pip CVE Archive

glances CVE Vulnerabilities

All known CVEs affecting glances. Kodem’s runtime-powered SCA reveals which are actually reachable in your application.

Known vulnerabilities
CVE
Summary
Severity
CVE-2026-53925
Glances has arbitrary file write and command execution via `secure_popen`…
High
CVE-2026-46611
Glances: XML-RPC Server Missing Host Header Validation Enables DNS Rebinding…
Medium
CVE-2026-46608
Glances: XML-RPC Multi-Origin CORS Configuration Silently Falls Back to…
High
CVE-2026-46607
Glances has Insecure Pickle Deserialization in its Version Cache that Leads to…
High
CVE-2026-46606
Glances is Vulnerable to Command Injection via KVM/QEMU VM Domain Names in…
High
CVE-2026-35588
Glances has CQL Injection in its Cassandra Export Module via Unsanitized Config…
Medium
CVE-2026-35587
Glances has SSRF in IP Plugin via public_api leading to credential leakage
High
CVE-2026-34839
Glances: Cross-Origin Information Disclosure via Unauthenticated REST API…
High
CVE-2026-33641
Glances Vulnerable to Command Injection via Dynamic Configuration Values
High
CVE-2026-32634
Glances Central Browser Autodiscovery Leaks Reusable Credentials to…
High
CVE-2026-32633
Glances's Browser API Exposes Reusable Downstream Credentials via…
Critical
CVE-2026-32632
Glances's REST/WebUI Lacks Host Validation and Remains Exposed to DNS Rebinding
Medium
CVE-2026-32611
Glances has a SQL Injection in DuckDB Export via Unparameterized DDL Statements
High
CVE-2026-32610
Glances's Default CORS Configuration Allows Cross-Origin Credential Theft
High
CVE-2026-32609
Glances has Incomplete Secrets Redaction: /api/v4/args Endpoint Leaks Password…
High
CVE-2026-32608
Glances has a Command Injection via Process Names in Action Command Templates
High
CVE-2021-23418
XML External Entity Reference in Glances
Medium

Prioritize glances vulnerabilities

Kodem Kai can identify which of these CVEs are reachable in your dependency tree and generate targeted fix recommendations.

Get a demo →

Stop the waste.
Protect your environment with Kodem.