VYPR

PyPI package

feast

pkg:pypi/feast

Vulnerabilities (2)

  • CVE-2025-11157HigJan 1, 2026
    affected < 0.54.0fixed 0.54.0

    A high-severity remote code execution vulnerability exists in feast-dev/feast version 0.53.0, specifically in the Kubernetes materializer job located at `feast/sdk/python/feast/infra/compute_engines/kubernetes/main.py`. The vulnerability arises from the use of `yaml.load(..., Loa

  • CVE-2024-11602HigMar 20, 2025
    affected <= 0.40.0

    A Cross-Origin Resource Sharing (CORS) vulnerability exists in feast-dev/feast version 0.40.0. The CORS configuration on the agentscope server does not properly restrict access to only trusted origins, allowing any external domain to make requests to the API. This can bypass inte