Skip to main content

CWE archive

CWE-265 CVEs

Programmatic archive

11 CVEs tagged with CWE-2651 Critical, 1 High, 6 Medium, 3 Low, 0 Unrated.

CVE-2026-14784

Published Jul 6, 2026

A vulnerability was identified in vxcontrol PentAGI up to 2.1.0. This affects an unknown function of the file backend/pkg/docker/client.go of the component Docker API. The manipul…

CVSS 5.3 · Medium
evidence mentions
7
Buzz score
27.3

CVE-2026-9368

Published May 24, 2026

A vulnerability was identified in NousResearch hermes-agent up to 2026.4.16. This impacts the function execute_code of the file tools/code_execution_tool.py of the component Envir…

CVSS 5.5 · Medium
evidence mentions
4
Buzz score
22.6

CVE-2026-6878

Published Apr 23, 2026

A vulnerability was identified in ByteDance verl up to 0.7.0. Affected is the function math_equal of the file prime_math/grader.py. The manipulation leads to sandbox issue. It is…

CVSS 2.9 · Low
evidence mentions
4
Buzz score
22.6

CVE-2026-6224

Published Apr 13, 2026

A security flaw has been discovered in nocobase plugin-workflow-javascript up to 2.0.23. This issue affects the function createSafeConsole of the file packages/plugins/@nocobase/p…

CVSS 5.5 · Medium
evidence mentions
4
Buzz score
22.6

CVE-2026-6117

Published Apr 12, 2026

A vulnerability was found in AstrBotDevs AstrBot up to 4.22.1. This issue affects the function install_plugin_upload of the file astrbot/dashboard/routes/plugin.py of the componen…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
24.4

CVE-2025-5874

Published Jun 9, 2025

A vulnerability was found in Redash up to 10.1.0/25.1.0. It has been rated as problematic. This issue affects the function run_query of the file /query_runner/python.py of the com…

CVSS 1.2 · Low

CVE-2025-5321

Published May 29, 2025

A vulnerability classified as critical was found in aimhubio aim up to 3.29.1. This vulnerability affects the function RestrictedPythonQuery of the file /aim/storage/query.py of t…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-2007

Published Mar 21, 2024

A vulnerability was found in OpenBMB XAgent 1.0.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Privileged Mode. T…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-5223

Published Sep 27, 2023

A vulnerability, which was classified as critical, has been found in HimitZH HOJ up to 4.6-9a65e3f. This issue affects some unknown processing of the component Topic Handler. The…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-26122

Published Apr 11, 2023

All versions of the package safe-eval are vulnerable to Sandbox Bypass due to improper input sanitization. The vulnerability is derived from prototype pollution exploitation. Expl…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1889

Published Sep 3, 2020

A security feature bypass issue in WhatsApp Desktop versions prior to v0.3.4932 could have allowed for sandbox escape in Electron and escalation of privilege if combined with a re…

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-11 of 11 CVEsPage 1 of 1