Skip to main content

Vendor archive

danielgatis CVEs

Beta · best-effort

3 CVEs tagged to vendor danielgatis0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2026-40086

Published Apr 10, 2026

Rembg is a tool to remove images background. Prior to 2.0.75, a path traversal vulnerability in the rembg HTTP server allows unauthenticated remote attackers to read arbitrary fil…

CVSS 5.3 · Medium
evidence mentions
3
Buzz score
18.9
Vendor/product tagsBeta · best-effort

CVE-2025-25302

Published Mar 3, 2025

Rembg is a tool to remove images background. In Rembg 2.0.57 and earlier, the CORS middleware is setup incorrectly. All origins are reflected, which allows any website to send cro…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2025-25301

Published Mar 3, 2025

Rembg is a tool to remove images background. In Rembg 2.0.57 and earlier, the /api/remove endpoint takes a URL query parameter that allows an image to be fetched, processed and re…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1