pkg:PyPI/vanna

4 total CVEsCRITICAL1HIGH3

✅ Check your installed version

All known vulnerabilities

  • CRITICAL9.8CVE-2024-5826vanna vulnerable to remote code execution caused by prompt injection
    from 0, <= 0.6.2
  • HIGH8.1CVE-2024-5565Vanna prompt injection code execution
    from 0, <= 0.5.5
  • HIGH7.5CVE-2024-5753Vanna vulnerable to SQL Injection
    from 0, <= 0.3.4
  • HIGH7.3CVE-2026-4229Vanna has a SQL injection in the remove_training_data function
    from 0, <= 2.0.2