PyPI vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-7212Mediumnotes-mcp: notes-mcp has a Path Traversal issueCVE-2026-7159Mediummkdocs-mcp-plugin: mkdocs-mcp-plugin has a Path Traversal issueCVE-2026-7158Mediummcp-url-downloader: mcp-url-downloader has a Server-Side Request Forgery issueCVE-2026-7149Mediumkaggle-mcp: kaggle-mcp has a Path Traversal issueCVE-2026-7150Lowauto-favicon: auto-favicon has a Server-Side Request Forgery issueCVE-2026-7141Lowvllm: vLLM makes Use of Uninitialized ResourceCVE-2026-7142Lowwooey: Wooey has an Incorrect Privilege Assignment issueCVE-2026-6357Mediumpip: pip Vulnerable to Inclusion of Functionality from Untrusted Control SphereCVE-2026-42215HighGitPython: GitPython has Command Injection via Git options bypassCVE-2026-42284HighGitPython: GitPython: Unsafe option check validates multi_options before shlex.split transformationCVE-2026-42271Highlitellm: LiteLLM: Authenticated command execution via MCP stdio test endpointsCVE-2026-6984LowAstrBot: AstrBot has Incomplete Filtering of Special ElementsCVE-2026-42150Mediumwlc: wlc: print_html outputs API data without HTML escapingCVE-2026-42208Criticallitellm: LiteLLM has SQL Injection in Proxy API key verificationCVE-2026-41486Highray: Ray: Remote Code Execution via Parquet Arrow Extension Type DeserializationCVE-2026-42203Highlitellm: LiteLLM: Server-Side Template Injection in /prompts/test endpointCVE-2026-6550Mediumaws-encryption-sdk: AWS Encryption SDK for Python: Key commitment policy bypass via shared key cacheCVE-2026-40690Mediumapache-airflow: Apache Airflow's asset dependency graph did not restrict nodes by the viewer's DAG read permissionsCVE-2026-38743Mediumapache-airflow: Apache Airflow's authenticated /ui/dags endpoint did not enforce per-DAG access control on embedded Human-in-the-Loop (HITL) and…CVE-2025-62373Criticalpipecat-ai: Pipecat: Remote Code Execution by Pickle Deserialization Through LivekitFrameSerializerCVE-2026-6878Lowverl: verl's math_equal() Vulnerable to Arbitrary Code Execution via Unsafe eval()CVE-2026-42086Mediumopenc3: OpenC3 COSMOS is Vulnerable to Self-XSS Through the Command SenderGHSA-VRX2-77F2-WW34Mediumjusthtml: justhtml has sanitization bypass in custom policies and programmatic DOMCVE-2026-6859Highinstructlab: InstructLab Includes Functionality from Untrusted Control SphereCVE-2026-6855Highinstructlab: InstructLab vulnerable to Path Traversal

Stop the waste.
Protect your environment with Kodem.