Robuta

https://lwn.net/Articles/439302/ kdenetwork: arbitrary code execution [LWN.net] arbitrary code executionlwn https://security.archlinux.org/ASA-202204-3 [ASA-202204-3] zlib: arbitrary code execution - Arch Linux arbitrary code executionasazlibarchlinux https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/RUMCY6CFIU7RS5WH5CABY6JSOQOJ63ZD/ [ASA-201807-10] curl: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://advisories.gitlab.com/pypi/qiskit/CVE-2025-2000/ Qiskit allows arbitrary code execution decoding QPY format versions 13 | GitLab Advisory Database... arbitrary code execution https://security.archlinux.org/ASA-201610-18 [ASA-201610-18] flashplugin: arbitrary code execution - Arch Linux arbitrary code executionasaarchlinux https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/WDUPXW3LSQPJ2BVAVVPDEM7DHZX55FOC/ [ASA-202107-31] vivaldi: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://security.archlinux.org/ASA-201705-10 [ASA-201705-10] lib32-freetype2: arbitrary code execution - Arch Linux arbitrary code executionasaarchlinux https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/message/X47L24HOV76LU63ZFYBX3K7QC2GZ26F4/ [arch-security] [ASA-201704-4] nss: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://security.archlinux.org/ASA-202108-2 [ASA-202108-2] nodejs-lts-fermium: arbitrary code execution - Arch Linux arbitrary code executionasanodejslts https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/message/LHNB4RN6NT6WWU72GRN6AJQTH5ZAKBVK/ [ASA-201807-5] lib32-curl: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://advisories.gitlab.com/npm/@babel/traverse/CVE-2023-45133/ Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code |... CVE-2023-45133 Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code: Using Babel to compile code that was... arbitrary code executionbabelvulnerable https://advisories.gitlab.com/cargo/gix/CVE-2024-35186/ gix traversal outside working tree enables arbitrary code execution | GitLab Advisory Database... CVE-2024-35186 gix traversal outside working tree enables arbitrary code execution: During checkout, gitoxide does not verify that paths point to locations in... arbitrary code execution https://advisories.gitlab.com/maven/org.apache.parquet/parquet-avro/CVE-2025-30065/ Apache Parquet Avro Module Vulnerable to Arbitrary Code Execution | GitLab Advisory Database (GLAD) CVE-2025-30065 Apache Parquet Avro Module Vulnerable to Arbitrary Code Execution: Schema parsing in the parquet-avro module of Apache Parquet 1.15.0 and... arbitrary code execution https://www.cisco.com/c/en/us/support/docs/csa/cisco-sa-nxos-bshacepe-bApeHSx7.html Cisco NX-OS Software Bash Arbitrary Code Execution and Privilege Escalation Vulnerabilities - Cisco Multiple vulnerabilities in Cisco NX-OS Software could allow an authenticated, local attacker with privileges to access the Bash shell to execute arbitrary... arbitrary code execution https://lwn.net/Articles/439130/ dhcpcd: arbitrary code execution [LWN.net] arbitrary code executiondhcpcdlwn https://advisories.gitlab.com/pypi/keras/CVE-2025-1550/ Keras arbitrary code execution vulnerability | GitLab Advisory Database (GLAD) CVE-2025-1550 Keras arbitrary code execution vulnerability: The Keras Model.load_model function permits arbitrary code execution, even with safe_mode=True,... arbitrary code executionkerasvulnerabilitygitlabadvisory https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/LHNB4RN6NT6WWU72GRN6AJQTH5ZAKBVK/?sort=thread [ASA-201807-5] lib32-curl: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://lwn.net/Articles/439159/ libtiff: arbitrary code execution [LWN.net] arbitrary code executionlibtifflwn https://security.archlinux.org/ASA-201801-30/generate [ASA-201801-30] mupdf-tools: arbitrary code execution - Arch Linux arbitrary code executionasamupdftoolsarch