← All tracked CVEs
Updated 08:01
241 fixed in the last 7 days
| CVE | Status | Severity | Summary | Distribution | Fixed |
|---|---|---|---|---|---|
| Fixed | High | GitPython 3.1.59 diff API allows --no-index Boolean oracle, arbitrary file disclosure | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GitPython <3.1.60 git directory impersonation enables pre-commit hook RCE via tracked files | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GitPython <3.1.59 arbitrary file read via Repo.blame() missing --contents/-S denylist | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GitPython <3.1.59: separate_git_dir allows arbitrary git directory creation and hook execution | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Critical | GitPython <3.1.59 multi-line config write bug enables directive injection and hook RCE | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GitPython before 3.1.59 discloses local files via malicious .gitmodules include directives | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-2293: ujson.dump memory leak on failed file-like object writes prior to 5.12.1 | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-c38f-wx89-p2xg: ujson.dump memory leak when write() fails due to missing Py_DECREF of serialized string | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | libcurl LDAP SASL negotiation flaw misinterprets incomplete handshake, enabling MITM peer validation bypass | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Medium | PYSEC-2026-3923: sqlparse ReindentFilter CPU DoS when reindent=True processes large crafted tuple-list SQL | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-3699: sqlparse CPU DoS via O(n*depth) TokenList.__init__ flattening on nested groups | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-3698: sqlparse ReDoS: dollar-quoted backreference and multiline comments cause quadratic CPU exhaustion | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-3697: Quadratic parsing of comment-only SQL in sqlparse group_comments enables DoS; token cap bypassed | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Medium | PYSEC-2026-3696: sqlparse Python/PHP output modes improperly escape quotes, enabling snippet injection via backslashes | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-3072: Soupsieve CSS parser ReDoS via catastrophic backtracking on unterminated quoted attribute values | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-3071: Unbounded memory allocation in soupsieve compiling large comma-separated CSS selector lists (DoS) | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-2292: ujson 5.10–5.11.0 indent overflow/underflow triggers crash or infinite loop DoS | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-2291: ujson 5.4.0–5.11.0 memory leak parsing large integers enables DoS on untrusted input | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | PYSEC-2026-142: urllib3 2.6.x partial reads may fully decompress responses, causing high CPU/memory use | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Medium | PYSEC-2026-141: urllib3 ProxyManager cross-origin redirects leak sensitive headers when assert_same_host=False (1.23–<2.7.0) | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-wgvc-ghv9-3pmm: ujson 5.4–5.11 accumulating memory leak parsing large integers permits DoS | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-qccp-gfcp-xxvc: urllib3 <2.7.0 ProxyManager-created HTTPConnection cross-origin redirects forward Authorization/Cookie/Proxy-Authorization headers | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-pwgv-4x5q-6m9f: sqlparse parsing DoS: TokenList.__init__ O(n*depth) work on deeply nested SQL | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-prg7-hcfm-mfcr: ReDoS via backreferenced dollar-quote and multiline comment regexes in sqlparse lexer | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-mf9v-mfxr-j63j: urllib3 <2.7.0 may fully decompress on Brotli second read or drain_conn, causing resource exhaustion | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-f2ff-p2ww-7p4p: sqlparse group_comments O(n^2) on comment-only input, bypasses token cap, causing DoS | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Medium | GHSA-cfqr-cjx5-5jcm: sqlparse ReindentFilter CPU DoS from repeated offset calculations on large tuple lists | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-c8rr-9gxc-jprv: ujson.dumps integer overflow/underflow with large or negative indent leads crash/loop DoS | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Critical | Undocumented PLY 3.11 yacc() 'picklefile' enables RCE through unsafe pickle deserialization | secure-packages-rolling | Sep 18, 2026 | |
| Fixed | High | GHSA-836r-79rf-4m37: soupsieve CSS attribute VALUE regex catastrophic backtracking on unterminated quotes enables ReDoS | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Medium | GHSA-3496-9g83-7v6x: sqlparse Python/PHP output formats vulnerable to code injection via improper backslash-quote escaping | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GHSA-2wc2-fm75-p42x: Soupsieve/Beautiful Soup CSS parser allocates unbounded memory for large comma-separated selectors causing DoS | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | libcurl+libpsl fails PSL enforcement: public-suffix host cookies become wildcard, leak cross-subdomains | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | libcurl wolfSSL with CA caching reinstalls cached store after SSL_CTX callback, accepting untrusted certificates | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | curl ignores Secure attribute if preceded by tab in Set-Cookie, sending cookie over HTTP | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | libcurl erroneously reuses HTTPS connections across different CURLSSLOPT_NATIVE_CA settings for same host | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | libcurl ignores CURLOPT_PINNEDPUBLICKEY when verification disabled and server presents no certificate | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | libcurl multi/OpenSSL 3: pooled TLS outlives easy handle, dangling libctx leads to UAF | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Medium | gst-plugins-good avidemux vprp parsing OOB read causes crash via crafted AVI | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | Soupsieve <2.8.4 regex catastrophic backtracking via unterminated attribute selector causes DoS | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | soupsieve pre-2.8.4 CSS selector parser unbounded memory allocation DoS via crafted selectors | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Medium | MP4 parsing DoS: GStreamer isomp4 qtdemux_audio_caps divide-by-zero from unvalidated atoms (<1.28.2) | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Medium | GStreamer gst-plugins-good <1.28.2 isomp4 qtdemux_parse_trak divide-by-zero DoS on MP4 audio | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Critical | libcurl reuses Negotiate-auth HTTP connection after empty creds, leaking requests across users | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | Critical | Use-after-free in libcurl cleanup when sharing connections during HTTP/2 Server Push | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | Use-after-free RCE in GStreamer rtpsbcdepay RTP payload handling (ZDI-CAN-29787) | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GStreamer PNG parser heap overflow allows RCE via malicious PNG; user interaction required | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GStreamer OGG parser stack-based buffer overflow allows remote code execution; user interaction required | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GStreamer MRF parsing heap buffer overflow enables RCE via crafted file (ZDI-CAN-29608) | secure-packages-26.05 | Sep 18, 2026 | |
| Fixed | High | GStreamer MRF parser out-of-bounds write enables remote code execution (ZDI-CAN-29510) | secure-packages-26.05 | Sep 18, 2026 |