Vulnerabilities
Summary — last 7 days
New vulnerabilities2,744▼ 71 vs. last week
Critical / high1,416▲ 184 vs. last week
New active exploitation (KEV)5▼ 5 vs. last week
Unscored (no CVSS)106▼ 394 vs. last week
8 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Deferred | High (8.6) | 0.80% | — | Cherry-ai Cherry StudioAI | 7/15/2026 | 7/15/2026 | Cherry Studio versions 1.2.2 through 1.9.12, fixed in commit 1518530, contain a remote code execution vulnerability in SearchService that allows remote attackers to execute arbitrary code by delivering malicious JavaScript through controlled search provider content loaded into an Electron BrowserWindow configured with… | |
| Deferred | Low (1.3) | 0.33% | — | Cherryhq Cherry-studioAI | 6/29/2026 | 6/29/2026 | A vulnerability was detected in CherryHQ cherry-studio up to 1.9.7. This affects the function sha256 of the file src/main/services/memory/MemoryService.ts of the component CherryIN Preload API. Performing a manipulation of the argument state results in authorization bypass. The attack can be initiated remotely. The… | |
| Deferred | Low (2.9) | 0.42% | — | Cherryhq Cherry-studioAI | 6/29/2026 | 6/30/2026 | A security vulnerability has been detected in CherryHQ cherry-studio up to 1.9.6. This vulnerability affects unknown code of the file src/main/services/mcp/oauth/callback.ts of the component MCP OAuth Local Callback Server. The manipulation of the argument code leads to improper authorization. The attack can be… | |
| Deferred | Low (2.1) | 1.3% | — | Tykodev Cherry-studio-tykoforkAI | 12/7/2025 | 6/17/2026 | A vulnerability has been found in TykoDev cherry-studio-TykoFork 0.1. This issue affects the function redirectToAuthorization of the file /.well-known/oauth-authorization-server of the component OAuth Server Discovery. Such manipulation of the argument authorizationUrl leads to os command injection. The attack can be… | |
| Analyzed | Critical (9.6) | 0.47% | — | Cherry-ai Cherry Studio | 10/10/2025 | 6/17/2026 | Cherry Studio is a desktop client that supports for multiple LLM providers. Cherry Studio registers a custom protocol called `cherrystudio://`. When handling the MCP installation URL, it parses the base64-encoded configuration data and directly executes the command within it. In the files… | |
| Analyzed | High (8.8) | 7.4% | — | Cherry-ai Cherry Studio | 8/13/2025 | 6/17/2026 | Cherry Studio is a desktop client that supports for multiple LLM providers. In version 1.5.1, a remote code execution (RCE) vulnerability exists in the Cherry Studio platform when connecting to streamableHttp MCP servers. The issue arises from the server’s implicit trust in the oauth auth redirection endpoints and… | |
| Analyzed | High (7.7) | 2.1% | — | Cherry-ai Cherry Studio | 8/13/2025 | 6/17/2026 | Cherry Studio is a desktop client that supports for multiple LLM providers. From versions 1.2.5 to 1.5.1, Cherry Studio is vulnerable to OS Command Injection during a connection with a malicious MCP server in HTTP Streamable mode. Attackers can setup a malicious MCP server with compatible OAuth authorization server… | |
| Analyzed | Critical (9.6) | 0.76% | — | Cherry-ai Cherry Studio | 8/11/2025 | 6/17/2026 | Cherry Studio is a desktop client that supports for multiple LLM providers. From versions 1.4.8 to 1.5.0, there is a one-click remote code execution vulnerability through the custom URL handling. An attacker can exploit this by hosting a malicious website or embedding a specially crafted URL on any website. If a… |