https://lwn.net/Articles/319532/ gedit: arbitrary code execution via Python scripts [LWN.net] arbitrary code executionpython scriptsgeditvialwn https://advisories.gitlab.com/pypi/pdfminer.six/CVE-2025-64512/ Arbitrary Code Execution in pdfminer.six via Crafted PDF Input | GitLab Advisory Database (GLAD) CVE-2025-64512 Arbitrary Code Execution in pdfminer.six via Crafted PDF Input: pdfminer.six will execute arbitrary code from a malicious pickle file if... arbitrary code execution https://advisories.gitlab.com/pypi/langchain/CVE-2023-36258/ langchain arbitrary code execution vulnerability | GitLab Advisory Database (GLAD) CVE-2023-36258 langchain arbitrary code execution vulnerability: An issue in langchain allows an attacker to execute arbitrary code via the PALChain in the... arbitrary code executionlangchainvulnerabilitygitlabadvisory https://security.archlinux.org/ASA-202110-11 [ASA-202110-11] freerdp: arbitrary code execution - Arch Linux arbitrary code executionasafreerdparchlinux https://security.archlinux.org/ASA-201908-19 [ASA-201908-19] pigeonhole: arbitrary code execution - Arch Linux arbitrary code executionasapigeonholearchlinux https://security.archlinux.org/ASA-201707-2/generate [ASA-201707-2] systemd: arbitrary code execution - Arch Linux arbitrary code executionasasystemdarchlinux https://advisories.gitlab.com/pypi/keras/GHSA-5478-v2w6-c6q7/ Duplicate Advisory: Keras arbitrary code execution vulnerability | GitLab Advisory Database (GLAD) GHSA-5478-v2w6-c6q7 Duplicate Advisory: Keras arbitrary code execution vulnerability: Duplicate Advisory This advisory has been withdrawn because it is a... arbitrary code executionduplicateadvisorykerasvulnerability https://security.archlinux.org/ASA-202105-5 [ASA-202105-5] firefox: arbitrary code execution - Arch Linux arbitrary code executionasafirefoxarchlinux https://advisories.gitlab.com/composer/typo3/cms-core/GHSA-f9hr-7cfq-mjg2/ TYPO3 Arbitrary Code Execution via File List Module | GitLab Advisory Database (GLAD) GHSA-f9hr-7cfq-mjg2 TYPO3 Arbitrary Code Execution via File List Module: Due to missing file extensions in... arbitrary code executionfile list https://www.okta.com/en-se/identity-101/arbitrary-code-execution/ Arbitrary Code Execution (ACE): Definition & Defense | Okta arbitrary code executionacedefinitiondefenseokta https://security.archlinux.org/ASA-202112-5 [ASA-202112-5] isync: arbitrary code execution - Arch Linux arbitrary code executionasaisyncarchlinux https://advisories.gitlab.com/npm/openclaw/GHSA-cxmw-p77q-wchg/ OpenClaw: Arbitrary code execution via unvalidated WebView JavascriptInterface | GitLab Advisory... GHSA-cxmw-p77q-wchg OpenClaw: Arbitrary code execution via unvalidated WebView JavascriptInterface: Android Canvas WebView pages from untrusted origins could... arbitrary code executionopenclawviawebviewgitlab https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/message/NJF7RZ4C2K3QL23BC7QBMOASDFSIKY4B/ [ASA-202505-11] freetype2: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://security.archlinux.org/ASA-202108-3 [ASA-202108-3] nodejs-lts-erbium: arbitrary code execution - Arch Linux arbitrary code executionasanodejslts https://advisories.gitlab.com/pypi/joblib/CVE-2022-21797/ joblib vulnerable to arbitrary code execution | GitLab Advisory Database (GLAD) CVE-2022-21797 joblib vulnerable to arbitrary code execution: The package joblib from 0 and before 1.2.0 is vulnerable to Arbitrary Code Execution via the... arbitrary code executionvulnerablegitlabadvisorydatabase https://lwn.net/Articles/165512/ ketm: arbitrary code execution [LWN.net] arbitrary code executionlwn https://advisories.gitlab.com/pypi/langchain-experimental/CVE-2023-44467/ langchain_experimental vulnerable to arbitrary code execution via PALChain in the python exec... CVE-2023-44467 langchain_experimental vulnerable to arbitrary code execution via PALChain