PatchSiren

Skyvern-AI CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Skyvern-AI CVE published 2026-08-29

CVE-2026-82447

The CVE-2026-82447 vulnerability in Skyvern's TextPromptBlock feature allows attackers to inject malicious Jinja template syntax, potentially leading to arbitrary code execution with server process privileges. The vulnerability is addressed in Skyvern version 1.0.45. To mitigate the vulnerability, organizations should apply patches or updates to Skyvern to version 1.0.45 or later. They should also review [truncated]