Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
6.5
CVE-2026-19022
- EPSS 1.29%
- Veröffentlicht 06.08.2026 09:16:36
- Zuletzt bearbeitet 12.08.2026 21:00:37
A vulnerability was determined in OpenHands up to 0.62.0. The affected element is the function initialize_repo of the file OpenHands/resolver/send_pull_request.py. This manipulation causes command injection. Remote exploitation of the attack is possi...
9.9
CVE-2026-33718
- EPSS 1.89%
- Veröffentlicht 27.03.2026 00:12:24
- Zuletzt bearbeitet 10.04.2026 15:23:47
OpenHands is software for AI-driven development. Starting in version 1.5.0, a Command Injection vulnerability exists in the `get_git_diff()` method at `openhands/runtime/utils/git_handler.py:134`. The `path` parameter from the `/api/conversations/{co...
1