PyPI vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2021-37677Mediumtensorflow: Missing validation in shape inference for `Dequantize`CVE-2021-37678Hightensorflow: Arbitrary code execution due to YAML deserializationCVE-2021-37679Hightensorflow: Heap OOB in nested `tf.map_fn` with `RaggedTensor`sCVE-2021-37680Mediumtensorflow: Division by zero in TFLiteCVE-2021-37681Hightensorflow: NPE in TFLiteCVE-2021-37682Mediumtensorflow: Use of unitialized value in TFLiteCVE-2021-37683Mediumtensorflow: FPE in TFLite division operationsCVE-2021-37684Mediumtensorflow: FPE in TFLite pooling operationsCVE-2021-37685Mediumtensorflow: Heap OOB in TFLiteCVE-2021-37687Mediumtensorflow: Heap OOB in TFLite's `Gather*` implementationsCVE-2021-37686Mediumtensorflow: Infinite loop in TFLiteCVE-2021-37688Hightensorflow: Null pointer dereference in TFLiteCVE-2021-37689Hightensorflow: Null pointer dereference in TFLite MLIR optimizationsCVE-2021-37690Mediumtensorflow: Use after free and segfault in shape inference functionsCVE-2021-37691Mediumtensorflow: FPE in LSH in TFLiteCVE-2021-37692Mediumtensorflow: Segfault on strings tensors with mistmatched dimensions, due to Go codeCVE-2021-32798Highnotebook: Special Element Injection in notebookCVE-2021-32797Mediumjupyterlab: JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>CVE-2021-37705Criticalonefuzz: Improper Authorization and Origin Validation Error in OneFuzzCVE-2021-38305Highyamale: Command injection in YamaleCVE-2021-29063Highmpmath: ReDOS in MpmathCVE-2021-23401MediumFlask-User: Open Redirect in Flask-UserCVE-2021-32559Highpywin32: Integer overflow in pywin32CVE-2021-23418MediumGlances: XML External Entity Reference in GlancesCVE-2021-32806HighProducts.isurlinportal: URL Redirection to Untrusted Site ('Open Redirect') in Products.isurlinportal

Stop the waste.
Protect your environment with Kodem.