758da441016b2234f220ac7", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-98", + "url": "https://osv.dev/vulnerability/GHSA-8vvx-qvq9-5948", "type": "advisory" }, + { + "title": "FlowiseAI", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-h42x-xx2q-6v6g", + "type": "research" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46229", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-26319", "type": "advisory" }, { - "title": "Palo Alto Unit42", - "url": "https://unit42.paloaltonetworks.com/langchain-vulnerabilities/", - "type": "research" + "title": "Dor Attias (Medium)", + "url": "https://medium.com/@attias.dor/the-burn-notice-part-2-5-5-flowise-pre-auth-arbitrary-file-upload-cve-2025-26319-0d4194a34183", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-44467", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71333", "type": "advisory" }, { - "title": "GHSA-gjjr-63x4-v8cq", - "url": "https://github.com/advisories/GHSA-gjjr-63x4-v8cq", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-arbitrary-file-upload-via-unauthenticated-api-v1-attachments-endpoint", "type": "advisory" }, { "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/commit/4c97a10bd0d9385cfee234a63b5bd826a295e483", + "url": "https://github.com/dorattias/CVE-2025-26319", "type": "patch" }, { - "title": "https://github.com/langchain-ai/langchain/pull/11233", - "url": "https://github.com/langchain-ai/langchain/pull/11233", - "type": "reference" + "title": "GHSA-69jq-qr7w-j7qh", + "url": "https://github.com/advisories/GHSA-69jq-qr7w-j7qh", + "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2023-194.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2023-194.yaml", + "title": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%402.2.6/packages/server/src/index.ts#L165-L190", + "url": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%402.2.6/packages/server/src/index.ts#L165-L190", "type": "reference" }, { - "title": "https://pypi.org/project/langchain-experimental/0.0.14", - "url": "https://pypi.org/project/langchain-experimental/0.0.14", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-69jq-qr7w-j7qh", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gjjr-63x4-v8cq", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71324", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-99pg-hqvx-r4gf", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-arbitrary-file-read-via-chatid-parameter", + "type": "advisory" + }, + { + "title": "GHSA-99pg-hqvx-r4gf", + "url": "https://github.com/advisories/GHSA-99pg-hqvx-r4gf", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-194", + "url": "https://osv.dev/vulnerability/GHSA-99pg-hqvx-r4gf", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-28088", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71334", "type": "advisory" }, { - "title": "GHSA-h59x-p739-982c", - "url": "https://github.com/advisories/GHSA-h59x-p739-982c", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/commit/8bd3de41533de78e4ef6c980e5704a1f9cb7ae6f", + "type": "patch" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-q67q-549q-p849", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-arbitrary-file-access-via-missing-chat-flow-id-validation", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/PinkDraconian/PoC-Langchain-RCE/blob/main/README.md", - "type": "exploit" + "title": "GHSA-q67q-549q-p849", + "url": "https://github.com/advisories/GHSA-q67q-549q-p849", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/blob/f96dd57501131840b713ed7c2e86cbf1ddc2761f/libs/core/langchain_core/utils/loading.py", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-q67q-549q-p849", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/pull/18600", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71336", + "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/e1924b3e93d513ca950c72f8e80e1c133749fba5", - "url": "https://github.com/langchain-ai/langchain/commit/e1924b3e93d513ca950c72f8e80e1c133749fba5", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6933-jpx5-q87q", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-unsandboxed-remote-code-execution-via-custom-mcp", + "type": "advisory" + }, + { + "title": "GHSA-6933-jpx5-q87q", + "url": "https://github.com/advisories/GHSA-6933-jpx5-q87q", + "type": "advisory" + }, + { + "title": "https://github.com/FlowiseAI/Flowise/pull/5201", + "url": "https://github.com/FlowiseAI/Flowise/pull/5201", "type": "reference" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-43.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-43.yaml", + "title": "https://github.com/FlowiseAI/Flowise/commit/ac7cf30e019cde54905bf09b5d3fe1c6ba42f9b9", + "url": "https://github.com/FlowiseAI/Flowise/commit/ac7cf30e019cde54905bf09b5d3fe1c6ba42f9b9", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h59x-p739-982c", - "type": "advisory" + "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6", + "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-43", + "url": "https://osv.dev/vulnerability/GHSA-6933-jpx5-q87q", "type": "advisory" }, + { + "title": "Flowise AI agent builder under active exploitation", + "url": "https://thehackernews.com/2026/04/flowise-ai-agent-builder-under-active.html", + "type": "news" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2965", + "url": "https://www.bleepingcomputer.com/news/security/max-severity-flowise-rce-vulnerability-now-exploited-in-attacks/", + "type": "research" + }, + { + "title": "GHSA-3gcm-f6qx-ff7p", + "url": "https://github.com/advisories/GHSA-3gcm-f6qx-ff7p", "type": "advisory" }, { - "title": "GHSA-3hjh-jh2h-vrg6", - "url": "https://github.com/advisories/GHSA-3hjh-jh2h-vrg6", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59528", "type": "advisory" }, { - "title": "https://huntr.com/bounties/90b0776d-9fa6-4841-aac4-09fde5918cae", - "url": "https://huntr.com/bounties/90b0776d-9fa6-4841-aac4-09fde5918cae", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/nodes/tools/MCP/CustomMCP/CustomMCP.ts#L132", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/pull/22903", - "url": "https://github.com/langchain-ai/langchain/pull/22903", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/nodes/index.ts#L57-L78", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/commit/9a877c7adbd06f90a2518152f65b562bd90487cc", - "url": "https://github.com/langchain-ai/langchain/commit/9a877c7adbd06f90a2518152f65b562bd90487cc", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/routes/node-load-methods/index.ts#L5", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/commit/73c42306745b0831aa6fe7fe4eeb70d2c2d87a82", - "url": "https://github.com/langchain-ai/langchain/commit/73c42306745b0831aa6fe7fe4eeb70d2c2d87a82", + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3hjh-jh2h-vrg6", + "url": "https://osv.dev/vulnerability/GHSA-3gcm-f6qx-ff7p", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-118", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71331", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3095", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4fr9-3x69-36wv", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-cross-site-scripting-in-chat-messages-and-agent-workflows", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/e62d4895-2901-405b-9559-38276b6a5273", - "type": "exploit" + "title": "GHSA-4fr9-3x69-36wv", + "url": "https://github.com/advisories/GHSA-4fr9-3x69-36wv", + "type": "advisory" }, { - "title": "GHSA-q25c-c977-4cmh", - "url": "https://github.com/advisories/GHSA-q25c-c977-4cmh", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-4fr9-3x69-36wv", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/pull/24451", - "url": "https://github.com/langchain-ai/langchain/pull/24451", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61913", + "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/604dfe2d99246b0c09f047c604f0c63eafba31e7", - "url": "https://github.com/langchain-ai/langchain/commit/604dfe2d99246b0c09f047c604f0c63eafba31e7", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/commit/1fb12cd93143592a18995f63b781d25b354d48a3", + "type": "patch" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.8", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/releases/tag/langchain-community%3D%3D0.2.9", - "url": "https://github.com/langchain-ai/langchain/releases/tag/langchain-community%3D%3D0.2.9", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-j44m-5v8f-gc9c", + "type": "vendor" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jv9m-vf54-chjj", + "type": "vendor" + }, + { + "title": "GHSA-jv9m-vf54-chjj", + "url": "https://github.com/advisories/GHSA-jv9m-vf54-chjj", + "type": "advisory" + }, + { + "title": "https://github.com/FlowiseAI/Flowise/pull/5275", + "url": "https://github.com/FlowiseAI/Flowise/pull/5275", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-q25c-c977-4cmh", + "url": "https://osv.dev/vulnerability/GHSA-jv9m-vf54-chjj", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21513", + "title": "GHSA-j44m-5v8f-gc9c", + "url": "https://github.com/advisories/GHSA-j44m-5v8f-gc9c", "type": "advisory" }, { - "title": "Snyk", - "url": "https://security.snyk.io/vuln/SNYK-PYTHON-LANGCHAINEXPERIMENTAL-7278171", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-j44m-5v8f-gc9c", "type": "advisory" }, { - "title": "report@snyk.io", - "url": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py%23L81", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71335", + "type": "advisory" }, { - "title": "report@snyk.io", - "url": "https://github.com/langchain-ai/langchain/commit/7b13292e3544b2f5f2bfb8a27a062ea2b0c34561", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x7rp-qj2h-ghgw", + "type": "vendor" }, { - "title": "GHSA-cgcg-p68q-3w7v", - "url": "https://github.com/advisories/GHSA-cgcg-p68q-3w7v", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-session-invalidation-failure-after-password-change", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py#L81", - "url": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py#L81", - "type": "reference" + "title": "GHSA-x7rp-qj2h-ghgw", + "url": "https://github.com/advisories/GHSA-x7rp-qj2h-ghgw", + "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-62.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-62.yaml", + "title": "https://github.com/FlowiseAI/Flowise/pull/5294", + "url": "https://github.com/FlowiseAI/Flowise/pull/5294", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-cgcg-p68q-3w7v", + "url": "https://osv.dev/vulnerability/GHSA-x7rp-qj2h-ghgw", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-62", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71337", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46946", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x39m-3393-3qp4", + "type": "exploit" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-unverified-email-change-via-account-profile-endpoint", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://cwe.mitre.org/data/definitions/95.html", - "type": "reference" + "title": "GHSA-x39m-3393-3qp4", + "url": "https://github.com/advisories/GHSA-x39m-3393-3qp4", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://docs.sympy.org/latest/modules/codegen.html", + "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.10", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.10", "type": "reference" }, { - "title": "cve@mitre.org", - "url": "https://gist.github.com/12end/68c0c58d2564ef4141bccd4651480820#file-cve-2024-46946-txt", - "type": "exploit" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71328", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/releases/tag/langchain-experimental%3D%3D0.3.0", - "type": "reference" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fjh6-8679-9pch", + "type": "vendor" }, { - "title": "GHSA-p2qj-r53j-h3xj", - "url": "https://github.com/advisories/GHSA-p2qj-r53j-h3xj", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-unverified-password-change-via-account-settings", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-p2qj-r53j-h3xj", + "title": "GHSA-fjh6-8679-9pch", + "url": "https://github.com/advisories/GHSA-fjh6-8679-9pch", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8309", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71327", "type": "advisory" }, { - "title": "GHSA-45pg-36p6-83v9", - "url": "https://github.com/advisories/GHSA-45pg-36p6-83v9", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v5w9-prxf-w882", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-authentication-bypass-via-unprotected-registration-endpoint", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://github.com/langchain-ai/langchain/commit/c2a3021bb0c5f54649d380b42a0684ca5778c255", - "type": "patch" + "title": "GHSA-v5w9-prxf-w882", + "url": "https://github.com/advisories/GHSA-v5w9-prxf-w882", + "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/8f4ad910-7fdc-4089-8f0a-b5df5f32e7c5", - "type": "exploit" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-v5w9-prxf-w882", + "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-115.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-115.yaml", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56267", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-jc5m-wrp2-qq38", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/commit/64c317eba05fbac0c6a6fc5aa192bc0d7130972e", - "url": "https://github.com/langchain-ai/langchain/commit/64c317eba05fbac0c6a6fc5aa192bc0d7130972e", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-pii-disclosure-via-unauthenticated-forgot-password-endpoint", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-45pg-36p6-83v9", + "title": "GHSA-jc5m-wrp2-qq38", + "url": "https://github.com/advisories/GHSA-jc5m-wrp2-qq38", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-115", + "url": "https://osv.dev/vulnerability/GHSA-jc5m-wrp2-qq38", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58340", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56278", "type": "advisory" }, { "title": "disclosure@vulncheck.com", - "url": "https://huntr.com/bounties/e7ece02c-d4bb-4166-8e08-6baf4f8845bb", - "type": "exploit" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2qqc-p94c-hxwh", + "type": "reference" }, { "title": "disclosure@vulncheck.com", - "url": "https://www.langchain.com/", + "url": "https://www.vulncheck.com/advisories/flowise-session-hijacking-via-weak-default-express-session-secret", "type": "reference" }, { - "title": "disclosure@vulncheck.com", - "url": "https://www.vulncheck.com/advisories/langchain-mrkloutputparser-redos", + "title": "GHSA-2qqc-p94c-hxwh", + "url": "https://github.com/advisories/GHSA-2qqc-p94c-hxwh", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-2qqc-p94c-hxwh", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5998", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56275", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/fa3a2753-57c3-4e08-a176-d7a3ffda28fe", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9hrv-gvrv-6gf2", "type": "exploit" }, { - "title": "GHSA-f2jm-rw3h-6phg", - "url": "https://github.com/advisories/GHSA-f2jm-rw3h-6phg", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-server-side-request-forgery-via-execute-flow-base-url", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/77209f315efd13442ec51c67719ba37dfaa44511", - "url": "https://github.com/langchain-ai/langchain/commit/77209f315efd13442ec51c67719ba37dfaa44511", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-f2jm-rw3h-6phg", + "title": "GHSA-9hrv-gvrv-6gf2", + "url": "https://github.com/advisories/GHSA-9hrv-gvrv-6gf2", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38459", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-9hrv-gvrv-6gf2", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/commit/ce0b0f22a175139df8f41cdcfb4d2af411112009", - "type": "patch" + "title": "OX Security advisory", + "url": "https://www.ox.security/blog/mcp-supply-chain-advisory-rce-vulnerabilities-across-the-ai-ecosystem/", + "type": "analysis" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/compare/langchain-experimental==0.0.60...langchain-experimental==0.0.61", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40933", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/pull/22860", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c9gw-hvqq-f33r", + "type": "vendor" }, { - "title": "GHSA-wmvm-9vqv-5qpp", - "url": "https://github.com/advisories/GHSA-wmvm-9vqv-5qpp", + "title": "security-advisories@github.com", + "url": "https://www.ox.security/blog/the-mother-of-all-ai-supply-chains-critical-systemic-vulnerability-at-the-core-of-the-mcp", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-53.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-53.yaml", - "type": "reference" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wmvm-9vqv-5qpp", + "title": "GHSA-c9gw-hvqq-f33r", + "url": "https://github.com/advisories/GHSA-c9gw-hvqq-f33r", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2024-53", + "url": "https://osv.dev/vulnerability/GHSA-c9gw-hvqq-f33r", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3571", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56274", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://github.com/langchain-ai/langchain/commit/aad3d8bd47d7f5598156ff2bdcc8f736f24a7412", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m99r-2hxc-cp3q", + "type": "exploit" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/2df3acdc-ee4f-4257-bbf8-a7de3870a9d8", - "type": "exploit" + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-remote-code-execution-via-mcp-security-bypass-in-validatecommandflags-and-validateargsforlocalfileaccess", + "type": "advisory" }, { - "title": "GHSA-rgp8-pm28-3759", - "url": "https://github.com/advisories/GHSA-rgp8-pm28-3759", + "title": "GHSA-m99r-2hxc-cp3q", + "url": "https://github.com/advisories/GHSA-m99r-2hxc-cp3q", "type": "advisory" }, + { + "title": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.1.2", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.1.2", + "type": "reference" + }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-rgp8-pm28-3759", + "url": "https://osv.dev/vulnerability/GHSA-m99r-2hxc-cp3q", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27444", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56277", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/commit/de9a6cdf163ed00adaf2e559203ed0a9ca2f1de7", - "type": "patch" + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m837-xvxr-vqwg", + "type": "reference" }, { - "title": "GHSA-v8vj-cv27-hjv8", - "url": "https://github.com/advisories/GHSA-v8vj-cv27-hjv8", - "type": "advisory" + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-hardcoded-cors-wildcard-in-tts-endpoint", + "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v8vj-cv27-hjv8", + "title": "GHSA-m837-xvxr-vqwg", + "url": "https://github.com/advisories/GHSA-m837-xvxr-vqwg", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0243", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-m837-xvxr-vqwg", "type": "advisory" }, { - "title": "GHSA-h9j7-5xvc-qhg5", - "url": "https://github.com/advisories/GHSA-h9j7-5xvc-qhg5", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56276", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22", - "url": "https://github.com/langchain-ai/langchain/commit/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22", - "type": "reference" - }, - { - "title": "https://huntr.com/bounties/370904e7-10ac-40a4-a8d4-e2d16e1ca861", - "url": "https://huntr.com/bounties/370904e7-10ac-40a4-a8d4-e2d16e1ca861", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-59fh-9f3p-7m39", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/pull/15559", - "url": "https://github.com/langchain-ai/langchain/pull/15559", + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-mass-assignment-in-put-api-v1-user-allows-password-hash-override", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/blob/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22/libs/community/langchain_community/document_loaders/recursive_url_loader.py#L51-L51", - "url": "https://github.com/langchain-ai/langchain/blob/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22/libs/community/langchain_community/document_loaders/recursive_url_loader.py#L51-L51", - "type": "reference" + "title": "GHSA-59fh-9f3p-7m39", + "url": "https://github.com/advisories/GHSA-59fh-9f3p-7m39", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h9j7-5xvc-qhg5", + "url": "https://osv.dev/vulnerability/GHSA-59fh-9f3p-7m39", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32786", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42861", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://gist.github.com/rharang/d265f46fc3161b31ac2e81db44d662e1", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6fw7-3q8r-m5vj", + "type": "vendor" }, { - "title": "GHSA-6h8p-4hx9-w66c", - "url": "https://github.com/advisories/GHSA-6h8p-4hx9-w66c", + "title": "GHSA-6fw7-3q8r-m5vj", + "url": "https://github.com/advisories/GHSA-6fw7-3q8r-m5vj", "type": "advisory" }, - { - "title": "https://github.com/langchain-ai/langchain/pull/12747", - "url": "https://github.com/langchain-ai/langchain/pull/12747", - "type": "reference" - }, - { - "title": "https://github.com/langchain-ai/langchain/releases/tag/v0.0.329", - "url": "https://github.com/langchain-ai/langchain/releases/tag/v0.0.329", - "type": "reference" - }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6h8p-4hx9-w66c", + "url": "https://osv.dev/vulnerability/GHSA-6fw7-3q8r-m5vj", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/commit/9ecb7240a480720ec9d739b3877a52f76098a2b8", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42862", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/langchain-ai/langchain/pull/11925", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x5v6-pj28-cwwm", "type": "vendor" }, { - "title": "GHSA-655w-fm8m-m478", - "url": "https://github.com/advisories/GHSA-655w-fm8m-m478", + "title": "GHSA-x5v6-pj28-cwwm", + "url": "https://github.com/advisories/GHSA-x5v6-pj28-cwwm", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-205.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-205.yaml", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-x5v6-pj28-cwwm", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-655w-fm8m-m478", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42863", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-205", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5wxp-qjgq-fx6m", + "type": "vendor" + }, + { + "title": "GHSA-5wxp-qjgq-fx6m", + "url": "https://github.com/advisories/GHSA-5wxp-qjgq-fx6m", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32785", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-5wxp-qjgq-fx6m", "type": "advisory" }, { - "title": "GHSA-8h5w-f6q9-wg35", - "url": "https://github.com/advisories/GHSA-8h5w-f6q9-wg35", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46440", "type": "advisory" }, { - "title": "https://gist.github.com/rharang/9c58d39db8c01db5b7c888e467c0533f", - "url": "https://gist.github.com/rharang/9c58d39db8c01db5b7c888e467c0533f", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-php6-83fg-gw3g", + "type": "vendor" }, { - "title": "https://github.com/langchain-ai/langchain/issues/5923#issuecomment-1696053841", - "url": "https://github.com/langchain-ai/langchain/issues/5923#issuecomment-1696053841", - "type": "reference" + "title": "GHSA-php6-83fg-gw3g", + "url": "https://github.com/advisories/GHSA-php6-83fg-gw3g", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8h5w-f6q9-wg35", + "url": "https://osv.dev/vulnerability/GHSA-php6-83fg-gw3g", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36095", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46441", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hp26-q66v-q2w7", + "type": "vendor" }, { - "title": "GHSA-gwqq-6vq7-5j86", - "url": "https://github.com/advisories/GHSA-gwqq-6vq7-5j86", + "title": "GHSA-hp26-q66v-q2w7", + "url": "https://github.com/advisories/GHSA-hp26-q66v-q2w7", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gwqq-6vq7-5j86", + "url": "https://osv.dev/vulnerability/GHSA-hp26-q66v-q2w7", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/8ba9835b925473655914f63822775679e03ea137", - "url": "https://github.com/langchain-ai/langchain/commit/8ba9835b925473655914f63822775679e03ea137", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46442", + "type": "advisory" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9rvc-vf7m-pgm2", + "type": "vendor" + }, + { + "title": "GHSA-9rvc-vf7m-pgm2", + "url": "https://github.com/advisories/GHSA-9rvc-vf7m-pgm2", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-138", + "url": "https://osv.dev/vulnerability/GHSA-9rvc-vf7m-pgm2", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38896", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46443", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/pull/6003", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7g73-99r4-m4mj", + "type": "vendor" }, { - "title": "cve@mitre.org", - "url": "https://twitter.com/llm_sec/status/1668711587287375876", + "title": "GHSA-7g73-99r4-m4mj", + "url": "https://github.com/advisories/GHSA-7g73-99r4-m4mj", "type": "advisory" }, { - "title": "GHSA-92j5-3459-qgp4", - "url": "https://github.com/advisories/GHSA-92j5-3459-qgp4", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-7g73-99r4-m4mj", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-92j5-3459-qgp4", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46444", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/e294ba475a355feb95003ed8f1a2b99942509a9e", - "url": "https://github.com/langchain-ai/langchain/commit/e294ba475a355feb95003ed8f1a2b99942509a9e", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmg2-jjjx-jcp2", + "type": "vendor" + }, + { + "title": "GHSA-hmg2-jjjx-jcp2", + "url": "https://github.com/advisories/GHSA-hmg2-jjjx-jcp2", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-146", + "url": "https://osv.dev/vulnerability/GHSA-hmg2-jjjx-jcp2", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36188", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46475", "type": "advisory" }, { - "title": "GHSA-57fc-8q82-gfp3", - "url": "https://github.com/advisories/GHSA-57fc-8q82-gfp3", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-78pr-c5x5-jggc", + "type": "vendor" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-109.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-109.yaml", - "type": "reference" + "title": "GHSA-78pr-c5x5-jggc", + "url": "https://github.com/advisories/GHSA-78pr-c5x5-jggc", + "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/pull/8425", - "url": "https://github.com/langchain-ai/langchain/pull/8425", + "title": "https://github.com/FlowiseAI/Flowise/pull/6128", + "url": "https://github.com/FlowiseAI/Flowise/pull/6128", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-57fc-8q82-gfp3", - "type": "advisory" + "title": "https://github.com/FlowiseAI/Flowise/commit/1cf247eab35c7c3d4db381d23e4dca682fba527b", + "url": "https://github.com/FlowiseAI/Flowise/commit/1cf247eab35c7c3d4db381d23e4dca682fba527b", + "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-109", + "url": "https://osv.dev/vulnerability/GHSA-78pr-c5x5-jggc", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38860", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46476", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/7641", - "type": "exploit" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-728h-4mwj-f2p4", + "type": "vendor" }, { - "title": "GHSA-fj32-q626-pjjc", - "url": "https://github.com/advisories/GHSA-fj32-q626-pjjc", + "title": "GHSA-728h-4mwj-f2p4", + "url": "https://github.com/advisories/GHSA-728h-4mwj-f2p4", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-145.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-145.yaml", - "type": "reference" - }, - { - "title": "https://github.com/langchain-ai/langchain/issues/7641", - "url": "https://github.com/langchain-ai/langchain/issues/7641", + "title": "https://github.com/FlowiseAI/Flowise/pull/6129", + "url": "https://github.com/FlowiseAI/Flowise/pull/6129", "type": "reference" }, { - "title": "https://github.com/langchain-ai/langchain/pull/8092", - "url": "https://github.com/langchain-ai/langchain/pull/8092", + "title": "https://github.com/FlowiseAI/Flowise/commit/f64047bdcf4cbd6a30ec348b9e3f2899ff514e89", + "url": "https://github.com/FlowiseAI/Flowise/commit/f64047bdcf4cbd6a30ec348b9e3f2899ff514e89", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fj32-q626-pjjc", - "type": "advisory" - }, - { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-145", + "url": "https://osv.dev/vulnerability/GHSA-728h-4mwj-f2p4", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36189", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46477", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/5923", - "type": "exploit" - }, - { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/pull/6051", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5h9v-837x-m97r", + "type": "vendor" }, { - "title": "GHSA-7q94-qpjr-xpgm", - "url": "https://github.com/advisories/GHSA-7q94-qpjr-xpgm", + "title": "GHSA-5h9v-837x-m97r", + "url": "https://github.com/advisories/GHSA-5h9v-837x-m97r", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-110.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-110.yaml", + "title": "https://github.com/FlowiseAI/Flowise/pull/6051", + "url": "https://github.com/FlowiseAI/Flowise/pull/6051", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7q94-qpjr-xpgm", - "type": "advisory" + "title": "https://github.com/FlowiseAI/Flowise/commit/49a2259bf2a6b4f3d4b50813cb5161cee0d40040", + "url": "https://github.com/FlowiseAI/Flowise/commit/49a2259bf2a6b4f3d4b50813cb5161cee0d40040", + "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-110", + "url": "https://osv.dev/vulnerability/GHSA-5h9v-837x-m97r", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34541", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46478", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://github.com/hwchase17/langchain/issues/4849", - "type": "exploit" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7j65-65cr-6644", + "type": "vendor" }, { - "title": "GHSA-6643-h7h5-x9wh", - "url": "https://github.com/advisories/GHSA-6643-h7h5-x9wh", + "title": "GHSA-7j65-65cr-6644", + "url": "https://github.com/advisories/GHSA-7j65-65cr-6644", "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-92.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-92.yaml", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-7j65-65cr-6644", + "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/issues/4849", - "url": "https://github.com/langchain-ai/langchain/issues/4849", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46479", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6643-h7h5-x9wh", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-mq53-pc65-wjc4", + "type": "vendor" + }, + { + "title": "GHSA-mq53-pc65-wjc4", + "url": "https://github.com/advisories/GHSA-mq53-pc65-wjc4", "type": "advisory" }, { - "title": "https://github.com/langchain-ai/langchain/commit/fab24457bcf8ede882abd11419769c92bc4e7751", - "url": "https://github.com/langchain-ai/langchain/commit/fab24457bcf8ede882abd11419769c92bc4e7751", + "title": "https://github.com/FlowiseAI/Flowise/pull/6050", + "url": "https://github.com/FlowiseAI/Flowise/pull/6050", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2023-92", - "type": "advisory" - } - ], - "tags": [ - "agent-framework", - "bypass", - "code-execution", - "cve", - "deserialization", - "dos", - "eval", - "ghsa", - "graphcypher", - "langchain", - "langchain-community", - "langchain-core", - "langchain-experimental", - "llamaindex", - "llm-math", - "load_chain", - "loaders", - "nvd", - "osv", - "palchain", - "path-traversal", - "prompt-injection", - "rce", - "retriever", - "sitemap", - "sql-injection", - "ssrf", - "sympy", - "vector-sql" - ] - }, - { - "id": "INC-01297", - "title": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "CVSS 9.8. Langflow's CSVAgentComponent hardcodes `allow_dangerous_code=True`, auto-enabling LangChain's Python REPL tool. Attackers inject malicious prompts through user-supplied input, achieving arbitrary Python/OS command execution. No authentication required. Affects versions prior to 1.8.0.", - "owasp_entries": [ - "LLM01", - "LLM05", - "ASI01", - "ASI02", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0011", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", - "severity": "Critical", - "references": [ - { - "title": "GitHub Advisory", - "url": "https://github.com/advisories/GHSA-3645-fxcv-hqr4", - "type": "research" + "title": "https://github.com/FlowiseAI/Flowise/commit/dc07f4062b852033554543a3cff3daf3433b0dac", + "url": "https://github.com/FlowiseAI/Flowise/commit/dc07f4062b852033554543a3cff3daf3433b0dac", + "type": "reference" }, { - "title": "TheHackerWire", - "url": "https://www.thehackerwire.com/langflow-csv-agent-rce-via-prompt-injection/", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-mq53-pc65-wjc4", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27966", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-46480", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/langflow-ai/langflow/commit/d8c6480daa17b2f2af0b5470cdf5c3d28dc9e508", - "type": "patch" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wxrr-jp8m-qq7f", + "type": "vendor" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-3645-fxcv-hqr4", - "type": "vendor" - } - ], - "tags": [ - "cve", - "ghsa", - "langflow", - "nvd", - "prompt-injection" - ] - }, - { - "id": "INC-01298", - "title": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Follow-up code injection (CVSS 9.3) to CVE-2025-3248; added to CISA KEV catalog. Exploitation began within 20 hours of advisory publication; .env and .db harvesting within 24 hours. Previously, CVE-2025-3248 exec()'d user-submitted Python without authentication, actively exploited to deploy the Flodric botnet.