{"schema_version":1,"title":"crawl4ai (PyPI) vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 29 vulnerabilities in crawl4ai (PyPI): 0 in the last 7 days and 13 in the last 90 days, 9 of them critical and 0 exploited in the wild. The most recent, CVE-2026-91944, was published on 15 September 2026.","url":"https://junglewise.ai/threats/technologies/crawl4ai","json_url":"https://junglewise.ai/threats/technologies/crawl4ai.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/crawl4ai","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":15,"all_time":29,"critical":9,"exploited":0,"last_7_days":0,"last_30_days":5,"last_90_days":13,"last_365_days":29},"latest":[{"cve":"CVE-2026-91944","cvss":6.1,"epss":0.0026,"slug":"cve-2026-91944-crawl4ai-dom-based-xss-in-playground-ui","title":"crawl4ai DOM-based XSS in Playground UI","severity":"medium","exploited":false,"published_at":"2026-09-15T16:17:46.433+00:00","url":"https://junglewise.ai/threats/cve-2026-91944-crawl4ai-dom-based-xss-in-playground-ui"},{"cve":"CVE-2026-91943","cvss":7.7,"epss":0.0035,"slug":"cve-2026-91943-crawl4ai-pdfcontentscrapingstrategy-server-side-request-forgery","title":"Crawl4AI PDFContentScrapingStrategy server-side request forgery","severity":"high","exploited":false,"published_at":"2026-09-15T16:17:46.29+00:00","url":"https://junglewise.ai/threats/cve-2026-91943-crawl4ai-pdfcontentscrapingstrategy-server-side-request-forgery"},{"cve":"CVE-2026-91942","cvss":5.4,"epss":0.0024,"slug":"cve-2026-91942-crawl4ai-dom-based-xss-in-docker-playground-via-innerhtml","title":"crawl4ai DOM-based XSS in Docker Playground via innerHTML","severity":"medium","exploited":false,"published_at":"2026-09-15T16:17:46.15+00:00","url":"https://junglewise.ai/threats/cve-2026-91942-crawl4ai-dom-based-xss-in-docker-playground-via-innerhtml"},{"cve":"CVE-2026-91941","cvss":7.5,"epss":0.0049,"slug":"cve-2026-91941-crawl4ai-uncontrolled-resource-consumption-in","title":"Crawl4AI uncontrolled resource consumption in PDFContentScrapingStrategy","severity":"high","exploited":false,"published_at":"2026-09-15T16:17:46+00:00","url":"https://junglewise.ai/threats/cve-2026-91941-crawl4ai-uncontrolled-resource-consumption-in"},{"cve":"CVE-2026-91940","cvss":7.5,"epss":0.0046,"slug":"cve-2026-91940-crawl4ai-arbitrary-file-write-in-pdfcontentscrapingstrategy","title":"crawl4ai arbitrary file write in PDFContentScrapingStrategy","severity":"high","exploited":false,"published_at":"2026-09-15T16:17:45.46+00:00","url":"https://junglewise.ai/threats/cve-2026-91940-crawl4ai-arbitrary-file-write-in-pdfcontentscrapingstrategy"},{"cve":"CVE-2026-56260","cvss":9.1,"epss":0.0065,"slug":"cve-2026-56260-crawl4ai-arbitrary-file-write-in-docker-api-server-screenshot-and","title":"Crawl4AI arbitrary file write in Docker API server screenshot and pdf endpoints","severity":"critical","exploited":false,"published_at":"2026-07-12T12:16:45.153+00:00","url":"https://junglewise.ai/threats/cve-2026-56260-crawl4ai-arbitrary-file-write-in-docker-api-server-screenshot-and"},{"cve":"CVE-2026-56259","cvss":8.2,"epss":0.0043,"slug":"cve-2026-56259-crawl4ai-credential-exfiltration-in-docker-api-server","title":"Crawl4AI credential exfiltration in Docker API