[go: up one dir, main page]

Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Improper Validation of Specified Type of Input
matrix-synapse[,1.138.3)[1.139.0rc2, 1.139.1)pip10 Oct 2025
  • M
Insertion of Sensitive Information into Log File
local-deep-research[,1.0.0)pip10 Oct 2025
  • M
Cross-site Scripting (XSS)
local-deep-research[,1.0.0)pip10 Oct 2025
  • M
Open Redirect
local-deep-research[,1.0.0)pip10 Oct 2025
  • L
Cross-site Scripting (XSS)
behavex[,4.5.0)pip10 Oct 2025
  • M
Improper Input Validation
local-deep-research[,1.0.0)pip10 Oct 2025
  • M
Authentication Bypass by Spoofing
social-auth-app-django[,5.6.0)pip10 Oct 2025
  • H
Server-side Request Forgery (SSRF)
llamafactory[0,]pip9 Oct 2025
  • H
Deserialization of Untrusted Data
python-socketio[0.8.0,5.14.0)pip9 Oct 2025
  • M
Server-side Request Forgery (SSRF)
vllm[0.5.0,0.11.0)pip8 Oct 2025
  • H
Allocation of Resources Without Limits or Throttling
vllm[,0.11.0)pip8 Oct 2025
  • H
Covert Timing Channel
vllm[,0.11.0)pip8 Oct 2025
  • M
Missing Authentication for Critical Function
litellm[,1.76.3)pip8 Oct 2025
  • H
Incorrect Authorization
litellm[,1.77.1)pip8 Oct 2025
  • M
Reliance on Untrusted Inputs in a Security Decision
litestar[,2.18.0)pip8 Oct 2025
  • M
Directory Traversal
clearml[,2.0.2)pip7 Oct 2025
  • M
Directory Traversal
zenml[,0.84.2)pip7 Oct 2025
  • M
CRLF Injection
aioftp[,0.26.3)pip6 Oct 2025
  • L
Deserialization of Untrusted Data
datachain[,0.34.2)pip6 Oct 2025
  • M
Unintended Proxy or Intermediary ('Confused Deputy')
marimo[0.9.20,0.16.4)pip6 Oct 2025
  • M
Cross-site Scripting (XSS)
nicegui[,3.0.0)pip6 Oct 2025
  • M
SQL Injection
django[4.2,4.2.25)[5.1,5.1.13)[5.2,5.2.7)pip2 Oct 2025
  • L
Relative Path Traversal
django[4.2,4.2.25)[5.1,5.1.13)[5.2,5.2.7)pip2 Oct 2025
  • M
Deserialization of Untrusted Data
pyfury[0.2.0a1,]pip1 Oct 2025
  • M
Deserialization of Untrusted Data
pyfory[,0.12.3)pip1 Oct 2025
  • M
Improper Neutralization of Escape Characters
mkdocs-include-markdown-plugin[,7.1.8)pip30 Sept 2025
  • H
Creation of Temporary File With Insecure Permissions
llama-index-core[0, 0.12.50)pip29 Sept 2025
  • M
Deserialization of Untrusted Data
lazyllm[0,]pip29 Sept 2025
  • H
Arbitrary Code Injection
megatron-core[,0.12.3)[0.13.0rc1, 0.13.1)pip29 Sept 2025
  • M
Directory Traversal
ml-logger[0,]pip28 Sept 2025