Vulnerabilities in mistralai
8 resultsVexday analysis
Mistral AI apresenta uma única vulnerabilidade registrada, publicada nos últimos 90 dias, sem exploração ativa conhecida ou severidade crítica. A fraqueza identificada (CWE-829: Inclusão de Funcionalidade de Fonte Não Confiável) sugere risco de supply chain ou injeção de componentes maliciosos, mas o baixo volume e a ausência de atividade de ataque mitigam o impacto imediato.
CVE-2026-67623HIGHMistral Vibe < 2.23.3 Arbitrary Command Execution via git fsmonitor HookEPSS 1.1%CVE-2026-93993HIGHMistral Vibe before 2.25.5 Remote Code Execution via git post-checkoutEPSS 0.9%CVE-2026-87983CRITICALAn arbitrary file read vulnerability in Mistral Vibe, introduced in version 2.6.0, allows an attacker to bypass workspace restrictions usingEPSS 0.6%CVE-2026-87985CRITICALAn arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using ANSI-C quoted argumenEPSS 0.6%CVE-2026-87987CRITICALAn arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using environment variable EPSS 0.6%CVE-2026-87986CRITICALAn arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using shell constructs it'sEPSS 0.6%CVE-2026-87984CRITICALAn arbitrary file write vulnerability in Mistral Vibe, introduced in version 1.3.4, allows an attacker to create or overwrite files outside EPSS 0.5%CVE-2026-87988CRITICALAn arbitrary file access vulnerability in Mistral Vibe allows an attacker to bypass workspace restrictions through commands classified as unEPSS 0.4%