Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Improper Access Control
gpt-researcher[,0.10.4)pip1 Jan 2025
  • H
Race Condition
amici[,0.29.0)pip1 Jan 2025
  • M
Reliance on Cookies without Validation and Integrity Checking
yt-dlp[,2023.9.24)pip1 Jan 2025
  • C
Deserialization of Untrusted Data
diffusion-model-framework[,0.1.2rc2)pip1 Jan 2025
  • M
Cross-site Scripting (XSS)
collaborative-article-sharing[,0.1.0b2)pip1 Jan 2025
  • M
Information Exposure
collaborative-article-sharing[,0.1.0b2)pip1 Jan 2025
  • M
Timing Attack
django-allauth[,65.3.0)pip1 Jan 2025
  • M
Authorization Bypass Through User-Controlled Key
khoj[,1.29.0)pip31 Dec 2024
  • H
Server-side Request Forgery (SSRF)
fastchat[0,]pip30 Dec 2024
  • M
Missing Authorization
letta[,0.5.2)pip29 Dec 2024
  • C
Directory Traversal
changedetection.io[,0.48.5)pip29 Dec 2024
  • H
SQL Injection
python-sql[,1.5.2)pip27 Dec 2024
  • H
SQL Injection
redshift-connector[2.1.4,2.1.5)pip25 Dec 2024
  • C
Malicious Package
cometlogger[0,]pip24 Dec 2024
  • C
Malicious Package
zebo[0,]pip24 Dec 2024
  • M
Improper Encoding or Escaping of Output
koji[,1.33.2)[1.34.0,1.34.3)[1.35.0,1.35.1)pip24 Dec 2024
  • H
Improper Neutralization of Server-Side Includes (SSI) Within a Web Page
aptrs[0,]pip24 Dec 2024
  • M
Improper Neutralization
jinja2[,3.1.5)pip24 Dec 2024
  • M
Template Injection
jinja2[,3.1.5)pip24 Dec 2024
  • M
Directory Traversal
pghoard[0,]pip18 Dec 2024
  • C
Out-of-bounds Write
lightgbm[,4.6.0)pip17 Dec 2024
  • M
Cross-site Scripting (XSS)
dtale[,3.16.1)pip15 Dec 2024
  • H
Improper Authorization
apache-superset[,4.1.0rc2)pip13 Dec 2024
  • H
Directory Traversal
python-libarchive[0,]pip12 Dec 2024
  • H
Authentication Bypass
djoser[,2.3.0)pip12 Dec 2024
  • C
Use of Weak Hash
asu[0,]pip11 Dec 2024
  • M
Improper Input Validation
sigstore[2.0.0,3.6.0)pip11 Dec 2024
  • M
XML External Entity (XXE) Injection
unstructured[,0.14.3)pip10 Dec 2024
  • M
SQL Injection
apache-superset[,4.1.0rc2)pip10 Dec 2024
  • H
Improper Authorization
apache-superset[2.0.0,4.1.0rc3)pip10 Dec 2024