Vuln
·
Scope
首頁
套件
KEV
Critical
深度報告
同步紀錄
方案
EN
中
Loading…
npm/@earendil-works/pi-coding-agent — 4 CVEs · VulnScope
pkg:npm/
@earendil-works/pi-coding-agent
共 4 筆 CVE
HIGH
1
MEDIUM
1
LOW
2
✅ 檢查你的版本
檢查
所有已知漏洞
HIGH
7.3
CVE-2026-54328
Pi Agent: Predictable temporary extension install paths allow local privilege escalation on shared Linux hosts
>= 0.74.0, < 0.78.1
MEDIUM
4.4
CVE-2026-54325
Pi Agent: Pi loads project-local extensions without approval
from 0, < 0.79.0
LOW
2.5
CVE-2026-54326
Pi Agent: Potential XSS in HTML session exports via Markdown URL sanitization bypass
>= 0.74.0, < 0.78.1
LOW
2.2
Pi Agent: Race condition in Pi auth.json writes could expose stored credentials
>= 0.74.0, < 0.78.1
CVE-2026-54327