Affected packages
- github.com/weaviate/weaviate
Exploit signal
- Known exploited (CISA KEV)
- No
- EPSS score
- 0.28%
- EPSS percentile
- 20.4%
EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs. This advisory is in the top 20%.
Sources
- https://nvd.nist.gov/vuln/detail/CVE-2026-11500
- https://github.com/weaviate/weaviate/issues/11392
- https://github.com/weaviate/weaviate/commit/40f2cc32279f0f8a51016c3c6870a2c0c808e6c0
- https://github.com/weaviate/weaviate
- https://github.com/weaviate/weaviate/releases/tag/v1.38.0-rc.0
- https://vuldb.com/cve/CVE-2026-11500
- https://vuldb.com/submit/835080
- https://vuldb.com/vuln/369120
- https://vuldb.com/vuln/369120/cti
Structured record: https://osv.dev/vulnerability/GHSA-jqpm-wf57-qx5c
Recommended response stack
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.
Get incidents like this as alerts for your stack.
Join the beta