ouroboros-ai
PyPI2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting ouroboros-aipage 1 of 1
- CVE-2026-47211HIGHCVSS 8.4EG 8.4✓ Fixed in 0.39.02026-05-29
vulnerable: 0.1.0 ... 0.9.0 (302 versions)
Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to constrain behavior. In versions prior to 0.39.0, if a user clones a malicious repository and runs Ouroboros commands wi…
- CVE-2026-66065HIGHCVSS 8.4EG 8.4✓ Fixed in 0.42.12026-08-03
vulnerable: 0.1.0 ... 0.9.0 (853 versions)
Ouroboros is a local-first runtime for AI coding agents that records their actions and applies user-defined policies to constrain behavior. Versions prior to 0.42.1 have an incomplete denylist. Several execution-routing keys of the same RC…
Check whether ouroboros-ai is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for ouroboros-ai CVEs against the assets you own.
Start Free Scan →