apeworx CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

apeworx vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to apeworx, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-40072 web3.py allows you to interact with the Ethereum blockchain using Python. From 6.0.0b3 to before 7.15.0 and 8.0.0b2, web3.py implements CCIP Read / OffchainLookup (EIP-3668) by performing HTTP requests to URLs supplied by smart contracts in offchain_lookup_payload["urls"]. The implementation uses these contract-supplied URLs directly (after {sender} / {data} template substitution) without any destination validation. CCIP Read is enabled by default (global_ccip_read_enabled = True on all provider [email protected] 1.7 0.05% 2026-04-09 2026-06-02
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence