ondata CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

ondata vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to ondata, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-33060 CKAN MCP Server is a tool for querying CKAN open data portals. Versions prior to 0.4.85 provide tools including ckan_package_search and sparql_query that accept a base_url parameter, making HTTP requests to arbitrary endpoints without restriction. A CKAN portal client has no legitimate reason to contact cloud metadata or internal network services. There is no URL validation on base_url parameter. No private IP blocking (RFC 1918, link-local 169.254.x.x), no cloud metadata blocking. The sparql_qu [email protected] 5.3 0.03% 2026-03-20 2026-04-17
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence