Live data from GitHub and PyPI, updated daily.
Data last fetched: 2026-05-16
10 active CVEs reported via OSV.dev
mindsdb arbitrary file write when extracting a remotely retrieved Tarball
MindsDB Cross-site Scripting vulnerability
Server-Side Request Forgery in mindsdb
MindsDB: Path Traversal in /api/files Leading to Remote Code Execution
MindsDB Vulnerable to Bypass of SSRF Protection with DNS Rebinding
MindsDB affected by a SSRF vulnerability
MindsDB Deserialization of Untrusted Data vulnerability
MindsDB Deserialization of Untrusted Data vulnerability
Arbitrary file write in mindsdb when Extracting Tarballs retrieved from a remote location
MindsDB can be made to not verify SSL certificates
Get SLA-backed support, security patches, and direct access to senior engineers for MindsDB — without relying on volunteer maintainers.
Talk to an Expert →