in the python exec method: langchain_experimental (aka LangChain... arbitrary code execution https://advisories.gitlab.com/pypi/langchain/CVE-2023-39631/ Langchain vulnerable to arbitrary code execution via the evaluate function in the numexpr library |... CVE-2023-39631 Langchain vulnerable to arbitrary code execution via the evaluate function in the numexpr library: An issue in LanChain-ai Langchain v.0.0.245... arbitrary code execution https://www.okta.com/en-sg/identity-101/arbitrary-code-execution/ Arbitrary Code Execution (ACE): Definition & Defense | Okta arbitrary code executionacedefinitiondefenseokta https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/QXCTROW625UBNB7I4LFH5J5WC56QNGAZ/?sort=date [ASA-201804-1] drupal: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://advisories.gitlab.com/golang/go.opentelemetry.io/otel/sdk/CVE-2026-24051/ OpenTelemetry Go SDK Vulnerable to Arbitrary Code Execution via PATH Hijacking | GitLab Advisory... CVE-2026-24051 OpenTelemetry Go SDK Vulnerable to Arbitrary Code Execution via PATH Hijacking: The OpenTelemetry Go SDK in version v1.20.0-1.39.0 is vulnerable... arbitrary code execution https://advisories.gitlab.com/npm/@github/copilot/CVE-2026-29783/ GitHub Copilot CLI Dangerous Shell Expansion Patterns Enable Arbitrary Code Execution | GitLab... CVE-2026-29783 GitHub Copilot CLI Dangerous Shell Expansion Patterns Enable Arbitrary Code Execution: A security vulnerability has been identified in GitHub... github copilot cliarbitrary code execution https://vuxml.freebsd.org/freebsd/fa433f05-c217-11f0-82ac-901b0edee044.html VuXML: py-pdfminer.six -- Arbitrary Code Execution in pdfminer.six via Crafted PDF Input arbitrary code execution https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/message/MYIJPDHPIY7SEHFLR6IDW6AYKSHW73FC/ [ASA-202505-3] webkit2gtk: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://security.archlinux.org/ASA-201803-13 [ASA-201803-13] firefox: arbitrary code execution - Arch Linux arbitrary code executionasafirefoxarchlinux https://advisories.gitlab.com/pypi/storlets/CVE-2024-28717/ OpenStack Storlets arbitrary code execution vulnerability | GitLab Advisory Database (GLAD) CVE-2024-28717 OpenStack Storlets arbitrary code execution vulnerability: An issue in OpenStack Storlets yoga-eom allows a remote attacker to execute arbitrary... arbitrary code executionopenstackvulnerabilitygitlabadvisory https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/HEKH3L45I4LSEH2QEUKYT2F5FDK7GKOG/ [ASA-202109-6] chromium: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://lwn.net/Articles/438767/ krb5: arbitrary code execution [LWN.net] arbitrary code executionlwn https://advisories.gitlab.com/npm/flowise/GHSA-3g4j-r53p-22wx/ Duplicate Advisory: FlowiseAI Pre-Auth Arbitrary Code Execution | GitLab Advisory Database (GLAD) GHSA-3g4j-r53p-22wx Duplicate Advisory: FlowiseAI Pre-Auth Arbitrary Code Execution: Duplicate Advisory This advisory has been withdrawn because it is a... arbitrary code executionpre authduplicateadvisoryflowiseai https://lwn.net/Articles/66634/ mc: arbitrary code execution [LWN.net] arbitrary code executionmclwn https://advisories.gitlab.com/npm/babel-traverse/CVE-2023-45133/ Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code |... CVE-2023-45133 Babel vulnerable to arbitrary code execution when compiling specifically crafted malicious code: Using Babel to compile code that was... arbitrary code executionbabelvulnerable https://advisories.gitlab.com/pypi/ray/CVE-2023-48022/ Ray has arbitrary code execution via jobs submission API | GitLab Advisory Database (GLAD) CVE-2023-48022 Ray has arbitrary code execution via jobs submission API: Anyscale Ray allows a remote attacker to execute arbitrary code via the job submission... arbitrary code execution https://advisories.gitlab.com/npm/@tinacms/graphql/CVE-2025-68278/ tinacms is vulnerable to arbitrary code execution | GitLab Advisory Database (GLAD) CVE-2025-68278 tinacms is vulnerable to arbitrary code execution: tinacms uses the gray-matter package in an insecure way allowing attackers that can control... arbitrary code executiontinacmsvulnerable https://www.okta.com/en-gb/identity-101/arbitrary-code-execution/ Arbitrary Code Execution (ACE): Definition & Defense | Okta arbitrary code executionacedefinitiondefenseokta https://advisories.gitlab.com/pypi/scapy/GHSA-cq46-m9x9-j8w2/ Scapy Session Loading Vulnerable to Arbitrary Code Execution via Untrusted Pickle Deserialization |... GHSA-cq46-m9x9-j8w2 Scapy Session Loading Vulnerable to Arbitrary Code Execution via Untrusted Pickle Deserialization: An unsafe deserialization vulnerability... arbitrary code execution https://www.okta.com/ko-kr/identity-101/arbitrary-code-execution/ Arbitrary Code Execution (ACE): Definition & Defense | Okta arbitrary code executionacedefinitiondefenseokta https://advisories.gitlab.com/pypi/langchain/CVE-2023-34541/ Langchain vulnerable to arbitrary code execution | GitLab Advisory Database (GLAD) CVE-2023-34541 Langchain vulnerable to arbitrary code execution: Langchain 0.0.171 is vulnerable to Arbitrary code execution in load_prompt. arbitrary code executionlangchainvulnerablegitlabadvisory https://advisories.gitlab.com/gem/ruby-lsp/CVE-2026-34060/ Ruby LSP has arbitrary code execution through branch setting | GitLab Advisory Database (GLAD) CVE-2026-34060 Ruby LSP has arbitrary code execution through branch setting: Summary The rubyLsp.branch VS Code workspace setting was interpolated without... arbitrary code execution https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/5RPXMXYO432LX3QRCOHZWPBZBZEINEBI/ [ASA-202107-10] mruby: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://advisories.gitlab.com/cargo/gix-worktree-state/CVE-2024-35186/ gix traversal outside working tree enables arbitrary code execution | GitLab Advisory Database... CVE-2024-35186 gix traversal outside working tree enables arbitrary code execution: During checkout, gitoxide does not verify that paths point to locations in... arbitrary code execution https://lwn.net/Articles/345046/ php4-eaccelerator: arbitrary code execution [LWN.net] arbitrary code executioneacceleratorlwn https://advisories.gitlab.com/pypi/langchain/CVE-2023-38896/ LangChain vulnerable to arbitrary code execution | GitLab Advisory Database (GLAD) CVE-2023-38896 LangChain vulnerable to arbitrary code execution: An issue in Harrison Chase langchain before version 0.0.236 allows a remote attacker to... arbitrary code executionlangchainvulnerablegitlabadvisory https://advisories.gitlab.com/golang/github.com/edgelesssys/contrast/GHSA-g9ww-x58f-9g6m/ Contrast BadAML injection allows arbitrary code execution | GitLab Advisory Database (GLAD) GHSA-g9ww-x58f-9g6m Contrast BadAML injection allows arbitrary code execution: An attacker with control over the host (which is assumed in the attacker model... arbitrary code executioncontrastinjectionallows https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nxos-bshacepe-bApeHSx7?vs_f=Cisco%20Security%20Advisory%26vs_cat%3DSecurity%20Intelligence%26vs_type%3DRSS%26vs_p%3DCisco%20NX-OS%20Software%20Bash%20Arbitrary%20Code%20Execution%20and%20Privilege%20Escalation%20Vulnerabilities%26vs_k%3D1 Cisco NX-OS Software Bash Arbitrary Code Execution and Privilege Escalation Vulnerabilities Multiple vulnerabilities in Cisco NX-OS Software could allow an authenticated, local attacker with privileges to access the Bash shell to execute arbitrary... arbitrary code execution https://advisories.gitlab.com/pypi/llama-index/CVE-2023-39662/ llama-index vulnerable to arbitrary code execution | GitLab Advisory Database (GLAD) CVE-2023-39662 llama-index vulnerable to arbitrary code execution: