pypi
753,614 packages · pypi.org
Security Advisories in pypi
Low
over 4 years ago
Ansible vulnerable to Exposure of Resource to Wrong Sphere and Insecure Temporary File
pypi
ansible
Moderate
over 4 years ago
Exposure of Sensitive Information to an Unauthorized Actor in ansible
pypi
ansible
Moderate
over 4 years ago
Apache Airflow cross-site scripting due to incomplete fix for CVE-2020-13944
pypi
apache-airflow
Critical
over 4 years ago
Asyncpg Arbitrary Code Execution Via Access to an Uninitialized Pointer
pypi
asyncpg
Critical
over 4 years ago
pwntools Server-Side Template Injection (SSTI) vulnerability
pypi
pwntools
High
over 4 years ago
Improper validation of URLs ('Cross-site Scripting') in Wagtail rich text fields
pypi
wagtail
Moderate
over 4 years ago
VVE-2021-0001: Memory corruption using function calls within arrays
pypi
vyper
Low
over 4 years ago
VVE-2021-0002: Incorrect `returndatasize` when using simple forwarder proxies deployed prior to EIP-1167 adoption
pypi
vyper
Moderate
over 4 years ago
Malicious users could abuse Sydent to control the content of invitation emails
pypi
matrix-sydent
High
over 4 years ago
Sydent vulnerable to denial of service attack via memory exhaustion
pypi
matrix-sydent
Moderate
over 4 years ago
Sydent DoS (via resource exhaustion) due to improper input validation
pypi
matrix-sydent
High
over 4 years ago
Open redirect via transitional IPv6 addresses on dual-stack networks
pypi
matrix-synapse
Moderate
over 4 years ago
Denial of service (via resource exhaustion) due to improper input validation on third-party identifier endpoints
pypi
matrix-synapse
Moderate
over 4 years ago
Denial of service (via resource exhaustion) due to improper input validation on groups/communities endpoints
pypi
matrix-synapse
High
over 4 years ago
Improper Input Validation in sopel-plugins.channelmgnt
pypi
sopel-plugins.channelmgnt
Moderate
over 4 years ago
Exposure of Sensitive Information to an Unauthorized Actor and Insecure Temporary File in Ansible
pypi
ansible
High
over 4 years ago
Improper Restriction of XML External Entity Reference in Plone
pypi
plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
High
over 4 years ago
SSRF attacks via tracebacks in Plone
pypi
plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
High
over 4 years ago
Improper Restriction of XML External Entity Reference in Plone
pypi
plone.supermodel, plone.app.dexterity, plone.app.theming, plone.app.event, Plone
Moderate
over 4 years ago
Code Injection, Race Condition, and Execution with Unnecessary Privileges in Ansible
pypi
ansible
Moderate
over 4 years ago
Exposure of Resource to Wrong Sphere and Insecure Temporary File in Ansible
pypi
ansible
Low
over 4 years ago
Exposure of Sensitive Information to an Unauthorized Actor in Ansible
pypi
ansible
Low
over 4 years ago
Potential sensitive information disclosed in error reports
pypi
django-registration
High
over 4 years ago
Pygments vulnerable to Regular Expression Denial of Service (ReDoS)
pypi
Pygments
Moderate
over 4 years ago
HTML injection in email and account expiry notifications
pypi
matrix-synapse
Moderate
over 4 years ago
Cross-site scripting (XSS) vulnerability in the password reset endpoint
pypi
matrix-synapse
Moderate
over 4 years ago
OMERO webclient does not validate URL redirects on login or switching group.
