PyPI vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
GHSA-7F4H-6264-89FRMediumaxonflow: axonflow-sdk-python: Webhook signing-key (HMAC-SHA256) not exposed by SDK type, preventing signature verificationCVE-2026-0897Highkeras: Keras vulnerable to DoS via Malicious .keras Model (HDF5 Shape Bomb Causes Petabyte Allocation in KerasFileEditor)CVE-2026-44368Mediumpyquorum: pyquorum: Timing side‑channel in mul_modCVE-2026-44364Criticalmisp-modules: misp-modules website - Missing CSRF protection in the website home blueprintCVE-2026-44363Mediummisp-modules: misp-modules has nsafe remote resource fetching in expansionCVE-2026-44334Highpraisonai: PraisonAI has unauthenticated RCE via `tool_override.py` (CVE-2026-40287 patch bypass)CVE-2026-44335Highpraisonaiagents: PraisonAI has an SSRF bypassGHSA-7MW3-79JQ-XC7FLowaiograpi: aiograpi has dependency on vulnerable orjson 3.11.4 (CVE-2025-67221)CVE-2026-44244HighGitPython: GitPython: Newline injection in config_writer().set_value() enables RCE via core.hooksPathCVE-2026-42561Highpython-multipart: python-multipart has Denial of Service via unbounded multipart part headersCVE-2026-44223Mediumvllm: vLLM: extract_hidden_states speculative decoding crashes server on any request with penalty parametersCVE-2026-44307HighMako: Mako vulnerable to path traversal via backslash URI on Windows in TemplateLookupCVE-2026-42557Highjupyterlab: JupyterLab's command linker attributes in HTML enable one-click command execution from untrusted contentCVE-2026-42545Mediumgranian: Granian vulnerable to DoS via WSGI response header panicCVE-2026-42544Highgranian: Granian vulnerable to unauthenticated DoS via WebSocket subprotocol header panicCVE-2026-42448Lowmagic-wormhole: Magic Wormhole: receive, with --output pointing at an existing directory can be path-traversedGHSA-VQV8-J3MJ-WJXJMediumwger: wger: trainer_login open redirect - ?next= parameter not validated against hostCVE-2026-43948Criticalwger: wger: cross-tenant password reset and plaintext disclosure via gym=None bypassGHSA-XQ9M-HMP9-FW87Highwger: wger: CSV/TSV formula injection in gym member export (first_name/last_name)CVE-2026-44243HighGitPython: GitPython reference APIs has a path traversal vulnerability that allows arbitrary file write and delete outside the repositoryCVE-2026-44304Highlemur: Lemur: LDAP Filter Injection enables post-authentication privilege escalationCVE-2026-44305Mediumlemur: Lemur: LDAP Authentication Globally Disables TLS Certificate Verification When LDAP_USE_TLS Is EnabledCVE-2026-44226Mediumpyload-ng: PyLoad vulnerable to unauthenticated traceback disclosure via global exception handler in WebUICVE-2026-33079Highmistune: Mistune has a ReDoS in LINK_TITLE_RE that allows denial of service via crafted Markdown inputCVE-2026-29090Criticalrucio: Rucio has SQL Injection in FilterEngine PostgreSQL Query Builder via DID Search API

Stop the waste.
Protect your environment with Kodem.