Root has patched CVE-2026-3219 in the rootio-pip package for Root:PyPI. Multiple fixed versions available.
{
"distro": "pypi",
"severity": "MEDIUM",
"distro_version": "",
"source": "Root"
}"root.io.4"
"https://api.root.io/external/osv/ROOT-APP-PYPI-CVE-2026-3219.json"
"22.3.1"
21.0
true
[
"26.0.1+root.io.1",
"23.0.1+root.io.3",
"24.0+root.io.2",
"25.0.1+root.io.2",
"26.0.1+root.io.2",
"24.0+root.io.3",
"23.0.1+root.io.4",
"22.3.1+root.io.1",
"23.1.2+root.io.3",
"22.3.1+root.io.2",
"25.2+root.io.3",
"26.0.1+root.io.3",
"25.0.1+root.io.3",
"25.2+root.io.4",
"22.3.1+root.io.3",
"23.1.2+root.io.4",
"23.0.1+root.io.5",
"24.0+root.io.4",
"25.0.1+root.io.4",
"23.2.1+root.io.4",
"22.3.1+root.io.4"
]
""
"https://api.root.io/external/osv/ROOT-APP-PYPI-CVE-2026-3219.json"
"22.3.1+aikido.4"
10.0
true
[
"26.0.1+aikido.3",
"25.0.1+aikido.3",
"25.2+aikido.4",
"22.3.1+aikido.3",
"23.1.2+aikido.4",
"23.0.1+aikido.5",
"24.0+aikido.4",
"25.0.1+aikido.4",
"23.2.1+aikido.4",
"22.3.1+aikido.4"
]