Junglewise Threat Intelligence

CVE-2026-4229: PYSEC-2026-3397 - Vanna has a SQL injection in the remove_training_data function

CVE-2026-4229 · Severity: low · CVSS 3.1 · Published 2026-07-13

Technologies: vanna (PyPI). Vendors: PyPI.

Executive brief

Vanna has a SQL injection in the remove_training_data function

Affected products

  • PyPI vanna

Related threats