pypi
omero-web
High
over 4 years ago
OMERO.web exposes some unnecessary session information in the page
pypi
omero-web
Moderate
over 4 years ago
Cross-site Scripting (XSS) in Django REST Framework
pypi
djangorestframework
High
over 4 years ago
Django Channels leakage of session identifiers using legacy AsgiHandler
pypi
channels
Moderate
over 4 years ago
Using default SSLContext for HTTPS requests in an HTTPS proxy doesn't verify certificate hostname for proxy connection
pypi
urllib3
Moderate
over 4 years ago
Exposure of Sensitive Information to an Unauthorized Actor in Products.GenericSetup
pypi
Products.GenericSetup
Moderate
over 4 years ago
URL Redirection to Untrusted Site ('Open Redirect') in Products.PluggableAuthService
pypi
Products.PluggableAuthService
High
over 4 years ago
Exposure of Sensitive Information to an Unauthorized Actor in Products.PluggableAuthService ZODBRoleManager
pypi
Products.PluggableAuthService
High
over 4 years ago
botframework-connector vulnerable to Improper Authentication
pypi
botframework-connector
Low
over 4 years ago
`aiohttp` Open Redirect vulnerability (`normalize_path_middleware` middleware)
pypi
aiohttp
High
almost 5 years ago
Dynamic modification of RPyC service due to missing security check
pypi
rpyc
High
almost 5 years ago
PyCA Cryptography symmetrically encrypting large values can lead to integer overflow
pypi
cryptography
Low
almost 5 years ago
Key Caching behavior in the DynamoDB Encryption Client.
pypi
dynamodb-encryption-sdk
Moderate
almost 5 years ago
Improper Verification of Cryptographic Signature in PySAML2
pypi
pysaml2
Filter by Severity
Filter by Package
tensorflow
433
tensorflow-cpu
404
tensorflow-gpu
391
apache-airflow
89
Django
89
salt
65
ansible
64
apache-superset
61
mlflow
55
Plone
54
django
48
nova
48
vyper
44
gradio
44
matrix-synapse
43
rdiffweb
42
plone
41
picklescan
39
moin
35
keystone
32
opencv-python
31
opencv-contrib-python
30
vllm
28
Pillow
28
pillow
28
open-webui
27
pyload-ng
24
glance
21
aim
20
ethyca-fides
20
transformers
19
neutron
19
langchain
19
mindsdb
18
mercurial
18
cobbler
18
calibreweb
17
cryptography
17
notebook
17
OctoPrint
17
PaddlePaddle
16
paddlepaddle
16
lollms
16
pgadmin4
16
aiohttp
15
h2o
15
mobsf
14
urllib3
14
zenml
14
modoboa
14
litellm
14
pyftpdlib
14
vantage6
14
roundup
13
sentry
12
twisted
12
wagtail
12
nautobot
12
swift
12
waitress
11
horizon
11
ckan
11
label-studio
11
onionshare-cli
11
ai.h2o:h2o-core
11
Flask-AppBuilder
10
opencv-python-headless
10
trytond
10
zope
9
llama-index
9
cinder
9
ryu
9
keras
9
agentscope
9
kiwitcms
9
opencv-contrib-python-headless
9
changedetection.io
9
lief
9
bentoml
8
aubio
8
Zope2
8
tornado
8
llama-index-core
8
ipython
8
copyparty
8
numpy
8
python-keystoneclient
8
Zope
8
dbgpt
8
trac
8
pip
8
indico
8
codechecker
7
executorch
7
scrapy
7
matrix-sydent
7
web2py
7
jupyter-server
7
pysaml2
7
requests
7
inventree
7
mailman
6
dtale
6
lxml
6
Jinja2
6
Mezzanine
6
torchserve
6
Moin
6
apache-airflow-providers-apache-hive
6
mage-ai
6
torch
6
ansible-core
6
OpenEXR
6
whoogle-search
6
graphite-web
6
yt-dlp
6
snowflake-connector-python
6
langflow
6
tuf
6
grpcio
5
mayan-edms
5
pypdf
5
Products.CMFPlone
5
nltk
5
starlette
5
ray
5
jupyterhub
5
Weblate
5
ait-core
5
bleach
5
python-gnupg
5
composio-core
5
langchain-community
5
fschat
5
oauthenticator
5
keylime
5
mitmproxy
5
Werkzeug
5
saleor
5
feedparser
5
homeassistant
5
langchain-experimental
5
jupyterlab
5
grpc
5
omero-web
5
werkzeug
5
open-webui
5
weblate
5
esphome
5
lmdb
5
onnx
5
pretix
5
flask-appbuilder
4
pandasai
4
Nova
4
tripleo-heat-templates
4
Pygments
4
koji
4
jinja2
4
