All 3 CVE vulnerabilities found in giskard-oss, with AI-generated Chinese analysis, references, and POCs.
Vendor: Giskard-AI
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-40320 | Giskard has an Unsandboxed Jinja2 Template Rendering in ConformityCheck CWE-1336 | 8.8AI | HighAI | 2026-04-17 |
| CVE-2026-40319 | Giskard has a Regular Expression Denial of Service (ReDoS) in RegexMatching Check CWE-1333 | 7.5AI | HighAI | 2026-04-17 |
| CVE-2026-34172 | Giskard Agents have Server-side template injection via ChatWorkflow.chat() using non-sandboxed Jinja2 Environment CWE-1336 | 9.8 | - | 2026-03-31 |
All 3 known CVE vulnerabilities affecting giskard-oss with full Chinese analysis, references, and POCs where available.