Known Vulnerabilities for Python-pip by Na
Listed below are 10 of the newest known vulnerabilities associated with "Python-pip" by "Na".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-88029 json | Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Python Driver can caus... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-87999 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.11.1, POST /api/v1/retrieval... | Not Provided | 2026-09-09 | 2026-09-10 |
| CVE-2026-87996 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.1, SafePlaywright... | Not Provided | 2026-09-09 | 2026-09-10 |
| CVE-2026-87874 json | A flaw was found in the memcached cache plugin of the community.general Ansible collection. Although its documentation states... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86597 json | Insertion of sensitive information into log files in the Snowflake Python, Go, JDBC, Node.js, PHP PDO, and ODBC drivers allow... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-86169 json | Axolotl through 0.18.0 contains a remote code execution vulnerability in the multipack patch path where trust_remote_code def... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2026-85694 json | LaVague 0.2.35 contains a remote code execution vulnerability in PythonFromMarkdownExtractor.extract_as_object that evaluates... | Not Provided | 2026-09-04 | 2026-09-08 |
| CVE-2026-85525 json | Improper OCSP response validation in the Snowflake Python, Go, JDBC, and Node.js drivers allowed a revoked TLS certificate to... | Not Provided | 2026-09-04 | 2026-09-10 |
| CVE-2026-85394 json | python-jose through 3.5.0 fails to properly validate asymmetric keys in HMAC initialization, accepting DER-encoded public key... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-84811 json | agentverus-scanner fails to analyze compiled Python bytecode files in companion code directories, allowing attackers to bypas... | Not Provided | 2026-09-02 | 2026-09-03 |