Python-Poetry / Poetry
5 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-41140 | Poetry: Path traversal in tar extraction on Python 3.10.0 - 3.10.12 and 3.11.0 - 3.11.4 | LOW | 0.6 | Apr 24, 2026 |
| CVE-2026-34591 | Poetry Has Wheel Path Traversal Which Can Lead to Arbitrary File Write | HIGH | 7.1 | Apr 2, 2026 |
| CVE-2022-36069 | Poetry Argument Injection vulnerability can lead to local Code Execution | HIGH | 7.3 | Sep 7, 2022 |
| CVE-2022-36070 | Poetry's Untrusted Search Path can lead to Local Code Execution on Windows | HIGH | 7.3 | Sep 7, 2022 |
| CVE-2022-26184 | Poetry v1.1.9 and below was discovered to contain an untrusted search path which causes the application to behave in unexpected ways when users execute Poetry… | CRITICAL | 9.3 | Mar 21, 2022 |
Showing 1 to 5 of 5 CVEs