HumanSignal label-studio

2 known vulnerabilities in HumanSignal label-studio, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-85211 CVSS 8.3 high Label Studio fails to apply organization filters when resolving storage URIs for tasks and projects in proxy_api.py endpoints. Attackers…
  • CVE-2026-85179 CVSS 8.4 high Label Studio through 1.23.0 fails to validate webhook URLs, allowing authenticated users to dispatch requests to internal services…