Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Timing Attack
django-allauth[,65.3.0)pip1 Jan 2025
  • M
Authorization Bypass Through User-Controlled Key
khoj[,1.29.0)pip31 Dec 2024
  • H
Server-side Request Forgery (SSRF)
fastchat[0,]pip30 Dec 2024
  • M
Missing Authorization
letta[,0.5.2)pip29 Dec 2024
  • C
Directory Traversal
changedetection.io[,0.48.5)pip29 Dec 2024
  • H
SQL Injection
python-sql[,1.5.2)pip27 Dec 2024
  • H
SQL Injection
redshift-connector[2.1.4,2.1.5)pip25 Dec 2024
  • C
Malicious Package
cometlogger[0,]pip24 Dec 2024
  • C
Malicious Package
zebo[0,]pip24 Dec 2024
  • M
Improper Encoding or Escaping of Output
koji[,1.33.2)[1.34.0,1.34.3)[1.35.0,1.35.1)pip24 Dec 2024
  • H
Improper Neutralization of Server-Side Includes (SSI) Within a Web Page
aptrs[0,]pip24 Dec 2024
  • M
Improper Neutralization
jinja2[,3.1.5)pip24 Dec 2024
  • M
Template Injection
jinja2[,3.1.5)pip24 Dec 2024
  • M
Directory Traversal
pghoard[0,]pip18 Dec 2024
  • C
Out-of-bounds Write
lightgbm[0,]pip17 Dec 2024
  • M
Cross-site Scripting (XSS)
dtale[,3.16.1)pip15 Dec 2024
  • H
Improper Authorization
apache-superset[,4.1.0rc2)pip13 Dec 2024
  • H
Directory Traversal
python-libarchive[0,]pip12 Dec 2024
  • H
Authentication Bypass
djoser[,2.3.0)pip12 Dec 2024
  • C
Use of Weak Hash
asu[0,]pip11 Dec 2024
  • M
Improper Input Validation
sigstore[2.0.0,3.6.0)pip11 Dec 2024
  • M
XML External Entity (XXE) Injection
unstructured[,0.14.3)pip10 Dec 2024
  • M
SQL Injection
apache-superset[,4.1.0rc2)pip10 Dec 2024
  • H
Improper Authorization
apache-superset[2.0.0,4.1.0rc3)pip10 Dec 2024
  • H
Arbitrary File Write via Archive Extraction (Zip Slip)
luigi[,3.6.0)pip9 Dec 2024
  • C
Malicious Embedded Code
ultralytics[8.3.41,8.3.43)[8.3.45,8.3.47)pip8 Dec 2024
  • H
Allocation of Resources Without Limits or Throttling
aiohttp[3.11.0rc2,3.11.10)pip8 Dec 2024
  • M
Cross-site Request Forgery (CSRF)
pyspider[0,]pip5 Dec 2024
  • C
SQL Injection
django[,4.2.17)[5.0, 5.0.10)[5.1a1, 5.1.4)pip5 Dec 2024
  • H
Command Injection
django[,4.2.17)[5.0, 5.0.10)[5.1a1, 5.1.4)pip5 Dec 2024