VulnScope — package-centric CVE lookup- CRITICAL9.6CVE-2026-55447Langflow: BaseFileComponent-based nodes arbitrary file read with RCE exploit
- CRITICAL9.9Langflow: IDOR Vulnerability in `/api/v1/responses` Endpoint Allows Authenticated Attackers to Access Another User's Flow
- CRITICAL9.9Network-AI: Improper Neutralization of Special Elements used in an OS Command
- CRITICAL9.1Network-AI: CVE-2026-46701 fix incomplete — empty default secret still authorizes all requests
- CRITICAL9.8gemini-mcp-tool vulnerable to OS command injection and @file exfiltration via prompt quoting (CVE-2026-0755)
- LOW2.2BBOT: Symlink-Following Arbitrary Write via github_workflows Module
- LOW3.1BBOT: Server-Side Request Forgery (SSRF) in docker_pull module via WWW-Authenticate realm parsing
- CRITICAL9.8python-statemachine SCXML <data expr> Eval Injection
- LOW3.7undici vulnerable to HTTP response queue poisoning via keep-alive socket reuse
- LOW3.7undici vulnerable to Set-Cookie SameSite attribute downgrade via permissive substring matching
- CRITICAL9.3Langflow: Unauthenticated file upload leads to DoS (space exhaustion) and information leak
- CRITICAL9.1Apache Airflow SFTP provider: Path traversal in SFTPHook.retrieve_directory
- LOW2.2Pi Agent: Race condition in Pi auth.json writes could expose stored credentials
- LOW2.5Pi Agent: Potential XSS in HTML session exports via Markdown URL sanitization bypass
- CRITICAL10.0n8n: MCP Browser HTTP Transport Exposes Unauthenticated Browser-Control Sessions
- CRITICAL9.9n8n: Cross-Tenant Credential Takeover via Dynamic Credentials EE Endpoints
- CRITICAL9.6n8n: Credential Exfiltration via Permission Bypass
- CRITICAL9.0LobeHub: Unauthenticated SSRF in `/webapi/proxy`
- CRITICAL9.8Crawl4AI: AST Sandbox Escape via gi_frame.f_back Chain - Pre-Auth RCE in Docker API
- CRITICAL9.9n8n: SQL Injection in Postgres v1/TimesclaeDB Nodes
- CRITICAL9.1vLLM: OpenAI auth bypass
- CRITICAL9.6Langflow: Unauthenticated RCE in Shareable Playgrounds
- CRITICAL9.1Remotion: arbitrary file write vulnerability
- CRITICAL9.8Remotion: remote code execution (RCE) vulnerability
- LOW3.7Starlette: Unvalidated request path concatenated into authority poisons request.url.hostname