Browse all 4 CVE security advisories affecting Gleam. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-42795 | Symlink Following in Hex Package Export Allows Embedding Files Outside Project Root — Gleam CWE-59 | - | - | 2026-06-02 |
| CVE-2026-32685 | Path Traversal in gleam docs build via documentation.pages Allows Arbitrary File Read and Write — Gleam CWE-22 | - | - | 2026-06-02 |
| CVE-2026-43965 | Path Traversal in build/packages/packages.toml Allows Arbitrary Directory Deletion — Gleam CWE-22 | - | - | 2026-06-02 |
| CVE-2026-32146 | Improper Path Validation in Git Dependency Handling Allows Arbitrary File System Modification — Gleam CWE-22 | 7.5 | - | 2026-04-11 |
This page lists every published CVE security advisory associated with Gleam. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.