server","severity":"high","exploited":false,"published_at":"2026-07-12T12:16:45.013+00:00","url":"https://junglewise.ai/threats/cve-2026-56259-crawl4ai-credential-exfiltration-in-docker-api-server"},{"cve":"CVE-2026-56261","cvss":8.6,"slug":"cve-2026-56261-crawl4ai-ssrf-in-docker-api-webhook-endpoints","title":"Crawl4AI SSRF in Docker API webhook endpoints","severity":"high","exploited":false,"published_at":"2026-07-10T15:16:42.017+00:00","url":"https://junglewise.ai/threats/cve-2026-56261-crawl4ai-ssrf-in-docker-api-webhook-endpoints"},{"cve":"CVE-2025-28197","cvss":4,"epss":0.0037,"slug":"cve-2025-28197-crawl4ai-ssrf-vulnerability","title":"PYSEC-2026-1281 - Crawl4AI SSRF vulnerability","severity":"medium","exploited":false,"published_at":"2026-07-07T16:02:51.277089+00:00","url":"https://junglewise.ai/threats/cve-2025-28197-crawl4ai-ssrf-vulnerability"},{"cve":"CVE-2026-57573","cvss":8.6,"epss":0.0045,"slug":"cve-2026-57573-unclecode-crawl4ai-ssrf-in-docker-api-streaming-path","title":"unclecode Crawl4AI SSRF in Docker API streaming path","severity":"high","exploited":false,"published_at":"2026-07-06T21:16:58.197+00:00","url":"https://junglewise.ai/threats/cve-2026-57573-unclecode-crawl4ai-ssrf-in-docker-api-streaming-path"},{"cve":"CVE-2026-57572","cvss":10,"epss":0.0094,"slug":"cve-2026-57572-unclecode-crawl4ai-remote-code-execution-in-docker-api-server","title":"unclecode Crawl4AI remote code execution in Docker API server","severity":"critical","exploited":false,"published_at":"2026-07-06T21:16:58.047+00:00","url":"https://junglewise.ai/threats/cve-2026-57572-unclecode-crawl4ai-remote-code-execution-in-docker-api-server"},{"cve":"CVE-2026-57571","cvss":9.6,"epss":0.0081,"slug":"cve-2026-57571-unclecode-crawl4ai-path-traversal-in-crawler-downloads","title":"UncleCode Crawl4AI Path Traversal in Crawler Downloads","severity":"critical","exploited":false,"published_at":"2026-07-06T21:16:57.907+00:00","url":"https://junglewise.ai/threats/cve-2026-57571-unclecode-crawl4ai-path-traversal-in-crawler-downloads"},{"cve":"CVE-2026-56264","cvss":8.1,"slug":"cve-2026-56264-crawl4ai-arbitrary-javascript-execution-in-docker-api-server","title":"Crawl4AI arbitrary JavaScript execution in Docker API server","severity":"high","exploited":false,"published_at":"2026-06-30T23:17:29.363+00:00","url":"https://junglewise.ai/threats/cve-2026-56264-crawl4ai-arbitrary-javascript-execution-in-docker-api-server"},{"cve":"CVE-2026-56262","cvss":6.5,"slug":"cve-2026-56262-crawl4ai-authentication-bypass-in-monitor-router-endpoints","title":"Crawl4AI authentication bypass in monitor router endpoints","severity":"medium","exploited":false,"published_at":"2026-06-24T13:16:35.263+00:00","url":"https://junglewise.ai/threats/cve-2026-56262-crawl4ai-authentication-bypass-in-monitor-router-endpoints"},{"cve":"CVE-2026-53755","cvss":8.6,"epss":0.0158,"slug":"cve-2026-53755-unclecode-crawl4ai-ssrf-via-proxy-settings-in-docker-api-server","title":"unclecode Crawl4AI SSRF via proxy settings in Docker API server","severity":"high","exploited":false,"published_at":"2026-06-23T19:17:07.477+00:00","url":"https://junglewise.ai/threats/cve-2026-53755-unclecode-crawl4ai-ssrf-via-proxy-settings-in-docker-api-server"},{"cve":"CVE-2026-53754","cvss":7.5,"epss":0.0043,"slug":"cve-2026-53754-unclecode-crawl4ai-ssrf-in-docker-api-server","title":"unclecode Crawl4AI SSRF in Docker API server","severity":"high","exploited":false,"published_at":"2026-06-23T19:17:07.303+00:00","url":"https://junglewise.ai/threats/cve-2026-53754-unclecode-crawl4ai-ssrf-in-docker-api-server"},{"cve":"CVE-2026-53753","cvss":9.8,"epss":0.029,"slug":"cve-2026-53753-unclecode-crawl4ai-sandbox-escape-in-safe-eval-expression","title":"unclecode Crawl4AI sandbox escape in _safe_eval_expression","severity":"critical","exploited":false,"published_at":"2026-06-23T19:17:07.107+00:00","url":"https://junglewise.ai/threats/cve-2026-53753-unclecode-crawl4ai-sandbox-escape-in-safe-eval-expression"},{"cve":"CVE-2026-56263","cvss":6.1,"slug":"cve-2026-56263-crawl4ai-stored-xss-in-monitor-dashboard","title":"Crawl4AI stored XSS in monitor dashboard","severity":"medium","exploited":false,"published_at":"2026-06-23T13:16:44.947+00:00","url":"https://junglewise.ai/threats/cve-2026-56263-crawl4ai-stored-xss-in-monitor-dashboard"},{"cve":"CVE-2026-56258","cvss":8.1,"epss":0.0091,"slug":"cve-2026-56258-crawl4ai-arbitrary-file-write-in-screenshot-and-pdf-endpoints","title":"Crawl4AI arbitrary file write in screenshot and PDF endpoints","severity":"high","exploited":false,"published_at":"2026-06-23T13:16:44.817+00:00","url":"https://junglewise.ai/threats/cve-2026-56258-crawl4ai-arbitrary-file-write-in-screenshot-and-pdf-endpoints"},{"cve":"CVE-2026-56266","cvss":8.6,"slug":"cve-2026-56266-unclecode-crawl4ai-ssrf-in-crawl-and-extraction-endpoints","title":"unclecode Crawl4AI SSRF in crawl and extraction endpoints","severity":"high","exploited":false,"published_at":"2026-06-22T22:16:50.937+00:00","url":"https://junglewise.ai/threats/cve-2026-56266-unclecode-crawl4ai-ssrf-in-crawl-and-extraction-endpoints"},{"cve":"CVE-2026-56265","cvss":9.8,"epss":0.0264,"slug":"cve-2026-56265-crawl4ai-hardcoded-jwt-signing-key-in-docker-api-server","title":"Crawl4AI hardcoded JWT signing key in Docker API server","severity":"critical","exploited":false,"published_at":"2026-06-21T14:16:24.98+00:00","url":"https://junglewise.ai/threats/cve-2026-56265-crawl4ai-hardcoded-jwt-signing-key-in-docker-api-server"},{"cvss":8.6,"slug":"crawl4ai-ssrf-in-docker-server-streaming-crawl-path-7055c94e","title":"Crawl4AI SSRF in Docker server streaming crawl path","severity":"high","exploited":false,"published_at":"2026-06-18T17:25:50+00:00","url":"https://junglewise.ai/threats/crawl4ai-ssrf-in-docker-server-streaming-crawl-path-7055c94e"},{"cvss":10,"slug":"crawl4ai-unauthenticated-rce-via-chromium-launch-argument-injection-ffa17c34","title":"Crawl4AI unauthenticated RCE via Chromium launch-argument injection","severity":"critical","exploited":false,"published_at":"2026-06-18T17:25:34+00:00","url":"https://junglewise.ai/threats/crawl4ai-unauthenticated-rce-via-chromium-launch-argument-injection-ffa17c34"},{"cvss":9.6,"slug":"crawl4ai-path-traversal-in-crawler-downloads-leads-to-rce-c93abd99","title":"Crawl4AI path traversal in crawler downloads leads to RCE","severity":"critical","exploited":false,"published_at":"2026-06-18T17:25:13+00:00","url":"https://junglewise.ai/threats/crawl4ai-path-traversal-in-crawler-downloads-leads-to-rce-c93abd99"},{"cvss":8.1,"slug":"crawl4ai-arbitrary-file-write-and-injection-in-docker-server-af387dbe","title":"Crawl4AI