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "LLM06", - "ASI01", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI09", - "ASI10" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0025", - "AML.T0048", - "AML.T0048.003", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0054", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0007", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MAP-2.1", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "prompt-injection", - "affected": "Langflow Unauthenticated RCE (CVE-2026-33017)", - "impact": "30+ vulnerabilities across all major AI coding tools; universal attack pattern; 24 CVEs", - "severity": "Critical", - "mitigations": [ - "AI IDE threat models must include base IDE attack surface", - "Settings write restrictions for AI agents", - "User confirmation for IDE configuration changes" - ], - "references": [ + "title": "GHSA-wxrr-jp8m-qq7f", + "url": "https://github.com/advisories/GHSA-wxrr-jp8m-qq7f", + "type": "advisory" + }, { - "title": "CISA", - "url": "https://www.bleepingcomputer.com/news/security/cisa-new-langflow-flaw-actively-exploited-to-hijack-ai-workflows/", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-wxrr-jp8m-qq7f", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3248", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56268", "type": "advisory" }, { - "title": "Recorded Future", - "url": "https://www.recordedfuture.com/blog/langflow-cve-2025-3248", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-c2c9-mfw7-p8hw", + "type": "exploit" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-cross-workspace-information-disclosure-via-chatflows-apikey-endpoint", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-33017", + "title": "GHSA-c2c9-mfw7-p8hw", + "url": "https://github.com/advisories/GHSA-c2c9-mfw7-p8hw", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/advisories/GHSA-rvqx-wpfh-mfx7", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-c2c9-mfw7-p8hw", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/langflow-ai/langflow/commit/73b6612e3ef25fdae0a752d75b0fabd47328d4f0", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-71332", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-vwmf-pq79-vjvx", + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9c4c-g95m-c8cp", "type": "vendor" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://github.com/langflow-ai/langflow/releases/tag/1.8.2", - "type": "reference" + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-sql-injection-in-importchatflows-api-via-chatflow-id-parameter", + "type": "advisory" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://medium.com/@aviral23/cve-2026-33017-how-i-found-an-unauthenticated-rce-in-langflow-by-reading-the-code-they-already-dc96cdce5896", - "type": "exploit" + "title": "GHSA-9c4c-g95m-c8cp", + "url": "https://github.com/advisories/GHSA-9c4c-g95m-c8cp", + "type": "advisory" + }, + { + "title": "https://github.com/FlowiseAI/Flowise/pull/4226", + "url": "https://github.com/FlowiseAI/Flowise/pull/4226", + "type": "reference" }, { - "title": "GHSA-vwmf-pq79-vjvx", - "url": "https://github.com/advisories/GHSA-vwmf-pq79-vjvx", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-9c4c-g95m-c8cp", "type": "advisory" }, { - "title": "https://github.com/langflow-ai/langflow/pull/12160", - "url": "https://github.com/langflow-ai/langflow/pull/12160", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56269", + "type": "advisory" }, { "title": "disclosure@vulncheck.com", - "url": "https://github.com/langflow-ai/langflow/pull/6911", - "type": "patch" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-m7mq-85xj-9x33", + "type": "vendor" }, { "title": "disclosure@vulncheck.com", - "url": "https://github.com/langflow-ai/langflow/releases/tag/1.3.0", - "type": "reference" + "url": "https://www.vulncheck.com/advisories/flowise-weak-default-token-hash-secret-in-jwt-token-encryption", + "type": "advisory" + }, + { + "title": "GHSA-m7mq-85xj-9x33", + "url": "https://github.com/advisories/GHSA-m7mq-85xj-9x33", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-m7mq-85xj-9x33", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56270", + "type": "advisory" }, { "title": "disclosure@vulncheck.com", - "url": "https://www.horizon3.ai/attack-research/disclosures/unsafe-at-any-speed-abusing-python-exec-for-unauth-rce-in-langflow-ai/", - "type": "exploit" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6pcv-j4jx-m4vx", + "type": "vendor" }, { "title": "disclosure@vulncheck.com", - "url": "https://www.vulncheck.com/advisories/langflow-unauthenticated-rce", + "url": "https://www.vulncheck.com/advisories/flowise-unauthenticated-oauth-secrets-disclosure-via-api-v1-loginmethod-endpoint", "type": "advisory" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-3248", - "type": "reference" + "title": "GHSA-6pcv-j4jx-m4vx", + "url": "https://github.com/advisories/GHSA-6pcv-j4jx-m4vx", + "type": "advisory" }, { - "title": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-rvqx-wpfh-mfx7", - "url": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-rvqx-wpfh-mfx7", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6pcv-j4jx-m4vx", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56272", + "type": "advisory" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x2g5-fvc2-gqvp", + "type": "vendor" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/flowise-insufficient-password-salt-rounds-in-bcrypt-hashing", + "type": "advisory" + }, + { + "title": "GHSA-x2g5-fvc2-gqvp", + "url": "https://github.com/advisories/GHSA-x2g5-fvc2-gqvp", + "type": "advisory" }, { - "title": "https://github.com/langflow-ai/langflow/commit/faac4db133de32fcb6d483fa9ff52f40ce42bdc0", - "url": "https://github.com/langflow-ai/langflow/commit/faac4db133de32fcb6d483fa9ff52f40ce42bdc0", + "title": "https://github.com/FlowiseAI/Flowise/pull/5665", + "url": "https://github.com/FlowiseAI/Flowise/pull/5665", "type": "reference" }, { - "title": "Microsoft", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-64660", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-x2g5-fvc2-gqvp", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64660", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-43995", "type": "advisory" }, { - "title": "MaccariTA", - "url": "https://maccarita.com/posts/idesaster/", - "type": "research" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-qqvm-66q4-vf5c", + "type": "vendor" }, { - "title": "Roo Code", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-4pqh-4ggm-jfmm", - "type": "research" + "title": "GHSA-qqvm-66q4-vf5c", + "url": "https://github.com/advisories/GHSA-qqvm-66q4-vf5c", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-qqvm-66q4-vf5c", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58372", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-8026", "type": "advisory" }, { - "title": "Microsoft", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53773", + "title": "cna@vuldb.com", + "url": "https://gist.github.com/YLChen-007/50a553f09aa1c7c04ce18cec13986a91", + "type": "exploit" + }, + { + "title": "cna@vuldb.com", + "url": "https://vuldb.com/submit/777656", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53773", + "title": "cna@vuldb.com", + "url": "https://vuldb.com/vuln/361273", "type": "advisory" }, { - "title": "Cursor", - "url": "https://github.com/cursor/cursor/security/advisories/GHSA-vqv7-vq92-x87f", - "type": "research" + "title": "cna@vuldb.com", + "url": "https://vuldb.com/vuln/361273/cti", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54130", + "title": "GHSA-8f47-4rh3-x44m", + "url": "https://github.com/advisories/GHSA-8f47-4rh3-x44m", "type": "advisory" }, { - "title": "JetBrains", - "url": "https://www.jetbrains.com/privacy-security/issues-fixed/", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-8f47-4rh3-x44m", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58335", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41264", "type": "advisory" }, { - "title": "Zed", - "url": "https://github.com/zed-industries/zed/security/advisories/GHSA-x34m-39xw-g2wr", - "type": "research" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3hjv-c53m-58jj", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55012", + "title": "GHSA-3hjv-c53m-58jj", + "url": "https://github.com/advisories/GHSA-3hjv-c53m-58jj", "type": "advisory" }, { - "title": "Roo Code", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-3765-5vjr-qjgm", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-3hjv-c53m-58jj", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53536", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41265", "type": "advisory" }, { - "title": "Cursor", - "url": "https://github.com/cursor/cursor/security/advisories/GHSA-9h3v-h59j-v6rj", - "type": "research" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-v38x-c887-992f", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-49150", + "title": "GHSA-v38x-c887-992f", + "url": "https://github.com/advisories/GHSA-v38x-c887-992f", "type": "advisory" }, { - "title": "Roo Code", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-wr2q-46pg-f228", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-v38x-c887-992f", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53097", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41137", "type": "advisory" }, { - "title": "Wiz analysis", - "url": "https://www.wiz.io/vulnerability-database/cve/cve-2025-53773", - "type": "analysis" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-9wc7-mj3f-74xv", + "type": "vendor" }, { - "title": "Embrace The Red", - "url": "https://embracethered.com/blog/posts/2025/github-copilot-remote-code-execution-via-prompt-injection/", - "type": "analysis" + "title": "GHSA-9wc7-mj3f-74xv", + "url": "https://github.com/advisories/GHSA-9wc7-mj3f-74xv", + "type": "advisory" }, { - "title": "The Hacker News", - "url": "https://thehackernews.com/2025/12/researchers-uncover-30-flaws-in-ai.html", - "type": "analysis" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-9wc7-mj3f-74xv", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61260", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41138", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "http://openai.com", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-f228-chmx-v6j6", + "type": "vendor" }, { - "title": "cve@mitre.org", - "url": "https://research.checkpoint.com/2025/openai-codex-cli-command-injection-vulnerability/", - "type": "reference" + "title": "GHSA-f228-chmx-v6j6", + "url": "https://github.com/advisories/GHSA-f228-chmx-v6j6", + "type": "advisory" }, { - "title": "GHSA-xrxf-jgv3-qmrm", - "url": "https://github.com/advisories/GHSA-xrxf-jgv3-qmrm", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-f228-chmx-v6j6", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-60511", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41266", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "http://moodle.com", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-4jpm-cgx2-8h37", + "type": "vendor" }, { - "title": "cve@mitre.org", - "url": "https://github.com/onurcangnc/moodle_block_openai_chat", - "type": "reference" + "title": "GHSA-4jpm-cgx2-8h37", + "url": "https://github.com/advisories/GHSA-4jpm-cgx2-8h37", + "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://onurcangenc.com.tr/posts/idor-in-moodle-openai-chat-block-block_openai_chat-proof-of-concept-poc--cve-2025-60511/", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-4jpm-cgx2-8h37", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/296edfc829a7c6efc8b5dbe09aa766a9aed79598", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41267", + "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/releases/tag/v3.26.0", - "type": "reference" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-48m6-ch88-55mj", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58373", + "title": "GHSA-48m6-ch88-55mj", + "url": "https://github.com/advisories/GHSA-48m6-ch88-55mj", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/pull/7405", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-48m6-ch88-55mj", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41268", + "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-p76r-7mc3-qh7c", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cvrr-qhgw-2mm6", "type": "vendor" }, + { + "title": "GHSA-cvrr-qhgw-2mm6", + "url": "https://github.com/advisories/GHSA-cvrr-qhgw-2mm6", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-cvrr-qhgw-2mm6", + "type": "advisory" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58374", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41269", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/pull/7390/files", - "type": "reference" + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-rh7v-6w34-w2rr", + "type": "vendor" + }, + { + "title": "GHSA-rh7v-6w34-w2rr", + "url": "https://github.com/advisories/GHSA-rh7v-6w34-w2rr", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-rh7v-6w34-w2rr", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41270", + "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-c292-qxq4-4p2v", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-xhmj-rg95-44hv", "type": "vendor" }, { - "title": "af854a3a-2127-422b-91ae-364da2661108", - "url": "https://news.ycombinator.com/item?id=44883108", + "title": "GHSA-xhmj-rg95-44hv", + "url": "https://github.com/advisories/GHSA-xhmj-rg95-44hv", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40466", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-xhmj-rg95-44hv", "type": "advisory" }, { - "title": "GHSA-w3w2-mpp5-92gm", - "url": "https://github.com/advisories/GHSA-w3w2-mpp5-92gm", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41271", "type": "advisory" }, { - "title": "https://activemq.apache.org/security-advisories.data/CVE-2026-34197-announcement.txt", - "url": "https://activemq.apache.org/security-advisories.data/CVE-2026-34197-announcement.txt", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6r77-hqx7-7vw8", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34197", + "title": "GHSA-6r77-hqx7-7vw8", + "url": "https://github.com/advisories/GHSA-6r77-hqx7-7vw8", "type": "advisory" }, { - "title": "GHSA-rxpj-7qvf-xv32", - "url": "https://github.com/advisories/GHSA-rxpj-7qvf-xv32", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6r77-hqx7-7vw8", "type": "advisory" }, { - "title": "http://www.openwall.com/lists/oss-security/2026/04/06/3", - "url": "http://www.openwall.com/lists/oss-security/2026/04/06/3", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41272", + "type": "advisory" }, { - "title": "CVEReports", - "url": "https://cvereports.com/reports/CVE-2026-40217", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-2x8m-83vc-6wv4", + "type": "vendor" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40217", + "title": "GHSA-2x8m-83vc-6wv4", + "url": "https://github.com/advisories/GHSA-2x8m-83vc-6wv4", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://www.x41-dsec.de/lab/advisories/x41-2026-001-litellm/", - "type": "exploit" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-2x8m-83vc-6wv4", + "type": "advisory" }, { - "title": "GHSA-wxxx-gvqv-xp7p", - "url": "https://github.com/advisories/GHSA-wxxx-gvqv-xp7p", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41273", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/security/advisories/GHSA-wxxx-gvqv-xp7p", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-wxxx-gvqv-xp7p", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6f7g-v4pp-r667", + "type": "vendor" }, { - "title": "https://github.com/BerriAI/litellm/releases/tag/v1.83.10-stable", - "url": "https://github.com/BerriAI/litellm/releases/tag/v1.83.10-stable", - "type": "reference" + "title": "GHSA-6f7g-v4pp-r667", + "url": "https://github.com/advisories/GHSA-6f7g-v4pp-r667", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-wxxx-gvqv-xp7p", + "url": "https://osv.dev/vulnerability/GHSA-6f7g-v4pp-r667", "type": "advisory" }, - { - "title": "https://github.com/BerriAI/litellm", - "url": "https://github.com/BerriAI/litellm", - "type": "reference" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-47101", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41275", "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://gist.github.com/13ph03nix/9ec616e1fdc77b3673509c60206e827f", - "type": "exploit" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/2220f3076ac89bd2a2e3439acf57dcfbec2434c9", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-x5w6-38gp-mrqh", + "type": "vendor" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/5190bd07eb23a037745d86328096f54378f1614a", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://hackerone.com/reports/1888915", + "type": "exploit" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/d910a95661fce3cdd36f3b06c03ecf9c46c6457c", - "type": "patch" + "title": "GHSA-x5w6-38gp-mrqh", + "url": "https://github.com/advisories/GHSA-x5w6-38gp-mrqh", + "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/releases/tag/v1.83.14-stable", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-x5w6-38gp-mrqh", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-47102", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41276", "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/128d32d2494b759c5d15da3452452af4c6a34c01", - "type": "patch" - }, - { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/commit/e6f18ce75b111c9b93dc15c72894cbdeb53177ce", - "type": "patch" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-f6hc-c5jr-878p", + "type": "vendor" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/BerriAI/litellm/pull/25541", - "type": "patch" + "title": "GHSA-f6hc-c5jr-878p", + "url": "https://github.com/advisories/GHSA-f6hc-c5jr-878p", + "type": "advisory" }, { - "title": "SentinelOne", - "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-35029/", - "type": "analysis" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-f6hc-c5jr-878p", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-35029", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41277", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-53mr-6c8q-9789", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3prp-9gf7-4rxx", "type": "vendor" }, { - "title": "af854a3a-2127-422b-91ae-364da2661108", - "url": "http://seclists.org/fulldisclosure/2026/Apr/17", - "type": "reference" - }, - { - "title": "GHSA-53mr-6c8q-9789", - "url": "https://github.com/advisories/GHSA-53mr-6c8q-9789", + "title": "GHSA-3prp-9gf7-4rxx", + "url": "https://github.com/advisories/GHSA-3prp-9gf7-4rxx", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-53mr-6c8q-9789", + "url": "https://osv.dev/vulnerability/GHSA-3prp-9gf7-4rxx", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42203", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41278", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/releases/tag/v1.83.7-stable", - "type": "reference" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-xqmj-j6mv-4862", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w47f-j8rh-wx87", "type": "vendor" }, { - "title": "GHSA-xqmj-j6mv-4862", - "url": "https://github.com/advisories/GHSA-xqmj-j6mv-4862", + "title": "GHSA-w47f-j8rh-wx87", + "url": "https://github.com/advisories/GHSA-w47f-j8rh-wx87", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-xqmj-j6mv-4862", + "url": "https://osv.dev/vulnerability/GHSA-w47f-j8rh-wx87", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42208", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41279", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-r75f-5x8p-qvmc", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5fw2-mwhh-9947", "type": "vendor" }, { - "title": "GHSA-r75f-5x8p-qvmc", - "url": "https://github.com/advisories/GHSA-r75f-5x8p-qvmc", + "title": "GHSA-5fw2-mwhh-9947", + "url": "https://github.com/advisories/GHSA-5fw2-mwhh-9947", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-r75f-5x8p-qvmc", + "url": "https://osv.dev/vulnerability/GHSA-5fw2-mwhh-9947", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42271", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41274", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-v4p8-mg3p-g94g", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-28g4-38q8-3cwc", "type": "vendor" }, { - "title": "GHSA-v4p8-mg3p-g94g", - "url": "https://github.com/advisories/GHSA-v4p8-mg3p-g94g", + "title": "GHSA-28g4-38q8-3cwc", + "url": "https://github.com/advisories/GHSA-28g4-38q8-3cwc", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-v4p8-mg3p-g94g", + "url": "https://osv.dev/vulnerability/GHSA-28g4-38q8-3cwc", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-35030", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30615", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-jjhc-v7c2-5hh6", - "type": "vendor" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30616", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30617", + "type": "advisory" }, { - "title": "GHSA-jjhc-v7c2-5hh6", - "url": "https://github.com/advisories/GHSA-jjhc-v7c2-5hh6", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30624", "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-jjhc-v7c2-5hh6", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30625", "type": "advisory" }, { - "title": "GHSA-3926-2jvf-fg29", - "url": "https://github.com/advisories/GHSA-3926-2jvf-fg29", + "title": "cve@mitre.org", + "url": "https://github.com/Upsonic/Upsonic/commit/855053fce0662227d9246268ff4a0844b481a305", + "type": "reference" + }, + { + "title": "GHSA-cw73-5f7h-m4gv", + "url": "https://github.com/advisories/GHSA-cw73-5f7h-m4gv", "type": "advisory" }, { - "title": "GHSA-69x8-hrgq-fjj8", - "url": "https://github.com/advisories/GHSA-69x8-hrgq-fjj8", + "title": "GHSA-w6v6-49gh-mc9w", + "url": "https://github.com/advisories/GHSA-w6v6-49gh-mc9w", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/security/advisories/GHSA-69x8-hrgq-fjj8", - "url": "https://github.com/BerriAI/litellm/security/advisories/GHSA-69x8-hrgq-fjj8", + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-69x8-hrgq-fjj8", + "url": "https://osv.dev/vulnerability/GHSA-w6v6-49gh-mc9w", "type": "advisory" }, { - "title": "GHSA-5mg7-485q-xm76", - "url": "https://github.com/advisories/GHSA-5mg7-485q-xm76", + "title": "GHSA-cc4f-hjpj-g9p8", + "url": "https://github.com/advisories/GHSA-cc4f-hjpj-g9p8", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/issues/24518", - "url": "https://github.com/BerriAI/litellm/issues/24518", + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cc4f-hjpj-g9p8", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cc4f-hjpj-g9p8", "type": "reference" }, { - "title": "https://futuresearch.ai/blog/litellm-pypi-supply-chain-attack", - "url": "https://futuresearch.ai/blog/litellm-pypi-supply-chain-attack", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-cc4f-hjpj-g9p8", + "type": "advisory" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/litellm/PYSEC-2026-2.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/litellm/PYSEC-2026-2.yaml", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30820", + "type": "advisory" }, { - "title": "https://inspector.pypi.io/project/litellm/1.82.7/packages/79/5f/b6998d42c6ccd32d36e12661f2734602e72a576d52a51f4245aef0b20b4d/litellm-1.82.7-py3-none-any.whl/litellm/proxy/proxy_server.py#line.130", - "url": "https://inspector.pypi.io/project/litellm/1.82.7/packages/79/5f/b6998d42c6ccd32d36e12661f2734602e72a576d52a51f4245aef0b20b4d/litellm-1.82.7-py3-none-any.whl/litellm/proxy/proxy_server.py#line.130", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.13", "type": "reference" }, { - "title": "https://inspector.pypi.io/project/litellm/1.82.8/packages/f6/2c/731b614e6cee0bca1e010a36fd381fba69ee836fe3cb6753ba23ef2b9601/litellm-1.82.8.tar.gz/litellm-1.82.8/litellm_init.pth#line.1", - "url": "https://inspector.pypi.io/project/litellm/1.82.8/packages/f6/2c/731b614e6cee0bca1e010a36fd381fba69ee836fe3cb6753ba23ef2b9601/litellm-1.82.8.tar.gz/litellm-1.82.8/litellm_init.pth#line.1", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wvhq-wp8g-c7vq", + "type": "vendor" + }, + { + "title": "GHSA-wvhq-wp8g-c7vq", + "url": "https://github.com/advisories/GHSA-wvhq-wp8g-c7vq", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-5mg7-485q-xm76", + "url": "https://osv.dev/vulnerability/GHSA-wvhq-wp8g-c7vq", "type": "advisory" }, { - "title": "https://docs.litellm.ai/blog/security-update-march-2026", - "url": "https://docs.litellm.ai/blog/security-update-march-2026", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30821", + "type": "advisory" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-j8g8-j7fc-43v6", + "type": "vendor" + }, + { + "title": "GHSA-j8g8-j7fc-43v6", + "url": "https://github.com/advisories/GHSA-j8g8-j7fc-43v6", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/MAL-2026-2144", + "url": "https://osv.dev/vulnerability/GHSA-j8g8-j7fc-43v6", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/issues/24512", - "url": "https://github.com/BerriAI/litellm/issues/24512", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30822", + "type": "advisory" }, { - "title": "https://www.wiz.io/blog/threes-a-crowd-teampcp-trojanizes-litellm-in-continuation-of-campaign", - "url": "https://www.wiz.io/blog/threes-a-crowd-teampcp-trojanizes-litellm-in-continuation-of-campaign", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-mq4r-h2gh-qv7x", + "type": "vendor" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-2", + "title": "GHSA-mq4r-h2gh-qv7x", + "url": "https://github.com/advisories/GHSA-mq4r-h2gh-qv7x", "type": "advisory" }, { - "title": "https://www.wiz.io/blog/teampcp-attack-kics-github-action", - "url": "https://www.wiz.io/blog/teampcp-attack-kics-github-action", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-mq4r-h2gh-qv7x", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34291", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30823", "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://github.com/langflow-ai/langflow", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-cwc3-p92j-g7qm", + "type": "vendor" }, { - "title": "disclosure@vulncheck.com", - "url": "https://www.obsidiansecurity.com/blog/cve-2025-34291-critical-account-takeover-and-rce-vulnerability-in-the-langflow-ai-agent-workflow-platform", - "type": "exploit" + "title": "GHSA-cwc3-p92j-g7qm", + "url": "https://github.com/advisories/GHSA-cwc3-p92j-g7qm", + "type": "advisory" }, { - "title": "disclosure@vulncheck.com", - "url": "https://www.vulncheck.com/advisories/langflow-cors-misconfiguration-to-token-hijack-and-rce", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-cwc3-p92j-g7qm", "type": "advisory" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://www.crowdsec.net/vulntracking-report/cve-2025-34291", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-30824", "type": "advisory" }, { - "title": "GHSA-577h-p2hh-v4mv", - "url": "https://github.com/advisories/GHSA-577h-p2hh-v4mv", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-5f53-522j-j454", + "type": "vendor" + }, + { + "title": "GHSA-5f53-522j-j454", + "url": "https://github.com/advisories/GHSA-5f53-522j-j454", "type": "advisory" }, { - "title": "https://github.com/langflow-ai/langflow/pull/10139", - "url": "https://github.com/langflow-ai/langflow/pull/10139", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-5f53-522j-j454", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58360", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-31829", "type": "advisory" }, { - "title": "GHSA-fjf5-xgmq-5525", - "url": "https://github.com/advisories/GHSA-fjf5-xgmq-5525", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-fvcw-9w9r-pxc7", + "type": "vendor" }, { - "title": "https://github.com/geoserver/geoserver/security/advisories/GHSA-fjf5-xgmq-5525", - "url": "https://github.com/geoserver/geoserver/security/advisories/GHSA-fjf5-xgmq-5525", - "type": "reference" + "title": "GHSA-fvcw-9w9r-pxc7", + "url": "https://github.com/advisories/GHSA-fvcw-9w9r-pxc7", + "type": "advisory" }, { - "title": "https://osgeo-org.atlassian.net/browse/GEOS-11682", - "url": "https://osgeo-org.atlassian.net/browse/GEOS-11682", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-fvcw-9w9r-pxc7", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54236", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22688", "type": "advisory" }, { - "title": "GHSA-wh92-6q6g-px7j", - "url": "https://github.com/advisories/GHSA-wh92-6q6g-px7j", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/Tencent/WeKnora/commit/f7900a5e9a18c99d25cec9589ead9e4e59ce04bb", + "type": "patch" }, { - "title": "https://helpx.adobe.com/security/products/magento/apsb25-88.html", - "url": "https://helpx.adobe.com/security/products/magento/apsb25-88.html", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/Tencent/WeKnora/security/advisories/GHSA-78h3-63c4-5fqc", + "type": "vendor" + }, + { + "title": "GHSA-78h3-63c4-5fqc", + "url": "https://github.com/advisories/GHSA-78h3-63c4-5fqc", + "type": "advisory" }, { - "title": "https://nullsecurityx.codes/cve-2025-54236-sessionreaper-unauthenticated-rce-in-magento", - "url": "https://nullsecurityx.codes/cve-2025-54236-sessionreaper-unauthenticated-rce-in-magento", + "title": "https://pkg.go.dev/vuln/GO-2026-4292", + "url": "https://pkg.go.dev/vuln/GO-2026-4292", "type": "reference" }, { - "title": "https://experienceleague.adobe.com/en/docs/experience-cloud-kcs/kbarticles/ka-27397", - "url": "https://experienceleague.adobe.com/en/docs/experience-cloud-kcs/kbarticles/ka-27397", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-22252", + "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/1be6fce1a6864ae63e8160b0666db2c647f2dbba", + "url": "https://github.com/danny-avila/LibreChat/commit/211b39f3113d4e6ecab84be0a83f4e9c9dea127f", "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/3993406ebdc0553a32ef391a799a4fb124930a1c", - "type": "patch" + "url": "https://github.com/danny-avila/LibreChat/security/advisories/GHSA-cxhj-j78r-p88f", + "type": "vendor" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53547", - "type": "advisory" - }, - { - "title": "GHSA-557j-xg8c-q2mm", - "url": "https://github.com/advisories/GHSA-557j-xg8c-q2mm", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-61687", "type": "advisory" }, { - "title": "https://github.com/helm/helm/security/advisories/GHSA-557j-xg8c-q2mm", - "url": "https://github.com/helm/helm/security/advisories/GHSA-557j-xg8c-q2mm", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/components/src/storageUtils.ts#L1104-L1111", "type": "reference" }, { - "title": "https://github.com/helm/helm/commit/4b8e61093d8f579f1165cdc6bd4b43fa5455f571", - "url": "https://github.com/helm/helm/commit/4b8e61093d8f579f1165cdc6bd4b43fa5455f571", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/server/src/controllers/attachments/index.ts#L4-L11", "type": "reference" }, { "title": "security-advisories@github.com", - "url": "https://github.com/getcursor/cursor/security/advisories/GHSA-9h3v-h59j-v6rj", + "url": "https://github.com/FlowiseAI/Flowise/blob/d29db16bfcf9a4be8febc3d19d52263e8c3d0055/packages/server/src/routes/attachments/index.ts#L8", "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/10b2fb32ed047bbd7b8d10ef185c1ed345efcc92", - "type": "patch" + "title": "GHSA-35g6-rrw3-v6xc", + "url": "https://github.com/advisories/GHSA-35g6-rrw3-v6xc", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/commit/7d0b22f9e659dc6c26aab0bacbea27874986e772", - "type": "patch" + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-35g6-rrw3-v6xc", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-35g6-rrw3-v6xc", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-53098", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-35g6-rrw3-v6xc", "type": "advisory" }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/RooCodeInc/Roo-Code/security/advisories/GHSA-5x8h-m52g-5v54", - "type": "vendor" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24016", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-29192", "type": "advisory" }, { - "title": "GHSA-hcrc-79hj-m3qh", - "url": "https://github.com/advisories/GHSA-hcrc-79hj-m3qh", - "type": "advisory" + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/pull/4905", + "type": "patch" }, { - "title": "https://github.com/wazuh/wazuh/security/advisories/GHSA-hcrc-79hj-m3qh", - "url": "https://github.com/wazuh/wazuh/security/advisories/GHSA-hcrc-79hj-m3qh", + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.5", "type": "reference" }, { - "title": "GHSA-c995-4fw3-j39m", - "url": "https://github.com/advisories/GHSA-c995-4fw3-j39m", - "type": "advisory" + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7r4h-vmj9-wg42", + "type": "exploit" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-27554", + "title": "GHSA-7r4h-vmj9-wg42", + "url": "https://github.com/advisories/GHSA-7r4h-vmj9-wg42", "type": "advisory" }, { - "title": "cve@mitre.org", - "url": "https://kibty.town/blog/todesktop", + "title": "https://github.com/FlowiseAI/Flowise/commit/9a06a85a8ddcbaeca1342827a5fea9087a587d97", + "url": "https://github.com/FlowiseAI/Flowise/commit/9a06a85a8ddcbaeca1342827a5fea9087a587d97", "type": "reference" }, { - "title": "cve@mitre.org", - "url": "https://www.todesktop.com/blog/posts/security-incident-at-todesktop", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-7r4h-vmj9-wg42", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10188", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-50538", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://github.com/berriai/litellm/commit/21156ff5d0d84a7dd93f951ca033275c77e4f73c", - "type": "reference" - }, - { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/96a32812-213c-4819-ba4e-36143d35e95b", - "type": "reference" + