Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-127
  • PyPI/pyload-ng
See record for full details 11 May
  • Fix available
  • Severity - 8.3 (High)
GHSA-pg67-9wjv-mr85
  • PyPI/pyload-ng
pyload-ng: non-admin SETTINGS users can redirect all outbound traffic through an attacker-controlled proxy via unrestricted `proxy.*` config (incomplete fix for CVE-2026-33509 / -35463 / -35464 / -35586) 04 May
  • Fix available
  • Severity - 8.3 (High)