VYPR

Astropy

by Astropy

CVEs (4)

  • CVE-2023-41334HigMar 18, 2024
    risk 0.48cvss 8.4epss 0.01

    Astropy is a project for astronomy in Python that fosters interoperability between Python astronomy packages. Version 5.3.2 of the Astropy core package is vulnerable to remote code execution due to improper input validation in the `TranformGraph().to_dot_graph` function. A…

  • CVE-2026-73424MedAug 17, 2026
    risk 0.35cvss 6.5epss 0.00

    Astro is a web framework for content-driven websites. From 10.0.3 until 11.0.3, the Astro Vercel adapter in packages/integrations/vercel/src/serverless/entrypoint.ts accepts x_astro_path for the public /_isr function based only on the x-vercel-isr header, allowing…

  • CVE-2026-73425LowAug 12, 2026
    risk 0.17cvss 3.7epss 0.00

    Astro is a web framework for content-driven websites. Prior to 8.1.2, the Astro Netlify adapter converts each image.remotePatterns entry into a regular expression written to .netlify/v1/config.json under images.remote_images for Netlify's Image CDN allowlist. In…

  • CVE-2026-59727LowJul 27, 2026
    risk 0.07cvss epss 0.00

    Astro is a web framework for content-driven websites. In versions 3.10.0 through 7.0.3, when a transition:persist, transition:scope, or transition:persist-props directive is applied to a client-hydrated (client:*) component, Astro copied the directive value onto the rendered…