Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-531
  • PyPI/semantic-kernel
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK 29 Jun
  • Fix available
  • Severity - 9.9 (Critical)
GHSA-98x5-vq43-vc5p
  • PyPI/semantic-router
semantic-router exposed to compromised litellm wheel (CVE-2026-42208) via unbounded transitive pin 26 Jun
  • Fix available
GHSA-xjw9-4gw8-4rqx
  • PyPI/semantic-kernel
Microsoft Semantic Kernel InMemoryVectorStore filter functionality vulnerable to remote code execution 19 Feb
  • Fix available
  • Severity - 9.9 (Critical)
PYSEC-2026-163
  • PyPI/semantic-kernel
See record for full details 19 Feb
  • Fix available
  • Severity - 9.9 (Critical)
GHSA-2ww3-72rp-wpp4
  • NuGet/Microsoft.SemanticKernel.Core
  • PyPI/semantic-kernel
Semantic Kernel has Arbitrary File Write via AI Agent Function Calling in .NET SDK 06 Feb
  • Fix available
  • Severity - 9.9 (Critical)