pytorch-lightning
4
streamlit
4
indy-node
4
aws-iot-device-sdk-v2
4
awsiotsdk
4
GitPython
4
InvokeAI
4
jwcrypto
4
authlib
4
dbt-core
4
Keystone
4
nvflare
4
bbot
4
Radicale
4
python-ldap
4
bottle
4
clearml
4
motioneye
4
reportlab
4
datasette
4
RestrictedPython
4
qutebrowser
4
httpie
4
litestar
4
pyspark
4
FreeTAKServer-UI
4
llamafactory
4
PyPDF2
4
software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk
4
pywasm3
4
flask
4
setuptools
4
buildbot
4
octoprint
4
MaterialX
4
Flask-Security-Too
4
Scrapy
4
markdown2
4
barbican
4
flask-cors
4
paramiko
4
Filter by Repository
https://github.com/tensorflow/tensorflow
433
https://github.com/django/django
121
https://github.com/apache/airflow
105
https://github.com/ansible/ansible
59
https://github.com/python-pillow/Pillow
52
https://github.com/vyperlang/vyper
44
https://github.com/saltstack/salt
42
https://github.com/ikus060/rdiffweb
42
https://github.com/gradio-app/gradio
39
https://github.com/mmaitre314/picklescan
39
https://github.com/openstack/nova
38
https://github.com/plone/Products.CMFPlone
37
https://github.com/mlflow/mlflow
36
https://github.com/matrix-org/synapse
32
https://github.com/opencv/opencv
32
https://github.com/PaddlePaddle/Paddle
31
https://github.com/openstack/keystone
28
https://github.com/vllm-project/vllm
25
https://github.com/langchain-ai/langchain
25
https://github.com/run-llama/llama_index
24
https://github.com/pyload/pyload
24
https://github.com/ethyca/fides
20
https://github.com/huggingface/transformers
19
https://github.com/vantage6/vantage6
17
https://github.com/mindsdb/mindsdb
17
https://github.com/pyca/cryptography
16
https://github.com/MobSF/Mobile-Security-Framework-MobSF
15
https://github.com/aio-libs/aiohttp
15
https://github.com/cobbler/cobbler
15
https://github.com/apache/superset
14
https://github.com/urllib3/urllib3
14
https://github.com/dpgaspar/Flask-AppBuilder
14
https://github.com/janeczku/calibre-web
14
https://github.com/pgadmin-org/pgadmin4
14
https://github.com/twisted/twisted
14
https://github.com/modoboa/modoboa
13
https://github.com/h2oai/h2o-3
13
https://github.com/zenml-io/zenml
13
https://github.com/OctoPrint/OctoPrint
13
https://github.com/nautobot/nautobot
12
https://github.com/wagtail/wagtail
12
https://github.com/openstack/glance
12
https://github.com/getsentry/sentry
12
https://github.com/parisneo/lollms
11
https://github.com/open-webui/open-webui
11
https://github.com/onionshare/onionshare
11
https://github.com/scrapy/scrapy
11
https://github.com/Pylons/waitress
11
https://github.com/jupyter/notebook
10
https://github.com/HumanSignal/label-studio
10
https://github.com/WeblateOrg/weblate
10
https://github.com/ckan/ckan
10
https://github.com/openstack/horizon
9
https://github.com/BerriAI/litellm
9
https://github.com/zopefoundation/Zope
9
https://github.com/keras-team/keras
9
https://github.com/giampaolo/pyftpdlib
9
https://github.com/aimhubio/aim
9
https://github.com/faucetsdn/ryu
9
https://github.com/element-hq/synapse
9
https://github.com/lief-project/LIEF
9
https://github.com/tornadoweb/tornado
8
https://github.com/numpy/numpy
8
https://github.com/octoprint/octoprint
8
https://github.com/dgtlmoon/changedetection.io
8
https://github.com/ipython/ipython
8
https://github.com/9001/copyparty
8
https://github.com/openstack/neutron
8
https://github.com/pallets/werkzeug
8
https://github.com/kiwitcms/Kiwi
8
https://github.com/openstack/swift
7
https://github.com/jupyter-server/jupyter_server
7
https://github.com/pypa/pip
7
https://github.com/Ericsson/codechecker
7
https://github.com/pallets/jinja
7
https://github.com/openstack/cinder
7
