VDB
Sign up
MEDIUM5.3

PYSEC-2026-1598

Mage AI allows remote unauthenticated attackers to leak the terminal server command history of arbitrary users

Details

Mage AI allows remote unauthenticated attackers to leak the terminal server command history of arbitrary users.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/mage-ai
Introduced in: 0

No fixed version published yet for mage-ai (pip). Pin to a known-safe version or switch to an alternative.

References