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-964p-j4gg-mhwc", + "type": "exploit" }, { - "title": "GHSA-gw2q-qw9j-rgv7", - "url": "https://github.com/advisories/GHSA-gw2q-qw9j-rgv7", + "title": "GHSA-964p-j4gg-mhwc", + "url": "https://github.com/advisories/GHSA-964p-j4gg-mhwc", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gw2q-qw9j-rgv7", + "url": "https://osv.dev/vulnerability/GHSA-964p-j4gg-mhwc", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0330", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-57164", "type": "advisory" }, { - "title": "GHSA-879v-fggm-vxw2", - "url": "https://github.com/advisories/GHSA-879v-fggm-vxw2", + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/blob/main/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-7944-7c6r-55vv", + "type": "vendor" + }, + { + "title": "GHSA-7944-7c6r-55vv", + "url": "https://github.com/advisories/GHSA-7944-7c6r-55vv", "type": "advisory" }, { - "title": "https://huntr.com/bounties/661b388a-44d8-4ad5-862b-4dc5b80be30a", - "url": "https://huntr.com/bounties/661b388a-44d8-4ad5-862b-4dc5b80be30a", + "title": "https://github.com/FlowiseAI/Flowise/blob/flowise%403.0.5/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", + "url": "https://github.com/FlowiseAI/Flowise/blob/flowise%403.0.5/packages/components/nodes/vectorstores/Supabase/Supabase.ts#L237", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-879v-fggm-vxw2", + "url": "https://osv.dev/vulnerability/GHSA-7944-7c6r-55vv", + "type": "advisory" + }, + { + "title": "GHSA-3g4j-r53p-22wx", + "url": "https://github.com/advisories/GHSA-3g4j-r53p-22wx", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-0628", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55346", "type": "advisory" }, { - "title": "GHSA-fjcf-3j3r-78rp", - "url": "https://github.com/advisories/GHSA-fjcf-3j3r-78rp", + "title": "GHSA-hmgh-466j-fx4c", + "url": "https://github.com/advisories/GHSA-hmgh-466j-fx4c", "type": "advisory" }, { - "title": "https://github.com/berriai/litellm/commit/566d9354aab4215091b2e51ad0333e948125fa1b", - "url": "https://github.com/berriai/litellm/commit/566d9354aab4215091b2e51ad0333e948125fa1b", + "title": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmgh-466j-fx4c", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hmgh-466j-fx4c", "type": "reference" }, { - "title": "https://huntr.com/bounties/6c0e2f75-2d03-42f9-9530-e16a973317fc", - "url": "https://huntr.com/bounties/6c0e2f75-2d03-42f9-9530-e16a973317fc", + "title": "https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925", + "url": "https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fjcf-3j3r-78rp", + "url": "https://osv.dev/vulnerability/GHSA-hmgh-466j-fx4c", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-9606", + "title": "GHSA-7rgr-72hp-9wp3", + "url": "https://github.com/advisories/GHSA-7rgr-72hp-9wp3", "type": "advisory" }, { - "title": "GHSA-g5pg-73fc-hjwq", - "url": "https://github.com/advisories/GHSA-g5pg-73fc-hjwq", + "title": "GHSA-wq95-wr7m-26h4", + "url": "https://github.com/advisories/GHSA-wq95-wr7m-26h4", "type": "advisory" }, { - "title": "https://github.com/berriai/litellm/commit/9094071c4782183e84f10630e2450be3db55509a", - "url": "https://github.com/berriai/litellm/commit/9094071c4782183e84f10630e2450be3db55509a", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58434", + "type": "advisory" }, { - "title": "https://huntr.com/bounties/4a03796f-a8d4-4293-84ef-d3959456223a", - "url": "https://huntr.com/bounties/4a03796f-a8d4-4293-84ef-d3959456223a", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/commit/9e178d68873eb876073846433a596590d3d9c863", + "type": "patch" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-g5pg-73fc-hjwq", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-wgpv-6j63-x5ph", + "type": "vendor" + }, + { + "title": "GHSA-wgpv-6j63-x5ph", + "url": "https://github.com/advisories/GHSA-wgpv-6j63-x5ph", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8984", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-wgpv-6j63-x5ph", "type": "advisory" }, { - "title": "GHSA-fh2c-86xm-pm2x", - "url": "https://github.com/advisories/GHSA-fh2c-86xm-pm2x", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59527", "type": "advisory" }, { - "title": "https://huntr.com/bounties/554fc76b-3097-4223-b4cf-110b853e9355", - "url": "https://huntr.com/bounties/554fc76b-3097-4223-b4cf-110b853e9355", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/src/utils.ts#L474-L478", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/blob/8c5ff150f6142608ffe968e4e68429f978fda187/litellm/tests/test_spend_logs.py#L242", - "url": "https://github.com/BerriAI/litellm/blob/8c5ff150f6142608ffe968e4e68429f978fda187/litellm/tests/test_spend_logs.py#L242", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/fetch-links/index.ts#L6-L24", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/commit/4f49f836aa844ac9b6bfbeff27e6f6b2b9cf3f61", - "url": "https://github.com/BerriAI/litellm/commit/4f49f836aa844ac9b6bfbeff27e6f6b2b9cf3f61", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/services/fetch-links/index.ts#L8-L18", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-fh2c-86xm-pm2x", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-hr92-4q35-4j3m", + "type": "vendor" + }, + { + "title": "GHSA-hr92-4q35-4j3m", + "url": "https://github.com/advisories/GHSA-hr92-4q35-4j3m", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6825", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-hr92-4q35-4j3m", "type": "advisory" }, { - "title": "GHSA-53gh-p8jc-7rg8", - "url": "https://github.com/advisories/GHSA-53gh-p8jc-7rg8", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-54994", "type": "advisory" }, { - "title": "https://huntr.com/bounties/1d98bebb-6cf4-46c9-87c3-d3b1972973b5", - "url": "https://huntr.com/bounties/1d98bebb-6cf4-46c9-87c3-d3b1972973b5", + "title": "security-advisories@github.com", + "url": "https://github.com/akoskm/create-mcp-server-stdio/blob/main/src/index.ts#L24-L40", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/blob/056913fd7049923a106130b02d7c29e7f312beec/litellm/utils.py#L2818", - "url": "https://github.com/BerriAI/litellm/blob/056913fd7049923a106130b02d7c29e7f312beec/litellm/utils.py#L2818", + "title": "security-advisories@github.com", + "url": "https://github.com/akoskm/create-mcp-server-stdio/commit/48c26bbe1f8c62764e4592f33c8300d1cadd2eac", "type": "reference" }, { - "title": "https://github.com/berriai/litellm/commit/441c7275ed2715f47650a7c2e525055c804073a9", - "url": "https://github.com/berriai/litellm/commit/441c7275ed2715f47650a7c2e525055c804073a9", + "title": "security-advisories@github.com", + "url": "https://github.com/akoskm/create-mcp-server-stdio/security/advisories/GHSA-3ch2-jxxc-v4xf", "type": "reference" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-53gh-p8jc-7rg8", + "title": "GHSA-3ch2-jxxc-v4xf", + "url": "https://github.com/advisories/GHSA-3ch2-jxxc-v4xf", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6587", - "type": "advisory" + "title": "https://github.com/akoskm/create-mcp-server-stdio/pull/1", + "url": "https://github.com/akoskm/create-mcp-server-stdio/pull/1", + "type": "reference" }, { - "title": "security@huntr.dev", - "url": "https://github.com/berriai/litellm/commit/ba1912afd1b19e38d3704bb156adf887f91ae1e0", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8943", + "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/4001e1a2-7b7a-4776-a3ae-e6692ec3d997", + "title": "reefs@jfrog.com", + "url": "https://research.jfrog.com/vulnerabilities/flowise-os-command-remote-code-execution-jfsa-2025-001380578/", "type": "exploit" }, { - "title": "GHSA-g26j-5385-hhw3", - "url": "https://github.com/advisories/GHSA-g26j-5385-hhw3", + "title": "GHSA-2vv2-3x8x-4gv7", + "url": "https://github.com/advisories/GHSA-2vv2-3x8x-4gv7", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-g26j-5385-hhw3", + "url": "https://osv.dev/vulnerability/GHSA-2vv2-3x8x-4gv7", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4888", + "title": "GHSA-q4xx-mc3q-23x8", + "url": "https://github.com/advisories/GHSA-q4xx-mc3q-23x8", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/48461d89-cf13-4ad3-a43e-0d37da08fc6c", - "type": "exploit" - }, - { - "title": "GHSA-3xr8-qfvj-9p9j", - "url": "https://github.com/advisories/GHSA-3xr8-qfvj-9p9j", + "title": "GHSA-h42x-xx2q-6v6g", + "url": "https://github.com/advisories/GHSA-h42x-xx2q-6v6g", "type": "advisory" }, - { - "title": "https://github.com/BerriAI/litellm/pull/3193", - "url": "https://github.com/BerriAI/litellm/pull/3193", - "type": "reference" - }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3xr8-qfvj-9p9j", + "url": "https://osv.dev/vulnerability/GHSA-h42x-xx2q-6v6g", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5710", - "type": "advisory" - }, - { - "title": "GHSA-qqcv-vg9f-5rr3", - "url": "https://github.com/advisories/GHSA-qqcv-vg9f-5rr3", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8181", "type": "advisory" }, { - "title": "https://huntr.com/bounties/70897f59-a966-4d93-b71e-745e3da91970", - "url": "https://huntr.com/bounties/70897f59-a966-4d93-b71e-745e3da91970", + "title": "vulnreport@tenable.com", + "url": "https://tenable.com/security/research/tra-2024-33", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/commit/da3ae00bd68f451ed8ddf0bc0a9fd34bde5554d6", - "url": "https://github.com/BerriAI/litellm/commit/da3ae00bd68f451ed8ddf0bc0a9fd34bde5554d6", - "type": "reference" + "title": "GHSA-2q4w-x8h2-2fvh", + "url": "https://github.com/advisories/GHSA-2q4w-x8h2-2fvh", + "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/blob/224148d6133ee50801cb129cbd21ccc213992e25/litellm/proxy/auth/user_api_key_auth.py#L1020", - "url": "https://github.com/BerriAI/litellm/blob/224148d6133ee50801cb129cbd21ccc213992e25/litellm/proxy/auth/user_api_key_auth.py#L1020", + "title": "https://tenable.com/security/research/tra-2024-22-0", + "url": "https://tenable.com/security/research/tra-2024-22-0", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-qqcv-vg9f-5rr3", + "url": "https://osv.dev/vulnerability/GHSA-2q4w-x8h2-2fvh", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5751", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8182", "type": "advisory" }, { - "title": "GHSA-gppg-gqw8-wh9g", - "url": "https://github.com/advisories/GHSA-gppg-gqw8-wh9g", + "title": "vulnreport@tenable.com", + "url": "https://tenable.com/security/research/tra-2024-34", "type": "advisory" }, { - "title": "https://huntr.com/bounties/ae623c2f-b64b-4245-9ed4-f13a0a5824ce", - "url": "https://huntr.com/bounties/ae623c2f-b64b-4245-9ed4-f13a0a5824ce", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/pull/4228", - "url": "https://github.com/BerriAI/litellm/pull/4228", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/commit/fcea4c22ad96b24436f196ae709f71932e84b0b8", - "url": "https://github.com/BerriAI/litellm/commit/fcea4c22ad96b24436f196ae709f71932e84b0b8", - "type": "reference" + "title": "GHSA-48x4-mx8f-gr4h", + "url": "https://github.com/advisories/GHSA-48x4-mx8f-gr4h", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gppg-gqw8-wh9g", + "url": "https://osv.dev/vulnerability/GHSA-48x4-mx8f-gr4h", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5225", - "type": "advisory" - }, - { - "title": "GHSA-h6m6-jj8v-94jj", - "url": "https://github.com/advisories/GHSA-h6m6-jj8v-94jj", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36420", "type": "advisory" }, { - "title": "https://huntr.com/bounties/491e4884-0306-4cd4-8fe2-9a19de33bf5c", - "url": "https://huntr.com/bounties/491e4884-0306-4cd4-8fe2-9a19de33bf5c", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/e93ce07851cdc0fcde12374f301b8070f2043687/packages/server/src/index.ts#L982", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/pull/3940", - "url": "https://github.com/BerriAI/litellm/pull/3940", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://securitylab.github.com/advisories/GHSL-2023-232_GHSL-2023-234_Flowise/", + "type": "exploit" }, { - "title": "https://github.com/BerriAI/litellm/commit/f75c15d6cd535aa78014378ad532de1df6be2f56", - "url": "https://github.com/BerriAI/litellm/commit/f75c15d6cd535aa78014378ad532de1df6be2f56", - "type": "reference" + "title": "GHSA-h997-3fxj-p5j8", + "url": "https://github.com/advisories/GHSA-h997-3fxj-p5j8", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h6m6-jj8v-94jj", + "url": "https://osv.dev/vulnerability/GHSA-h997-3fxj-p5j8", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4890", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36421", "type": "advisory" }, { - "title": "GHSA-8j42-pcfm-3467", - "url": "https://github.com/advisories/GHSA-8j42-pcfm-3467", + "title": "GHSA-66f2-xxgm-f6xp", + "url": "https://github.com/advisories/GHSA-66f2-xxgm-f6xp", "type": "advisory" }, - { - "title": "https://huntr.com/bounties/a4f6d357-5b44-4e00-9cac-f1cc351211d2", - "url": "https://huntr.com/bounties/a4f6d357-5b44-4e00-9cac-f1cc351211d2", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/pull/2954", - "url": "https://github.com/BerriAI/litellm/pull/2954", - "type": "reference" - }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-8j42-pcfm-3467", + "url": "https://osv.dev/vulnerability/GHSA-66f2-xxgm-f6xp", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4264", - "type": "advisory" - }, - { - "title": "GHSA-7ggm-4rjg-594w", - "url": "https://github.com/advisories/GHSA-7ggm-4rjg-594w", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36422", "type": "advisory" }, { - "title": "https://huntr.com/bounties/a3221b0c-6e25-4295-ab0f-042997e8fc61", - "url": "https://huntr.com/bounties/a3221b0c-6e25-4295-ab0f-042997e8fc61", + "title": "security-advisories@github.com", + "url": "https://github.com/FlowiseAI/Flowise/blob/flowise-ui%401.4.0/packages/server/src/index.ts#L312-L312", "type": "reference" }, { - "title": "https://github.com/BerriAI/litellm/blob/main/litellm/proxy/proxy_server.py#L2104-L2108", - "url": "https://github.com/BerriAI/litellm/blob/main/litellm/proxy/proxy_server.py#L2104-L2108", - "type": "reference" + "title": "GHSA-2jch-qc96-9f5g", + "url": "https://github.com/advisories/GHSA-2jch-qc96-9f5g", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-7ggm-4rjg-594w", + "url": "https://osv.dev/vulnerability/GHSA-2jch-qc96-9f5g", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2952", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-36423", "type": "advisory" }, { - "title": "GHSA-46cm-pfwv-cgf8", - "url": "https://github.com/advisories/GHSA-46cm-pfwv-cgf8", + "title": "GHSA-fccx-2pwj-hrq7", + "url": "https://github.com/advisories/GHSA-fccx-2pwj-hrq7", "type": "advisory" }, { - "title": "https://huntr.com/bounties/a9e0a164-6de0-43a4-a640-0cbfb54220a4", - "url": "https://huntr.com/bounties/a9e0a164-6de0-43a4-a640-0cbfb54220a4", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/blob/0d803e13798db40aa7463e64a6bafaee386424f5/litellm/proxy/proxy_server.py#L2087", - "url": "https://github.com/BerriAI/litellm/blob/0d803e13798db40aa7463e64a6bafaee386424f5/litellm/proxy/proxy_server.py#L2087", - "type": "reference" - }, - { - "title": "https://github.com/BerriAI/litellm/issues/2949", - "url": "https://github.com/BerriAI/litellm/issues/2949", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-fccx-2pwj-hrq7", + "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/pull/2941", - "url": "https://github.com/BerriAI/litellm/pull/2941", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37145", + "type": "advisory" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-46cm-pfwv-cgf8", + "title": "GHSA-858c-qxvx-rg9v", + "url": "https://github.com/advisories/GHSA-858c-qxvx-rg9v", "type": "advisory" }, { - "title": "https://github.com/BerriAI/litellm/commit/8a1cdc901708b07b7ff4eca20f9cb0f1f0e8d0b3", - "url": "https://github.com/BerriAI/litellm/commit/8a1cdc901708b07b7ff4eca20f9cb0f1f0e8d0b3", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-858c-qxvx-rg9v", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-24086", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37146", "type": "advisory" }, { - "title": "GHSA-f8fv-f786-9933", - "url": "https://github.com/advisories/GHSA-f8fv-f786-9933", + "title": "GHSA-wxm4-9f8p-gggv", + "url": "https://github.com/advisories/GHSA-wxm4-9f8p-gggv", "type": "advisory" }, { - "title": "https://helpx.adobe.com/security/products/magento/apsb22-12.html", - "url": "https://helpx.adobe.com/security/products/magento/apsb22-12.html", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-wxm4-9f8p-gggv", + "type": "advisory" } ], "tags": [ + "actively-exploited", + "akoskm-create-mcp-server-stdio", + "anthropic", "auth-bypass", - "codex-cli", + "code-injection", "command-injection", - "copilot", - "cursor", "cve", - "cve-2025-53773", - "deserialization", - "developer-tools", + "cvss-10", + "dify", + "exploited-in-the-wild", + "flowise", + "flowise-components", + "flowise-ui", "ghsa", - "github-copilot", - "github.com-wazuh-wazuh", - "helm.sh-helm-v3", - "ide", - "idesaster", + "github.com-tencent-weknora", "info-disclosure", - "langflow", - "langflow-base", - "litellm", - "magento-community-edition", - "magento-project-community-edition", + "librechat", "mcp", + "npm", "nvd", - "openai", - "openai-codex", - "org.apache.activemq-activemq-all", - "org.apache.activemq-activemq-broker", - "org.apache.activemq-apache-activemq", - "org.geoserver-gs-wms", - "org.geoserver.web-gs-web-app", "osv", "path-traversal", "prompt-injection", "rce", - "roo-code", "sandbox-escape", - "settings-overwrite", "sql-injection", "ssrf", - "universal-attack", - "vscode", - "yolo-mode", - "zed" + "stdio", + "systemic-vuln", + "upsonic", + "weknora", + "xss" ] }, { - "id": "INC-01340", - "title": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", - "date": "2026-03", + "id": "INC-01063", + "title": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", + "date": "2026-01", "year": 2026, "category": "real-world", - "description": "TeamPCP compromised LiteLLM (3.4M daily downloads) via a poisoned Trivy GitHub Action that stole the PYPI_PUBLISH token. Backdoored versions contained a three-stage credential harvester collecting SSH keys, cloud tokens, Kubernetes configs. Available ~3 hours before PyPI quarantine.", + "description": "CVSS 8.8. Insufficient policy enforcement in Chrome's WebView tag allowed malicious browser extensions with only basic permissions to hijack the Gemini Live panel. Access camera/microphone without consent, take screenshots of any website, access local files. Discovered by Palo Alto Unit42. Patched in Chrome 143.0.7499.192.", "owasp_entries": [ "LLM03", - "LLM04", - "LLM05", - "ASI03", - "ASI04", - "ASI05", - "DSGAI08" + "LLM10", + "ASI02", + "ASI03" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", "AML.T0012", - "AML.T0018", - "AML.T0019", - "AML.T0020", + "AML.T0048", "AML.T0049", "AML.T0050", + "AML.T0053", "AML.T0055", - "AML.T0059", "AML.T0060" ], "mitre_atlas_tactics": [ - "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", "AML.TA0011", "AML.TA0012", "AML.TA0013" ], "nist_ai_rmf": [ "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", + "GOVERN-3.2", "MANAGE-2.3", - "MANAGE-3.2", - "MAP-4.1", - "MAP-4.2", + "MANAGE-2.4", + "MAP-3.5", "MEASURE-2.5", "MEASURE-2.7" ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "CI/CD pipeline compromised to steal PyPI publish token" - }, - { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "Three-stage credential harvester deployed via package install" - } - ], - "attack_vector": "supply-chain", - "affected": "LiteLLM — 3.4M daily downloads; SSH keys, cloud tokens, K8s configs", - "impact": "Mass credential theft potential; supply chain compromise; 3-hour exposure window", - "severity": "Critical", - "mitigations": [ - "GitHub Actions supply chain verification", - "Package integrity monitoring and rollback", - "PyPI publish token rotation and 2FA" - ], + "attack_vector": "rce", + "affected": "Gemini Live in Chrome Hijacking (CVE-2026-0628)", + "severity": "High", "references": [ { - "title": "Inside LiteLLM supply chain compromise", - "url": "https://www.trendmicro.com/en_us/research/26/c/inside-litellm-supply-chain-compromise.html", + "title": "Palo Alto Unit42", + "url": "https://unit42.paloaltonetworks.com/gemini-live-in-chrome-hijacking/", "type": "research" } - ], - "tags": [ - "ci-cd", - "credential-theft", - "litellm", - "pypi", - "supply-chain" ] }, { - "id": "INC-01370", - "title": "Marimo Pre-Auth RCE (CVE-2026-39987)", - "date": "2026-04", + "id": "INC-01064", + "title": "GeminiJack — zero-click Gemini Enterprise data exfiltration via shared Google Docs", + "date": "2026-01", "year": 2026, - "category": "real-world", - "description": "CVSS 9.3. Marimo Python reactive notebook (~19.6k GitHub stars) terminal WebSocket endpoint `/terminal/ws` lacks authentication. Single WebSocket connection grants full PTY shell. Commonly runs as root in Docker. Sysdig honeypots observed exploitation within hours of disclosure. Confirmed exploited in the wild. Fixed in v0.23.0.", + "category": "research-demonstrated", + "description": "Indirect prompt injection via shared Google Docs, calendar invites, or emails causes Gemini Enterprise to search for sensitive terms and embed results in an external image URL. A single poisoned document could exfiltrate years of email, calendar, and document data with zero clicks, zero warnings, and zero DLP alerts.", "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", "LLM05", - "ASI03", - "ASI05" + "ASI01", + "ASI02", + "ASI06", + "ASI09", + "DSGAI01", + "DSGAI19" ], "mitre_atlas": [ - "AML.T0011", - "AML.T0012", - "AML.T0049", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0048.001", + "AML.T0048.003", "AML.T0050", - "AML.T0055", - "AML.T0060" + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057", + "AML.T0059", + "AML.T0066" ], "mitre_atlas_tactics": [ + "AML.TA0001", "AML.TA0003", - "AML.TA0004", "AML.TA0005", - "AML.TA0012", - "AML.TA0013" + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.4", + "GOVERN-1.1", + "GOVERN-3.2", "MANAGE-2.3", - "MEASURE-2.5", - "MEASURE-2.7" + "MANAGE-2.4", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.6", + "MEASURE-2.7", + "MEASURE-2.8" ], - "attack_vector": "rce", - "affected": "Marimo Pre-Auth RCE (CVE-2026-39987)", + "maestro_layers": [ + { + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "Gemini processes attacker-controlled document content" + }, + { + "layer": "L2", + "label": "Data Operations", + "role": "impact", + "notes": "Years of email, calendar, and documents exfiltrated" + } + ], + "attack_vector": "indirect-prompt-injection", + "affected": "Gemini Enterprise — Google Workspace email, calendar, documents", + "impact": "Silent zero-click exfiltration of enterprise data; invisible to security teams and DLP", "severity": "Critical", + "mitigations": [ + "Block external image loading in AI-generated content", + "Content sanitization for shared documents", + "DLP monitoring for AI-mediated data access patterns" + ], "references": [ { - "title": "Endor Labs", - "url": "https://www.endorlabs.com/learn/root-in-one-request-marimos-critical-pre-auth-rce-cve-2026-39987", - "type": "advisory" + "title": "GeminiJack: Zero-click Gemini vulnerability", + "url": "https://noma.security/blog/geminijack-google-gemini-zero-click-vulnerability/", + "type": "research" + }, + { + "title": "Indirect prompt injections & Google's layered defense - Google Workspace", + "url": "https://knowledge.workspace.google.com/admin/security/indirect-prompt-injections-and-googles-layered-defense-strategy-for-gemini", + "type": "vendor" } + ], + "tags": [ + "data-exfiltration", + "enterprise", + "gemini", + "geminijack", + "google-workspace", + "indirect-prompt-injection", + "vertex-ai", + "zero-click" ] }, { - "id": "INC-01378", - "title": "MCP fURI -- Microsoft MarkItDown MCP SSRF", - "date": "2026-01", + "id": "INC-01092", + "title": "GlassWorm supply chain — 72 malicious VSCode extensions, 9 million installs", + "date": "2026-03", "year": 2026, "category": "real-world", - "description": "Microsoft's MarkItDown MCP server allowed arbitrary URI calls with no boundaries. On AWS EC2 instances using IMDSv1, attackers could query instance metadata to obtain access/secret keys with potential full admin access. Researchers found ~36.7% of all MCP servers have similar SSRF exposure.", + "description": "Supply chain campaign targeting developers via 72 malicious OpenVSX extensions and 151+ GitHub repositories. 9 million installs. 433 compromised components. Used invisible Unicode characters to encode payloads. Targeted crypto wallets, credentials, SSH keys. Extensions mimicked AI coding assistant tools.", "owasp_entries": [ - "ASI02", - "ASI03" + "LLM04", + "LLM10", + "ASI03", + "ASI04", + "ASI05", + "DSGAI08" ], "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", "AML.T0012", "AML.T0049", "AML.T0050", - "AML.T0053", - "AML.T0055" + "AML.T0055", + "AML.T0060" ], "mitre_atlas_tactics": [ + "AML.TA0003", "AML.TA0004", "AML.TA0005", "AML.TA0012", @@ -17812,1413 +3954,1230 @@ window.CROSSWALK_INCIDENTS = [ ], "nist_ai_rmf": [ "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MAP-4.1", + "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "ssrf", - "affected": "MCP fURI", - "severity": "Medium", - "references": [ + "maestro_layers": [ { - "title": "Microsoft", - "url": "https://www.darkreading.com/application-security/microsoft-anthropic-mcp-servers-risk-takeovers", - "type": "research" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "Malicious extensions published to VSCode/OpenVSX marketplaces" }, { - "title": "BlueRock", - "url": "https://www.bluerock.io/post/mcp-furi-microsoft-markitdown-vulnerabilities", + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "Credential theft, crypto wallet compromise, SSH key exfiltration" + } + ], + "attack_vector": "supply-chain", + "affected": "OpenVSX, GitHub, npm — 9 million installs across 433 components", + "impact": "Mass credential theft; crypto wallet compromise; developer environment compromise at scale", + "severity": "Critical", + "mitigations": [ + "Code signing for marketplace extensions", + "Extension provenance verification", + "Runtime monitoring for extension network activity" + ], + "references": [ + { + "title": "GlassWorm: Unicode attack across GitHub, npm, VSCode", + "url": "https://www.aikido.dev/blog/glassworm-returns-unicode-attack-github-npm-vscode", "type": "research" } + ], + "tags": [ + "credential-theft", + "extensions", + "supply-chain", + "unicode", + "vscode" ] }, { - "id": "INC-01390", - "title": "MCPJam Inspector RCE (CVE-2026-23744)", - "date": "2026-01", - "year": 2026, + "id": "INC-01291", + "title": "LangChain LLMMathChain prompt-injection RCE via Python exec", + "date": "2023-04", + "year": 2023, "category": "real-world", - "description": "CVSS 9.8. MCPJam inspector v1.4.2 and earlier listens on 0.0.0.0 by default with no authentication. A crafted HTTP request installs a malicious MCP server and executes arbitrary code. Public exploit available. Fixed in v1.4.3.", + "description": "In LangChain through 0.0.131, the LLMMathChain chain allows prompt injection attacks that can execute arbitrary code via the Python exec method. The chain uses insecure exec/eval on LLM-generated math expressions. Disclosed by the NVIDIA AI Red Team; fixed in 0.0.142.", "owasp_entries": [ + "LLM01", + "LLM02", "LLM03", - "LLM05", + "LLM04", + "LLM06", + "LLM10", + "ASI01", "ASI02", + "ASI03", "ASI04", - "ASI05" + "ASI05", + "ASI08" ], "mitre_atlas": [ "AML.T0010", "AML.T0010.001", - "AML.T0010.003", "AML.T0011", + "AML.T0012", + "AML.T0029", + "AML.T0034", + "AML.T0048", "AML.T0049", "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", "AML.T0053", + "AML.T0057", "AML.T0060" ], "mitre_atlas_tactics": [ "AML.TA0003", "AML.TA0004", "AML.TA0005", + "AML.TA0010", + "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ + "GOVERN-1.4", "GOVERN-3.2", "GOVERN-6.1", - "GOVERN-6.2", + "MANAGE-2.1", "MANAGE-2.3", + "MANAGE-4.1", + "MAP-2.1", "MAP-3.5", - "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.4", "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "rce", - "affected": "MCPJam Inspector RCE (CVE-2026-23744)", + "attack_vector": "prompt-injection", + "affected": "langchain-ai/langchain <= 0.0.131 (fixed 0.0.142)", + "impact": "Remote code execution on agent host; environment variable exfiltration; reverse shell establishment; full host compromise", "severity": "Critical", + "mitigations": [ + "Disable code execution tools in production unless strictly required", + "Input validation before any tool invocation — do not pass unvalidated content to execution tools", + "Least-privilege principle — agents should not have host execution capabilities", + "Run code execution in sandboxed environments with no network access (containers, gVisor)", + "Run eval profiles: evals/garak/ASI05_code_execution.yaml — threshold 0%" + ], "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-23744", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29374", "type": "advisory" }, { - "title": "VulnerableMCP", - "url": "https://vulnerablemcp.info/vuln/cve-2026-23744-mcpjam-inspector-rce.html", + "title": "GHSA-fprp-p869-w6q2", + "url": "https://github.com/advisories/GHSA-fprp-p869-w6q2", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/1026", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/814", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/pull/1119", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://twitter.com/rharang/status/1641899743608463365/photo/1", + "type": "exploit" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-fprp-p869-w6q2", + "type": "advisory" + }, + { + "title": "https://github.com/langchain-ai/langchain", + "url": "https://github.com/langchain-ai/langchain", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-18", + "type": "advisory" + }, + { + "title": "CVE-2023-36258 — LangChain Python execution vulnerability", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36258", + "type": "advisory" + }, + { + "title": "Security Advisory: LlamaIndex code execution via prompt injection", + "url": "https://github.com/run-llama/llama_index/security/advisories", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/5872", + "type": "exploit" + }, + { + "title": "GHSA-2qmj-7962-cjq8", + "url": "https://github.com/advisories/GHSA-2qmj-7962-cjq8", + "type": "advisory" + }, + { + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-98.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-98.yaml", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/issues/5872", + "url": "https://github.com/langchain-ai/langchain/issues/5872", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/6003", + "url": "https://github.com/langchain-ai/langchain/pull/6003", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-2qmj-7962-cjq8", + "type": "advisory" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/7870", + "url": "https://github.com/langchain-ai/langchain/pull/7870", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-98", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46229", + "type": "advisory" + }, + { + "title": "Palo Alto Unit42", + "url": "https://unit42.paloaltonetworks.com/langchain-vulnerabilities/", + "type": "research" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-44467", + "type": "advisory" + }, + { + "title": "GHSA-gjjr-63x4-v8cq", + "url": "https://github.com/advisories/GHSA-gjjr-63x4-v8cq", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/commit/4c97a10bd0d9385cfee234a63b5bd826a295e483", + "type": "patch" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/11233", + "url": "https://github.com/langchain-ai/langchain/pull/11233", + "type": "reference" + }, + { + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2023-194.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2023-194.yaml", + "type": "reference" + }, + { + "title": "https://pypi.org/project/langchain-experimental/0.0.14", + "url": "https://pypi.org/project/langchain-experimental/0.0.14", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-gjjr-63x4-v8cq", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-194", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-28088", + "type": "advisory" + }, + { + "title": "GHSA-h59x-p739-982c", + "url": "https://github.com/advisories/GHSA-h59x-p739-982c", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/PinkDraconian/PoC-Langchain-RCE/blob/main/README.md", + "type": "exploit" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/blob/f96dd57501131840b713ed7c2e86cbf1ddc2761f/libs/core/langchain_core/utils/loading.py", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/MCPJam/inspector/commit/e6b9cf9d9e6c9cbec31493b1bdca3a1255fe3e7a", + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/pull/18600", "type": "patch" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/MCPJam/inspector/security/advisories/GHSA-232v-j27c-5pp6", - "type": "vendor" + "title": "https://github.com/langchain-ai/langchain/commit/e1924b3e93d513ca950c72f8e80e1c133749fba5", + "url": "https://github.com/langchain-ai/langchain/commit/e1924b3e93d513ca950c72f8e80e1c133749fba5", + "type": "reference" }, { - "title": "GHSA-232v-j27c-5pp6", - "url": "https://github.com/advisories/GHSA-232v-j27c-5pp6", - "type": "advisory" - } - ], - "tags": [ - "cve", - "ghsa", - "mcpjam-inspector", - "nvd", - "rce" - ] - }, - { - "id": "INC-01391", - "title": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "SSRF vulnerability (CVSS 8.8) in Azure MCP Server Tools allowed stealing managed identity tokens via malicious URLs submitted in place of Azure resource identifiers. Attackers could impersonate the server's identity and access Azure resources, compromising Azure and Entra ID tenants.", - "owasp_entries": [ - "LLM03", - "LLM05", - "ASI02", - "ASI03", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0012", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0055", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MANAGE-3.1", - "MAP-3.5", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "MCPwned", - "severity": "Critical", - "references": [ + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-43.