Known Vulnerabilities for Anthropic by Vendor
Listed below are 5 of the newest known vulnerabilities associated with "Anthropic" by "Vendor".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100647 json | vLLM versions before 0.29.0 contain a denial-of-service vulnerability in the cache_salt parameter accepted on OpenAI-compatib... | Not Provided | 2026-09-26 | 2026-09-28 |
| CVE-2026-85178 json | Helicone's VaultManager.getDecryptedProviderKeyById() function in the GET /v1/vault/key/{providerKeyId} endpoint fails to val... | Not Provided | 2026-09-03 | 2026-09-24 |
| CVE-2026-77294 json | TREK is a collaborative travel planner. Prior to 3.3.0, TREK allows an authenticated user to store an attacker-controlled llm... | Not Provided | 2026-09-24 | 2026-09-24 |
| CVE-2026-43632 json | llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in llama-server affecting six tokeniz... | Not Provided | 2026-08-06 | 2026-08-14 |
| CVE-2026-0621 json | Anthropic's MCP TypeScript SDK versions up to and including 1.25.1 contain a regular expression denial of service (ReDoS) vul... | Not Provided | 2026-01-05 | 2026-07-14 |