PyPI vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2021-25967Mediumckan: Cross-site Scripting in CKANCVE-2021-3994Highdjango-helpdesk: django-helpdesk is vulnerable to Cross-site ScriptingCVE-2021-25986Mediumwiki: Cross-site Scripting in django-wikiCVE-2021-23654Mediumhtml-to-csv: Improper Neutralization of Formula Elements in a CSV File in html-2-csvCVE-2021-32061Mediums3scanner: S3Scanner allows Directory TraversalGHSA-R8WQ-QRXC-HMCMMediumpython-ldap: ReDoS in LDAP schema parserCVE-2021-40830Highsoftware.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk: Improper certificate management in AWS IoT Device SDK v2CVE-2021-40829Highsoftware.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk: Improper certificate management in AWS IoT Device SDK v2CVE-2021-40828Mediumsoftware.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk: Improper certificate management in AWS IoT Device SDK v2CVE-2021-40831Highsoftware.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk: Improper certificate management in AWS IoT Device SDK v2CVE-2021-43775Criticalaim: Arbitrary file reading vulnerability in AimCVE-2021-41281Highmatrix-synapse: Path traversal in Matrix SynapseCVE-2021-3950Highdjango-helpdesk: Cross-site Scripting in django-helpdeskCVE-2021-21996Highsalt: Exposure of Resource to Wrong Sphere in saltCVE-2021-41868Criticalonionshare-cli: Remote unauthenticated attackers able to upload files in OnionshareCVE-2021-41867Mediumonionshare-cli: Information disclosure vulnerability in OnionShareCVE-2021-3945Highdjango-helpdesk: Cross-site Scripting in django-helpdeskCVE-2021-3572Highpip: Improper Input Validation in pipCVE-2021-43572Criticalstarkbank-ecdsa: Improper Verification of Cryptographic Signature in starkbank-ecdsaCVE-2021-41208Criticaltensorflow: Incomplete validation in boosted trees codeCVE-2021-41195Mediumtensorflow: Crash in `tf.math.segment_*` operationsCVE-2021-41196Mediumtensorflow: Crash in `max_pool3d` when size argument is 0 or negativeCVE-2021-41197Mediumtensorflow: Crashes due to overflow and `CHECK`-fail in ops with large tensor shapesCVE-2021-41198Mediumtensorflow: Overflow/crash in `tf.tile` when tiling tensor is largeCVE-2021-41199Mediumtensorflow: Overflow/crash in `tf.image.resize` when size is large

Stop the waste.
Protect your environment with Kodem.