Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Eval Injection
isaaclab[,2.3.0)pip15 Oct 2025
  • L
Cross-site Scripting (XSS)
homeassistant[2025.1.0,2025.10.2)pip15 Oct 2025
  • M
Insecure Temporary File
llama-index-core[,0.12.50)pip14 Oct 2025
  • H
Directory Traversal
redmine-mcp-server[,0.4.2)pip13 Oct 2025
  • H
Directory Traversal
tgmix[,0.9.0)pip13 Oct 2025
  • H
Directory Traversal
strands-agents[,1.5.0)pip13 Oct 2025
  • H
Cross-site Scripting (XSS)
pyload-ng[0,]pip13 Oct 2025
  • M
Improper Neutralization of Data within XPath Expressions ('XPath Injection')
smolagents[,1.22.0)pip13 Oct 2025
  • H
Use After Free
usd-core[,25.8)pip13 Oct 2025
  • C
Command Injection
portage[,3.0.69)pip13 Oct 2025
  • H
Improper Verification of Cryptographic Signature
portage[,3.0.69)pip13 Oct 2025
  • M
Information Exposure
bbot[,2.7.0)pip12 Oct 2025
  • M
Information Exposure
bbot[,2.7.0)pip12 Oct 2025
  • H
Directory Traversal
bbot[,2.7.0)pip12 Oct 2025
  • H
Directory Traversal
bbot[,2.7.0)pip12 Oct 2025
  • M
Improper Encoding or Escaping of Output
python-ldap[,3.4.5)pip12 Oct 2025
  • M
Improper Validation of Specified Type of Input
python-ldap[,3.4.5)pip12 Oct 2025
  • H
Allocation of Resources Without Limits or Throttling
authlib[,1.6.5)pip12 Oct 2025
  • H
Allocation of Resources Without Limits or Throttling
authlib[,1.6.5)pip12 Oct 2025
  • M
Improper Validation of Specified Type of Input
matrix-synapse[,1.138.3)[1.139.0rc2, 1.139.1)pip10 Oct 2025
  • M
Insertion of Sensitive Information into Log File
local-deep-research[,1.0.0)pip10 Oct 2025
  • M
Cross-site Scripting (XSS)
local-deep-research[,1.0.0)pip10 Oct 2025
  • M
Open Redirect
local-deep-research[,1.0.0)pip10 Oct 2025
  • L
Cross-site Scripting (XSS)
behavex[,4.5.0)pip10 Oct 2025
  • M
Improper Input Validation
local-deep-research[,1.0.0)pip10 Oct 2025
  • M
Authentication Bypass by Spoofing
social-auth-app-django[,5.6.0)pip10 Oct 2025
  • H
Server-side Request Forgery (SSRF)
llamafactory[0,]pip9 Oct 2025
  • H
Deserialization of Untrusted Data
python-socketio[0.8.0,5.14.0)pip9 Oct 2025
  • M
Server-side Request Forgery (SSRF)
vllm[0.5.0,0.11.0)pip8 Oct 2025
  • H
Allocation of Resources Without Limits or Throttling
vllm[,0.11.0)pip8 Oct 2025