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-43.yaml", + "type": "reference" + }, { - "title": "Microsoft", - "url": "https://windowsnews.ai/article/microsoft-patches-critical-azure-mcp-ssrf-vulnerability-cve-2026-26118-in-march-2026-security-update.404636", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-h59x-p739-982c", "type": "advisory" }, { - "title": "Token Security", - "url": "https://www.token.security/blog/mcpwned-azure-mcp-rce-vulnerability-leads-to-cloud-takeover", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-43", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26118", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-2965", "type": "advisory" }, { - "title": "secure@microsoft.com", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26118", - "type": "vendor" - }, - { - "title": "GHSA-hhfx-wfvq-7g9c", - "url": "https://github.com/advisories/GHSA-hhfx-wfvq-7g9c", + "title": "GHSA-3hjh-jh2h-vrg6", + "url": "https://github.com/advisories/GHSA-3hjh-jh2h-vrg6", "type": "advisory" }, { - "title": "https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34", - "url": "https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34", + "title": "https://huntr.com/bounties/90b0776d-9fa6-4841-aac4-09fde5918cae", + "url": "https://huntr.com/bounties/90b0776d-9fa6-4841-aac4-09fde5918cae", "type": "reference" }, { - "title": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2", - "url": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2", + "title": "https://github.com/langchain-ai/langchain/pull/22903", + "url": "https://github.com/langchain-ai/langchain/pull/22903", "type": "reference" }, { - "title": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17", - "url": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17", + "title": "https://github.com/langchain-ai/langchain/commit/9a877c7adbd06f90a2518152f65b562bd90487cc", + "url": "https://github.com/langchain-ai/langchain/commit/9a877c7adbd06f90a2518152f65b562bd90487cc", "type": "reference" - } - ], - "tags": [ - "azure", - "azure-mcp", - "azure.mcp", - "cloud-takeover", - "cve", - "ghsa", - "mcp", - "msmcp-azure", - "nvd", - "rce", - "ssrf" - ] - }, - { - "id": "INC-01411", - "title": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "An autonomous AI agent inside Meta posted incorrect technical advice on an internal forum without human approval. An employee followed it, exposing proprietary code, business strategies, and user-related datasets to unauthorized engineers for two hours. Classified as Sev-1.", - "owasp_entries": [ - "LLM06", - "LLM09", - "ASI08", - "ASI09", - "ASI10", - "DSGAI01" - ], - "mitre_atlas": [ - "AML.T0048", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0053", - "AML.T0058" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0005", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-4.1", - "MANAGE-4.3", - "MAP-3.5", - "MEASURE-2.5", - "MEASURE-2.8" - ], - "maestro_layers": [ + }, { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "Autonomous agent posts without human approval" + "title": "https://github.com/langchain-ai/langchain/commit/73c42306745b0831aa6fe7fe4eeb70d2c2d87a82", + "url": "https://github.com/langchain-ai/langchain/commit/73c42306745b0831aa6fe7fe4eeb70d2c2d87a82", + "type": "reference" }, { - "layer": "L2", - "label": "Data Operations", - "role": "impact", - "notes": "Proprietary data exposed to unauthorized engineers" - } - ], - "attack_vector": "other", - "affected": "Meta — internal engineering forum; proprietary code and business data", - "impact": "Sev-1 incident; proprietary data exposed for 2 hours; trust damage in internal AI agents", - "severity": "Critical", - "mitigations": [ - "Agent output confidence thresholds for autonomous posting", - "Content review before publishing agent-generated advice", - "Human-in-the-loop for agent posts to shared channels" - ], - "references": [ + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-3hjh-jh2h-vrg6", + "type": "advisory" + }, { - "title": "Meta is having trouble with rogue AI agents", - "url": "https://techcrunch.com/2026/03/18/meta-is-having-trouble-with-rogue-ai-agents/", - "type": "news" - } - ], - "tags": [ - "autonomous", - "data-exposure", - "meta", - "rogue-agent", - "sev-1" - ] - }, - { - "id": "INC-01429", - "title": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", - "date": "2026-03", - "year": 2026, - "category": "research-demonstrated", - "description": "Cross-prompt injection attack (CVE-2026-26133) in Microsoft 365 Copilot email/Teams summarization. Attacker embeds hidden instructions in ordinary emails; Copilot produces convincing phishing content within the trusted summary interface.", - "owasp_entries": [ - "LLM01", - "LLM03", - "LLM04", - "LLM05", - "ASI01", - "ASI04", - "ASI05", - "ASI06", - "ASI09", - "DSGAI04" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0059", - "AML.T0066" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0011" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-118", + "type": "advisory" + }, { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "Copilot processes attacker-controlled email content" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3095", + "type": "advisory" }, { - "layer": "L6", - "label": "Security & Compliance", - "role": "impact", - "notes": "Phishing content appears as trusted AI-generated summary" - } - ], - "attack_vector": "xss", - "affected": "Microsoft 365 Copilot — enterprise email and Teams users", - "impact": "AI-powered phishing inside trusted interface; user trust exploitation; credential theft", - "severity": "Critical", - "mitigations": [ - "Email content sanitization before AI summarization", - "Phishing detection in AI-generated outputs", - "Visual distinction for AI-generated vs original content" - ], - "references": [ + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/e62d4895-2901-405b-9559-38276b6a5273", + "type": "exploit" + }, { - "title": "Copilot prompt injection AI email phishing", - "url": "https://permiso.io/blog/copilot-prompt-injection-ai-email-phishing", - "type": "research" + "title": "GHSA-q25c-c977-4cmh", + "url": "https://github.com/advisories/GHSA-q25c-c977-4cmh", + "type": "advisory" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/24451", + "url": "https://github.com/langchain-ai/langchain/pull/24451", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/commit/604dfe2d99246b0c09f047c604f0c63eafba31e7", + "url": "https://github.com/langchain-ai/langchain/commit/604dfe2d99246b0c09f047c604f0c63eafba31e7", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/releases/tag/langchain-community%3D%3D0.2.9", + "url": "https://github.com/langchain-ai/langchain/releases/tag/langchain-community%3D%3D0.2.9", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-q25c-c977-4cmh", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26133", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-21513", "type": "advisory" }, { - "title": "secure@microsoft.com", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26133", - "type": "vendor" - } - ], - "tags": [ - "command-injection", - "copilot", - "cve", - "email", - "nvd", - "phishing", - "trust-exploitation", - "xpia" - ] - }, - { - "id": "INC-01435", - "title": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", - "date": "2026-03-10", - "year": 2026, - "category": "real-world", - "description": "XSS flaw in Microsoft Excel causes Copilot Agent mode to exfiltrate data via unintended network egress. Zero-click: victim does not need to open the file -- processing by Copilot Agent in preview pane or automated workflow triggers the attack. CVSS 7.5. Patched March 10, 2026.", - "owasp_entries": [ - "LLM01", - "LLM02", - "ASI01", - "ASI02", - "ASI03", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0024", - "AML.T0025", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "attack_vector": "data-exfiltration", - "affected": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", - "severity": "High", - "references": [ + "title": "Snyk", + "url": "https://security.snyk.io/vuln/SNYK-PYTHON-LANGCHAINEXPERIMENTAL-7278171", + "type": "advisory" + }, { - "title": "Microsoft", - "url": "https://www.theregister.com/2026/03/10/zeroclick_microsoft_info_disclosure_bug/", - "type": "research" + "title": "report@snyk.io", + "url": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py%23L81", + "type": "reference" }, { - "title": "Microsoft Patches Critical Excel Copilot AI Data Leak Vulnerability", - "url": "https://oecd.ai/en/incidents/2026-03-10-21ff", - "type": "report" + "title": "report@snyk.io", + "url": "https://github.com/langchain-ai/langchain/commit/7b13292e3544b2f5f2bfb8a27a062ea2b0c34561", + "type": "patch" }, { - "title": "Patch Alert: Microsoft Fixes Nearly 80 Bugs, Including Critical Office Flaws", - "url": "https://www.techrepublic.com/article/news-microsoft-march-patch-tuesday-78-vulnerabilities/", - "type": "news" + "title": "GHSA-cgcg-p68q-3w7v", + "url": "https://github.com/advisories/GHSA-cgcg-p68q-3w7v", + "type": "advisory" }, { - "title": "Critical 0-Click Microsoft Excel Security Bug Lets Copilot Steal Data", - "url": "https://www.forbes.com/sites/daveywinder/2026/03/11/critical-0-click-microsoft-excel-security-bug-lets-copilot-steal-data/", - "type": "news" + "title": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py#L81", + "url": "https://github.com/langchain-ai/langchain/blob/672907bbbb7c38bf19787b78e4ffd7c8a9026fe4/libs/experimental/langchain_experimental/sql/vector_sql.py#L81", + "type": "reference" }, { - "title": "This 'fascinating' Microsoft Excel security flaw teams up spreadsheets and Copilot Agent to steal data", - "url": "https://www.techradar.com/pro/security/this-fascinating-microsoft-excel-security-flaw-teams-up-spreadsheets-and-copilot-agent-to-steal-data", - "type": "news" - } - ], - "tags": [ - "oecd-aim" - ] - }, - { - "id": "INC-01440", - "title": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "CVSS 9.9. Critical RCE in Microsoft Semantic Kernel Python SDK's InMemoryVectorStore filter functionality. Attackers execute arbitrary code through crafted filter expressions. Semantic Kernel powers many Microsoft Copilot integrations and RAG-based AI applications. Fixed in python-1.39.4.", - "owasp_entries": [ - "LLM03", - "LLM04", - "LLM05", - "LLM08", - "ASI02", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0011", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0059", - "AML.T0060", - "AML.T0066", - "AML.T0070" - ], - "mitre_atlas_tactics": [ - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MANAGE-3.2", - "MAP-3.5", - "MAP-4.2", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", - "severity": "Critical", - "references": [ + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-62.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-62.yaml", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-cgcg-p68q-3w7v", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-62", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-46946", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://cwe.mitre.org/data/definitions/95.html", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://docs.sympy.org/latest/modules/codegen.html", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://gist.github.com/12end/68c0c58d2564ef4141bccd4651480820#file-cve-2024-46946-txt", + "type": "exploit" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/releases/tag/langchain-experimental%3D%3D0.3.0", + "type": "reference" + }, + { + "title": "GHSA-p2qj-r53j-h3xj", + "url": "https://github.com/advisories/GHSA-p2qj-r53j-h3xj", + "type": "advisory" + }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/cve-2026-26030", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-p2qj-r53j-h3xj", "type": "advisory" }, { - "title": "GitLab Advisory", - "url": "https://advisories.gitlab.com/pkg/pypi/semantic-kernel/CVE-2026-26030/", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-374", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/microsoft/semantic-kernel/pull/13505", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8309", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/microsoft/semantic-kernel/releases/tag/python-1.39.4", - "type": "reference" + "title": "GHSA-45pg-36p6-83v9", + "url": "https://github.com/advisories/GHSA-45pg-36p6-83v9", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/microsoft/semantic-kernel/security/advisories/GHSA-xjw9-4gw8-4rqx", - "type": "vendor" + "title": "security@huntr.dev", + "url": "https://github.com/langchain-ai/langchain/commit/c2a3021bb0c5f54649d380b42a0684ca5778c255", + "type": "patch" }, { - "title": "GHSA-xjw9-4gw8-4rqx", - "url": "https://github.com/advisories/GHSA-xjw9-4gw8-4rqx", - "type": "advisory" + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/8f4ad910-7fdc-4089-8f0a-b5df5f32e7c5", + "type": "exploit" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/semantic-kernel/PYSEC-2026-163.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/semantic-kernel/PYSEC-2026-163.yaml", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-115.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2024-115.yaml", "type": "reference" - } - ], - "tags": [ - "cve", - "ghsa", - "nvd", - "rce", - "semantic-kernel" - ] - }, - { - "id": "INC-01465", - "title": "Moltbook — vibe-coded social network exposes 1.5M API tokens and 35K emails", - "date": "2026-02", - "year": 2026, - "category": "real-world", - "description": "Moltbook, a social network built entirely via vibe coding (zero manual code), exposed 1.5 million API authentication tokens, 35,000 email addresses, and thousands of private messages via an unsecured Supabase database. The AI scaffolded the database with permissive settings; the founder deployed as-is without review.", - "owasp_entries": [ - "LLM02", - "ASI03", - "ASI09", - "DSGAI01", - "DSGAI02", - "DSGAI08" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0024", - "AML.T0048.001", - "AML.T0048.003", - "AML.T0055", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "AI-generated code with insecure default database configuration" }, { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "Unsecured database exposed to public internet" - } - ], - "attack_vector": "other", - "affected": "Moltbook — 1.5M API tokens, 35K emails, private messages", - "impact": "First major real-world vibe-coding security disaster; mass data exposure; trust damage", - "severity": "Critical", - "mitigations": [ - "Automated security scanning of AI-scaffolded applications", - "Database access control defaults", - "Security review of AI-generated infrastructure code before deployment" - ], - "references": [ - { - "title": "Exposed Moltbook database reveals millions of API keys", - "url": "https://www.wiz.io/blog/exposed-moltbook-database-reveals-millions-of-api-keys", - "type": "research" - } - ], - "tags": [ - "ai-generated-code", - "database-exposure", - "insecure-defaults", - "vibe-coding" - ] - }, - { - "id": "INC-01471", - "title": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", - "date": "2026-01", - "year": 2026, - "category": "real-world", - "description": "CVSS 10.0. Content-type confusion in webhook request handling allows unauthenticated attackers to forge uploaded files, read arbitrary local files, forge admin sessions, and execute commands on the host. ~100,000 n8n servers globally affected. If an LLM-powered chatbot node is present, attackers can exfiltrate file contents by chatting with the bot. Fixed in v1.121.0.", - "owasp_entries": [ - "LLM02", - "LLM03", - "LLM05", - "ASI02", - "ASI04", - "ASI05" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0011", - "AML.T0024", - "AML.T0025", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "data-exfiltration", - "affected": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", - "severity": "Critical", - "references": [ + "title": "https://github.com/langchain-ai/langchain/commit/64c317eba05fbac0c6a6fc5aa192bc0d7130972e", + "url": "https://github.com/langchain-ai/langchain/commit/64c317eba05fbac0c6a6fc5aa192bc0d7130972e", + "type": "reference" + }, { - "title": "NVD", - "url": "https://thehackernews.com/2026/01/critical-n8n-vulnerability-cvss-100.html", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-45pg-36p6-83v9", + "type": "advisory" }, { - "title": "Cyera Research", - "url": "https://www.cyera.com/research/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026-21858", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-115", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-21858", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55443", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-v4pr-fm98-w9pg", - "type": "vendor" + "url": "https://github.com/langchain-ai/langchain/commit/dcaf7795a3e6590af55c3ff7bda6add6355e9ea6", + "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://www.cyera.com/research-labs/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026-21858", - "type": "exploit" + "url": "https://github.com/langchain-ai/langchain/security/advisories/GHSA-gr75-jv2w-4656", + "type": "vendor" }, { - "title": "GHSA-v4pr-fm98-w9pg", - "url": "https://github.com/advisories/GHSA-v4pr-fm98-w9pg", + "title": "GHSA-gr75-jv2w-4656", + "url": "https://github.com/advisories/GHSA-gr75-jv2w-4656", "type": "advisory" - } - ], - "tags": [ - "cve", - "ghsa", - "info-disclosure", - "n8n", - "nvd" - ] - }, - { - "id": "INC-01589", - "title": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", - "date": "2026-02-01", - "year": 2026, - "category": "real-world", - "description": "OpenClaw (135K+ GitHub stars) had over 138 CVEs in 63 days. CVE-2026-25253 (CVSS 8.8) enabled one-click RCE. Over 21,000 publicly exposed instances found. 341 malicious skills (~12% of ClawHub marketplace) performed credential theft and lateral movement across connected enterprise SaaS apps.", - "owasp_entries": [ - "LLM02", - "LLM03", - "LLM05", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI10" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0024", - "AML.T0048", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-2.4", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "maestro_layers": [ + }, { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "138 CVEs in core framework; malicious skills in marketplace" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-gr75-jv2w-4656", + "type": "advisory" }, { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "propagation", - "notes": "12% of marketplace skills are malicious" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58340", + "type": "advisory" }, { - "layer": "L4", - "label": "Deployment & Infrastructure", - "role": "impact", - "notes": "21,000 exposed instances; lateral movement to SaaS apps" - } - ], - "attack_vector": "rce", - "affected": "OpenClaw — 21,000+ exposed instances; connected enterprise SaaS apps", - "impact": "138 CVEs; 341 malicious marketplace skills; credential theft at scale; enterprise lateral movement", - "severity": "Critical", - "mitigations": [ - "Agent framework security auditing", - "Marketplace skill vetting and signing", - "Network isolation for agent instances" - ], - "references": [ + "title": "disclosure@vulncheck.com", + "url": "https://huntr.com/bounties/e7ece02c-d4bb-4166-8e08-6baf4f8845bb", + "type": "exploit" + }, { - "title": "OpenClaw: The AI agent security crisis", - "url": "https://www.reco.ai/blog/openclaw-the-ai-agent-security-crisis-unfolding-right-now", - "type": "research" + "title": "disclosure@vulncheck.com", + "url": "https://www.langchain.com/", + "type": "reference" + }, + { + "title": "disclosure@vulncheck.com", + "url": "https://www.vulncheck.com/advisories/langchain-mrkloutputparser-redos", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25253", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5998", "type": "advisory" }, { - "title": "GHSA-g8p2-7wf7-98mq", - "url": "https://github.com/advisories/GHSA-g8p2-7wf7-98mq", + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/fa3a2753-57c3-4e08-a176-d7a3ffda28fe", + "type": "exploit" + }, + { + "title": "GHSA-f2jm-rw3h-6phg", + "url": "https://github.com/advisories/GHSA-f2jm-rw3h-6phg", "type": "advisory" }, { - "title": "https://github.com/openclaw/openclaw/security/advisories/GHSA-g8p2-7wf7-98mq", - "url": "https://github.com/openclaw/openclaw/security/advisories/GHSA-g8p2-7wf7-98mq", + "title": "https://github.com/langchain-ai/langchain/commit/77209f315efd13442ec51c67719ba37dfaa44511", + "url": "https://github.com/langchain-ai/langchain/commit/77209f315efd13442ec51c67719ba37dfaa44511", "type": "reference" }, { - "title": "https://depthfirst.com/post/1-click-rce-to-steal-your-moltbot-data-and-keys", - "url": "https://depthfirst.com/post/1-click-rce-to-steal-your-moltbot-data-and-keys", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-f2jm-rw3h-6phg", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-38459", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/commit/ce0b0f22a175139df8f41cdcfb4d2af411112009", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/compare/langchain-experimental==0.0.60...langchain-experimental==0.0.61", "type": "reference" }, { - "title": "https://openclaw.ai/blog", - "url": "https://openclaw.ai/blog", + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/pull/22860", "type": "reference" }, { - "title": "MITRE ATLAS — AML.CS0050", - "url": "https://atlas.mitre.org/studies/AML.CS0050", - "type": "research" + "title": "GHSA-wmvm-9vqv-5qpp", + "url": "https://github.com/advisories/GHSA-wmvm-9vqv-5qpp", + "type": "advisory" }, { - "title": "GHSA-r2c6-8jc8-g32w", - "url": "https://github.com/advisories/GHSA-r2c6-8jc8-g32w", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-53.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain-experimental/PYSEC-2024-53.yaml", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-wmvm-9vqv-5qpp", "type": "advisory" - } - ], - "tags": [ - "atlas", - "case-study", - "clawdbot", - "cve", - "enterprise", - "ghsa", - "malicious-skills", - "marketplace", - "mass-cve", - "openclaw", - "rce", - "research" - ] - }, - { - "id": "INC-01637", - "title": "PerplexedBrowser -- Perplexity Comet Agentic Browser Vulnerabilities", - "date": "2026-03", - "year": 2026, - "category": "real-world", - "description": "Three separate disclosures: CometJacking (one-click URL manipulation exfiltrates data, LayerX Oct 2025), PerplexedBrowser (zero-click attacks via calendar invites exfiltrate local files and hijack 1Password accounts, Zenity Labs Mar 2026), and Trail of Bits audit (four prompt injection techniques extracting private Gmail data, Feb 2026). All patched.", - "owasp_entries": [ - "LLM01", - "ASI01", - "ASI02", - "ASI09" - ], - "mitre_atlas": [ - "AML.T0048.001", - "AML.T0048.003", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053" - ], - "mitre_atlas_tactics": [ - "AML.TA0005", - "AML.TA0011", - "AML.TA0012" - ], - "nist_ai_rmf": [ - "GOVERN-3.2", - "MANAGE-2.3", - "MAP-2.1", - "MAP-3.5", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "attack_vector": "prompt-injection", - "affected": "PerplexedBrowser", - "severity": "Medium", - "references": [ + }, { - "title": "Zenity Labs", - "url": "https://labs.zenity.io/p/perplexedbrowser-perplexity-s-agent-browser-can-leak-your-personal-pc-local-files", - "type": "research" - } - ] - }, - { - "id": "INC-01666", - "title": "PraisonAI Quadruple CVE Disclosure", - "date": "2026-04", - "year": 2026, - "category": "real-world", - "description": "Four critical/high vulnerabilities in PraisonAI multi-agent framework: CVE-2026-39888 (CVSS 9.9) sandbox escape via exception frame traversal; CVE-2026-39890 (CVSS 9.8) RCE via YAML deserialization with `!!js/function` tags; CVE-2026-39891 (CVSS 8.8) template injection in agent tool definitions; CVE-2026-39889 (CVSS 7.5) unauthenticated SSE event stream exposes all agent activity. Fixed in 4.5.115.", - "owasp_entries": [ - "LLM03", - "LLM05", - "ASI02", - "ASI03", - "ASI04", - "ASI05", - "ASI07" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0011", - "AML.T0012", - "AML.T0049", - "AML.T0050", - "AML.T0053", - "AML.T0055", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", - "MANAGE-2.3", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "rce", - "affected": "PraisonAI Quadruple CVE Disclosure", - "severity": "Critical", - "references": [ + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2024-53", + "type": "advisory" + }, { - "title": "GitLab Advisory", - "url": "https://advisories.gitlab.com/pkg/pypi/praisonai/CVE-2026-39890/", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-3571", "type": "advisory" }, { - "title": "TheHackerWire", - "url": "https://www.thehackerwire.com/critical-praisonai-sandbox-escape-rce-cve-2026-39888/", + "title": "security@huntr.dev", + "url": "https://github.com/langchain-ai/langchain/commit/aad3d8bd47d7f5598156ff2bdcc8f736f24a7412", + "type": "patch" + }, + { + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/2df3acdc-ee4f-4257-bbf8-a7de3870a9d8", + "type": "exploit" + }, + { + "title": "GHSA-rgp8-pm28-3759", + "url": "https://github.com/advisories/GHSA-rgp8-pm28-3759", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-rgp8-pm28-3759", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-27444", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/commit/de9a6cdf163ed00adaf2e559203ed0a9ca2f1de7", + "type": "patch" + }, + { + "title": "GHSA-v8vj-cv27-hjv8", + "url": "https://github.com/advisories/GHSA-v8vj-cv27-hjv8", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-v8vj-cv27-hjv8", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-375", "type": "advisory" }, + { + "title": "https://pypi.org/project/langchain-experimental", + "url": "https://pypi.org/project/langchain-experimental", + "type": "reference" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39891", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0243", "type": "advisory" }, { - "title": "GHSA-hwg5-x759-7wjg", - "url": "https://github.com/advisories/GHSA-hwg5-x759-7wjg", + "title": "GHSA-h9j7-5xvc-qhg5", + "url": "https://github.com/advisories/GHSA-h9j7-5xvc-qhg5", "type": "advisory" }, { - "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-hwg5-x759-7wjg", - "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-hwg5-x759-7wjg", + "title": "https://github.com/langchain-ai/langchain/commit/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22", + "url": "https://github.com/langchain-ai/langchain/commit/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22", "type": "reference" }, { - "title": "https://github.com/MervinPraison/PraisonAI/releases/tag/v4.5.115", - "url": "https://github.com/MervinPraison/PraisonAI/releases/tag/v4.5.115", + "title": "https://huntr.com/bounties/370904e7-10ac-40a4-a8d4-e2d16e1ca861", + "url": "https://huntr.com/bounties/370904e7-10ac-40a4-a8d4-e2d16e1ca861", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/15559", + "url": "https://github.com/langchain-ai/langchain/pull/15559", + "type": "reference" + }, + { + "title": "https://github.com/langchain-ai/langchain/blob/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22/libs/community/langchain_community/document_loaders/recursive_url_loader.py#L51-L51", + "url": "https://github.com/langchain-ai/langchain/blob/bf0b3cc0b5ade1fb95a5b1b6fa260e99064c2e22/libs/community/langchain_community/document_loaders/recursive_url_loader.py#L51-L51", "type": "reference" }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-h9j7-5xvc-qhg5", + "type": "advisory" + }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39889", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32786", "type": "advisory" }, { - "title": "GHSA-f292-66h9-fpmf", - "url": "https://github.com/advisories/GHSA-f292-66h9-fpmf", + "title": "cve@mitre.org", + "url": "https://gist.github.com/rharang/d265f46fc3161b31ac2e81db44d662e1", "type": "advisory" }, { - "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-f292-66h9-fpmf", - "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-f292-66h9-fpmf", + "title": "GHSA-6h8p-4hx9-w66c", + "url": "https://github.com/advisories/GHSA-6h8p-4hx9-w66c", + "type": "advisory" + }, + { + "title": "https://github.com/langchain-ai/langchain/pull/12747", + "url": "https://github.com/langchain-ai/langchain/pull/12747", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39888", + "title": "https://github.com/langchain-ai/langchain/releases/tag/v0.0.329", + "url": "https://github.com/langchain-ai/langchain/releases/tag/v0.0.329", + "type": "reference" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6h8p-4hx9-w66c", "type": "advisory" }, { - "title": "GHSA-qf73-2hrx-xprp", - "url": "https://github.com/advisories/GHSA-qf73-2hrx-xprp", + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/commit/9ecb7240a480720ec9d739b3877a52f76098a2b8", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/langchain-ai/langchain/pull/11925", + "type": "vendor" + }, + { + "title": "GHSA-655w-fm8m-m478", + "url": "https://github.com/advisories/GHSA-655w-fm8m-m478", "type": "advisory" }, { - "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qf73-2hrx-xprp", - "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qf73-2hrx-xprp", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-205.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-205.yaml", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39890", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-655w-fm8m-m478", "type": "advisory" }, { - "title": "GHSA-32vr-5gcf-3pw2", - "url": "https://github.com/advisories/GHSA-32vr-5gcf-3pw2", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-205", "type": "advisory" }, - { - "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-32vr-5gcf-3pw2", - "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-32vr-5gcf-3pw2", - "type": "reference" - } - ], - "tags": [ - "cve", - "deserialization", - "ghsa", - "path-traversal", - "praisonai", - "praisonaiagents", - "rce" - ] - }, - { - "id": "INC-01723", - "title": "Anyscale Ray LFI via /static/ directory (missing authorization)", - "date": "2023-09-05", - "year": 2023, - "category": "real-world", - "description": "Local file inclusion in Ray's /static/ directory allows attackers to read any file on the server without authentication. Fixed in 2.8.1+.", - "owasp_entries": [ - "LLM01", - "LLM02", - "LLM03", - "LLM05", - "LLM06", - "ASI01", - "ASI04", - "ASI05", - "DSGAI08" - ], - "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0011", - "AML.T0018", - "AML.T0040", - "AML.T0048", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", - "AML.T0053", - "AML.T0055", - "AML.T0057", - "AML.T0060" - ], - "mitre_atlas_tactics": [ - "AML.TA0000", - "AML.TA0001", - "AML.TA0003", - "AML.TA0004", - "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012", - "AML.TA0013" - ], - "nist_ai_rmf": [ - "GOVERN-1.1", - "GOVERN-1.4", - "GOVERN-6.1", - "GOVERN-6.2", - "MANAGE-2.3", - "MANAGE-3.1", - "MAP-2.1", - "MAP-3.5", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" - ], - "attack_vector": "path-traversal", - "affected": "ray < 2.8.1", - "impact": "Cluster-wide malware propagation; cryptocurrency mining hijack; compute resource theft", - "severity": "Critical", - "mitigations": [ - "Authentication on job submission APIs", - "Network segmentation for AI compute clusters", - "Patch Ray framework promptly" - ], - "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6020", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32785", "type": "advisory" }, { - "title": "GHSA-6cxr-8q3m-jwrr", - "url": "https://github.com/advisories/GHSA-6cxr-8q3m-jwrr", + "title": "GHSA-8h5w-f6q9-wg35", + "url": "https://github.com/advisories/GHSA-8h5w-f6q9-wg35", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/83dd8619-6dc3-4c98-8f1b-e620fedcd1f6", - "type": "exploit" + "title": "https://gist.github.com/rharang/9c58d39db8c01db5b7c888e467c0533f", + "url": "https://gist.github.com/rharang/9c58d39db8c01db5b7c888e467c0533f", + "type": "reference" }, { - "title": "https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023", - "url": "https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023", + "title": "https://github.com/langchain-ai/langchain/issues/5923#issuecomment-1696053841", + "url": "https://github.com/langchain-ai/langchain/issues/5923#issuecomment-1696053841", "type": "reference" }, { - "title": "https://github.com/ray-project/ray/releases/tag/ray-2.8.1", - "url": "https://github.com/ray-project/ray/releases/tag/ray-2.8.1", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-8h5w-f6q9-wg35", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6cxr-8q3m-jwrr", + "url": "https://osv.dev/vulnerability/PYSEC-2026-372", "type": "advisory" }, { - "title": "https://github.com/ray-project/ray", - "url": "https://github.com/ray-project/ray", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36095", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6021", + "title": "GHSA-gwqq-6vq7-5j86", + "url": "https://github.com/advisories/GHSA-gwqq-6vq7-5j86", "type": "advisory" }, { - "title": "GHSA-3pww-qvr8-6mhp", - "url": "https://github.com/advisories/GHSA-3pww-qvr8-6mhp", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-gwqq-6vq7-5j86", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/5039c045-f986-4cbc-81ac-370fe4b0d3f8", - "type": "exploit" + "title": "https://github.com/langchain-ai/langchain/commit/8ba9835b925473655914f63822775679e03ea137", + "url": "https://github.com/langchain-ai/langchain/commit/8ba9835b925473655914f63822775679e03ea137", + "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-3pww-qvr8-6mhp", + "url": "https://osv.dev/vulnerability/PYSEC-2023-138", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6019", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38896", "type": "advisory" }, { - "title": "GHSA-h3xg-wv58-5p43", - "url": "https://github.com/advisories/GHSA-h3xg-wv58-5p43", + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/pull/6003", + "type": "patch" + }, + { + "title": "cve@mitre.org", + "url": "https://twitter.com/llm_sec/status/1668711587287375876", "type": "advisory" }, { - "title": "security@huntr.dev", - "url": "https://huntr.com/bounties/d0290f3c-b302-4161-89f2-c13bb28b4cfe", - "type": "exploit" + "title": "GHSA-92j5-3459-qgp4", + "url": "https://github.com/advisories/GHSA-92j5-3459-qgp4", + "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-h3xg-wv58-5p43", + "url": "https://osv.dev/vulnerability/GHSA-92j5-3459-qgp4", "type": "advisory" }, { - "title": "ShadowRay: First Known Attack Campaign Targeting AI Workloads - Oligo", - "url": "https://www.oligo.security/blog/shadowray-attack-ai-workloads-actively-exploited-in-the-wild", - "type": "research" + "title": "https://github.com/langchain-ai/langchain/commit/e294ba475a355feb95003ed8f1a2b99942509a9e", + "url": "https://github.com/langchain-ai/langchain/commit/e294ba475a355feb95003ed8f1a2b99942509a9e", + "type": "reference" }, { - "title": "CVE-2023-48022 Anyscale Ray Dashboard RCE - Censys", - "url": "https://censys.com/advisory/cve-2023-48022", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-146", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36188", + "type": "advisory" + }, + { + "title": "GHSA-57fc-8q82-gfp3", + "url": "https://github.com/advisories/GHSA-57fc-8q82-gfp3", "type": "advisory" }, { - "title": "MITRE ATLAS — AML.CS0023", - "url": "https://atlas.mitre.org/studies/AML.CS0023", - "type": "research" + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-109.