PyPI vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-81723Mediumnltk: NLTK: Quadratic CPU Exhaustion in `XMLCorpusView._read_xml_fragment()`CVE-2026-12876Mediumnltk: NLTK: Uncontrolled resource consumption in RecursiveDescentParser via ambiguous or left-recursive grammarsCVE-2026-81724Mediumnltk: NLTK: Uncontrolled recursion in nltk.featstruct.FeatStructReader causes unhandled RecursionError (DoS) via deeply nested feature-structure…CVE-2026-84310Mediumpypdf: pypdf: Possible long runtimes/large memory usage when retrieving outlinesCVE-2026-84311Mediumpypdf: pypdf: Possible long runtimes/large memory usage when extracting XForm objectsCVE-2026-84309Mediumpypdf: pypdf: Possible infinite loop for TreeObject.insert_childCVE-2026-84305Mediumsqlparse: sqlparse: Reindentation of tuple lists causes near-cap quadratic CPU consumptionCVE-2026-79675Criticalnltk: NLTK: JVM argument injection bypass via per-call options in the NLTK Stanford wrappers (incomplete fix of CVE-2026-12841)CVE-2026-78680Highnltk: NLTK: Uncontrolled search path when invoking the Graphviz 'dot' binaryGHSA-8423-8FGW-73VQMediumtornado: tornado: multipart split() creates huge temp list before max_parts check -> memory amplification DoS (httputil.py:34)GHSA-WWV5-G3V4-889XLowtornado: Tornado: Incomplete fix for CVE-2026-35536: cookie attribute injection re-opened via the legacy case-insensitive `**kwargs` path in…CVE-2026-73228Mediumdjangorestframework: Django REST framework: Potential bypass of Django `DATA_UPLOAD_MAX_MEMORY_SIZE` when parsing oversized JSON and urlencoded request bodies…CVE-2026-73229Mediumdjangorestframework: Django REST framework: AdminRenderer may disclose GET-protected data when rendering invalid write requestsGHSA-GQVG-GMMX-X4HMHighmlflow: MLFLOW_ALLOW_PICKLE_DESERIALIZATION=False safety control bypassed by mlflow.statsmodels flavor — RCE via crafted model artifactCVE-2026-55830HighRestrictedPython: RestrictedPython guard hooks can be shadowed via positional-only argumentsGHSA-73P9-6HRP-8QHRMediumaiir: AIIR verification and policy gates could report success without enforcing the control (fail-open)CVE-2026-55247Criticalplone.app.event: plone.app.event vulnerable to denial of service via iCalendar importCVE-2026-55228HighWeblate: Weblate has IDOR in GroupViewSet that allows authenticated project manager to gain unauthorized read access to any private projectCVE-2026-55227Mediumweblate: Private Weblate projects vulnerable to observable object existence disclosure via globally scoped object lookupsCVE-2026-55520HighProtego: Protego has exponential backtracking ReDoS in robots.txt URL wildcard matchingCVE-2026-55248Criticalplone.app.portlets: plone.app.portlets vulnerable to denial of service via RSS feed portletCVE-2026-55485Highpiccolo-admin: piccolo-admin has a privilege escalation issue - admin to superuser via session-token disclosure in GET /api/tables/sessions/.CVE-2026-55509HighWsgiDAV: WsgiDAV MySQL provider has a blind SQL injectionCVE-2026-54757Highcompliance-trestle: Trestle has Server-Side Template Injection (SSTI) via Recursive Template Re-evaluation of Untrusted DataCVE-2026-55558Mediumaiosmtplib: aiosmtplib: STARTTLS response injection

Stop the waste.
Protect your environment with Kodem.