redyank
8 exploits
Active since Mar 2026
Redirect-based SSRF leading to internal network access in curl_cffi (with TLS impersonation bypass)
CVSS 8.6
Kedro-Datasets has a path traversal vulnerability in PartitionedDataset allows arbitrary file write
CVSS 6.5
Lupa has a Sandbox escape and RCE due to incomplete attribute_filter enforcement in getattr / setattr
CVSS 10.0
FastFeedParser has an infinite redirect loop DoS via meta-refresh chain
CVSS 7.5
Intake has a Command Injection via shell() Expansion in Parameter Defaults
CVSS 8.8
dynaconf Affected by Remote Code Execution (RCE) via Insecure Template Evaluation in @jinja Resolver
CVSS 7.5
GMT <= 6.6.0 - Stack Buffer Overflow in gmt_remote_dataset_id
CVSS 7.3
eml_parser <2.0.1 - Path Traversal
CVSS 5.5