arbitrary file write and injection in Docker server","severity":"high","exploited":false,"published_at":"2026-06-16T21:02:19+00:00","url":"https://junglewise.ai/threats/crawl4ai-arbitrary-file-write-and-injection-in-docker-server-af387dbe"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-06","critical":3,"exploited":0,"vulnerabilities":7},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":5},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"open-webui (PyPI)","slug":"open-webui","vulnerabilities":156,"url":"https://junglewise.ai/threats/technologies/open-webui"},{"name":"nltk (PyPI)","slug":"nltk","vulnerabilities":74,"url":"https://junglewise.ai/threats/technologies/nltk"},{"name":"picklescan (PyPI)","slug":"picklescan","vulnerabilities":74,"url":"https://junglewise.ai/threats/technologies/picklescan"},{"name":"openbabel (PyPI)","slug":"openbabel","vulnerabilities":48,"url":"https://junglewise.ai/threats/technologies/openbabel"},{"name":"apache-superset (PyPI)","slug":"apache-superset","vulnerabilities":44,"url":"https://junglewise.ai/threats/technologies/apache-superset"},{"name":"apache-airflow (PyPI)","slug":"apache-airflow","vulnerabilities":40,"url":"https://junglewise.ai/threats/technologies/apache-airflow"},{"name":"tensorflow-gpu (PyPI)","slug":"tensorflow-gpu","vulnerabilities":37,"url":"https://junglewise.ai/threats/technologies/tensorflow-gpu"},{"name":"tensorflow-cpu (PyPI)","slug":"tensorflow-cpu","vulnerabilities":34,"url":"https://junglewise.ai/threats/technologies/tensorflow-cpu"},{"name":"weblate (PyPI)","slug":"weblate","vulnerabilities":33,"url":"https://junglewise.ai/threats/technologies/weblate"},{"name":"mcp-atlassian (PyPI)","slug":"mcp-atlassian","vulnerabilities":30,"url":"https://junglewise.ai/threats/technologies/mcp-atlassian"},{"name":"moin (PyPI)","slug":"moin","vulnerabilities":28,"url":"https://junglewise.ai/threats/technologies/moin"},{"name":"opencv-contrib-python (PyPI)","slug":"opencv-contrib-python","vulnerabilities":24,"url":"https://junglewise.ai/threats/technologies/opencv-contrib-python"}],"technology":{"hub":true,"name":"crawl4ai (PyPI)","slug":"crawl4ai","vendor":{"name":"PyPI","slug":"pypi","url":"https://junglewise.ai/threats/vendors/pypi"},"aliases":[],"homepage":"https://pypi.org/project/crawl4ai/","repo_url":"https://github.com/unclecode/crawl4ai","description":"An open-source Python library designed for crawling and scraping web content for use in large language models.","url":"https://junglewise.ai/threats/technologies/crawl4ai"},"most_severe":[{"cve":"CVE-2026-26216","cvss":10,"epss":0.0165,"slug":"cve-2026-26216-unclecode-crawl4ai-remote-code-execution-in-docker-api-hooks","title":"unclecode Crawl4AI remote code execution in Docker API hooks","severity":"critical","exploited":false,"published_at":"2026-02-12T16:16:17.447+00:00","url":"https://junglewise.ai/threats/cve-2026-26216-unclecode-crawl4ai-remote-code-execution-in-docker-api-hooks"},{"cve":"CVE-2026-57572","cvss":10,"epss":0.0094,"slug":"cve-2026-57572-unclecode-crawl4ai-remote-code-execution-in-docker-api-server","title":"unclecode Crawl4AI remote code execution in Docker API