Skip to content

All advisories

14,478 advisories for 277 projects, newest first

50 advisories

Advisory
FastMCP updated to MCP 1.23+ due to CVE-2025-66416
fastmcpHighDec 26, 2025
Self-hosted n8n has Legacy Code node that enables arbitrary file read/write
n8nHigh7.1Dec 26, 2025
n8n Vulnerable to Arbitrary Command Execution in Pyodide based Python Code Node
n8nCritical9.9Dec 26, 2025
lmdeploy vulnerable to Arbitrary Code Execution via Insecure Deserialization in torch.load()
LMDeployHigh8.8Dec 26, 2025
n8n's Possible Stored XSS in "Respond to Webhook" Node May Execute Outside iframe Sandbox
n8nHigh7.3Dec 26, 2025
Transformers: code injection
TransformersHigh7.8Dec 23, 2025
Transformers: unsafe deserialization
TransformersHigh7.8Dec 23, 2025
Transformers: unsafe deserialization
TransformersHigh7.8Dec 23, 2025
Transformers: unsafe deserialization
TransformersHigh7.8Dec 23, 2025
Transformers: unsafe deserialization
TransformersHigh7.8Dec 23, 2025
Transformers: unsafe deserialization
TransformersHigh7.8Dec 23, 2025
Transformers: code injection
TransformersHigh7.8Dec 23, 2025
Transformers: code injection
TransformersHigh7.8Dec 23, 2025
LangChain serialization injection vulnerability enables secret extraction
LangChainHigh8.6Dec 23, 2025
LangChain serialization injection vulnerability enables secret extraction in dumps/loads APIs
LangChainCritical9.3Dec 23, 2025
n8n Vulnerable to Remote Code Execution via Expression Injection
n8nCritical9.9Dec 22, 2025
External Control of File Name or Path in Langflow
LangflowHigh7.1Dec 19, 2025
Langflow vulnerable to Server-Side Request Forgery
LangflowHigh7.7Dec 19, 2025
nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows
JupyterHighDec 18, 2025
Dify: insecure permissions
DifyHigh7.5Dec 18, 2025
Ollama Platform has missing authentication enabling attackers to perform model management operations
OllamaCriticalDec 18, 2025
Palo Alto Vulnerability Report
GoogleHighDec 18, 2025
Edge3 Worker RPC RCE on Airflow 2
Apache AirflowCritical9.8Dec 17, 2025
Key Commitment issue in S3 Encryption Client
AWSMedium5.3Dec 17, 2025
Key Commitment issue in S3 Encryption Client
AWSMedium5.3Dec 17, 2025
Key Commitment issue in S3 Encryption Client
AWSMedium5.3Dec 17, 2025
Apache Airflow exposes secret values to authenticated UI users via rendered templates
Apache AirflowMedium6.5Dec 15, 2025
Elasticsearch: improper authentication
ElasticsearchMedium6.8Dec 15, 2025
Token Leak via Open Redirection and CSRF in the Callback Handler of cloudflare/workers-oauth-provider
GoogleMediumDec 15, 2025
Weaviate OSS has a Path Traversal Vulnerability via Backup ZipSlip
WeaviateHighDec 12, 2025
Weaviate OSS has path traversal vulnerability via the Shard Movement API
WeaviateHighDec 12, 2025
Improper Memory Cleanup in the Okta Java SDK CVE-2025-66033 - Dec 10, 2025
OktaUnratedDec 10, 2025
Improper Validation of Query Parameters in Auth0 Next.js SDK CVE-2025-67716 - Dec 10, 2025
Auth0 Next.js SDKUnratedDec 10, 2025
Improper Request Caching Lookup in the Auth0 Next.js SDK CVE-2025-67490 - Dec 10, 2025
OktaUnratedDec 10, 2025
Race condition in the Okta Java SDK CVE-2025-67505 - Dec 10, 2025
OktaUnratedDec 10, 2025
When OpenTofu is acting as a TLS client authenticating a certificate chain...
OpenTofuMedium5.9Dec 9, 2025
RCE via ZipSlip and symbolic links in argoproj/argo-workflows
argo-workflowsHigh8.1Dec 9, 2025
n8n vulnerable to Remote Code Execution via Git Node Custom Pre-Commit Hook
n8nCriticalDec 8, 2025
Langflow CORS misconfiguration enables Account Takeover and RCE
LangflowCritical8.8Dec 6, 2025
Open WebUI: server-side request forgery
Open WebUIHigh8.5Dec 4, 2025
ComposioHQ has a directory traversal vulnerability
composioMedium7.5Dec 4, 2025
open-webui is Vulnerable to Incorrect Access Control
Open WebUILowDec 4, 2025
Network Sandboxing Escape
AnthropicLow1.8Dec 4, 2025
Improper HMAC Signature Verification in auth0/node-jws CVE-2025-65945 - Dec 4, 2025
OktaUnratedDec 4, 2025
Command Validation Bypass Allows Arbitrary Code Execution
AnthropicHigh8.7Dec 3, 2025
vLLM vulnerable to remote code execution via transformers_utils/get_config
vLLMHigh7.1Dec 2, 2025
Model Context Protocol (MCP) Python SDK does not enable DNS rebinding protection by default
MCP SDKsHighDec 2, 2025
Model Context Protocol (MCP) TypeScript SDK does not enable DNS rebinding protection by default
MCP SDKsHighDec 2, 2025
Portkey.ai Gateway: Server-Side Request Forgery (SSRF) in Custom Host
gatewayMediumDec 2, 2025
Keras Directory Traversal Vulnerability
KerasHigh9.8Dec 2, 2025

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.