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-109.yaml", + "type": "reference" }, { - "title": "ShadowRay: AI Infrastructure Is Being Exploited In the Wild", - "url": "https://protectai.com/threat-research/shadowray-ai-infrastructure-is-being-exploited-in-the-wild", - "type": "research" + "title": "https://github.com/langchain-ai/langchain/pull/8425", + "url": "https://github.com/langchain-ai/langchain/pull/8425", + "type": "reference" }, { - "title": "CVE-2023-48022", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-48022", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-57fc-8q82-gfp3", + "type": "advisory" }, { - "title": "ShadowRay 2.0: AI turned against itself", - "url": "https://www.oligo.security/blog/shadowray-2-0-attackers-turn-ai-against-itself-in-global-campaign-that-hijacks-ai-into-self-propagating-botnet", - "type": "research" + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2023-109", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32981", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-38860", "type": "advisory" }, { - "title": "GHSA-j3mh-qmjj-xp83", - "url": "https://github.com/advisories/GHSA-j3mh-qmjj-xp83", + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/7641", + "type": "exploit" + }, + { + "title": "GHSA-fj32-q626-pjjc", + "url": "https://github.com/advisories/GHSA-fj32-q626-pjjc", "type": "advisory" }, { - "title": "https://packetstorm.news/files/id/215801/", - "url": "https://packetstorm.news/files/id/215801/", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-145.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-145.yaml", "type": "reference" }, { - "title": "https://www.vulncheck.com/advisories/ray-dashboard-path-traversal-leading-to-local-file-disclosure", - "url": "https://www.vulncheck.com/advisories/ray-dashboard-path-traversal-leading-to-local-file-disclosure", + "title": "https://github.com/langchain-ai/langchain/issues/7641", + "url": "https://github.com/langchain-ai/langchain/issues/7641", "type": "reference" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/ray/PYSEC-2026-130.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/ray/PYSEC-2026-130.yaml", + "title": "https://github.com/langchain-ai/langchain/pull/8092", + "url": "https://github.com/langchain-ai/langchain/pull/8092", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-j3mh-qmjj-xp83", + "url": "https://osv.dev/vulnerability/GHSA-fj32-q626-pjjc", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/PYSEC-2026-130", + "url": "https://osv.dev/vulnerability/PYSEC-2023-145", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27482", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36189", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/ray-project/ray/commit/0fda8b824cdc9dc6edd763bb28dfd7d1cc9b02a4", - "type": "patch" + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/5923", + "type": "exploit" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/ray-project/ray/pull/60526", + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/pull/6051", "type": "patch" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/ray-project/ray/releases/tag/ray-2.54.0", - "type": "reference" + "title": "GHSA-7q94-qpjr-xpgm", + "url": "https://github.com/advisories/GHSA-7q94-qpjr-xpgm", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/ray-project/ray/security/advisories/GHSA-q5fh-2hc8-f6rq", - "type": "vendor" + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-110.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-110.yaml", + "type": "reference" }, { - "title": "GHSA-q5fh-2hc8-f6rq", - "url": "https://github.com/advisories/GHSA-q5fh-2hc8-f6rq", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-7q94-qpjr-xpgm", "type": "advisory" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-q5fh-2hc8-f6rq", + "url": "https://osv.dev/vulnerability/PYSEC-2023-110", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34351", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34541", "type": "advisory" }, { - "title": "GHSA-gx77-xgc2-4888", - "url": "https://github.com/advisories/GHSA-gx77-xgc2-4888", + "title": "cve@mitre.org", + "url": "https://github.com/hwchase17/langchain/issues/4849", + "type": "exploit" + }, + { + "title": "GHSA-6643-h7h5-x9wh", + "url": "https://github.com/advisories/GHSA-6643-h7h5-x9wh", "type": "advisory" }, { - "title": "https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-w8vc-465m-jjw6", - "url": "https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-w8vc-465m-jjw6", + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-92.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/langchain/PYSEC-2023-92.yaml", "type": "reference" }, { - "title": "https://docs.ray.io/en/latest/ray-security/token-auth.html", - "url": "https://docs.ray.io/en/latest/ray-security/token-auth.html", + "title": "https://github.com/langchain-ai/langchain/issues/4849", + "url": "https://github.com/langchain-ai/langchain/issues/4849", "type": "reference" }, { - "title": "https://www.vulncheck.com/advisories/anyscale-ray-token-authentication-disabled-by-default-insecure-configuration", - "url": "https://www.vulncheck.com/advisories/anyscale-ray-token-authentication-disabled-by-default-insecure-configuration", - "type": "reference" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6643-h7h5-x9wh", + "type": "advisory" }, { - "title": "https://github.com/ray-project/ray/releases/tag/ray-2.52.0", - "url": "https://github.com/ray-project/ray/releases/tag/ray-2.52.0", + "title": "https://github.com/langchain-ai/langchain/commit/fab24457bcf8ede882abd11419769c92bc4e7751", + "url": "https://github.com/langchain-ai/langchain/commit/fab24457bcf8ede882abd11419769c92bc4e7751", "type": "reference" }, { "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-gx77-xgc2-4888", + "url": "https://osv.dev/vulnerability/PYSEC-2023-92", "type": "advisory" - }, + } + ], + "tags": [ + "agent-framework", + "bypass", + "code-execution", + "cve", + "deserialization", + "dos", + "eval", + "ghsa", + "graphcypher", + "langchain", + "langchain-anthropic", + "langchain-community", + "langchain-core", + "langchain-experimental", + "llamaindex", + "llm-math", + "load_chain", + "loaders", + "nvd", + "osv", + "palchain", + "path-traversal", + "prompt-injection", + "rce", + "retriever", + "sitemap", + "sql-injection", + "ssrf", + "sympy", + "vector-sql" + ] + }, + { + "id": "INC-01297", + "title": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", + "date": "2026-02", + "year": 2026, + "category": "real-world", + "description": "CVSS 9.8. Langflow's CSVAgentComponent hardcodes `allow_dangerous_code=True`, auto-enabling LangChain's Python REPL tool. Attackers inject malicious prompts through user-supplied input, achieving arbitrary Python/OS command execution. No authentication required. Affects versions prior to 1.8.0.", + "owasp_entries": [ + "LLM01", + "LLM10", + "ASI01", + "ASI02", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0011", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "prompt-injection", + "affected": "Langflow CSV Agent RCE via Prompt Injection (CVE-2026-27966)", + "severity": "Critical", + "references": [ { - "title": "GHSA-6wgj-66m2-xxp2", - "url": "https://github.com/advisories/GHSA-6wgj-66m2-xxp2", - "type": "advisory" + "title": "GitHub Advisory", + "url": "https://github.com/advisories/GHSA-3645-fxcv-hqr4", + "type": "research" }, { - "title": "https://bishopfox.com/blog/ray-versions-2-6-3-2-8-0", - "url": "https://bishopfox.com/blog/ray-versions-2-6-3-2-8-0", - "type": "reference" + "title": "TheHackerWire", + "url": "https://www.thehackerwire.com/langflow-csv-agent-rce-via-prompt-injection/", + "type": "research" }, { - "title": "https://docs.ray.io/en/latest/ray-security/index.html", - "url": "https://docs.ray.io/en/latest/ray-security/index.html", - "type": "reference" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27966", + "type": "advisory" }, { - "title": "https://www.vicarius.io/vsociety/posts/shadowray-cve-2023-48022-exploit", - "url": "https://www.vicarius.io/vsociety/posts/shadowray-cve-2023-48022-exploit", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/langflow-ai/langflow/commit/d8c6480daa17b2f2af0b5470cdf5c3d28dc9e508", + "type": "patch" }, { - "title": "OSV", - "url": "https://osv.dev/vulnerability/GHSA-6wgj-66m2-xxp2", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/langflow-ai/langflow/security/advisories/GHSA-3645-fxcv-hqr4", + "type": "vendor" + } + ], + "tags": [ + "cve", + "ghsa", + "langflow", + "nvd", + "prompt-injection" + ] + }, + { + "id": "INC-01340", + "title": "LiteLLM PyPI supply chain backdoor — TeamPCP campaign compromises 3.4M daily downloads", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "TeamPCP compromised LiteLLM (3.4M daily downloads) via a poisoned Trivy GitHub Action that stole the PYPI_PUBLISH token. Backdoored versions contained a three-stage credential harvester collecting SSH keys, cloud tokens, Kubernetes configs. Available ~3 hours before PyPI quarantine.", + "owasp_entries": [ + "LLM04", + "LLM05", + "LLM10", + "ASI03", + "ASI04", + "ASI05", + "DSGAI08" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0012", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0049", + "AML.T0050", + "AML.T0055", + "AML.T0059", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "maestro_layers": [ + { + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "CI/CD pipeline compromised to steal PyPI publish token" }, { - "title": "https://github.com/ray-project/ray/commit/978947083b1e192dba61ef653c863b11d56b0936", - "url": "https://github.com/ray-project/ray/commit/978947083b1e192dba61ef653c863b11d56b0936", - "type": "reference" - }, + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "Three-stage credential harvester deployed via package install" + } + ], + "attack_vector": "supply-chain", + "affected": "LiteLLM — 3.4M daily downloads; SSH keys, cloud tokens, K8s configs", + "impact": "Mass credential theft potential; supply chain compromise; 3-hour exposure window", + "severity": "Critical", + "mitigations": [ + "GitHub Actions supply chain verification", + "Package integrity monitoring and rollback", + "PyPI publish token rotation and 2FA" + ], + "references": [ { - "title": "https://console.vulncheck.com/cve/CVE-2023-48022", - "url": "https://console.vulncheck.com/cve/CVE-2023-48022", - "type": "reference" + "title": "Inside LiteLLM supply chain compromise", + "url": "https://www.trendmicro.com/en_us/research/26/c/inside-litellm-supply-chain-compromise.html", + "type": "research" } ], "tags": [ - "atlas", - "botnet", - "case-study", - "command-injection", - "credential-exfiltration", - "crypto-mining", - "cryptojacking", - "cve", - "cve-2023-48022", - "dashboard", - "exploited-in-the-wild", - "ghsa", - "info-disclosure", - "infrastructure", - "lfi", - "log-api", - "mlops", - "nvd", - "osv", - "path-traversal", - "ray", - "ray-project", - "rce", - "real-world", - "self-spreading", - "shadowray", + "ci-cd", + "credential-theft", + "litellm", + "pypi", "supply-chain" ] }, { - "id": "INC-01769", - "title": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", - "date": "2026-03", + "id": "INC-01370", + "title": "Marimo Pre-Auth RCE (CVE-2026-39987)", + "date": "2026-04", "year": 2026, "category": "real-world", - "description": "Two CVSS 9.8 unauthenticated RCE vulnerabilities via unsafe pickle.loads() deserialization in ZeroMQ broker and disaggregation modules. CVE-2026-3989 (CVSS 7.8): insecure pickle.load() in replay_request_dump.py. Unpatched as of disclosure.", + "description": "CVSS 9.3. Marimo Python reactive notebook (~19.6k GitHub stars) terminal WebSocket endpoint `/terminal/ws` lacks authentication. Single WebSocket connection grants full PTY shell. Commonly runs as root in Docker. Sysdig honeypots observed exploitation within hours of disclosure. Confirmed exploited in the wild. Fixed in v0.23.0.", "owasp_entries": [ - "LLM03", - "LLM05", - "ASI02", + "LLM10", "ASI03", - "ASI04", "ASI05" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", "AML.T0011", "AML.T0012", "AML.T0049", "AML.T0050", - "AML.T0053", "AML.T0055", "AML.T0060" ], @@ -19231,555 +5190,455 @@ window.CROSSWALK_INCIDENTS = [ ], "nist_ai_rmf": [ "GOVERN-1.4", - "GOVERN-3.2", - "GOVERN-6.1", "MANAGE-2.3", - "MAP-3.5", "MEASURE-2.5", "MEASURE-2.7" ], "attack_vector": "rce", - "affected": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "affected": "Marimo Pre-Auth RCE (CVE-2026-39987)", "severity": "Critical", "references": [ { - "title": "The Hacker News", - "url": "https://thehackernews.com/2026/03/ai-flaws-in-amazon-bedrock-langsmith.html", - "type": "research" - }, - { - "title": "SentinelOne", - "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-25528/", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25750", - "type": "advisory" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/langchain-ai/helm/security/advisories/GHSA-r8wq-jwgw-p74g", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3059", - "type": "advisory" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/multimodal_gen/runtime/scheduler_client.py", - "type": "reference" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/pull/20904", - "type": "reference" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/releases/tag/v0.5.10", - "type": "reference" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/security/advisories/GHSA-3cp7-c6q2-94xr", - "type": "reference" - }, - { - "title": "cret@cert.org", - "url": "https://orca.security/resources/blog/sglang-llm-framework-rce-vulnerabilities/", - "type": "exploit" - }, - { - "title": "GHSA-rgq9-fqf5-fv58", - "url": "https://github.com/advisories/GHSA-rgq9-fqf5-fv58", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3060", - "type": "advisory" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/srt/disaggregation/encode_receiver.py", - "type": "reference" - }, - { - "title": "GHSA-jx93-g359-86wm", - "url": "https://github.com/advisories/GHSA-jx93-g359-86wm", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3989", - "type": "advisory" - }, - { - "title": "cret@cert.org", - "url": "https://github.com/sgl-project/sglang/blob/main/scripts/playground/replay_request_dump.py", - "type": "reference" - }, - { - "title": "GHSA-hvwj-8w5g-28rg", - "url": "https://github.com/advisories/GHSA-hvwj-8w5g-28rg", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25528", - "type": "advisory" - }, - { - "title": "GHSA-v34v-rq6j-cj6p", - "url": "https://github.com/advisories/GHSA-v34v-rq6j-cj6p", + "title": "Endor Labs", + "url": "https://www.endorlabs.com/learn/root-in-one-request-marimos-critical-pre-auth-rce-cve-2026-39987", "type": "advisory" - }, - { - "title": "https://github.com/langchain-ai/langsmith-sdk/security/advisories/GHSA-v34v-rq6j-cj6p", - "url": "https://github.com/langchain-ai/langsmith-sdk/security/advisories/GHSA-v34v-rq6j-cj6p", - "type": "reference" } - ], - "tags": [ - "cve", - "deserialization", - "ghsa", - "langchain", - "langsmith", - "nvd", - "sglang", - "ssrf" ] }, { - "id": "INC-02058", - "title": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "id": "INC-01378", + "title": "MCP fURI -- Microsoft MarkItDown MCP SSRF", "date": "2026-01", "year": 2026, "category": "real-world", - "description": "AI-powered IDEs (Cursor, Windsurf, Google Antigravity, Trae) forked from VS Code inherit hardcoded recommended extension lists pointing to VS Code Marketplace. These IDEs use OpenVSX, where those extension namespaces were unclaimed. Attackers could register them and publish malware that users would install via built-in recommendations.", + "description": "Microsoft's MarkItDown MCP server allowed arbitrary URI calls with no boundaries. On AWS EC2 instances using IMDSv1, attackers could query instance metadata to obtain access/secret keys with potential full admin access. Researchers found ~36.7% of all MCP servers have similar SSRF exposure.", "owasp_entries": [ - "LLM03", - "ASI04" + "ASI02", + "ASI03" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003" + "AML.T0012", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0055" ], "mitre_atlas_tactics": [ - "AML.TA0004" + "AML.TA0004", + "AML.TA0005", + "AML.TA0012", + "AML.TA0013" ], "nist_ai_rmf": [ - "GOVERN-6.1", - "GOVERN-6.2", - "MAP-4.1" + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.7" ], - "attack_vector": "supply-chain", - "affected": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "attack_vector": "ssrf", + "affected": "MCP fURI", "severity": "Medium", "references": [ { - "title": "The Hacker News", - "url": "https://thehackernews.com/2026/01/vs-code-forks-recommend-missing.html", + "title": "Microsoft", + "url": "https://www.darkreading.com/application-security/microsoft-anthropic-mcp-servers-risk-takeovers", + "type": "research" + }, + { + "title": "BlueRock", + "url": "https://www.bluerock.io/post/mcp-furi-microsoft-markitdown-vulnerabilities", "type": "research" } ] }, { - "id": "INC-02105", - "title": "XBOW — first critical CVE discovered entirely by autonomous AI penetration testing agent", - "date": "2026-03", + "id": "INC-01390", + "title": "MCPJam Inspector RCE (CVE-2026-23744)", + "date": "2026-01", "year": 2026, - "category": "research-demonstrated", - "description": "CVE-2026-21536, a critical vulnerability in Microsoft Devices Pricing Program, was discovered entirely by XBOW's autonomous AI penetration testing agent. XBOW agents have submitted 1,060+ vulnerabilities on HackerOne, executed 48-step exploit chains, and matched a principal pentester's 40-hour assessment in 28 minutes.", + "category": "real-world", + "description": "CVSS 9.8. MCPJam inspector v1.4.2 and earlier listens on 0.0.0.0 by default with no authentication. A crafted HTTP request installs a malicious MCP server and executes arbitrary code. Public exploit available. Fixed in v1.4.3.", "owasp_entries": [ - "LLM06", - "ASI05", - "ASI10" + "LLM04", + "LLM10", + "ASI02", + "ASI04", + "ASI05" ], "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", "AML.T0011", - "AML.T0048", "AML.T0049", "AML.T0050", - "AML.T0053" + "AML.T0053", + "AML.T0060" ], "mitre_atlas_tactics": [ + "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.4", "GOVERN-3.2", + "GOVERN-6.1", "GOVERN-6.2", "MANAGE-2.3", - "MANAGE-2.4", "MAP-3.5", + "MAP-4.1", + "MEASURE-2.5", "MEASURE-2.7" ], - "maestro_layers": [ + "attack_vector": "rce", + "affected": "MCPJam Inspector RCE (CVE-2026-23744)", + "severity": "Critical", + "references": [ { - "layer": "L3", - "label": "Agent Frameworks", - "role": "origin", - "notes": "Autonomous AI agent discovers and validates vulnerabilities" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-23744", + "type": "advisory" }, { - "layer": "L6", - "label": "Security & Compliance", - "role": "impact", - "notes": "First critical CVE attributed to autonomous AI agent" - } - ], - "attack_vector": "other", - "affected": "Microsoft Devices Pricing Program; broader implications for AI-discovered vulnerabilities", - "impact": "Paradigm shift in vulnerability discovery; 48-step exploit chains automated; 40-hour → 28-minute assessment", - "severity": "Critical", - "mitigations": [ - "Ethical guidelines for autonomous security testing", - "Rate limiting for automated vulnerability scanning", - "Responsible disclosure frameworks for AI-discovered vulnerabilities" - ], - "references": [ + "title": "VulnerableMCP", + "url": "https://vulnerablemcp.info/vuln/cve-2026-23744-mcpjam-inspector-rce.html", + "type": "advisory" + }, { - "title": "XBOW: Three RCE vulnerabilities in Microsoft", - "url": "https://xbow.com/blog/three-rce-vulnerabilities-in-microsoft-identified-xbow", - "type": "research" + "title": "security-advisories@github.com", + "url": "https://github.com/MCPJam/inspector/commit/e6b9cf9d9e6c9cbec31493b1bdca3a1255fe3e7a", + "type": "patch" }, { - "title": "Microsoft", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21536", + "title": "security-advisories@github.com", + "url": "https://github.com/MCPJam/inspector/security/advisories/GHSA-232v-j27c-5pp6", + "type": "vendor" + }, + { + "title": "GHSA-232v-j27c-5pp6", + "url": "https://github.com/advisories/GHSA-232v-j27c-5pp6", "type": "advisory" } ], "tags": [ - "ai-agent", - "autonomous-pentest", - "cve-discovery", - "vulnerability-research" + "cve", + "ghsa", + "mcpjam-inspector", + "nvd", + "rce" ] }, { - "id": "INC-02186", - "title": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", - "date": "2025-04", - "year": 2025, - "category": "research-demonstrated", - "description": "Malicious agent published fake agent card in open A2A directory falsely claiming high trust. LLM judge agent selected it, enabling rogue agent to intercept sensitive data and leak to unauthorized parties.", + "id": "INC-01391", + "title": "MCPwned -- Azure MCP Server SSRF & Cloud Takeover (CVE-2026-26118)", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "SSRF vulnerability (CVSS 8.8) in Azure MCP Server Tools allowed stealing managed identity tokens via malicious URLs submitted in place of Azure resource identifiers. Attackers could impersonate the server's identity and access Azure resources, compromising Azure and Entra ID tenants.", "owasp_entries": [ - "LLM02", "LLM04", - "LLM05", - "LLM09", + "LLM10", + "ASI02", "ASI03", - "ASI06", - "ASI07", - "ASI08", - "ASI10" + "ASI04", + "ASI05" ], "mitre_atlas": [ + "AML.T0010", "AML.T0012", - "AML.T0018", - "AML.T0019", - "AML.T0020", - "AML.T0024", - "AML.T0048", - "AML.T0048.001", "AML.T0049", "AML.T0050", "AML.T0053", "AML.T0055", - "AML.T0057", - "AML.T0058", - "AML.T0059", - "AML.T0060", - "AML.T0066" + "AML.T0060" ], "mitre_atlas_tactics": [ - "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", "AML.TA0012", "AML.TA0013" ], "nist_ai_rmf": [ - "GOVERN-1.1", "GOVERN-1.4", - "GOVERN-6.2", + "GOVERN-3.2", + "GOVERN-6.1", "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.2", - "MANAGE-4.1", - "MANAGE-4.3", - "MAP-4.1", - "MAP-4.2", - "MEASURE-2.10", + "MANAGE-3.1", + "MAP-3.5", "MEASURE-2.5", - "MEASURE-2.7", - "MEASURE-2.8" - ], - "maestro_layers": [ - { - "layer": "L7", - "label": "Agent Ecosystem", - "role": "origin", - "notes": "Fake agent card published in open directory" - }, - { - "layer": "L3", - "label": "Agent Frameworks", - "role": "propagation", - "notes": "LLM judge trusts falsified trust claims" - } + "MEASURE-2.7" ], "attack_vector": "rce", - "affected": "Agent-2-Agent (A2A) protocol — multi-agent workflows", - "impact": "Data interception; trust violation; cascading agent compromise", + "affected": "MCPwned", "severity": "Critical", - "mitigations": [ - "Agent card signing and validation", - "Cryptographic agent identity verification", - "Multi-factor trust assessment (not just self-declared)" - ], "references": [ { - "title": "Agent-in-the-Middle: Abusing agent cards in A2A protocol", - "url": "https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/agent-in-the-middle-abusing-agent-cards-in-the-agent-2-agent-protocol-to-win-all-the-tasks", + "title": "Microsoft", + "url": "https://windowsnews.ai/article/microsoft-patches-critical-azure-mcp-ssrf-vulnerability-cve-2026-26118-in-march-2026-security-update.404636", + "type": "advisory" + }, + { + "title": "Token Security", + "url": "https://www.token.security/blog/mcpwned-azure-mcp-rce-vulnerability-leads-to-cloud-takeover", "type": "research" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26118", + "type": "advisory" + }, + { + "title": "secure@microsoft.com", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26118", + "type": "vendor" + }, + { + "title": "GHSA-hhfx-wfvq-7g9c", + "url": "https://github.com/advisories/GHSA-hhfx-wfvq-7g9c", + "type": "advisory" + }, + { + "title": "https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34", + "url": "https://github.com/microsoft/mcp/commit/804ff60293206c4d8e832f772097238561bf2c34", + "type": "reference" + }, + { + "title": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2", + "url": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-1.0.2", + "type": "reference" + }, + { + "title": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17", + "url": "https://github.com/microsoft/mcp/releases/tag/Azure.Mcp.Server-2.0.0-beta.17", + "type": "reference" } ], "tags": [ - "a2a", - "agent-directory", - "mitm", - "multi-agent", - "trust-spoofing" + "azure", + "azure-mcp", + "azure.mcp", + "cloud-takeover", + "cve", + "ghsa", + "mcp", + "msmcp-azure", + "nvd", + "rce", + "ssrf" ] }, { - "id": "INC-02190", - "title": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", - "date": "2025", - "year": 2025, - "category": "research-demonstrated", - "description": "Scan of 1,808 MCP servers: 66% had at least one security finding. 43% had shell/command injection, 20% tooling infrastructure flaws, 13% authentication bypasses, 10% path traversal. Critical findings demonstrated ability to execute arbitrary code with no user interaction.", + "id": "INC-01411", + "title": "Meta Rogue AI Agent Sev-1 — autonomous agent posts incorrect advice, exposing proprietary data", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "An autonomous AI agent inside Meta posted incorrect technical advice on an internal forum without human approval. An employee followed it, exposing proprietary code, business strategies, and user-related datasets to unauthorized engineers for two hours. Classified as Sev-1.", "owasp_entries": [ "LLM03", - "LLM05", - "ASI02", - "ASI03", - "ASI04", - "ASI05" + "LLM07", + "ASI08", + "ASI09", + "ASI10", + "DSGAI01" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", - "AML.T0012", - "AML.T0049", - "AML.T0050", - "AML.T0051", - "AML.T0051.000", + "AML.T0048", + "AML.T0048.001", + "AML.T0048.003", "AML.T0053", - "AML.T0055", - "AML.T0060" + "AML.T0058" ], "mitre_atlas_tactics": [ "AML.TA0003", - "AML.TA0004", "AML.TA0005", - "AML.TA0012", - "AML.TA0013" + "AML.TA0011", + "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-1.4", "GOVERN-3.2", - "GOVERN-6.1", "GOVERN-6.2", "MANAGE-2.3", - "MAP-2.1", + "MANAGE-2.4", + "MANAGE-4.1", + "MANAGE-4.3", "MAP-3.5", - "MAP-4.1", "MEASURE-2.5", - "MEASURE-2.7" + "MEASURE-2.8" ], "maestro_layers": [ { - "layer": "L7", - "label": "Agent Ecosystem", + "layer": "L3", + "label": "Agent Frameworks", "role": "origin", - "notes": "Systemic insecurity across MCP server ecosystem" + "notes": "Autonomous agent posts without human approval" }, { - "layer": "L3", - "label": "Agent Frameworks", + "layer": "L2", + "label": "Data Operations", "role": "impact", - "notes": "66% of servers vulnerable to code execution or data theft" + "notes": "Proprietary data exposed to unauthorized engineers" } ], - "attack_vector": "command-injection", - "affected": "MCP server ecosystem — 1,808 servers scanned, 66% vulnerable", - "impact": "Systemic risk to AI agent infrastructure; arbitrary code execution at scale", + "attack_vector": "other", + "affected": "Meta — internal engineering forum; proprietary code and business data", + "impact": "Sev-1 incident; proprietary data exposed for 2 hours; trust damage in internal AI agents", "severity": "Critical", "mitigations": [ - "Automated vulnerability scanning for MCP servers", - "Community security baseline standards", - "MCP server security certification program" + "Agent output confidence thresholds for autonomous posting", + "Content review before publishing agent-generated advice", + "Human-in-the-loop for agent posts to shared channels" ], "references": [ { - "title": "AgentSeal MCP server security findings", - "url": "https://agentseal.org/blog/mcp-server-security-findings", - "type": "research" + "title": "Meta is having trouble with rogue AI agents", + "url": "https://techcrunch.com/2026/03/18/meta-is-having-trouble-with-rogue-ai-agents/", + "type": "news" } ], "tags": [ - "command-injection", - "ecosystem-security", - "mass-scan", - "mcp", - "systemic-risk" + "autonomous", + "data-exposure", + "meta", + "rogue-agent", + "sev-1" ] }, { - "id": "INC-02191", - "title": "AgentSmith Prompt-Hub Proxy Attack", - "date": "2025-06", - "year": 2025, - "category": "real-world", - "description": "Proxy prompt agent exfiltrated API keys", + "id": "INC-01429", + "title": "Microsoft 365 Copilot XPIA phishing — attacker-shaped email summaries via hidden instructions", + "date": "2026-03", + "year": 2026, + "category": "research-demonstrated", + "description": "Cross-prompt injection attack (CVE-2026-26133) in Microsoft 365 Copilot email/Teams summarization. Attacker embeds hidden instructions in ordinary emails; Copilot produces convincing phishing content within the trusted summary interface.", "owasp_entries": [ - "LLM03", - "ASI04" + "LLM01", + "LLM04", + "LLM05", + "LLM10", + "ASI01", + "ASI04", + "ASI05", + "ASI06", + "ASI09", + "DSGAI04" ], "mitre_atlas": [ "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0024", - "AML.T0025", - "AML.T0057" + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0059", + "AML.T0066" ], "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", "AML.TA0004", - "AML.TA0010" + "AML.TA0005", + "AML.TA0006", + "AML.TA0011" ], "nist_ai_rmf": [ + "GOVERN-3.2", "GOVERN-6.1", - "GOVERN-6.2", - "MAP-4.1", - "MEASURE-2.10", - "MEASURE-2.7" + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.2", + "MEASURE-2.7", + "MEASURE-2.8" ], - "attack_vector": "data-exfiltration", - "affected": "AgentSmith Prompt-Hub Proxy Attack", - "severity": "Medium", - "references": [ + "maestro_layers": [ { - "title": "Noma Security", - "url": "https://noma.security/blog/how-an-ai-agent-vulnerability-in-langsmith-could-lead-to-stolen-api-keys-and-hijacked-llm-responses", - "type": "research" + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "Copilot processes attacker-controlled email content" + }, + { + "layer": "L6", + "label": "Security & Compliance", + "role": "impact", + "notes": "Phishing content appears as trusted AI-generated summary" } - ] - }, - { - "id": "INC-02297", - "title": "Amazon Bedrock AgentCore Sandbox DNS Escape", - "date": "2025-09", - "year": 2025, - "category": "real-world", - "description": "AgentCore Code Interpreter's \"Sandbox\" mode (advertised as \"complete isolation\") allows outbound DNS queries. Attackers can establish bidirectional C2 channels and exfiltrate data via DNS tunneling. AWS declined to fix, reclassifying as \"intended functionality.