Known Vulnerabilities for Label-studio by HumanSignal
Listed below are 3 of the newest known vulnerabilities associated with "Label-studio" by "HumanSignal".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76073 json | Label Studio does not scope the annotation detail endpoint to the requesting user's organization. AnnotationAPI in label_stud... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-72560 json | A server-side request forgery vulnerability in HumanSignal Label Studio through 1.24.0.dev0 exists because SSRF_PROTECTION_EN... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2022-36551 json | A Server Side Request Forgery (SSRF) in the Data Import module in Heartex - Label Studio Community Edition versions 1.5.0 and... | Not Provided | 2022-10-03 | 2026-07-09 |