Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-r3hx-x5rh-p9vv
  • PyPI/django-haystack
django-haystack: Remote Code Execution via `eval()` in Elasticsearch Result Deserialization 15 Jul
  • Fix available
  • Severity - 8.7 (High)
PYSEC-2026-1447
  • PyPI/haystack-ai
Insecure Jinja2 templates rendered in Haystack Components can lead to RCE 07 Jul
  • Fix available
  • Severity - 7.7 (High)
PYSEC-2026-337
  • PyPI/farm-haystack
Use of hard-coded, security-relevant constants in deepset-ai/haystack 29 Jun
  • No fix available
  • Severity - 9.8 (Critical)
GHSA-hx9v-6r9f-w677
  • PyPI/haystack-ai
Insecure Jinja2 templates rendered in Haystack Components can lead to RCE 31 Jul 2024
  • Fix available
  • Severity - 7.7 (High)
GHSA-w7qg-j435-78qw
  • PyPI/farm-haystack
Use of hard-coded, security-relevant constants in deepset-ai/haystack 30 Mar 2023
  • No fix available
  • Severity - 9.8 (Critical)