An issue in llama_index v.0.7.13 and before allows a remote attacker to execute arbitrary... arbitrary code executionllamaindexvulnerable https://advisories.gitlab.com/pypi/llamafactory/CVE-2025-46567/ LLaMA-Factory Allows Arbitrary Code Execution via Unsafe Deserialization in Ilamafy_baichuan2.py |... CVE-2025-46567 LLaMA-Factory Allows Arbitrary Code Execution via Unsafe Deserialization in Ilamafy_baichuan2.py: A critical vulnerability exists in the... arbitrary code execution https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/EV2X4J6FSA2Q3NOKE2GQI4CXGZJNLKV5/ [ASA-201807-15] wesnoth: arbitrary code execution - Arch-security - lists.archlinux.org arbitrary code execution https://lwn.net/Articles/165403/ nbd: arbitrary code execution [LWN.net] arbitrary code executionnbdlwn https://its.ny.gov/2025-061 A Vulnerability in Google Chrome Could Allow for Arbitrary Code Execution | Office of Information... No. 2025-061Date: 07/2/2025 https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/CWUZ5KZJAZ4ULJOQVQX6VOBBJWOTWEZK/ [ASA-202107-34] code: arbitrary code execution - Arch-security - lists.archlinux.org security listsasacodearbitrary https://advisories.gitlab.com/maven/ch.qos.logback/logback-core/CVE-2025-11226/ QOS.CH logback-core is vulnerable to Arbitrary Code Execution through file processing | GitLab... CVE-2025-11226 QOS.CH logback-core is vulnerable to Arbitrary Code Execution through file processing: QOS.CH logback-core versions up to 1.5.18 contain an ACE... https://its.ny.gov/2020-167 Multiple Vulnerabilities in Apple Products Could Allow for Arbitrary Code Execution | Office of... No. 2020-167 Date: 12/15/2020 https://lists.debian.org/debian-security/2006/03/msg00176.html [SECURITY] [DSA 1012-1] New unzip packages fix arbitrary code execution securitydsanew https://advisories.gitlab.com/cargo/risc0-zkvm-platform/CVE-2025-61588/ risc0 vulnerable to arbitrary code execution in guest via memory safety failure in `sys_read` |... CVE-2025-61588 risc0 vulnerable to arbitrary code execution in guest via memory safety failure in `sys_read`: Arbitrary code execution in guest via memory... https://lists.debian.org/debian-security-announce/2004/msg00223.html [SECURITY] [DSA 614-1] New xzgv packages fix arbitrary code execution securitydsanew https://www.drupal.org/node/803952 SA-CONTRIB-2010-059: Panels - Arbitrary PHP code execution | Drupal.org May 20, 2010 - Advisory ID: DRUPAL-SA-CONTRIB-2010-059 Project: Panels (third-party module) Versions: 6.x Date: 2010 May 19 Security risk: Critical Exploitable from: Remote... php codesacontribpanels https://its.ny.gov/2025-023 Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution | Office of... No. 2025-023Date: 03/11/2025 https://lists.debian.org/debian-security-announce/2010/msg00016.html [SECURITY] [DSA 1980-1] New ircd-hybrid/ircd-ratbox packages fix arbitrary code execution https://lists.debian.org/debian-security/2004/10/msg00068.html Re: [DSA 563-1] New cyrus-sasl packages fix arbitrary code execution https://lists.debian.org/debian-security-announce/2005/msg00234.html [SECURITY] [DSA 842-1] New egroupware packages fix arbitrary code execution securitydsanew https://advisories.gitlab.com/pypi/esphome/CVE-2024-27081/ ESPHome vulnerable to remote code execution via arbitrary file write | GitLab Advisory Database... CVE-2024-27081 ESPHome vulnerable to remote code execution via arbitrary file write: Security misconfiguration in edit configuration file API in dashboard... remote code execution https://advisories.gitlab.com/composer/drupal/drupal/GHSA-j66p-fvp2-fxhj/ Drupal core Arbitrary PHP code execution | GitLab Advisory Database (GLAD) GHSA-j66p-fvp2-fxhj Drupal core Arbitrary PHP code execution: The Drupal project uses the PEAR Archive_Tar library. The PEAR Archive_Tar library has released a... drupal corephp codearbitraryexecutiongitlab