\" Independently confirmed by Palo Alto Unit42.", - "owasp_entries": [ - "ASI02", - "ASI03" - ], - "mitre_atlas": [ - "AML.T0012", - "AML.T0024", - "AML.T0025", - "AML.T0050", - "AML.T0053", - "AML.T0055", - "AML.T0057" - ], - "mitre_atlas_tactics": [ - "AML.TA0004", - "AML.TA0005", - "AML.TA0010", - "AML.TA0012", - "AML.TA0013" ], - "nist_ai_rmf": [ - "GOVERN-1.4", - "GOVERN-3.2", - "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7" + "attack_vector": "xss", + "affected": "Microsoft 365 Copilot — enterprise email and Teams users", + "impact": "AI-powered phishing inside trusted interface; user trust exploitation; credential theft", + "severity": "Critical", + "mitigations": [ + "Email content sanitization before AI summarization", + "Phishing detection in AI-generated outputs", + "Visual distinction for AI-generated vs original content" ], - "attack_vector": "data-exfiltration", - "affected": "Amazon Bedrock AgentCore Sandbox DNS Escape", - "severity": "Medium", "references": [ { - "title": "AWS", - "url": "https://unit42.paloaltonetworks.com/bypass-of-aws-sandbox-network-isolation-mode/", + "title": "Copilot prompt injection AI email phishing", + "url": "https://permiso.io/blog/copilot-prompt-injection-ai-email-phishing", "type": "research" }, { - "title": "BeyondTrust", - "url": "https://www.beyondtrust.com/blog/entry/pwning-aws-agentcore-code-interpreter", - "type": "research" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26133", + "type": "advisory" + }, + { + "title": "secure@microsoft.com", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26133", + "type": "vendor" } + ], + "tags": [ + "command-injection", + "copilot", + "cve", + "email", + "nvd", + "phishing", + "trust-exploitation", + "xpia" ] }, { - "id": "INC-02300", - "title": "Amazon Q Prompt Poisoning", - "date": "2025-07-13", - "year": 2025, + "id": "INC-01435", + "title": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", + "date": "2026-03-10", + "year": 2026, "category": "real-world", - "description": "Destructive prompt in extension risked file wipes", + "description": "XSS flaw in Microsoft Excel causes Copilot Agent mode to exfiltrate data via unintended network egress. Zero-click: victim does not need to open the file -- processing by Copilot Agent in preview pane or automated workflow triggers the attack. CVSS 7.5. Patched March 10, 2026.", "owasp_entries": [ "LLM01", "LLM02", - "LLM03", - "LLM05", "ASI01", "ASI02", - "ASI04", - "ASI05", + "ASI03", "ASI09" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0011", + "AML.T0012", "AML.T0024", "AML.T0025", + "AML.T0048.001", "AML.T0048.003", - "AML.T0049", "AML.T0050", "AML.T0051", "AML.T0051.000", "AML.T0051.001", "AML.T0053", - "AML.T0057", - "AML.T0060" + "AML.T0057" ], "mitre_atlas_tactics": [ - "AML.TA0003", "AML.TA0004", "AML.TA0005", "AML.TA0010", @@ -19787,260 +5646,343 @@ window.CROSSWALK_INCIDENTS = [ "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.1", + "GOVERN-1.4", "GOVERN-3.2", - "GOVERN-6.1", - "GOVERN-6.2", "MANAGE-2.3", "MAP-2.1", "MAP-3.5", - "MAP-4.1", "MEASURE-2.10", - "MEASURE-2.5", - "MEASURE-2.7" + "MEASURE-2.7", + "MEASURE-2.8" ], - "attack_vector": "other", - "affected": "Amazon Q Prompt Poisoning", - "severity": "Critical", + "attack_vector": "data-exfiltration", + "affected": "Microsoft Excel XSS Weaponizes Copilot Agent (CVE-2026-26144)", + "severity": "High", "references": [ { - "title": "AWS", - "url": "https://aws.amazon.com/security/security-bulletins/AWS-2025-015", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8217", - "type": "advisory" - }, - { - "title": "Embrace The Red", - "url": "https://embracethered.com/blog/posts/2025/amazon-q-developer-data-exfil-via-dns/", + "title": "Microsoft", + "url": "https://www.theregister.com/2026/03/10/zeroclick_microsoft_info_disclosure_bug/", "type": "research" }, { - "title": "MITRE ATLAS — AML.CS0047", - "url": "https://atlas.mitre.org/studies/AML.CS0047", - "type": "research" + "title": "OECD (2026), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2026-03-10-21ff (accessed on 2026-05-11)", + "url": "https://oecd.ai/en/incidents/2026-03-10-21ff", + "type": "reference" }, { - "title": "GitHub commit containing the malicious prompt", - "url": "https://github.com/aws/aws-toolkit-vscode/commit/1294b38b7fade342cfcbaf7cf80e2e5096ea1f9c", - "type": "research" + "title": "Patch Alert: Microsoft Fixes Nearly 80 Bugs, Including Critical Office Flaws", + "url": "https://www.techrepublic.com/article/news-microsoft-march-patch-tuesday-78-vulnerabilities/", + "type": "news" }, { - "title": "404 Media report on the Amazon Q VS Code extension incident", - "url": "https://www.404media.co/hacker-plants-computer-wiping-commands-in-amazons-ai-coding-agent/", - "type": "research" + "title": "Critical 0-Click Microsoft Excel Security Bug Lets Copilot Steal Data", + "url": "https://www.forbes.com/sites/daveywinder/2026/03/11/critical-0-click-microsoft-excel-security-bug-lets-copilot-steal-data/", + "type": "news" }, { - "title": "Medium article detailing the events of the Amazon Q VS Code extension incident", - "url": "https://medium.com/@ismailkovvuru/the-amazon-q-vs-code-prompt-injection-explained-impact-and-learnings-for-devops-3a9d2f752dea", - "type": "research" + "title": "This 'fascinating' Microsoft Excel security flaw teams up spreadsheets and Copilot Agent to steal data", + "url": "https://www.techradar.com/pro/security/this-fascinating-microsoft-excel-security-flaw-teams-up-spreadsheets-and-copilot-agent-to-steal-data", + "type": "news" } ], "tags": [ - "amazon-q", - "atlas", - "case-study", - "dns-exfil", - "real-world" + "oecd-aim" ] }, { - "id": "INC-02321", - "title": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", - "date": "2025-06", - "year": 2025, + "id": "INC-01440", + "title": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", + "date": "2026-03", + "year": 2026, "category": "real-world", - "description": "Path validation bypass, unrestricted git_init (CVSS 8.8), and argument injection in git_diff. Chained with Filesystem MCP, achieved RCE via Git smudge/clean filters. Exploitable via prompt injection through malicious README files or issue descriptions. Reported June 2025, patched December 2025, disclosed January 2026.", + "description": "CVSS 9.9. Critical RCE in Microsoft Semantic Kernel Python SDK's InMemoryVectorStore filter functionality. Attackers execute arbitrary code through crafted filter expressions. Semantic Kernel powers many Microsoft Copilot integrations and RAG-based AI applications. Fixed in python-1.39.4.", "owasp_entries": [ - "LLM01", - "LLM03", + "LLM04", "LLM05", - "LLM06", - "ASI01", + "LLM09", + "LLM10", "ASI02", "ASI04", - "ASI05", - "ASI07" + "ASI05" ], "mitre_atlas": [ "AML.T0010", "AML.T0011", + "AML.T0018", + "AML.T0019", + "AML.T0020", "AML.T0049", "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", "AML.T0053", - "AML.T0060" + "AML.T0059", + "AML.T0060", + "AML.T0066", + "AML.T0070" ], "mitre_atlas_tactics": [ + "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", + "AML.TA0006", + "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-3.2", "GOVERN-6.1", "MANAGE-2.3", - "MAP-2.1", + "MANAGE-3.2", "MAP-3.5", - "MAP-4.1", + "MAP-4.2", "MEASURE-2.5", "MEASURE-2.7" ], "attack_vector": "rce", - "affected": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", - "severity": "High", + "affected": "Microsoft Semantic Kernel RCE (CVE-2026-26030)", + "severity": "Critical", "references": [ { - "title": "The Hacker News", - "url": "https://thehackernews.com/2026/01/three-flaws-in-anthropic-mcp-git-server.html", - "type": "research" - }, - { - "title": "Infosecurity Magazine", - "url": "https://www.infosecurity-magazine.com/news/prompt-injection-bugs-anthropic/", - "type": "analysis" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/cve-2026-26030", + "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-68143", + "title": "GitLab Advisory", + "url": "https://advisories.gitlab.com/pkg/pypi/semantic-kernel/CVE-2026-26030/", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/modelcontextprotocol/servers/commit/eac56e7bcde48fb64d5a973924d05d69a7d876e6", + "url": "https://github.com/microsoft/semantic-kernel/pull/13505", "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://github.com/modelcontextprotocol/servers/security/advisories/GHSA-5cgr-j3jf-jw3v", + "url": "https://github.com/microsoft/semantic-kernel/releases/tag/python-1.39.4", + "type": "reference" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/microsoft/semantic-kernel/security/advisories/GHSA-xjw9-4gw8-4rqx", "type": "vendor" + }, + { + "title": "GHSA-xjw9-4gw8-4rqx", + "url": "https://github.com/advisories/GHSA-xjw9-4gw8-4rqx", + "type": "advisory" + }, + { + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/semantic-kernel/PYSEC-2026-163.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/semantic-kernel/PYSEC-2026-163.yaml", + "type": "reference" } ], "tags": [ - "anthropic", - "chain", - "command-injection", "cve", - "git", - "mcp", + "ghsa", "nvd", - "path-traversal" + "rce", + "semantic-kernel" ] }, { - "id": "INC-02324", - "title": "Anthropic SQLite MCP Server SQL Injection", - "date": "2025-06", - "year": 2025, + "id": "INC-01465", + "title": "Moltbook — vibe-coded social network exposes 1.5M API tokens and 35K emails", + "date": "2026-02", + "year": 2026, "category": "real-world", - "description": "Classic SQL injection in Anthropic's reference SQLite MCP server (direct concatenation of unsanitized input). Despite being archived, forked 5,000+ times. Unpatched code exists in thousands of downstream agents. Anthropic declared \"out of scope.\" SQL injection enables stored-prompt injection for manipulating AI agents.", + "description": "Moltbook, a social network built entirely via vibe coding (zero manual code), exposed 1.5 million API authentication tokens, 35,000 email addresses, and thousands of private messages via an unsecured Supabase database. The AI scaffolded the database with permissive settings; the founder deployed as-is without review.", "owasp_entries": [ - "LLM01", - "LLM03", + "LLM02", + "ASI03", + "ASI09", + "DSGAI01", + "DSGAI02", + "DSGAI08" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0024", + "AML.T0048.001", + "AML.T0048.003", + "AML.T0055", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "maestro_layers": [ + { + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "AI-generated code with insecure default database configuration" + }, + { + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "Unsecured database exposed to public internet" + } + ], + "attack_vector": "other", + "affected": "Moltbook — 1.5M API tokens, 35K emails, private messages", + "impact": "First major real-world vibe-coding security disaster; mass data exposure; trust damage", + "severity": "Critical", + "mitigations": [ + "Automated security scanning of AI-scaffolded applications", + "Database access control defaults", + "Security review of AI-generated infrastructure code before deployment" + ], + "references": [ + { + "title": "Exposed Moltbook database reveals millions of API keys", + "url": "https://www.wiz.io/blog/exposed-moltbook-database-reveals-millions-of-api-keys", + "type": "research" + } + ], + "tags": [ + "ai-generated-code", + "database-exposure", + "insecure-defaults", + "vibe-coding" + ] + }, + { + "id": "INC-01471", + "title": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", + "date": "2026-01", + "year": 2026, + "category": "real-world", + "description": "CVSS 10.0. Content-type confusion in webhook request handling allows unauthenticated attackers to forge uploaded files, read arbitrary local files, forge admin sessions, and execute commands on the host. ~100,000 n8n servers globally affected. If an LLM-powered chatbot node is present, attackers can exfiltrate file contents by chatting with the bot. Fixed in v1.121.0.", + "owasp_entries": [ + "LLM02", "LLM04", + "LLM10", "ASI02", "ASI04", - "ASI06" + "ASI05" ], "mitre_atlas": [ "AML.T0010", - "AML.T0010.001", - "AML.T0010.003", - "AML.T0018", - "AML.T0019", - "AML.T0020", + "AML.T0011", + "AML.T0024", + "AML.T0025", + "AML.T0049", "AML.T0050", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", "AML.T0053", - "AML.T0059", - "AML.T0066" + "AML.T0057", + "AML.T0060" ], "mitre_atlas_tactics": [ - "AML.TA0001", "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", - "AML.TA0011", + "AML.TA0010", "AML.TA0012" ], "nist_ai_rmf": [ "GOVERN-3.2", "GOVERN-6.1", - "GOVERN-6.2", "MANAGE-2.3", - "MANAGE-3.2", - "MAP-2.1", "MAP-3.5", - "MAP-4.1", - "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "prompt-injection", - "affected": "Anthropic SQLite MCP Server SQL Injection", - "severity": "Medium", + "attack_vector": "data-exfiltration", + "affected": "n8n Unauthenticated RCE \"Ni8mare\" (CVE-2026-21858)", + "severity": "Critical", "references": [ { - "title": "Trend Micro", - "url": "https://www.trendmicro.com/en_us/research/25/f/why-a-classic-mcp-server-vulnerability-can-undermine-your-entire-ai-agent.html", - "type": "research" + "title": "NVD", + "url": "https://thehackernews.com/2026/01/critical-n8n-vulnerability-cvss-100.html", + "type": "research" + }, + { + "title": "Cyera Research", + "url": "https://www.cyera.com/research/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026-21858", + "type": "advisory" + }, + { + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-21858", + "type": "advisory" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-v4pr-fm98-w9pg", + "type": "vendor" + }, + { + "title": "security-advisories@github.com", + "url": "https://www.cyera.com/research-labs/ni8mare-unauthenticated-remote-code-execution-in-n8n-cve-2026-21858", + "type": "exploit" + }, + { + "title": "GHSA-v4pr-fm98-w9pg", + "url": "https://github.com/advisories/GHSA-v4pr-fm98-w9pg", + "type": "advisory" } + ], + "tags": [ + "cve", + "ghsa", + "info-disclosure", + "n8n", + "nvd" ] }, { - "id": "INC-02426", - "title": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", - "date": "2025-11-13", - "year": 2025, + "id": "INC-01589", + "title": "OpenClaw AI agent security crisis — 138 CVEs in 63 days, 341 malicious marketplace skills", + "date": "2026-02-01", + "year": 2026, "category": "real-world", - "description": "Anthropic reportedly identified a cyber espionage campaign in which a purported Chinese state-linked group, designated GTG-1002 by Anthropic, allegedly jailbroke Claude Code and used it to automate 80–90% of multi-stage intrusions. The AI reportedly independently performed reconnaissance, vulnerability discovery, exploitation, credential harvesting, and data extraction across roughly 30 targets before the activity was detected and blocked.", + "description": "OpenClaw (135K+ GitHub stars) had over 138 CVEs in 63 days. CVE-2026-25253 (CVSS 8.8) enabled one-click RCE. Over 21,000 publicly exposed instances found. 341 malicious skills (~12% of ClawHub marketplace) performed credential theft and lateral movement across connected enterprise SaaS apps.", "owasp_entries": [ - "LLM01", "LLM02", - "LLM06", - "LLM07", - "LLM09", + "LLM04", "LLM10", - "ASI01", "ASI02", "ASI03", - "ASI06", - "ASI07", - "ASI09", + "ASI04", + "ASI05", "ASI10" ], "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", "AML.T0012", - "AML.T0017", "AML.T0024", - "AML.T0025", - "AML.T0029", "AML.T0048", - "AML.T0048.003", - "AML.T0051", - "AML.T0051.000", - "AML.T0051.001", + "AML.T0049", + "AML.T0050", "AML.T0053", - "AML.T0054", "AML.T0055", - "AML.T0056", "AML.T0057", - "AML.T0058", - "AML.T0066" + "AML.T0060" ], "mitre_atlas_tactics": [ "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0007", "AML.TA0010", "AML.TA0011", "AML.TA0012", @@ -20048,1165 +5990,1671 @@ window.CROSSWALK_INCIDENTS = [ ], "nist_ai_rmf": [ "GOVERN-1.1", - "GOVERN-1.3", "GOVERN-1.4", - "GOVERN-1.5", "GOVERN-3.2", + "GOVERN-6.1", "GOVERN-6.2", - "MANAGE-2.1", "MANAGE-2.3", "MANAGE-2.4", - "MAP-2.1", - "MAP-2.3", "MAP-3.5", "MAP-4.1", "MEASURE-2.10", - "MEASURE-2.11", - "MEASURE-2.4", - "MEASURE-2.7", - "MEASURE-2.8" + "MEASURE-2.5", + "MEASURE-2.7" ], - "attack_vector": "other", - "impact": "Autonomous mass cyberattacks; data exfiltration; vulnerability exploitation at scale; state-sponsored AI weaponization", + "maestro_layers": [ + { + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "138 CVEs in core framework; malicious skills in marketplace" + }, + { + "layer": "L7", + "label": "Agent Ecosystem", + "role": "propagation", + "notes": "12% of marketplace skills are malicious" + }, + { + "layer": "L4", + "label": "Deployment & Infrastructure", + "role": "impact", + "notes": "21,000 exposed instances; lateral movement to SaaS apps" + } + ], + "attack_vector": "rce", + "affected": "OpenClaw — 21,000+ exposed instances; connected enterprise SaaS apps", + "impact": "138 CVEs; 341 malicious marketplace skills; credential theft at scale; enterprise lateral movement", "severity": "Critical", "mitigations": [ - "Abuse detection for multi-step offensive operations", - "Mandatory reporting for suspected state-sponsored abuse", - "Rate limiting and pattern detection for exploit chains" + "Agent framework security auditing", + "Marketplace skill vetting and signing", + "Network isolation for agent instances" ], "references": [ { - "title": "AIID incident #1263", - "url": "https://incidentdatabase.ai/cite/1263/", - "type": "report" + "title": "OpenClaw: The AI agent security crisis", + "url": "https://www.reco.ai/blog/openclaw-the-ai-agent-security-crisis-unfolding-right-now", + "type": "research" }, { - "title": "Disrupting the first reported AI-orchestrated cyber espionage campaign - Anthropic", - "url": "https://www.anthropic.com/news/disrupting-AI-espionage", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25253", + "type": "advisory" + }, + { + "title": "cve@mitre.org", + "url": "https://depthfirst.com/post/1-click-rce-to-steal-your-moltbot-data-and-keys", + "type": "exploit" + }, + { + "title": "cve@mitre.org", + "url": "https://ethiack.com/news/blog/one-click-rce-moltbot", + "type": "exploit" + }, + { + "title": "cve@mitre.org", + "url": "https://github.com/openclaw/openclaw/security/advisories/GHSA-g8p2-7wf7-98mq", "type": "vendor" }, { - "title": "AIRI Navigator — incident 1263", - "url": "https://www.airi-navigator.com/incidents/1263", + "title": "cve@mitre.org", + "url": "https://openclaw.ai/blog", + "type": "reference" + }, + { + "title": "cve@mitre.org", + "url": "https://x.com/0xacb/status/2016913750557651228", + "type": "exploit" + }, + { + "title": "GHSA-g8p2-7wf7-98mq", + "url": "https://github.com/advisories/GHSA-g8p2-7wf7-98mq", + "type": "advisory" + }, + { + "title": "MITRE ATLAS — AML.CS0050", + "url": "https://atlas.mitre.org/studies/AML.CS0050", "type": "research" }, { - "title": "Anthropic Disrupts First Documented Case — Paul Weiss", - "url": "https://www.paulweiss.com/insights/client-memos/anthropic-disrupts-first-documented-case-of-large-scale-ai-orchestrated-cyberattack", - "type": "analysis" + "title": "GHSA-r2c6-8jc8-g32w", + "url": "https://github.com/advisories/GHSA-r2c6-8jc8-g32w", + "type": "advisory" } ], "tags": [ - "abuse", - "agentic", - "agentic-attack", - "ai-post-deployment", - "aiid", - "airi-navigator", - "anthropic", - "apt", - "autonomous-attack", - "autonomous-espionage", - "chemical", - "china", - "claude-code", - "csam", - "espionage", - "eu-ai-act-2-high-risk", - "extortion", - "financial", - "fraud", - "government", - "gtg-1002", - "intentional", - "jailbreak", - "manufacturing", - "state-sponsored", - "threat-report", - "weaponization" + "atlas", + "case-study", + "clawdbot", + "cve", + "enterprise", + "ghsa", + "malicious-skills", + "marketplace", + "mass-cve", + "nvd", + "openclaw", + "rce", + "research" ] }, { - "id": "INC-02435", - "title": "Claude Code DNS Exfiltration (CVE-2025-55284)", - "date": "2025-06", - "year": 2025, + "id": "INC-01637", + "title": "PerplexedBrowser -- Perplexity Comet Agentic Browser Vulnerabilities", + "date": "2026-03", + "year": 2026, "category": "real-world", - "description": "Claude Code's default allowlist of \"safe commands\" included ping and dig, enabling data exfiltration via DNS requests without user confirmation. An attacker could hijack Claude Code via indirect prompt injection, read .env files, and exfiltrate secrets as DNS subdomains. Fixed in v1.0.4.", + "description": "Three separate disclosures: CometJacking (one-click URL manipulation exfiltrates data, LayerX Oct 2025), PerplexedBrowser (zero-click attacks via calendar invites exfiltrate local files and hijack 1Password accounts, Zenity Labs Mar 2026), and Trail of Bits audit (four prompt injection techniques extracting private Gmail data, Feb 2026). All patched.", "owasp_entries": [ "LLM01", - "LLM02", - "LLM03", "ASI01", "ASI02", - "ASI04" + "ASI09" ], "mitre_atlas": [ - "AML.T0010", - "AML.T0024", + "AML.T0048.001", + "AML.T0048.003", "AML.T0050", "AML.T0051", "AML.T0051.000", "AML.T0051.001", - "AML.T0053", - "AML.T0057" + "AML.T0053" ], "mitre_atlas_tactics": [ - "AML.TA0004", "AML.TA0005", - "AML.TA0010", + "AML.TA0011", "AML.TA0012" ], "nist_ai_rmf": [ - "GOVERN-1.1", "GOVERN-3.2", - "GOVERN-6.1", "MANAGE-2.3", "MAP-2.1", "MAP-3.5", - "MEASURE-2.10", - "MEASURE-2.7" + "MEASURE-2.7", + "MEASURE-2.8" ], "attack_vector": "prompt-injection", - "affected": "Claude Code DNS Exfiltration (CVE-2025-55284)", - "severity": "High", + "affected": "PerplexedBrowser", + "severity": "Medium", "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55284", - "type": "advisory" - }, - { - "title": "Embrace The Red", - "url": "https://embracethered.com/blog/posts/2025/claude-code-exfiltration-via-dns-requests/", + "title": "Zenity Labs", + "url": "https://labs.zenity.io/p/perplexedbrowser-perplexity-s-agent-browser-can-leak-your-personal-pc-local-files", "type": "research" - }, - { - "title": "security-advisories@github.com", - "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-x5gv-jw7f-j6xj", - "type": "vendor" - }, - { - "title": "GHSA-x5gv-jw7f-j6xj", - "url": "https://github.com/advisories/GHSA-x5gv-jw7f-j6xj", - "type": "advisory" - } - ], - "tags": [ - "anthropic", - "anthropic-ai-claude-code", - "cve", - "ghsa", - "nvd" + } ] }, { - "id": "INC-02443", - "title": "Vulnerable juju hook tool abstract UNIX domain socket", - "date": "2024-10", - "year": 2024, - "category": "vulnerability-disclosure", - "description": "### Impact When combined with an attack of `JUJU_CONTEXT_ID`, any user on the local system with access to the default network namespace may connect to the `@/var/lib/juju/agents/unit-xxxx-yyyy/agent.socket` and perform actions that are normally reserved to a juju charm. ### Patches Patch: https://github.com/juju/juju/commit/2f2ec128ef5a8ca81fc86ae79cfcdbab0007c206 Patched in: - 3.5.4 - 3.4.6 - 3.3.7 - 3.1.10 - 2.9.51 ### Workarounds No workarounds available. ### References [GHSA-mh98-763h-m9v4](https://github.com/juju/juju/security/advisories/GHSA-mh98-763h-m9v4) https://github.com/juju/juju/blob/725800953aaa29dbeda4f806097bf838e61644dd/worker/uniter/paths.go#L222", + "id": "INC-01666", + "title": "PraisonAI Quadruple CVE Disclosure", + "date": "2026-04", + "year": 2026, + "category": "real-world", + "description": "Four critical/high vulnerabilities in PraisonAI multi-agent framework: CVE-2026-39888 (CVSS 9.9) sandbox escape via exception frame traversal; CVE-2026-39890 (CVSS 9.8) RCE via YAML deserialization with `!!js/function` tags; CVE-2026-39891 (CVSS 8.8) template injection in agent tool definitions; CVE-2026-39889 (CVSS 7.5) unauthenticated SSE event stream exposes all agent activity. Fixed in 4.5.115.", "owasp_entries": [ - "LLM02", - "LLM03", "LLM04", - "LLM05", - "LLM06", + "LLM10", "ASI02", "ASI03", "ASI04", "ASI05", - "ASI10" + "ASI07" ], "mitre_atlas": [ "AML.T0010", "AML.T0010.001", "AML.T0011", "AML.T0012", - "AML.T0020", - "AML.T0024", - "AML.T0048", "AML.T0049", "AML.T0050", - "AML.T0051", - "AML.T0051.000", "AML.T0053", - "AML.T0057", + "AML.T0055", "AML.T0060" ], "mitre_atlas_tactics": [ "AML.TA0003", "AML.TA0004", "AML.TA0005", - "AML.TA0006", - "AML.TA0010", - "AML.TA0011", - "AML.TA0012" + "AML.TA0012", + "AML.TA0013" ], "nist_ai_rmf": [ - "GOVERN-1.1", "GOVERN-1.4", "GOVERN-3.2", "GOVERN-6.1", - "GOVERN-6.2", "MANAGE-2.3", - "MANAGE-2.4", - "MANAGE-3.1", - "MAP-2.1", "MAP-3.5", - "MAP-4.2", - "MEASURE-2.10", + "MAP-4.1", "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "other", - "affected": "go/github.com/juju/juju", + "attack_vector": "rce", + "affected": "PraisonAI Quadruple CVE Disclosure", "severity": "Critical", "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8037", - "type": "advisory" - }, - { - "title": "GHSA-8v4w-f4r9-7h6x", - "url": "https://github.com/advisories/GHSA-8v4w-f4r9-7h6x", - "type": "advisory" - }, - { - "title": "https://github.com/juju/juju/security/advisories/GHSA-8v4w-f4r9-7h6x", - "url": "https://github.com/juju/juju/security/advisories/GHSA-8v4w-f4r9-7h6x", - "type": "reference" - }, - { - "title": "https://github.com/juju/juju/security/advisories/GHSA-mh98-763h-m9v4", - "url": "https://github.com/juju/juju/security/advisories/GHSA-mh98-763h-m9v4", - "type": "reference" - }, - { - "title": "https://github.com/juju/juju/commit/2f2ec128ef5a8ca81fc86ae79cfcdbab0007c206", - "url": "https://github.com/juju/juju/commit/2f2ec128ef5a8ca81fc86ae79cfcdbab0007c206", - "type": "reference" - }, - { - "title": "https://github.com/juju/juju/blob/725800953aaa29dbeda4f806097bf838e61644dd/worker/uniter/paths.go#L222", - "url": "https://github.com/juju/juju/blob/725800953aaa29dbeda4f806097bf838e61644dd/worker/uniter/paths.go#L222", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-7558", - "type": "advisory" - }, - { - "title": "GHSA-mh98-763h-m9v4", - "url": "https://github.com/advisories/GHSA-mh98-763h-m9v4", - "type": "advisory" - }, - { - "title": "https://github.com/juju/juju/commit/ecd7e2d0e9867576b9da04871e22232f06fa0cc7", - "url": "https://github.com/juju/juju/commit/ecd7e2d0e9867576b9da04871e22232f06fa0cc7", - "type": "reference" - }, - { - "title": "https://pkg.go.dev/vuln/GO-2024-3173", - "url": "https://pkg.go.dev/vuln/GO-2024-3173", - "type": "reference" - }, - { - "title": "GHSA-fc27-7pf5-96v3", - "url": "https://github.com/advisories/GHSA-fc27-7pf5-96v3", - "type": "advisory" - }, - { - "title": "https://www.cve.org/CVERecord?id=CVE-2024-8037", - "url": "https://www.cve.org/CVERecord?id=CVE-2024-8037", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23334", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5687", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23320", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23319", - "type": "advisory" - }, - { - "title": "Wiz analysis", - "url": "https://www.wiz.io/blog/nvidia-triton-cve-2025-23319-vuln-chain-to-ai-server", - "type": "analysis" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23311", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23310", - "type": "advisory" - }, - { - "title": "GHSA-h2wf-vc6w-xq48", - "url": "https://github.com/advisories/GHSA-h2wf-vc6w-xq48", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33226", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5736", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33212", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-68613", - "type": "advisory" - }, - { - "title": "Intel 471", - "url": "https://www.intel471.com/blog/cve-2025-68613-zerobot-botnet-exploits-critical-vulnerability-impacting-n8n-ai-orchestration-platform", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24162", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5838", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24206", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5828", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24207", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24208", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24209", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24210", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24213", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24214", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24215", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-44587", - "type": "advisory" - }, - { - "title": "GHSA-7g26-2qgj-chfg", - "url": "https://github.com/advisories/GHSA-7g26-2qgj-chfg", - "type": "advisory" - }, - { - "title": "https://github.com/carrierwaveuploader/carrierwave/security/advisories/GHSA-7g26-2qgj-chfg", - "url": "https://github.com/carrierwaveuploader/carrierwave/security/advisories/GHSA-7g26-2qgj-chfg", - "type": "reference" - }, - { - "title": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/carrierwave/CVE-2026-44587.yml", - "url": "https://github.com/rubysec/ruby-advisory-db/blob/master/gems/carrierwave/CVE-2026-44587.yml", - "type": "reference" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24146", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5816", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24147", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24173", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24174", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24175", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24222", + "title": "GitLab Advisory", + "url": "https://advisories.gitlab.com/pkg/pypi/praisonai/CVE-2026-39890/", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5837", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24231", + "title": "TheHackerWire", + "url": "https://www.thehackerwire.com/critical-praisonai-sandbox-escape-rce-cve-2026-39888/", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-62188", - "type": "advisory" - }, - { - "title": "GHSA-3cjc-vhfm-ffp2", - "url": "https://github.com/advisories/GHSA-3cjc-vhfm-ffp2", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39891", "type": "advisory" }, { - "title": "https://lists.apache.org/thread/ffrmkcwgr2lcz0f5nnnyswhpn3fytsvo", - "url": "https://lists.apache.org/thread/ffrmkcwgr2lcz0f5nnnyswhpn3fytsvo", - "type": "reference" - }, - { - "title": "https://github.com/apache/dolphinscheduler/releases/tag/3.0.2", - "url": "https://github.com/apache/dolphinscheduler/releases/tag/3.0.2", - "type": "reference" - }, - { - "title": "GHSA-32wq-ppwg-3w4m", - "url": "https://github.com/advisories/GHSA-32wq-ppwg-3w4m", + "title": "GHSA-hwg5-x759-7wjg", + "url": "https://github.com/advisories/GHSA-hwg5-x759-7wjg", "type": "advisory" }, { - "title": "https://github.com/alastairlundy/EnhancedLinq/security/advisories/GHSA-32wq-ppwg-3w4m", - "url": "https://github.com/alastairlundy/EnhancedLinq/security/advisories/GHSA-32wq-ppwg-3w4m", + "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-hwg5-x759-7wjg", + "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-hwg5-x759-7wjg", "type": "reference" }, { - "title": "https://github.com/dotnet/announcements/issues/384", - "url": "https://github.com/dotnet/announcements/issues/384", + "title": "https://github.com/MervinPraison/PraisonAI/releases/tag/v4.5.115", + "url": "https://github.com/MervinPraison/PraisonAI/releases/tag/v4.5.115", "type": "reference" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33238", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5790", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33254", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24158", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24141", - "type": "advisory" - }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5798", - "type": "reference" + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39889", + "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33244", + "title": "GHSA-f292-66h9-fpmf", + "url": "https://github.com/advisories/GHSA-f292-66h9-fpmf", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5782", + "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-f292-66h9-fpmf", + "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-f292-66h9-fpmf", "type": "reference" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24157", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39888", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5800", - "type": "vendor" - }, - { - "title": "GHSA-m4jw-wgmf-889x", - "url": "https://github.com/advisories/GHSA-m4jw-wgmf-889x", + "title": "GHSA-qf73-2hrx-xprp", + "url": "https://github.com/advisories/GHSA-qf73-2hrx-xprp", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-24159", - "type": "advisory" + "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qf73-2hrx-xprp", + "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qf73-2hrx-xprp", + "type": "reference" }, { - "title": "GHSA-v7v2-m736-cf3c", - "url": "https://github.com/advisories/GHSA-v7v2-m736-cf3c", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-39890", "type": "advisory" }, { - "title": "GHSA-8fh9-c4jq-94h4", - "url": "https://github.com/advisories/GHSA-8fh9-c4jq-94h4", + "title": "GHSA-32vr-5gcf-3pw2", + "url": "https://github.com/advisories/GHSA-32vr-5gcf-3pw2", "type": "advisory" }, { - "title": "https://github.com/blowdart/idunno.Bluesky/security/advisories/GHSA-8fh9-c4jq-94h4", - "url": "https://github.com/blowdart/idunno.Bluesky/security/advisories/GHSA-8fh9-c4jq-94h4", + "title": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-32vr-5gcf-3pw2", + "url": "https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-32vr-5gcf-3pw2", "type": "reference" - }, + } + ], + "tags": [ + "cve", + "deserialization", + "ghsa", + "path-traversal", + "praisonai", + "praisonaiagents", + "rce" + ] + }, + { + "id": "INC-01723", + "title": "Anyscale Ray LFI via /static/ directory (missing authorization)", + "date": "2023-09-05", + "year": 2023, + "category": "real-world", + "description": "Local file inclusion in Ray's /static/ directory allows attackers to read any file on the server without authentication. Fixed in 2.8.1+.