server","severity":"critical","exploited":false,"published_at":"2026-07-06T21:16:58.047+00:00","url":"https://junglewise.ai/threats/cve-2026-57572-unclecode-crawl4ai-remote-code-execution-in-docker-api-server"},{"cvss":10,"slug":"crawl4ai-unauthenticated-rce-via-chromium-launch-argument-injection-ffa17c34","title":"Crawl4AI unauthenticated RCE via Chromium launch-argument injection","severity":"critical","exploited":false,"published_at":"2026-06-18T17:25:34+00:00","url":"https://junglewise.ai/threats/crawl4ai-unauthenticated-rce-via-chromium-launch-argument-injection-ffa17c34"},{"cve":"CVE-2026-53753","cvss":9.8,"epss":0.029,"slug":"cve-2026-53753-unclecode-crawl4ai-sandbox-escape-in-safe-eval-expression","title":"unclecode Crawl4AI sandbox escape in _safe_eval_expression","severity":"critical","exploited":false,"published_at":"2026-06-23T19:17:07.107+00:00","url":"https://junglewise.ai/threats/cve-2026-53753-unclecode-crawl4ai-sandbox-escape-in-safe-eval-expression"},{"cve":"CVE-2026-56265","cvss":9.8,"epss":0.0264,"slug":"cve-2026-56265-crawl4ai-hardcoded-jwt-signing-key-in-docker-api-server","title":"Crawl4AI hardcoded JWT signing key in Docker API server","severity":"critical","exploited":false,"published_at":"2026-06-21T14:16:24.98+00:00","url":"https://junglewise.ai/threats/cve-2026-56265-crawl4ai-hardcoded-jwt-signing-key-in-docker-api-server"},{"cvss":9.8,"slug":"unclecode-crawl4ai-multiple-vulnerabilities-in-docker-api-server-b5adddb7","title":"unclecode Crawl4AI multiple vulnerabilities in Docker API server","severity":"critical","exploited":false,"published_at":"2026-06-16T20:13:30+00:00","url":"https://junglewise.ai/threats/unclecode-crawl4ai-multiple-vulnerabilities-in-docker-api-server-b5adddb7"},{"cve":"CVE-2026-57571","cvss":9.6,"epss":0.0081,"slug":"cve-2026-57571-unclecode-crawl4ai-path-traversal-in-crawler-downloads","title":"UncleCode Crawl4AI Path Traversal in Crawler Downloads","severity":"critical","exploited":false,"published_at":"2026-07-06T21:16:57.907+00:00","url":"https://junglewise.ai/threats/cve-2026-57571-unclecode-crawl4ai-path-traversal-in-crawler-downloads"},{"cvss":9.6,"slug":"crawl4ai-path-traversal-in-crawler-downloads-leads-to-rce-c93abd99","title":"Crawl4AI path traversal in crawler downloads leads to RCE","severity":"critical","exploited":false,"published_at":"2026-06-18T17:25:13+00:00","url":"https://junglewise.ai/threats/crawl4ai-path-traversal-in-crawler-downloads-leads-to-rce-c93abd99"},{"cve":"CVE-2026-56260","cvss":9.1,"epss":0.0065,"slug":"cve-2026-56260-crawl4ai-arbitrary-file-write-in-docker-api-server-screenshot-and","title":"Crawl4AI arbitrary file write in Docker API server screenshot and pdf endpoints","severity":"critical","exploited":false,"published_at":"2026-07-12T12:16:45.153+00:00","url":"https://junglewise.ai/threats/cve-2026-56260-crawl4ai-arbitrary-file-write-in-docker-api-server-screenshot-and"},{"cve":"CVE-2026-26217","cvss":8.6,"epss":0.0203,"slug":"cve-2026-26217-unclecode-crawl4ai-local-file-inclusion-in-docker-api","title":"unclecode Crawl4AI local file inclusion in Docker API","severity":"high","exploited":false,"published_at":"2026-02-12T16:16:17.62+00:00","url":"https://junglewise.ai/threats/cve-2026-26217-unclecode-crawl4ai-local-file-inclusion-in-docker-api"}],"generated_at":"2026-09-26T13:07:00.120236+00:00"}