CVEs we hold for Mindsdb
Records whose assigning authority named Mindsdb as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-73678MindsDB Minds Platform v26.1.0 Unauthenticated RCE via scratchpad exec()MindsDB Minds Platform
CVE-2025-68472MindsDB has improper sanitation of filepath that leads to information disclosure and DOSmindsdb
CVE-2023-38699MindsDB 'Call to requests with verify=False disabling SSL certificate checks, security issue.' issuemindsdb
CVE-2023-30620Arbitrary File Write when Extracting a Remotely retrieved Tarball in mindsdb/mindsdbmindsdb
CVE-2022-23522Arbitrary File Write when Extracting Tarballs retrieved from a remote location using in mindsdbmindsdb
26 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.