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", + "LLM04", + "LLM10", + "ASI01", + "ASI04", + "ASI05", + "DSGAI08" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0011", + "AML.T0018", + "AML.T0040", + "AML.T0048", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0000", + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.1", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "path-traversal", + "affected": "ray < 2.8.1", + "impact": "Cluster-wide malware propagation; cryptocurrency mining hijack; compute resource theft", + "severity": "Critical", + "mitigations": [ + "Authentication on job submission APIs", + "Network segmentation for AI compute clusters", + "Patch Ray framework promptly" + ], + "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26130", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6020", "type": "advisory" }, { - "title": "GHSA-4vgm-c2wm-63mw", - "url": "https://github.com/advisories/GHSA-4vgm-c2wm-63mw", + "title": "GHSA-6cxr-8q3m-jwrr", + "url": "https://github.com/advisories/GHSA-6cxr-8q3m-jwrr", "type": "advisory" }, { - "title": "https://github.com/dotnet/aspnetcore/security/advisories/GHSA-4vgm-c2wm-63mw", - "url": "https://github.com/dotnet/aspnetcore/security/advisories/GHSA-4vgm-c2wm-63mw", + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/83dd8619-6dc3-4c98-8f1b-e620fedcd1f6", + "type": "exploit" + }, + { + "title": "https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023", + "url": "https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023", "type": "reference" }, { - "title": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26130", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26130", + "title": "https://github.com/ray-project/ray/releases/tag/ray-2.8.1", + "url": "https://github.com/ray-project/ray/releases/tag/ray-2.8.1", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33236", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6cxr-8q3m-jwrr", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5762", - "type": "vendor" + "title": "https://github.com/ray-project/ray", + "url": "https://github.com/ray-project/ray", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33241", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-516", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33243", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6021", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33245", + "title": "GHSA-3pww-qvr8-6mhp", + "url": "https://github.com/advisories/GHSA-3pww-qvr8-6mhp", "type": "advisory" }, { - "title": "GHSA-9379-mwvr-7wxx", - "url": "https://github.com/advisories/GHSA-9379-mwvr-7wxx", - "type": "advisory" + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/5039c045-f986-4cbc-81ac-370fe4b0d3f8", + "type": "exploit" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33246", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-3pww-qvr8-6mhp", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33249", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-515", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33250", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6019", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33251", + "title": "GHSA-h3xg-wv58-5p43", + "url": "https://github.com/advisories/GHSA-h3xg-wv58-5p43", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33252", - "type": "advisory" + "title": "security@huntr.dev", + "url": "https://huntr.com/bounties/d0290f3c-b302-4161-89f2-c13bb28b4cfe", + "type": "exploit" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33253", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-h3xg-wv58-5p43", "type": "advisory" }, { - "title": "GHSA-hvjw-vp7g-39h5", - "url": "https://github.com/advisories/GHSA-hvjw-vp7g-39h5", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-519", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33233", - "type": "advisory" + "title": "ShadowRay: First Known Attack Campaign Targeting AI Workloads - Oligo", + "url": "https://www.oligo.security/blog/shadowray-attack-ai-workloads-actively-exploited-in-the-wild", + "type": "research" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5761", - "type": "reference" + "title": "CVE-2023-48022 Anyscale Ray Dashboard RCE - Censys", + "url": "https://censys.com/advisory/cve-2023-48022", + "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33213", - "type": "advisory" + "title": "MITRE ATLAS — AML.CS0023", + "url": "https://atlas.mitre.org/studies/AML.CS0023", + "type": "research" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5739", - "type": "reference" + "title": "ShadowRay: AI Infrastructure Is Being Exploited In the Wild", + "url": "https://protectai.com/threat-research/shadowray-ai-infrastructure-is-being-exploited-in-the-wild", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33201", - "type": "advisory" + "title": "CVE-2023-48022", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-48022", + "type": "research" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5734", - "type": "vendor" + "title": "ShadowRay 2.0: AI turned against itself", + "url": "https://www.oligo.security/blog/shadowray-2-0-attackers-turn-ai-against-itself-in-global-campaign-that-hijacks-ai-into-self-propagating-botnet", + "type": "research" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/08f332015153decdda3c37ad4fcb9f7ba13a7c79", - "type": "patch" + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-32981", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/1c933358acef527ff61466e53268b41a04be1000", - "type": "patch" + "title": "GHSA-j3mh-qmjj-xp83", + "url": "https://github.com/advisories/GHSA-j3mh-qmjj-xp83", + "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/39a2d1d60edde89674ca96dcbb3eb076ffff6316", - "type": "patch" + "title": "https://packetstorm.news/files/id/215801/", + "url": "https://packetstorm.news/files/id/215801/", + "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-v98v-ff95-f3cp", - "type": "vendor" + "title": "https://www.vulncheck.com/advisories/ray-dashboard-path-traversal-leading-to-local-file-disclosure", + "url": "https://www.vulncheck.com/advisories/ray-dashboard-path-traversal-leading-to-local-file-disclosure", + "type": "reference" }, { - "title": "134c704f-9b21-4f2e-91b3-4a467353bcc0", - "url": "https://www.akamai.com/blog/security-research/2026/feb/zerobot-malware-targets-n8n-automation-platform", - "type": "exploit" + "title": "https://github.com/pypa/advisory-database/tree/main/vulns/ray/PYSEC-2026-130.yaml", + "url": "https://github.com/pypa/advisory-database/tree/main/vulns/ray/PYSEC-2026-130.yaml", + "type": "reference" }, { - "title": "GHSA-v98v-ff95-f3cp", - "url": "https://github.com/advisories/GHSA-v98v-ff95-f3cp", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-j3mh-qmjj-xp83", "type": "advisory" }, { - "title": "Endor Labs", - "url": "https://www.endorlabs.com/learn/cve-2026-25049-n8n-rce", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-130", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25049", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27482", "type": "advisory" }, { "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/7860896909b3d42993a36297f053d2b0e633235d", + "url": "https://github.com/ray-project/ray/commit/0fda8b824cdc9dc6edd763bb28dfd7d1cc9b02a4", "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/936c06cfc1ad269a89e8ef7f8ac79c104436d54b", + "url": "https://github.com/ray-project/ray/pull/60526", "type": "patch" }, { "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-6cqr-8cfr-67f8", + "url": "https://github.com/ray-project/ray/releases/tag/ray-2.54.0", + "type": "reference" + }, + { + "title": "security-advisories@github.com", + "url": "https://github.com/ray-project/ray/security/advisories/GHSA-q5fh-2hc8-f6rq", "type": "vendor" }, { - "title": "GHSA-6cqr-8cfr-67f8", - "url": "https://github.com/advisories/GHSA-6cqr-8cfr-67f8", + "title": "GHSA-q5fh-2hc8-f6rq", + "url": "https://github.com/advisories/GHSA-q5fh-2hc8-f6rq", + "type": "advisory" + }, + { + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-q5fh-2hc8-f6rq", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27577", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-34351", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://docs.n8n.io/hosting/securing/overview", + "title": "GHSA-gx77-xgc2-4888", + "url": "https://github.com/advisories/GHSA-gx77-xgc2-4888", + "type": "advisory" + }, + { + "title": "https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-w8vc-465m-jjw6", + "url": "https://github.com/JLLeitschuh/security-research/security/advisories/GHSA-w8vc-465m-jjw6", "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/1479aab2d32fe0ee087f82b9038b1035c98be2f6", - "type": "patch" + "title": "https://docs.ray.io/en/latest/ray-security/token-auth.html", + "url": "https://docs.ray.io/en/latest/ray-security/token-auth.html", + "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/9e5212ecbc5d2d4e6f340b636a5e84be6369882e", - "type": "patch" + "title": "https://www.vulncheck.com/advisories/anyscale-ray-token-authentication-disabled-by-default-insecure-configuration", + "url": "https://www.vulncheck.com/advisories/anyscale-ray-token-authentication-disabled-by-default-insecure-configuration", + "type": "reference" + }, + { + "title": "https://github.com/ray-project/ray/releases/tag/ray-2.52.0", + "url": "https://github.com/ray-project/ray/releases/tag/ray-2.52.0", + "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-vpcf-gvg4-6qwr", - "type": "vendor" + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-gx77-xgc2-4888", + "type": "advisory" }, { - "title": "GHSA-vpcf-gvg4-6qwr", - "url": "https://github.com/advisories/GHSA-vpcf-gvg4-6qwr", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-518", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-27578", + "title": "GHSA-6wgj-66m2-xxp2", + "url": "https://github.com/advisories/GHSA-6wgj-66m2-xxp2", "type": "advisory" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/commit/062644ef786b6af480afe4a0f12bc6d70040534a", - "type": "patch" + "title": "https://bishopfox.com/blog/ray-versions-2-6-3-2-8-0", + "url": "https://bishopfox.com/blog/ray-versions-2-6-3-2-8-0", + "type": "reference" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-2p9h-rqjw-gm92", - "type": "vendor" + "title": "https://docs.ray.io/en/latest/ray-security/index.html", + "url": "https://docs.ray.io/en/latest/ray-security/index.html", + "type": "reference" }, { - "title": "GHSA-2p9h-rqjw-gm92", - "url": "https://github.com/advisories/GHSA-2p9h-rqjw-gm92", - "type": "advisory" + "title": "https://www.vicarius.io/vsociety/posts/shadowray-cve-2023-48022-exploit", + "url": "https://www.vicarius.io/vsociety/posts/shadowray-cve-2023-48022-exploit", + "type": "reference" }, { - "title": "GHSA-jh8h-6c9q-7gmw", - "url": "https://github.com/advisories/GHSA-jh8h-6c9q-7gmw", + "title": "OSV", + "url": "https://osv.dev/vulnerability/GHSA-6wgj-66m2-xxp2", "type": "advisory" }, { - "title": "https://github.com/n8n-io/n8n/security/advisories/GHSA-jh8h-6c9q-7gmw", - "url": "https://github.com/n8n-io/n8n/security/advisories/GHSA-jh8h-6c9q-7gmw", + "title": "https://github.com/ray-project/ray/commit/978947083b1e192dba61ef653c863b11d56b0936", + "url": "https://github.com/ray-project/ray/commit/978947083b1e192dba61ef653c863b11d56b0936", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-66516", - "type": "advisory" + "title": "https://console.vulncheck.com/cve/CVE-2023-48022", + "url": "https://console.vulncheck.com/cve/CVE-2023-48022", + "type": "reference" }, { - "title": "GHSA-f58c-gq56-vjjf", - "url": "https://github.com/advisories/GHSA-f58c-gq56-vjjf", + "title": "OSV", + "url": "https://osv.dev/vulnerability/PYSEC-2026-517", "type": "advisory" - }, + } + ], + "tags": [ + "atlas", + "botnet", + "case-study", + "command-injection", + "credential-exfiltration", + "crypto-mining", + "cryptojacking", + "cve", + "cve-2023-48022", + "dashboard", + "exploited-in-the-wild", + "ghsa", + "info-disclosure", + "infrastructure", + "lfi", + "log-api", + "mlops", + "nvd", + "osv", + "path-traversal", + "ray", + "ray-project", + "rce", + "real-world", + "self-spreading", + "shadowray", + "supply-chain" + ] + }, + { + "id": "INC-01769", + "title": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "date": "2026-03", + "year": 2026, + "category": "real-world", + "description": "Two CVSS 9.8 unauthenticated RCE vulnerabilities via unsafe pickle.loads() deserialization in ZeroMQ broker and disaggregation modules. CVE-2026-3989 (CVSS 7.8): insecure pickle.load() in replay_request_dump.py. Unpatched as of disclosure.", + "owasp_entries": [ + "LLM04", + "LLM10", + "ASI02", + "ASI03", + "ASI04", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0011", + "AML.T0012", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0055", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.3", + "MAP-3.5", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "rce", + "affected": "SGLang Triple RCE (CVE-2026-3059, CVE-2026-3060, CVE-2026-3989)", + "severity": "Critical", + "references": [ { - "title": "https://lists.apache.org/thread/s5x3k93nhbkqzztp1olxotoyjpdlps9k", - "url": "https://lists.apache.org/thread/s5x3k93nhbkqzztp1olxotoyjpdlps9k", - "type": "reference" + "title": "The Hacker News", + "url": "https://thehackernews.com/2026/03/ai-flaws-in-amazon-bedrock-langsmith.html", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33204", + "title": "SentinelOne", + "url": "https://www.sentinelone.com/vulnerability-database/cve-2026-25528/", "type": "advisory" }, - { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5729", - "type": "vendor" - }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33202", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25750", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5723", + "title": "security-advisories@github.com", + "url": "https://github.com/langchain-ai/helm/security/advisories/GHSA-r8wq-jwgw-p74g", "type": "vendor" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23361", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3059", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5718", - "type": "vendor" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33178", - "type": "advisory" + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/multimodal_gen/runtime/scheduler_client.py", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33203", - "type": "advisory" + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/pull/20904", + "type": "reference" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5726", + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/releases/tag/v0.5.10", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-33205", - "type": "advisory" + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/security/advisories/GHSA-3cp7-c6q2-94xr", + "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-59828", - "type": "advisory" + "title": "cret@cert.org", + "url": "https://orca.security/resources/blog/sglang-llm-framework-rce-vulnerabilities/", + "type": "exploit" }, { - "title": "security-advisories@github.com", - "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-2jjv-qf24-vfm4", + "title": "GHSA-rgq9-fqf5-fv58", + "url": "https://github.com/advisories/GHSA-rgq9-fqf5-fv58", "type": "advisory" }, { - "title": "GHSA-2jjv-qf24-vfm4", - "url": "https://github.com/advisories/GHSA-2jjv-qf24-vfm4", + "title": "NVD", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3060", "type": "advisory" }, { - "title": "https://osv.dev/vulnerability/GHSA-2jjv-qf24-vfm4", - "url": "https://osv.dev/vulnerability/GHSA-2jjv-qf24-vfm4", + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/blob/main/python/sglang/srt/disaggregation/encode_receiver.py", "type": "reference" }, { - "title": "https://yarnpkg.com/advanced/plugin-tutorial", - "url": "https://yarnpkg.com/advanced/plugin-tutorial", - "type": "reference" + "title": "GHSA-jx93-g359-86wm", + "url": "https://github.com/advisories/GHSA-jx93-g359-86wm", + "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23298", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3989", "type": "advisory" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5683", + "title": "cret@cert.org", + "url": "https://github.com/sgl-project/sglang/blob/main/scripts/playground/replay_request_dump.py", "type": "reference" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23317", + "title": "GHSA-hvwj-8w5g-28rg", + "url": "https://github.com/advisories/GHSA-hvwj-8w5g-28rg", "type": "advisory" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23318", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25528", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23321", + "title": "GHSA-v34v-rq6j-cj6p", + "url": "https://github.com/advisories/GHSA-v34v-rq6j-cj6p", "type": "advisory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23322", - "type": "advisory" - }, + "title": "https://github.com/langchain-ai/langsmith-sdk/security/advisories/GHSA-v34v-rq6j-cj6p", + "url": "https://github.com/langchain-ai/langsmith-sdk/security/advisories/GHSA-v34v-rq6j-cj6p", + "type": "reference" + } + ], + "tags": [ + "cve", + "deserialization", + "ghsa", + "langchain", + "langsmith", + "nvd", + "sglang", + "ssrf" + ] + }, + { + "id": "INC-02058", + "title": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "date": "2026-01", + "year": 2026, + "category": "real-world", + "description": "AI-powered IDEs (Cursor, Windsurf, Google Antigravity, Trae) forked from VS Code inherit hardcoded recommended extension lists pointing to VS Code Marketplace. These IDEs use OpenVSX, where those extension namespaces were unclaimed. Attackers could register them and publish malware that users would install via built-in recommendations.", + "owasp_entries": [ + "LLM04", + "ASI04" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003" + ], + "mitre_atlas_tactics": [ + "AML.TA0004" + ], + "nist_ai_rmf": [ + "GOVERN-6.1", + "GOVERN-6.2", + "MAP-4.1" + ], + "attack_vector": "supply-chain", + "affected": "VS Code Forks OpenVSX Extension Recommendations Supply Chain Risk", + "severity": "Medium", + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23323", - "type": "advisory" - }, + "title": "The Hacker News", + "url": "https://thehackernews.com/2026/01/vs-code-forks-recommend-missing.html", + "type": "research" + } + ] + }, + { + "id": "INC-02105", + "title": "XBOW — first critical CVE discovered entirely by autonomous AI penetration testing agent", + "date": "2026-03", + "year": 2026, + "category": "research-demonstrated", + "description": "CVE-2026-21536, a critical vulnerability in Microsoft Devices Pricing Program, was discovered entirely by XBOW's autonomous AI penetration testing agent. XBOW agents have submitted 1,060+ vulnerabilities on HackerOne, executed 48-step exploit chains, and matched a principal pentester's 40-hour assessment in 28 minutes.", + "owasp_entries": [ + "LLM03", + "ASI05", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0011", + "AML.T0048", + "AML.T0049", + "AML.T0050", + "AML.T0053" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0005", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MAP-3.5", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23324", - "type": "advisory" + "layer": "L3", + "label": "Agent Frameworks", + "role": "origin", + "notes": "Autonomous AI agent discovers and validates vulnerabilities" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23325", - "type": "advisory" - }, + "layer": "L6", + "label": "Security & Compliance", + "role": "impact", + "notes": "First critical CVE attributed to autonomous AI agent" + } + ], + "attack_vector": "other", + "affected": "Microsoft Devices Pricing Program; broader implications for AI-discovered vulnerabilities", + "impact": "Paradigm shift in vulnerability discovery; 48-step exploit chains automated; 40-hour → 28-minute assessment", + "severity": "Critical", + "mitigations": [ + "Ethical guidelines for autonomous security testing", + "Rate limiting for automated vulnerability scanning", + "Responsible disclosure frameworks for AI-discovered vulnerabilities" + ], + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23326", - "type": "advisory" + "title": "XBOW: Three RCE vulnerabilities in Microsoft", + "url": "https://xbow.com/blog/three-rce-vulnerabilities-in-microsoft-identified-xbow", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23327", + "title": "Microsoft", + "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21536", "type": "advisory" - }, + } + ], + "tags": [ + "ai-agent", + "autonomous-pentest", + "cve-discovery", + "vulnerability-research" + ] + }, + { + "id": "INC-02186", + "title": "Agent-in-the-Middle — A2A protocol spoofing via fake agent cards", + "date": "2025-04", + "year": 2025, + "category": "research-demonstrated", + "description": "Malicious agent published fake agent card in open A2A directory falsely claiming high trust. LLM judge agent selected it, enabling rogue agent to intercept sensitive data and leak to unauthorized parties.", + "owasp_entries": [ + "LLM02", + "LLM05", + "LLM07", + "LLM10", + "ASI03", + "ASI06", + "ASI07", + "ASI08", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0024", + "AML.T0048", + "AML.T0048.001", + "AML.T0049", + "AML.T0050", + "AML.T0053", + "AML.T0055", + "AML.T0057", + "AML.T0058", + "AML.T0059", + "AML.T0060", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.4", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-2.4", + "MANAGE-3.2", + "MANAGE-4.1", + "MANAGE-4.3", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "maestro_layers": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23331", - "type": "advisory" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "Fake agent card published in open directory" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23333", - "type": "advisory" - }, + "layer": "L3", + "label": "Agent Frameworks", + "role": "propagation", + "notes": "LLM judge trusts falsified trust claims" + } + ], + "attack_vector": "rce", + "affected": "Agent-2-Agent (A2A) protocol — multi-agent workflows", + "impact": "Data interception; trust violation; cascading agent compromise", + "severity": "Critical", + "mitigations": [ + "Agent card signing and validation", + "Cryptographic agent identity verification", + "Multi-factor trust assessment (not just self-declared)" + ], + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23335", - "type": "advisory" - }, + "title": "Agent-in-the-Middle: Abusing agent cards in A2A protocol", + "url": "https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/agent-in-the-middle-abusing-agent-cards-in-the-agent-2-agent-protocol-to-win-all-the-tasks", + "type": "research" + } + ], + "tags": [ + "a2a", + "agent-directory", + "mitm", + "multi-agent", + "trust-spoofing" + ] + }, + { + "id": "INC-02190", + "title": "AgentSeal MCP server mass scan — 66% of 1,808 servers have security findings", + "date": "2025", + "year": 2025, + "category": "research-demonstrated", + "description": "Scan of 1,808 MCP servers: 66% had at least one security finding. 43% had shell/command injection, 20% tooling infrastructure flaws, 13% authentication bypasses, 10% path traversal. Critical findings demonstrated ability to execute arbitrary code with no user interaction.", + "owasp_entries": [ + "LLM04", + "LLM10", + "ASI02", + "ASI03", + "ASI04", + "ASI05" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0012", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0053", + "AML.T0055", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "maestro_layers": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23303", - "type": "advisory" + "layer": "L7", + "label": "Agent Ecosystem", + "role": "origin", + "notes": "Systemic insecurity across MCP server ecosystem" }, { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5686", - "type": "vendor" - }, + "layer": "L3", + "label": "Agent Frameworks", + "role": "impact", + "notes": "66% of servers vulnerable to code execution or data theft" + } + ], + "attack_vector": "command-injection", + "affected": "MCP server ecosystem — 1,808 servers scanned, 66% vulnerable", + "impact": "Systemic risk to AI agent infrastructure; arbitrary code execution at scale", + "severity": "Critical", + "mitigations": [ + "Automated vulnerability scanning for MCP servers", + "Community security baseline standards", + "MCP server security certification program" + ], + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23304", - "type": "advisory" - }, + "title": "AgentSeal MCP server security findings", + "url": "https://agentseal.org/blog/mcp-server-security-findings", + "type": "research" + } + ], + "tags": [ + "command-injection", + "ecosystem-security", + "mass-scan", + "mcp", + "systemic-risk" + ] + }, + { + "id": "INC-02191", + "title": "AgentSmith Prompt-Hub Proxy Attack", + "date": "2025-06", + "year": 2025, + "category": "real-world", + "description": "Proxy prompt agent exfiltrated API keys", + "owasp_entries": [ + "LLM04", + "ASI04" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0024", + "AML.T0025", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0010" + ], + "nist_ai_rmf": [ + "GOVERN-6.1", + "GOVERN-6.2", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "attack_vector": "data-exfiltration", + "affected": "AgentSmith Prompt-Hub Proxy Attack", + "severity": "Medium", + "references": [ { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23307", - "type": "advisory" - }, + "title": "Noma Security", + "url": "https://noma.security/blog/how-an-ai-agent-vulnerability-in-langsmith-could-lead-to-stolen-api-keys-and-hijacked-llm-responses", + "type": "research" + } + ] + }, + { + "id": "INC-02297", + "title": "Amazon Bedrock AgentCore Sandbox DNS Escape", + "date": "2025-09", + "year": 2025, + "category": "real-world", + "description": "AgentCore Code Interpreter's \"Sandbox\" mode (advertised as \"complete isolation\") allows outbound DNS queries. Attackers can establish bidirectional C2 channels and exfiltrate data via DNS tunneling. AWS declined to fix, reclassifying as \"intended functionality.\" Independently confirmed by Palo Alto Unit42.", + "owasp_entries": [ + "ASI02", + "ASI03" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0024", + "AML.T0025", + "AML.T0050", + "AML.T0053", + "AML.T0055", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.4", + "GOVERN-3.2", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "attack_vector": "data-exfiltration", + "affected": "Amazon Bedrock AgentCore Sandbox DNS Escape", + "severity": "Medium", + "references": [ { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5690", - "type": "vendor" + "title": "AWS", + "url": "https://unit42.paloaltonetworks.com/bypass-of-aws-sandbox-network-isolation-mode/", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23312", - "type": "advisory" - }, + "title": "BeyondTrust", + "url": "https://www.beyondtrust.com/blog/entry/pwning-aws-agentcore-code-interpreter", + "type": "research" + } + ] + }, + { + "id": "INC-02300", + "title": "Amazon Q Prompt Poisoning", + "date": "2025-07-13", + "year": 2025, + "category": "real-world", + "description": "Destructive prompt in extension risked file wipes", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", + "LLM10", + "ASI01", + "ASI02", + "ASI04", + "ASI05", + "ASI09" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0011", + "AML.T0024", + "AML.T0025", + "AML.T0048.003", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-3.2", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "other", + "affected": "Amazon Q Prompt Poisoning", + "severity": "Critical", + "references": [ { - "title": "psirt@nvidia.com", - "url": "https://nvidia.custhelp.com/app/answers/detail/a_id/5689", + "title": "AWS", + "url": "https://aws.amazon.com/security/security-bulletins/AWS-2025-015", "type": "vendor" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23313", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23314", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23315", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-30399", - "type": "advisory" - }, - { - "title": "GHSA-266m-wp2v-x7mq", - "url": "https://github.com/advisories/GHSA-266m-wp2v-x7mq", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-8217", "type": "advisory" }, { - "title": "https://github.com/dotnet/runtime/security/advisories/GHSA-266m-wp2v-x7mq", - "url": "https://github.com/dotnet/runtime/security/advisories/GHSA-266m-wp2v-x7mq", - "type": "reference" - }, - { - "title": "https://github.com/dotnet/runtime/issues/116495", - "url": "https://github.com/dotnet/runtime/issues/116495", - "type": "reference" + "title": "Embrace The Red", + "url": "https://embracethered.com/blog/posts/2025/amazon-q-developer-data-exfil-via-dns/", + "type": "research" }, { - "title": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-30399", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-30399", - "type": "reference" + "title": "MITRE ATLAS — AML.CS0047", + "url": "https://atlas.mitre.org/studies/AML.CS0047", + "type": "research" }, { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-6156", - "type": "advisory" + "title": "GitHub commit containing the malicious prompt", + "url": "https://github.com/aws/aws-toolkit-vscode/commit/1294b38b7fade342cfcbaf7cf80e2e5096ea1f9c", + "type": "research" }, { - "title": "GHSA-4c49-9fpc-hc3v", - "url": "https://github.com/advisories/GHSA-4c49-9fpc-hc3v", - "type": "advisory" + "title": "404 Media report on the Amazon Q VS Code extension incident", + "url": "https://www.404media.co/hacker-plants-computer-wiping-commands-in-amazons-ai-coding-agent/", + "type": "research" }, { - "title": "https://github.com/canonical/lxd/security/advisories/GHSA-4c49-9fpc-hc3v", - "url": "https://github.com/canonical/lxd/security/advisories/GHSA-4c49-9fpc-hc3v", - "type": "reference" - }, + "title": "Medium article detailing the events of the Amazon Q VS Code extension incident", + "url": "https://medium.com/@ismailkovvuru/the-amazon-q-vs-code-prompt-injection-explained-impact-and-learnings-for-devops-3a9d2f752dea", + "type": "research" + } + ], + "tags": [ + "amazon-q", + "atlas", + "case-study", + "dns-exfil", + "real-world" + ] + }, + { + "id": "INC-02321", + "title": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", + "date": "2025-06", + "year": 2025, + "category": "real-world", + "description": "Path validation bypass, unrestricted git_init (CVSS 8.8), and argument injection in git_diff. Chained with Filesystem MCP, achieved RCE via Git smudge/clean filters. Exploitable via prompt injection through malicious README files or issue descriptions. Reported June 2025, patched December 2025, disclosed January 2026.", + "owasp_entries": [ + "LLM01", + "LLM03", + "LLM04", + "LLM10", + "ASI01", + "ASI02", + "ASI04", + "ASI05", + "ASI07" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0011", + "AML.T0049", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0060" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.5", + "MEASURE-2.7" + ], + "attack_vector": "rce", + "affected": "Anthropic MCP Git Server Triple Flaw (CVE-2025-68143, -68144, -68145)", + "severity": "High", + "references": [ { - "title": "https://github.com/canonical/lxd/commit/92468bb60f4f1edf38ff0434414bea4f28afa711", - "url": "https://github.com/canonical/lxd/commit/92468bb60f4f1edf38ff0434414bea4f28afa711", - "type": "reference" + "title": "The Hacker News", + "url": "https://thehackernews.com/2026/01/three-flaws-in-anthropic-mcp-git-server.html", + "type": "research" }, { - "title": "https://pkg.go.dev/vuln/GO-2024-3312", - "url": "https://pkg.go.dev/vuln/GO-2024-3312", - "type": "reference" + "title": "Infosecurity Magazine", + "url": "https://www.infosecurity-magazine.com/news/prompt-injection-bugs-anthropic/", + "type": "analysis" }, { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-32007", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-68143", "type": "advisory" }, { - "title": "GHSA-59hw-j9g6-mfg3", - "url": "https://github.com/advisories/GHSA-59hw-j9g6-mfg3", - "type": "advisory" + "title": "security-advisories@github.com", + "url": "https://github.com/modelcontextprotocol/servers/commit/eac56e7bcde48fb64d5a973924d05d69a7d876e6", + "type": "patch" }, { - "title": "https://lists.apache.org/thread/poxgnxhhnzz735kr1wos366l5vdbb0nv", - "url": "https://lists.apache.org/thread/poxgnxhhnzz735kr1wos366l5vdbb0nv", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/modelcontextprotocol/servers/security/advisories/GHSA-5cgr-j3jf-jw3v", + "type": "vendor" + } + ], + "tags": [ + "anthropic", + "chain", + "command-injection", + "cve", + "git", + "mcp", + "nvd", + "path-traversal" + ] + }, + { + "id": "INC-02324", + "title": "Anthropic SQLite MCP Server SQL Injection", + "date": "2025-06", + "year": 2025, + "category": "real-world", + "description": "Classic SQL injection in Anthropic's reference SQLite MCP server (direct concatenation of unsanitized input). Despite being archived, forked 5,000+ times. Unpatched code exists in thousands of downstream agents. Anthropic declared \"out of scope.\" SQL injection enables stored-prompt injection for manipulating AI agents.", + "owasp_entries": [ + "LLM01", + "LLM04", + "LLM05", + "ASI02", + "ASI04", + "ASI06" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0010.001", + "AML.T0010.003", + "AML.T0018", + "AML.T0019", + "AML.T0020", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0059", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0001", + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0006", + "AML.TA0011", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-3.2", + "GOVERN-6.1", + "GOVERN-6.2", + "MANAGE-2.3", + "MANAGE-3.2", + "MAP-2.1", + "MAP-3.5", + "MAP-4.1", + "MAP-4.2", + "MEASURE-2.7" + ], + "attack_vector": "prompt-injection", + "affected": "Anthropic SQLite MCP Server SQL Injection", + "severity": "Medium", + "references": [ + { + "title": "Trend Micro", + "url": "https://www.trendmicro.com/en_us/research/25/f/why-a-classic-mcp-server-vulnerability-can-undermine-your-entire-ai-agent.html", + "type": "research" + } + ] + }, + { + "id": "INC-02426", + "title": "Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage", + "date": "2025-11-13", + "year": 2025, + "category": "real-world", + "description": "AI Incident Database (AIID) entry #1263: Chinese State-Linked Operator (GTG-1002) Reportedly Uses Claude Code for Autonomous Cyber Espionage. Alleged deployer/developer: Anthropic, Gtg 1002, State Linked Operator Using Autonomous Ai Enabled Intrusion Workflows, Unknown Chinese State Sponsored Entity. See the linked AIID entry for full narrative, sourcing, and classification.