PyPI vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-33044Lowhomeassistant: Home Assistant has stored XSS in Map-card through malicious device nameCVE-2026-34073Lowcryptography: cryptography has incomplete DNS name constraint enforcement on peer namesCVE-2026-34070Highlangchain-core: LangChain Core has Path Traversal vulnerabilites in legacy `load_prompt` functionsCVE-2026-34046Highlangflow: Langflow: Authenticated Users Can Read, Modify, and Delete Any Flow via Missing Ownership CheckCVE-2026-33981Highchangedetection.io: Changedetection.io Discloses Environment Variables via jq env Builtin in Include FiltersCVE-2026-33980Highadx-mcp-server: Azure Data Explorer MCP Server: KQL Injection in multiple tools allows MCP client to execute arbitrary Kusto queriesCVE-2026-4963Lowsmolagents: Hugging Face Smolagents has an Injection issueCVE-2025-15381Highmlflow: MLFlow allows Tracing + Assessments AccessCVE-2026-33992Criticalpyload-ng: pyLoad: Server-Side Request Forgery via Download Link Submission Enables Cloud Metadata ExfiltrationCVE-2026-33936Mediumecdsa: python-ecdsa: Denial of Service via improper DER length validation in crafted private keysCVE-2026-29071Lowopen-webui: Open WebUI's Insecure Direct Object Reference (IDOR) allows access to other users' memoriesCVE-2026-29070Mediumopen-webui: Open WebUI has unauthorized deletion of knowledge filesCVE-2026-28788Highopen-webui: Open WebUI's process_files_batch() endpoint missing ownership check, allows unauthorized file overwriteCVE-2026-28786Mediumopen-webui: Open WebUI vulnerable to Path Traversal in `POST /api/v1/audio/transcriptions`CVE-2026-27893Highvllm: vLLM has Hardcoded Trust Override in Model Files Enables RCE Despite Explicit User Opt-OutGHSA-WCJX-V2WJ-XG87Highc2cciutils: C2C CI utils is vulnerable to DoS via pyasn dependency (CVE-2026-30922)CVE-2026-33873Criticallangflow: Langflow has Authenticated Code Execution in Agentic Assistant ValidationCVE-2026-33744Highbentoml: BentoML has Dockerfile Command Injection via system_packages in bentofile.yamlCVE-2026-33718Highopenhands-ai: OpenHands is Vulnerable to Command Injection through its Git Diff HandlerCVE-2025-70887Highsignify: Signify allows a remote attacker to escalate privileges via the signed_data.py and the context.py componentsCVE-2026-33682MediumStreamlit: Unauthenticated SSRF Vulnerability in Streamlit on Windows (NTLM Credential Exposure)CVE-2026-33699Mediumpypdf: pypdf: Possible infinite loop during recovery attempts in DictionaryObject.read_from_streamCVE-2026-27602Highmodoboa: Modoboa has OS Command InjectionCVE-2026-25645Mediumrequests: Requests has Insecure Temp File Reuse in its extract_zipped_paths() utility functionGHSA-5MG7-485Q-XM76Criticallitellm: Two LiteLLM versions published containing credential harvesting malware

Stop the waste.
Protect your environment with Kodem.