Vulnerability Description
An issue in safishamsi Open-Source GRAPHIFY v.0.3.2 through v0.4.29 allows a remote attacker to execute arbitrary code via the validate_url, safe_fetch, _build_opener, _fetch_html and _download_binary functions.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://github.com/Arturo0x90/CVE-2026-51385/
- https://graphify.com
- https://lock.cmpxchg8b.com/rebinder.html
- https://github.com/Arturo0x90/CVE-2026-51385/
FAQ
What is CVE-2026-51385?
CVE-2026-51385 is a vulnerability with a CVSS score of 6.9 (MEDIUM). An issue in safishamsi Open-Source GRAPHIFY v.0.3.2 through v0.4.29 allows a remote attacker to execute arbitrary code via the validate_url, safe_fetch, _build_opener, _fetch_html and _download_binary...
How severe is CVE-2026-51385?
CVE-2026-51385 has been rated MEDIUM with a CVSS base score of 6.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-51385?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.