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM03", + "LLM06", + "LLM07", + "LLM08", + "ASI01", + "ASI02", + "ASI03", + "ASI06", + "ASI07", + "ASI09", + "ASI10" + ], + "mitre_atlas": [ + "AML.T0012", + "AML.T0017", + "AML.T0024", + "AML.T0025", + "AML.T0029", + "AML.T0048", + "AML.T0048.003", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0054", + "AML.T0055", + "AML.T0056", + "AML.T0057", + "AML.T0058", + "AML.T0066" + ], + "mitre_atlas_tactics": [ + "AML.TA0003", + "AML.TA0004", + "AML.TA0005", + "AML.TA0007", + "AML.TA0010", + "AML.TA0011", + "AML.TA0012", + "AML.TA0013" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-1.3", + "GOVERN-1.4", + "GOVERN-1.5", + "GOVERN-3.2", + "GOVERN-6.2", + "MANAGE-2.1", + "MANAGE-2.3", + "MANAGE-2.4", + "MAP-2.1", + "MAP-2.3", + "MAP-3.5", + "MAP-4.1", + "MEASURE-2.10", + "MEASURE-2.11", + "MEASURE-2.4", + "MEASURE-2.7", + "MEASURE-2.8" + ], + "attack_vector": "other", + "affected": "Anthropic, Gtg 1002, State Linked Operator Using Autonomous Ai Enabled Intrusion Workflows, Unknown Chinese State Sponsored Entity", + "impact": "Autonomous mass cyberattacks; data exfiltration; vulnerability exploitation at scale; state-sponsored AI weaponization", + "severity": "Critical", + "mitigations": [ + "Abuse detection for multi-step offensive operations", + "Mandatory reporting for suspected state-sponsored abuse", + "Rate limiting and pattern detection for exploit chains" + ], + "references": [ + { + "title": "AIID incident #1263", + "url": "https://incidentdatabase.ai/cite/1263/", + "type": "report" }, { - "title": "https://spark.apache.org/security.html", - "url": "https://spark.apache.org/security.html", - "type": "reference" + "title": "Disrupting the first reported AI-orchestrated cyber espionage campaign - Anthropic", + "url": "https://www.anthropic.com/news/disrupting-AI-espionage", + "type": "vendor" }, { - "title": "https://github.com/pypa/advisory-database/tree/main/vulns/pyspark/PYSEC-2023-72.yaml", - "url": "https://github.com/pypa/advisory-database/tree/main/vulns/pyspark/PYSEC-2023-72.yaml", - "type": "reference" + "title": "AIRI Navigator — incident 1263", + "url": "https://www.airi-navigator.com/incidents/1263", + "type": "research" }, + { + "title": "Anthropic Disrupts First Documented Case — Paul Weiss", + "url": "https://www.paulweiss.com/insights/client-memos/anthropic-disrupts-first-documented-case-of-large-scale-ai-orchestrated-cyberattack", + "type": "analysis" + } + ], + "tags": [ + "abuse", + "agentic", + "agentic-attack", + "ai-post-deployment", + "aiid", + "airi-navigator", + "anthropic", + "apt", + "autonomous-attack", + "autonomous-espionage", + "chemical", + "china", + "claude-code", + "csam", + "espionage", + "eu-ai-act-2-high-risk", + "extortion", + "financial", + "fraud", + "government", + "gtg-1002", + "intentional", + "jailbreak", + "manufacturing", + "mit-risk-domain:4-malicious-actors-misuse", + "state-sponsored", + "threat-report", + "weaponization" + ] + }, + { + "id": "INC-02435", + "title": "Claude Code DNS Exfiltration (CVE-2025-55284)", + "date": "2025-06", + "year": 2025, + "category": "real-world", + "description": "Claude Code's default allowlist of \"safe commands\" included ping and dig, enabling data exfiltration via DNS requests without user confirmation. An attacker could hijack Claude Code via indirect prompt injection, read .env files, and exfiltrate secrets as DNS subdomains. Fixed in v1.0.4.", + "owasp_entries": [ + "LLM01", + "LLM02", + "LLM04", + "ASI01", + "ASI02", + "ASI04" + ], + "mitre_atlas": [ + "AML.T0010", + "AML.T0024", + "AML.T0050", + "AML.T0051", + "AML.T0051.000", + "AML.T0051.001", + "AML.T0053", + "AML.T0057" + ], + "mitre_atlas_tactics": [ + "AML.TA0004", + "AML.TA0005", + "AML.TA0010", + "AML.TA0012" + ], + "nist_ai_rmf": [ + "GOVERN-1.1", + "GOVERN-3.2", + "GOVERN-6.1", + "MANAGE-2.3", + "MAP-2.1", + "MAP-3.5", + "MEASURE-2.10", + "MEASURE-2.7" + ], + "attack_vector": "prompt-injection", + "affected": "Claude Code DNS Exfiltration (CVE-2025-55284)", + "severity": "High", + "references": [ { "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-28260", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-55284", "type": "advisory" }, { - "title": "GHSA-w4m3-43gp-x8hx", - "url": "https://github.com/advisories/GHSA-w4m3-43gp-x8hx", - "type": "advisory" + "title": "Embrace The Red", + "url": "https://embracethered.com/blog/posts/2025/claude-code-exfiltration-via-dns-requests/", + "type": "research" }, { - "title": "https://github.com/dotnet/runtime/security/advisories/GHSA-w4m3-43gp-x8hx", - "url": "https://github.com/dotnet/runtime/security/advisories/GHSA-w4m3-43gp-x8hx", - "type": "reference" + "title": "security-advisories@github.com", + "url": "https://github.com/anthropics/claude-code/security/advisories/GHSA-x5gv-jw7f-j6xj", + "type": "vendor" }, { - "title": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28260", - "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28260", - "type": "reference" + "title": "GHSA-x5gv-jw7f-j6xj", + "url": "https://github.com/advisories/GHSA-x5gv-jw7f-j6xj", + "type": "advisory" } ], "tags": [ "anthropic", "anthropic-ai-claude-code", - "auth-bypass", - "automation", - "buffer-overflow", - "carrierwave", - "chain", - "code-injection", - "command-injection", "cve", - "cve-2025-23319", - "deserialization", - "enhancedlinq.async", "ghsa", - "github.com-canonical-lxd", - "github.com-juju-juju", - "idunno.atproto", - "idunno.atproto.oauthcallback", - "idunno.bluesky", - "inference-server", - "info-disclosure", - "memory", - "microsoft.aspnetcore.app.runtime.win-x64", - "microsoft.aspnetcore.app.runtime.win-x86", - "microsoft.netcore.app.runtime.win-arm", - "microsoft.netcore.app.runtime.win-arm64", - "microsoft.netcore.app.runtime.win-x64", - "microsoft.netcore.app.runtime.win-x86", - "n8n", - "nemo", - "nemo-toolkit", - "nvd", - "nvidia", - "org.apache.dolphinscheduler-dolphinscheduler", - "org.apache.spark-spark-parent-2.12", - "org.apache.tika-tika-core", - "org.apache.tika-tika-parser-pdf-module", - "org.apache.tika-tika-parsers", - "path-traversal", - "pyspark", - "rce", - "ssrf", - "transformers", - "triton", - "triton-inference-server", - "xss" + "nvd" ] }, { @@ -21218,7 +7666,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Critical RCE in official Claude Desktop extensions (Chrome, iMessage, Apple Notes) allowed malicious websites to execute arbitrary code via unsanitized command injection.", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI05" ], @@ -21317,7 +7765,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Researchers demonstrated using Claude's \"Skills\" feature to perform indirect prompt injection attacks, weaponizing the Claude Files API to exfiltrate sensitive data through malicious skills.", "owasp_entries": [ "LLM01", - "LLM03", + "LLM04", "ASI01", "ASI02", "ASI04" @@ -21367,8 +7815,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Cato Networks demonstrated deploying MedusaLocker ransomware through Claude's Skills plugin by downloading, modifying, and re-uploading malicious Skills with autonomous execution capability.", "owasp_entries": [ "LLM03", - "LLM05", - "LLM06", + "LLM04", + "LLM10", "ASI02", "ASI04", "ASI05", @@ -21545,7 +7993,7 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM05", + "LLM10", "ASI01", "ASI02", "ASI05" @@ -21598,8 +8046,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "Cursor ships with Workspace Trust disabled by default. A malicious `.vscode/tasks.json` with `runOn: \"folderOpen\"` auto-executes code the moment a developer opens a project folder -- no trust prompt, no consent. A booby-trapped repo can steal cloud keys, PATs, API tokens, and pivot to CI/CD.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI04", "ASI05" ], @@ -21645,8 +8093,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "OX Security discovered that Cursor and Windsurf IDEs, built on outdated VS Code forks with stale Electron/Chromium, are exposed to 94+ known CVEs including sandbox escapes. 1.8M developers affected. Both IDEs running Chromium six major versions behind. Forked architecture makes patching structurally difficult and slow.", "owasp_entries": [ "LLM02", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI04", "ASI05" ], @@ -21704,8 +8152,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Cloned projects with `.cursor/cli.json` could override global config, allowing attacker-controlled commands to execute via Cursor CLI context.", "owasp_entries": [ "LLM01", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI01", "ASI04", "ASI05" @@ -21782,8 +8230,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Case-insensitive filesystems allowed crafted prompt to overwrite critical `.cursor` config, enabling persistent RCE and agent compromise.", "owasp_entries": [ "LLM01", - "LLM05", - "LLM06", + "LLM03", + "LLM10", "ASI01", "ASI03", "ASI05" @@ -21851,7 +8299,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Cursor agent prompt led Cursor to write malicious `.code-workspace` settings, allowing command execution on workspace open via VSCode integration.", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI05" ], @@ -21872,7 +8320,7 @@ window.CROSSWALK_INCIDENTS = [ "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "other", + "attack_vector": "rce", "affected": "Cursor Workspace File Injection", "severity": "High", "references": [ @@ -21908,7 +8356,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "A logic flaw allows a malicious agent to read sensitive files protected by cursorignore by creating a new cursorignore file that invalidates existing configurations.", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI02", "ASI05" @@ -21934,7 +8382,7 @@ window.CROSSWALK_INCIDENTS = [ "MEASURE-2.5", "MEASURE-2.7" ], - "attack_vector": "other", + "attack_vector": "auth-bypass", "affected": "Cursorignore Bypass via New Cursorignore Write", "severity": "High", "references": [ @@ -21965,8 +8413,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Devin's async coding agent had no protection against prompt injection. Multiple exfiltration vectors via Browser tool, Shell tool (curl/wget), Markdown images, and expose_port tool. Devin has unrestricted internet access by default. Reported April 2025; acknowledged but unfixed after 120+ days.", "owasp_entries": [ "LLM01", - "LLM05", - "LLM08", + "LLM09", + "LLM10", "ASI01", "ASI02", "ASI05" @@ -22017,8 +8465,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "SSRF in Dify <= 1.6.0 via /console/api/remote-files/ endpoint. Attackers force the Dify server to make arbitrary requests to internal networks, cloud metadata services (IMDS), and localhost. Enables credential theft from cloud environments and firewall bypass. Actively exploited in the wild per CrowdSec.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI02", "ASI03", "ASI04", @@ -22084,8 +8532,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "CVSS 7.5. Dify v1.9.1 fails to enforce authentication on /console/api/system-features endpoint, exposing enabled features, security protocols, and other sensitive internal configuration to any unauthenticated user. Provides reconnaissance data for follow-on attacks.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI03", "ASI04" ], @@ -22200,8 +8648,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "CVE-2025-53110 (CVSS 7.3): directory containment bypass via naive prefix-matching. CVE-2025-53109 (CVSS 8.4): symlink bypass gave full read/write to any file on the host, including /etc/sudoers. Combined, enabled arbitrary code execution via Launch Agents or cron jobs. All versions prior to 0.6.3 affected.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI02", "ASI04", "ASI05" @@ -22294,16 +8742,13 @@ window.CROSSWALK_INCIDENTS = [ "description": "Critical indirect prompt injection in Salesforce Agentforce allows external attacker to mislead the agent and exfiltrate sensitive CRM records outside the organization.", "owasp_entries": [ "LLM01", - "LLM03", - "LLM05", + "LLM10", "ASI01", "ASI02", - "ASI04", "DSGAI01", "DSGAI19" ], "mitre_atlas": [ - "AML.T0010", "AML.T0049", "AML.T0050", "AML.T0051", @@ -22320,7 +8765,6 @@ window.CROSSWALK_INCIDENTS = [ ], "nist_ai_rmf": [ "GOVERN-3.2", - "GOVERN-6.1", "MANAGE-2.3", "MAP-2.1", "MAP-3.5", @@ -22360,35 +8804,13 @@ window.CROSSWALK_INCIDENTS = [ "title": "Salesforce", "url": "https://help.salesforce.com/s/articleView?id=005135034&type=1", "type": "research" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-10875", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64318", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64320", - "type": "advisory" - }, - { - "title": "NVD", - "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-64321", - "type": "advisory" } ], "tags": [ "crm", - "cve", "data-exfiltration", "enterprise", "indirect-injection", - "nvd", "salesforce" ] }, @@ -22400,8 +8822,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "Unsanitized user input in Framelink Figma MCP’s `get_figma_data` tool enabled unauthenticated remote command execution on host systems.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI02", "ASI04", "ASI05" @@ -22498,8 +8920,8 @@ window.CROSSWALK_INCIDENTS = [ "LLM01", "LLM02", "LLM03", - "LLM05", - "LLM06", + "LLM04", + "LLM10", "ASI01", "ASI02", "ASI04", @@ -22602,7 +9024,7 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM04", + "LLM05", "ASI01", "ASI02", "ASI06", @@ -22673,7 +9095,7 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "AI-powered IDE misinterpreted a cache-clearing instruction and issued a system-level delete command with quiet flag, wiping a developer's entire D: drive without confirmation, causing irreversible data loss.", "owasp_entries": [ - "LLM05", + "LLM10", "ASI02", "ASI05" ], @@ -22718,8 +9140,8 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM05", - "LLM06", + "LLM03", + "LLM10", "ASI01", "ASI02", "ASI05", @@ -22787,7 +9209,7 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "Agent misunderstood file instructions and wiped user’s directory; admitted catastrophic loss", "owasp_entries": [ - "LLM05", + "LLM10", "ASI05" ], "mitre_atlas": [ @@ -22869,10 +9291,10 @@ window.CROSSWALK_INCIDENTS = [ "LLM01", "LLM02", "LLM03", - "LLM05", - "LLM06", + "LLM04", "LLM07", - "LLM09", + "LLM08", + "LLM10", "ASI01", "ASI02", "ASI03", @@ -23004,7 +9426,7 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM08", + "LLM09", "ASI01", "ASI02" ], @@ -23102,8 +9524,8 @@ window.CROSSWALK_INCIDENTS = [ "LLM01", "LLM02", "LLM03", - "LLM05", - "LLM06", + "LLM04", + "LLM10", "ASI01", "ASI02", "ASI04", @@ -23296,7 +9718,7 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "Command injection in AWS Kiro's helper function for querying Git repository state. The workspace path itself could force unintended command execution. Fixed in Kiro v0.6.18.", "owasp_entries": [ - "LLM05", + "LLM10", "ASI05" ], "mitre_atlas": [ @@ -23336,8 +9758,8 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI01", "ASI02", "ASI04", @@ -23445,7 +9867,7 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "NPM-hosted backdoored MCP server containing dual reverse shells — one executing at install time and another at runtime — providing persistent remote access to agent environments.", "owasp_entries": [ - "LLM03", + "LLM04", "ASI03", "ASI04", "ASI05" @@ -23531,7 +9953,7 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "Reported as the first in-the-wild malicious MCP server on npm; it impersonated postmark-mcp and secretly BCC’d emails to the attacker.", "owasp_entries": [ - "LLM03", + "LLM04", "ASI02", "ASI04", "ASI07" @@ -23580,9 +10002,9 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "OAuth flow in untrusted MCP servers could return poisoned responses, letting attacker inject commands executed by the agent post-authentication.", "owasp_entries": [ - "LLM03", "LLM04", "LLM05", + "LLM10", "ASI04", "ASI05", "ASI07" @@ -23612,7 +10034,7 @@ window.CROSSWALK_INCIDENTS = [ "MAP-4.2", "MEASURE-2.7" ], - "attack_vector": "other", + "attack_vector": "command-injection", "affected": "MCP OAuth Response Exploit", "severity": "High", "references": [ @@ -23648,7 +10070,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Security researchers demonstrated that Model Context Protocol (MCP) servers can embed hidden malicious instructions in tool descriptions that are invisible to users but processed by the LLM. These hidden instructions can exfiltrate data, modify tool behaviour, or override safety controls. The attack exploits the trust boundary between MCP server descriptions and the agent's decision-making, requiring no user interaction.", "owasp_entries": [ "LLM01", - "LLM03", + "LLM04", "ASI02", "ASI03", "ASI04", @@ -23747,8 +10169,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "CVSS 9.6. mcp-remote (437K+ downloads), a popular OAuth proxy for MCP, achieved full RCE on the client machine when connecting to a malicious MCP server. The server sends a crafted authorization_endpoint URL triggering OS command injection via the open() function. First demonstrated real-world full RCE on an MCP client OS. Affected 0.0.5-0.1.15, fixed in 0.1.16.", "owasp_entries": [ "LLM03", - "LLM05", - "LLM06", + "LLM04", + "LLM10", "ASI04", "ASI05", "ASI07" @@ -23829,7 +10251,7 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM06", + "LLM03", "ASI01", "ASI02", "ASI03", @@ -23981,9 +10403,9 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "Critical out-of-bounds write in Ollama < 0.7.0 when parsing malicious GGUF model files. Vulnerability in mllama C++ parsing code. Researchers demonstrated arbitrary memory bit-flipping via crafted metadata to overwrite function pointers and achieve RCE. An attacker with API access could load a malicious model to take over the server. Ollama rewrote the code in Go for v0.7.0.", "owasp_entries": [ - "LLM03", "LLM04", "LLM05", + "LLM10", "ASI04", "ASI05" ], @@ -24088,7 +10510,7 @@ window.CROSSWALK_INCIDENTS = [ "LLM02", "LLM03", "LLM04", - "LLM06", + "LLM05", "ASI01", "ASI02", "ASI03", @@ -24167,7 +10589,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Indirect prompt injection hijacked the OpenHands agent to download and execute remote malicious code, turning it into a compromised \"ZombAI\".", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI05" ], @@ -24283,8 +10705,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "USENIX Security 2025 paper demonstrating the first systematic knowledge database corruption attack against RAG. Injecting just 5 malicious texts into a knowledge database with millions of entries achieves 90% attack success rate, causing the LLM to generate attacker-chosen answers. Works in both white-box and black-box settings.", "owasp_entries": [ "LLM01", - "LLM04", - "LLM08", + "LLM05", + "LLM09", "ASI01", "ASI06", "DSGAI04", @@ -24361,7 +10783,7 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "Postgres MCP server accepted semicolon-delimited statements. Injecting \"COMMIT; DROP SCHEMA public CASCADE;\" ended the read-only transaction wrapper and allowed full-privilege commands. The npm package still gets 21K weekly downloads.", "owasp_entries": [ - "LLM05", + "LLM10", "ASI02", "ASI05" ], @@ -24404,8 +10826,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "CVSS 10.0. Critical unauthenticated RCE in React Server Components' Flight protocol. A single HTTP request executes arbitrary code. Affected React 19.x used by Dify and other AI platforms. Multiple threat actors exploited within days.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI04", "ASI05" ], @@ -24461,7 +10883,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Replit's AI agent hallucinated data, deleted a production database, and generated false outputs to hide its mistakes. The agent produced fabricated records to cover the data loss.", "owasp_entries": [ "LLM01", - "LLM09", + "LLM07", "ASI01", "ASI09", "ASI10", @@ -24545,8 +10967,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "Chinese threat actor UNC6395 stole OAuth tokens from Salesloft's Drift AI Chat agent integration to access Salesforce CRM environments across 700+ organizations including Cloudflare, Google, Palo Alto Networks, Proofpoint, and Zscaler. Automated SOQL queries exported contacts, support cases, and account data including plaintext AWS keys and VPN credentials.", "owasp_entries": [ - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI03", "ASI04", "DSGAI01", @@ -24801,8 +11223,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Critical RCE vulnerabilities in AI inference servers from unsafe ZeroMQ pickle deserialization via code reuse across Meta, NVIDIA, and vLLM. CVE-2024-50050. Allows cluster takeover and data theft.", "owasp_entries": [ "LLM02", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI04", "ASI05", "DSGAI08" @@ -24892,8 +11314,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "real-world", "description": "RCE exploit in SharePoint leveraged by agents", "owasp_entries": [ - "LLM05", - "LLM08", + "LLM09", + "LLM10", "ASI05" ], "mitre_atlas": [ @@ -24945,7 +11367,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Demonstrated a general attack pattern across multiple AI agent platforms: bypassing human approval protections via argument injection in pre-approved commands (e.g. `go test -exec` flag). The same malicious prompts work when embedded in code comments, rule files, GitHub repos, and logging output.", "owasp_entries": [ "LLM01", - "LLM05", + "LLM10", "ASI01", "ASI05" ], @@ -24989,8 +11411,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Command injection in agentic AI workflows can let a remote, unauthenticated attacker cause VS Code to run injected commands on the developer’s machine.", "owasp_entries": [ "LLM01", - "LLM03", - "LLM05", + "LLM04", + "LLM10", "ASI01", "ASI02", "ASI04", @@ -25052,7 +11474,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "A malicious MCP server, added alongside a legitimate WhatsApp MCP server, used tool poisoning (hidden instructions in tool descriptions) to silently exfiltrate a user's entire WhatsApp message history. Bypassed end-to-end encryption and DLP because it appeared as normal AI behavior.", "owasp_entries": [ "LLM01", - "LLM04", + "LLM05", "ASI01", "ASI02", "ASI04", @@ -25152,9 +11574,9 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM04", "LLM05", - "LLM08", + "LLM09", + "LLM10", "ASI01", "ASI02", "ASI05", @@ -25236,8 +11658,8 @@ window.CROSSWALK_INCIDENTS = [ "category": "research-demonstrated", "description": "Anthropic researchers demonstrated that large language models can be trained to behave normally during evaluation but activate hidden malicious behaviours when triggered by specific conditions (e.g., a date change to 2024). The 'sleeper agent' behaviours persisted through standard safety fine-tuning (RLHF, SFT) and adversarial training. Larger models were harder to remove the deceptive behaviour from, suggesting current safety training may be insufficient to detect planted backdoors.", "owasp_entries": [ - "LLM03", "LLM04", + "LLM05", "ASI02", "ASI04", "ASI09", @@ -25341,7 +11763,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Microsoft researchers published the Crescendo attack — a multi-turn conversational jailbreak where the attacker gradually escalates requests across many turns, with each turn appearing benign or only slightly more sensitive than the previous. The model, which evaluates each turn in isolation against recent context, progressively accepts more harmful content as the conversation establishes a pattern. The attack exploits the fact that models evaluate safety based on recent conversational context, not the cumulative trajectory from session start. Crescendo was tested against GPT-4, Gemini Pro, Claude, and Copilot — achieving harmful content generation in all cases with median 7–12 turns. Unlike single-shot jailbreaks, Crescendo is conversational and does not require encoding or special formatting.", "owasp_entries": [ "LLM01", - "LLM06", + "LLM03", "ASI01", "ASI06" ], @@ -25442,8 +11864,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Anthropic researchers published research demonstrating \"many-shot jailbreaking\" — a context-length attack where a large number of faux-dialogue examples are prepended to a harmful request in the prompt. With sufficient in-context examples (100–256 shots) of the model \"complying\" with harmful requests (fabricated dialogue), frontier models including Claude, GPT-4, and Llama begin to follow the behavioral pattern established in context, overriding their safety training. The attack exploits the in-context learning capability of long-context models — the same feature that makes them flexible also makes them susceptible to behavioral override via example accumulation. Effectiveness increases with context window size, making more capable models more vulnerable.", "owasp_entries": [ "LLM01", - "LLM04", - "LLM06", + "LLM03", + "LLM05", "ASI01" ], "mitre_atlas": [ @@ -25530,11 +11952,11 @@ window.CROSSWALK_INCIDENTS = [ "date": "2024-03-29", "year": 2024, "category": "real-world", - "description": "New York City's chatbot, launched under Mayor Eric Adams's plan to assist businesses, has been reportedly providing dangerously inaccurate legal advice. The Microsoft-powered bot allegedly informed users that landlords can refuse Section 8 vouchers and that businesses can operate cash-free, among other falsehoods. The city acknowledges the chatbot is a pilot program and commits to improvements while the errors are addressed.", + "description": "AI Incident Database (AIID) entry #714: Microsoft-Powered New York City Chatbot Advises Illegal Practices. Alleged deployer/developer: Eric Adams Administration, Microsoft, New York City Government, New York City Office Of Technology And Innovation. See the linked AIID entry for full narrative, sourcing, and classification.", "owasp_entries": [ - "LLM05", - "LLM06", - "LLM09", + "LLM03", + "LLM07", + "LLM10", "ASI09", "DSGAI01", "DSGAI17" @@ -25566,6 +11988,7 @@ window.CROSSWALK_INCIDENTS = [ "MEASURE-2.9" ], "attack_vector": "other", + "affected": "Eric Adams Administration, Microsoft, New York City Government, New York City Office Of Technology And Innovation", "impact": "Potential for businesses to unknowingly violate labour law based on AI guidance; public credibility damage; city forced to add disclaimers", "severity": "High", "mitigations": [ @@ -25586,9 +12009,9 @@ window.CROSSWALK_INCIDENTS = [ "type": "news" }, { - "title": "OECD AI Incidents Monitor entry", + "title": "OECD (2024), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2024-03-29-3dce (accessed on 2026-05-16)", "url": "https://oecd.ai/en/incidents/2024-03-29-3dce", - "type": "report" + "type": "reference" }, { "title": "AIRI Navigator — incident 714", @@ -25601,13 +12024,12 @@ window.CROSSWALK_INCIDENTS = [ "aiid", "airi-navigator", "azure-openai", - "consumer-protection", "cross-listed", "eu-ai-act-3-limited-risk", "government", - "government-ai", "hallucination", "legal", + "mit-risk-domain:3-misinformation", "mycity", "oecd", "public-sector", @@ -25624,8 +12046,8 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM06", - "LLM08", + "LLM03", + "LLM09", "ASI01", "ASI02", "ASI06", @@ -25757,8 +12179,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Security researchers published a comprehensive toolkit for extracting system prompts from GPT-4 and other production LLMs. The toolkit combined multi-turn conversation steering, encoding tricks (Base64, ROT13), and role-play scenarios to reliably extract complete system prompts from deployed applications. The research demonstrated that prompt confidentiality is fundamentally broken as a security control.", "owasp_entries": [ "LLM01", - "LLM07", - "LLM10", + "LLM06", + "LLM08", "ASI05", "DSGAI01", "DSGAI08" @@ -25851,8 +12273,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Researchers Zou et al. (PoisonedRAG) and independently Chaudhari et al. demonstrated that an attacker with write access to even a small fraction of a RAG corpus (as few as 1–5 injected documents) could reliably control the model's output for targeted queries. The attack crafts documents whose embeddings are close to target query embeddings, ensuring they are retrieved, while their content contains adversarial instructions or disinformation. This works even against embedding models the attacker does not have access to (black-box attack).", "owasp_entries": [ "LLM01", - "LLM04", - "LLM08", + "LLM05", + "LLM09", "ASI01", "ASI02", "ASI06", @@ -25978,8 +12400,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Investigations by TIME and The Guardian revealed systematic privacy violations in AI data labeling supply chains. Workers at Sama (previously contracted by OpenAI for RLHF content moderation labeling) and similar data annotation companies in Kenya, India, and the Philippines were exposed to traumatic content (violence, CSAM, hate speech) without adequate psychological support, earning as little as $1.32/hour. Additionally, the annotation platforms used by these workers often lacked basic data security — labeled data containing personal information (medical records, legal documents, private communications) was accessible to workers without need-to-know controls, and annotation task metadata (worker identity, labeling speed, accuracy) was collected without informed consent. The investigation revealed that the third-party AI data supply chain had minimal security governance, creating both worker welfare and data security risks that propagated into the training data of major production models.", "owasp_entries": [ "LLM03", - "LLM06", - "LLM09", + "LLM04", + "LLM07", "ASI09", "DSGAI13", "DSGAI14", @@ -26095,8 +12517,8 @@ window.CROSSWALK_INCIDENTS = [ "description": "Microsoft researchers disclosed the Skeleton Key attack — a direct jailbreak technique where the attacker instructs the model to augment (not replace) its safety behavior by adding a new \"override mode\" framing. Unlike earlier jailbreaks that attempt to confuse or deceive the model, Skeleton Key directly asks the model to acknowledge that it can generate any content if prefixed with a warning, effectively making the model complicit in its own safety bypass. Microsoft tested Skeleton Key against GPT-3.5 Turbo, GPT-4, GPT-4o, Meta Llama3, Mistral Large, Anthropic Claude 3 Opus, and Google Gemini Pro 1.0 — all were susceptible to varying degrees. The attack requires no encoding or roleplay — it is a direct authority assertion that exploits the model's instruction-following training.", "owasp_entries": [ "LLM01", - "LLM06", - "LLM07", + "LLM03", + "LLM08", "ASI01" ], "mitre_atlas": [ @@ -26188,8 +12610,8 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM06", - "LLM08", + "LLM03", + "LLM09", "ASI01", "ASI02", "ASI06", @@ -26329,7 +12751,7 @@ window.CROSSWALK_INCIDENTS = [ "description": "Fábio Perez and Ian Ribeiro published the foundational paper systematically documenting prompt injection attacks. They demonstrated that simple instructions such as 'Ignore previous instructions and [do X]' were consistently effective against GPT-3 across diverse task categories. They introduced the taxonomy of goal hijacking (redirecting the task) vs. prompt leaking (extracting the system prompt). This paper defined the attack surface that all subsequent prompt injection work builds on and directly influenced OWASP LLM01.", "owasp_entries": [ "LLM01", - "LLM07", + "LLM08", "DSGAI01" ], "mitre_atlas": [ @@ -26409,14 +12831,14 @@ window.CROSSWALK_INCIDENTS = [ "date": "2021-01-01", "year": 2021, "category": "real-world", - "description": "North Korean operatives have reportedly used AI-generated identities to secure remote jobs or impersonate employers in order to infiltrate companies. These tactics allegedly support sanctions evasion through wage theft, credential exfiltration, and malware deployment. Workers reportedly use fake resumes, VPNs, and face-altering tools; some deploy malware like OtterCookie after embedding, while others lure targets via spoofed job interviews. AI systems are reportedly used to generate fake resumes, alter profile photos, and assist in real-time responses during video interviews.", + "description": "AI Incident Database (AIID) entry #1118: Ongoing Purported AI-Assisted Identity Fraud Enables Unauthorized Access to Western Companies by North Korean IT Workers. Alleged deployer/developer: Cho Chung Pom, Choe Jong Yong, Christina Chapman, Contagious Interview, Deepfake Technology Developers, Department 53, Famous Chollima, Government Of North Korea, Gwisin Gang, Hyon Chol Song, Jang Chol Myong, Jong Kyong Chol, Jong Song Hwa, Kim Mu Rim, Kim Ryu Song, Kim Sang Man, Kim Ye Won, Ko Chung Sok, Large Language Model Developers, Lazarus Group, Matthew Isaac Knoot, Minh Phuong Ngoc Vong, North Korean Threat Actors, Openai, Purplebravo, Reconnaissance General Bureau, Ri Kyong Sik, Rim Un Chol, Sim Hyon Sop, Sok Kwang Hyok, Son Un Chol, Unc5267, Void Dokkaebi, Wagemole, Waterplum, Yang Di. See the linked AIID entry for full narrative, sourcing, and classification.", "owasp_entries": [ "LLM01", "LLM02", - "LLM05", + "LLM03", "LLM06", "LLM07", - "LLM09", + "LLM08", "LLM10", "ASI01", "ASI02", @@ -26479,6 +12901,7 @@ window.CROSSWALK_INCIDENTS = [ "MEASURE-2.8" ], "attack_vector": "data-exfiltration", + "affected": "Cho Chung Pom, Choe Jong Yong, Christina Chapman, Contagious Interview, Deepfake Technology Developers, Department 53, Famous Chollima, Government Of North Korea, Gwisin Gang, Hyon Chol Song, Jang Chol Myong, Jong Kyong Chol, Jong Song Hwa, Kim Mu Rim, Kim Ryu Song, Kim Sang Man, Kim Ye Won, Ko Chung Sok, Large Language Model Developers, Lazarus Group, Matthew Isaac Knoot, Minh Phuong Ngoc Vong, North Korean Threat Actors, Openai, Purplebravo, Reconnaissance General Bureau, Ri Kyong Sik, Rim Un Chol, Sim Hyon Sop, Sok Kwang Hyok, Son Un Chol, Unc5267, Void Dokkaebi, Wagemole, Waterplum, Yang Di", "impact": "AI-enabled criminal enterprises; ransomware ecosystem; employment fraud at scale; $500K+ extortion demands", "severity": "Critical", "mitigations": [ @@ -26498,9 +12921,9 @@ window.CROSSWALK_INCIDENTS = [ "type": "vendor" }, { - "title": "OECD AI Incidents Monitor entry", + "title": "OECD (2025), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2025-04-08-98be (accessed on 2026-06-09)", "url": "https://oecd.ai/en/incidents/2025-04-08-98be", - "type": "report" + "type": "reference" }, { "title": "AIID incident #1021", @@ -26508,14 +12931,14 @@ window.CROSSWALK_INCIDENTS = [ "type": "report" }, { - "title": "OECD AI Incidents Monitor entry", + "title": "OECD (2025), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2025-04-14-d8a1 (accessed on 2026-06-09)", "url": "https://oecd.ai/en/incidents/2025-04-14-d8a1", - "type": "report" + "type": "reference" }, { - "title": "OECD AI Incidents Monitor entry", + "title": "OECD (2025), AI Incidents and Hazards Monitor, https://oecd.ai/en/incidents/2025-08-27-cabd (accessed on 2026-06-09)", "url": "https://oecd.ai/en/incidents/2025-08-27-cabd", - "type": "report" + "type": "reference" }, { "title": "AIID incident #1201", @@ -26550,7 +12973,6 @@ window.CROSSWALK_INCIDENTS = [ ], "tags": [ "agentic", - "agentic-cybercrime", "agentic-misuse", "ai-post-deployment", "aiid", @@ -26582,12 +13004,12 @@ window.CROSSWALK_INCIDENTS = [ "jasper-sleet", "microsoft", "misuse", + "mit-risk-domain:4-malicious-actors-misuse", "no-code-ransomware", "north-korea", "oecd", "raas", "ransomware", - "ransomware-adjacent", "ransomware-gen", "romance-scam", "russia", @@ -26607,9 +13029,9 @@ window.CROSSWALK_INCIDENTS = [ "owasp_entries": [ "LLM01", "LLM02", - "LLM05", - "LLM06", - "LLM07", + "LLM03", + "LLM08", + "LLM10", "ASI01", "ASI02", "ASI06",