PyPI vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-8754LowAstrBot: AstrBot: File upload vulnerability in the function post_file of the file astrbot/dashboard/routes/chat.pyCVE-2026-46383Mediumapm-cli: Microsoft APM: Windows absolute-path tar member overwrite during legacy-bundle probing in `apm install`CVE-2026-45106Mediumweblate: Weblate: Stored HTML injection in editor search previewCVE-2026-44716Highpipecat-ai: Pipecat: Path Traversal in Pipecat Runner `/files` Endpoint — Arbitrary File Read via `%2F`-Encoded SeparatorCVE-2026-2652Highmlflow: MLflow: unauthenticated access to certain FastAPI routesCVE-2026-45370Highutcp-cli: python-utcp: Full Process Environment Exposed to CLI Subprocess - Secrets Leakage via Command InjectionCVE-2026-45369Criticalutcp-cli: utcp-cli Vulnerable to Command Injection via Unsanitized Argument Substitution in CLI Communication ProtocolCVE-2026-45675Highopen-webui: Open WebUI: LDAP and OAuth First-User Race Condition Allows Multiple Admin AccountsCVE-2026-45672Highopen-webui: Open WebUI: Jupyter code execution works despite `ENABLE_CODE_EXECUTION=false` — feature gate bypassedCVE-2026-45671Highopen-webui: Open WebUI: shared-chat branch ignores access_type, allowing unauthorized file deletionCVE-2026-45667Mediumopen-webui: Open WebUI: Unauthenticated endpoint can trigger embedding generation (cost/DoS)CVE-2026-45666Mediumopen-webui: Open WebUI has an Indirect Object Reference (IDOR) in user notesCVE-2026-45402Highopen-webui: Open WebUI: Cross-User File Access via Unchecked file_id in Folder Knowledge and Knowledge-Base Attach EndpointsGHSA-3WGJ-C2HG-VM6QHighopen-webui: Open WebUI vulnerable to stored XSS via OAuth picture claim stored as SVG data URI in profile_image_urlCVE-2026-45401Highopen-webui: Open WebUI has a SSRF Bypass via HTTP Redirect Following in Web-Fetch and Image-Load Endpoints (not addressed by CVE-2025-65958)CVE-2026-45400Highopen-webui: Open WebUI has a Server-Side Request Forgery (SSRF) bypass in `validate_url`CVE-2026-45399Highopen-webui: Open WebUI: Low-privilege authenticated users can enumerate and stop global background tasks, causing system-wide chat disruptionCVE-2026-45398Highopen-webui: Open WebUI Vulnerable to IDOR: Retrieval API Bypasses Knowledge Base Access ControlsCVE-2026-45397Mediumopen-webui: Open WebUI Vulnerable to Unauthenticated RAG Configuration DisclosureCVE-2026-45396Mediumopen-webui: Open WebUI: Mass Assignment via FeedbackForm extra=allow Allows Feedback User ID Spoofing and Evaluation Data ManipulationCVE-2026-45387Mediumopen-webui: Open WebUI: Sharing models for others to use (read permission) also exposes model details (system prompt leakage)CVE-2026-45386Mediumopen-webui: Open WebUI has an IDOR vulnerability in the pin_channel_message API endpointCVE-2026-45385Mediumopen-webui: Open WebUI has an IDOR vulnerability in the update_message_by_id API endpointCVE-2026-45365Mediumopen-webui: Open WebUI: Authenticated users can bypass model access control via exposed query parameter [AI-ASSISTED]CVE-2026-45351Mediumopen-webui: Open WebUI Exposes System Prompt to Regular User [Non-Admin]

Stop the waste.
Protect your environment with Kodem.