MEDIUM5.9EPSS 0.02%Apache Airflow: JWT cookie missing Secure flag in JWTRefreshMiddleware behind HTTPS-terminating proxy
MEDIUM6.5EPSS 0.04%Apache Airflow: Incomplete Redaction of Sensitive Fields in Connection Extra API Response
CRITICAL9.6praisonai-platform: Any workspace member can promote themselves or others to owner via PATCH /workspaces/{id}/members/{user_id}
CRITICAL9.8praisonai-platform: JWT signing key defaults to hardcoded "dev-secret-change-me", allowing token forgery for any user when PLATFORM_ENV is unset
MEDIUM6.5praisonai-platform: list_issue_activity returns activity log for any issue regardless of workspace ownership
CRITICAL9.8PraisonAI's unauthenticated A2A official example can reach real LLM-driven `eval()` tool execution
CRITICAL9.9PraisonAI vulnerable to sandbox escape via `print.__self__` builtins module leak in `execute_code` (subprocess mode)
MEDIUM5.5PraisonAI CLI automatically resolves @url mentions in prompt text and can read loopback URLs into model context
CRITICAL9.8PraisonAI `deploy --type api` emits a Flask server with authentication disabled by default
CRITICAL9.8PraisonAI call server exposes unauthenticated agent listing, invocation, and deletion when CALL_SERVER_TOKEN is unset
MEDIUM5.5PraisonAI spider_tools SSRF protection bypass via alternate loopback host encodings
MEDIUM6.5BoxLite has a Timeout Bypass Vulnerability
MEDIUM6.5zeroconf has unbounded DNS record cache that allows LAN-local memory exhaustion via multicast flood
MEDIUM6.5zeroconf: Unbounded exception-dedup state retains packet buffers via traceback frame locals, enabling LAN-local memory exhaustion
MEDIUM6.5zeroconf has unbounded recursion in DNS compression-pointer decoder that allows LAN-local denial of service
CRITICAL9.8EPSS 0.08%amazon-redshift-python-driver vulnerable to Remote Code Execution via eval() Injection
CRITICAL9.6EPSS 0.04%Improper Origin Validation in mlflow/mlflow
MEDIUM5.7Dulwich has unbounded memory allocation in receive-pack from crafted thin packs
MEDIUM5.5Shamefile has an arbitrary file read via shamefile.yaml in shame next
MEDIUM5.0EPSS 0.03%local-deep-research has an SSRF bypass in `safe_get`
MEDIUM6.7compliance-trestle Vulnerable to SSRF in Remote Fetching Subsystem