PyPI vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2024-21645Mediumpyload-ng: pyload Log Injection vulnerabilityCVE-2024-21642Highdtale: D-Tale server-side request forgery through Web uploadsCVE-2023-52323Highpycryptodomex: PyCryptodome and pycryptodomex side-channel leakage for OAEP decryptionCVE-2023-52312MediumPaddlePaddle: PaddlePaddle nullptr dereference in paddle.cropCVE-2023-52308MediumPaddlePaddle: PaddlePaddle floating point exception in paddle.aminCVE-2023-52313MediumPaddlePaddle: PaddlePaddle floating point exception in paddle.argmin and paddle.argmaxCVE-2023-52311CriticalPaddlePaddle: PaddlePaddle command injection in _wget_downloadCVE-2023-52305MediumPaddlePaddle: PaddlePaddle floating point exception in paddle.topkCVE-2023-52309HighPaddlePaddle: PaddlePaddle heap buffer overflow in paddle.repeat_interleaveCVE-2023-52310CriticalPaddlePaddle: PaddlePaddle command injection in get_online_pass_intervalCVE-2023-52306MediumPaddlePaddle: PaddlePaddle floating point exception in paddle.lerpCVE-2023-52307HighPaddlePaddle: PaddlePaddle stack overflow in paddle.linalg.lu_unpackCVE-2023-52304HighPaddlePaddle: PaddlePaddle stack overflow in paddle.searchsortedCVE-2023-52314CriticalPaddlePaddle: PaddlePaddle command injection in convert_shape_compareCVE-2023-52303Mediumpaddlepaddle: PaddlePaddle segfault in paddle.put_along_axisCVE-2023-38678MediumPaddlePaddle: PaddlePaddle segfault in paddle.modeCVE-2023-52302MediumPaddlePaddle: PaddlePaddle null pointer dereference in paddle.nextafterCVE-2023-38677Mediumpaddlepaddle: PaddlePaddle floating point exception in paddle.linalg.eigCVE-2023-38675MediumPaddlePaddle: PaddlePaddle floating point exception in paddle.linalg.matrix_rankCVE-2023-38676MediumPaddlePaddle: PaddlePaddle segfault in paddle.dotCVE-2023-38674MediumPaddlePaddle: PaddlePaddle floating point exception in paddle.nanmedianCVE-2023-51663Mediumhail: Hail relies on OIDC email claims to verify the validity of a user's domain.CVE-2023-5115Mediumansible: Ansible symlink attack vulnerabilityCVE-2023-6681Mediumjwcrypto: DoS with algorithms that use PBKDF2 due to unbounded PBES2 Count valueCVE-2023-49438MediumFlask-Security-Too: Open redirect vulnerability in Flask-Security-Too

Stop the waste.
Protect your environment with Kodem.