Recent Advisories

Severity ID Title Vendor Product Date Type
LOW 2 CVE-2026-10801

modelscope ms-swift PIL Image Cache Key base.py Template._save_pil_image weak hash_CVE-2026-10801

A security vulnerability has been detected in modelscope ms-swift up to 4.2.0. This affects the function Template._save_pil_image of the file swift...

modelscope ms-swift 4.0 CVE
LOW 2 CVE-2026-10804

Streamlit Palette hashing.py weak hash_CVE-2026-10804

A vulnerability has been found in Streamlit up to 1.53.0. Impacted is an unknown function in the library lib/streamlit/runtime/caching/hashing.py o...

n/a Streamlit 1.0 CVE
LOW 2 CVE-2026-10803

MLflow Dataset Digest Computation digest_utils.py mlflow.data.digest_utils weak hash_CVE-2026-10803

A flaw has been found in MLflow up to 3.10.0. This issue affects the function mlflow.data.digest_utils of the file mlflow/data/digest_utils.py of t...

n/a MLflow 3.0 CVE
LOW 3.1 CVE-2025-52611

HCL iControl was affected by Unhandled Exception – Stack Trace Disclosure vulnerability_CVE-2025-52611

HCL iControl v4.0.0 was affected by Unhandled Exception - Stack Trace Disclosure vulnerability. The error occurs due to an undefined property being...

HCL iControl 4.0.0 CVE
LOW 3.7 CVE-2025-52609

HCL iControl was affected by Missing Security Headers vulnerability._CVE-2025-52609

HCL iControl was affected by Missing Security Headers vulnerability. which lead to cross-site scripting (XSS) attacks by enabling the built-in XSS ...

HCL iControl 4.0.0 CVE
LOW 3.1 CVE-2025-52608

HCL iControl was affected by Missing Cookie Attributes vulnerability._CVE-2025-52608

HCL iControl was affected by Missing Cookie Attributes vulnerability. It was observed that the application is missing several critical cookie attr...

HCL iControl 4.0.0 CVE
LOW 2 CVE-2026-10800

PaddlePaddle FastDeploy MultimodalHasher hasher.py hash_features weak hash_CVE-2026-10800

A weakness has been identified in PaddlePaddle FastDeploy up to 2.4.1. Affected by this issue is the function hash_features of the file fastdeploy/...

PaddlePaddle FastDeploy 2.4.0 CVE
LOW 2 CVE-2026-10783

gradio-app gradio Audio Cache Key save_audio_to_cache weak hash_CVE-2026-10783

A security flaw has been discovered in gradio-app gradio 6.14.0. This affects the function save_audio_to_cache of the component Audio Cache Key Han...

gradio-app gradio 6.14.0 CVE
LOW 2 CVE-2026-10775

sgl-project SGLang Cache data_hash denial of service_CVE-2026-10775

A vulnerability was determined in sgl-project SGLang up to 0.5.11. Affected by this vulnerability is the function data_hash of the component Cache ...

sgl-project SGLang 0.5.0 CVE
LOW 2 CVE-2026-10766

mlrun DataFrame Hash helpers.py mlrun.utils.helpers.calculate_dataframe_hash weak hash_CVE-2026-10766

A vulnerability has been found in mlrun up to 1.12.0-rc3. This impacts the function mlrun.utils.helpers.calculate_dataframe_hash of the file mlrun/...

n/a mlrun 1.12.0-rc1 CVE