https://github.com/py-pdf/pypdf
7
https://sourceforge.net/projects/sourceforge.net
7
https://github.com/indico/indico
7
https://github.com/pytorch/executorch
7
https://github.com/pytorch/pytorch
7
https://github.com/aubio/aubio
7
https://github.com/jupyterlab/jupyterlab
6
https://github.com/lxml/lxml
6
https://github.com/corydolphin/flask-cors
6
https://github.com/roundup-tracker/roundup
6
https://github.com/keylime/keylime
6
https://github.com/modelscope/agentscope
6
https://github.com/psf/requests
6
https://github.com/matrix-org/sydent
6
https://github.com/yt-dlp/yt-dlp
6
https://github.com/benbusby/whoogle-search
6
https://github.com/graphite-project/graphite-web
6
https://github.com/man-group/dtale
6
https://github.com/snowflakedb/snowflake-connector-python
6
https://github.com/bentoml/BentoML
5
https://github.com/encode/starlette
5
https://github.com/ComposioHQ/composio
5
https://github.com/jupyterhub/oauthenticator
5
https://github.com/tryton/trytond
5
https://github.com/Exiv2/exiv2
5
https://github.com/gitpython-developers/GitPython
5
https://github.com/mitmproxy/mitmproxy
5
https://github.com/pytorch/serve
5
https://github.com/home-assistant/core
5
https://github.com/mozilla/bleach
5
https://github.com/ray-project/ray
5
https://github.com/esphome/esphome
5
https://github.com/ome/omero-web
5
https://github.com/inventree/InvenTree
5
https://github.com/onnx/onnx
5
https://github.com/TeamSeri0us/pocs
5
https://github.com/hwchase17/langchain
5
https://github.com/zopefoundation/RestrictedPython
4
https://github.com/hiyouga/LLaMA-Factory
4
https://github.com/latchset/jwcrypto
4
https://github.com/ietf-tools/xml2rfc
4
https://github.com/hyperledger/indy-node
4
https://github.com/blacklanternsecurity/bbot
4
https://github.com/jupyterhub/jupyterhub
4
https://github.com/aws/aws-iot-device-sdk-java-v2
4
https://github.com/python-ldap/python-ldap
4
https://github.com/bottlepy/bottle
4
https://github.com/Cog-Creators/Red-DiscordBot
4
https://github.com/NVIDIA/NVFlare
4
https://github.com/jhpyle/docassemble
4
https://github.com/django-helpdesk/django-helpdesk
4
https://github.com/grpc/grpc
4
https://github.com/pretix/pretix
4
https://github.com/berriai/litellm
4
https://github.com/langflow-ai/langflow
4
https://github.com/saleor/saleor
4
https://github.com/qutebrowser/qutebrowser
4
https://github.com/streamlit/streamlit
4
https://github.com/eosphoros-ai/DB-GPT
4
https://github.com/Kozea/Radicale
4
https://github.com/nltk/nltk
4
https://github.com/web2py/web2py
4
https://github.com/mlc-ai/xgrammar
4
https://github.com/AcademySoftwareFoundation/openexr
4
https://github.com/litestar-org/litestar
4
https://github.com/AcademySoftwareFoundation/MaterialX
4
https://github.com/ronf/asyncssh
4
https://github.com/rohe/pysaml2
4
https://github.com/pallets/flask
4
https://github.com/dbt-labs/dbt-core
4
https://github.com/FreeTAKTeam/UI
4
https://github.com/simonw/datasette
4
https://github.com/pypa/setuptools
4
https://github.com/wasm3/wasm3
4
https://github.com/frappe/frappe
4
https://github.com/bytecodealliance/wasmtime
3
https://github.com/Flask-Middleware/flask-security
3
https://github.com/IdentityPython/pysaml2
3
https://github.com/impredicative/bitlyshortener
3
https://github.com/pyinstaller/pyinstaller
3
https://github.com/adamghill/django-unicorn
3
https://github.com/stephenmcd/mezzanine
3
https://github.com/certifi/python-certifi
3
https://github.com/pygments/pygments
3
https://github.com/moinwiki/moin-1.9
3
https://github.com/Gerapy/Gerapy
3
https://github.com/aws/sagemaker-python-sdk
3
https://github.com/aws/aws-sam-cli
3
https://github.com/paramiko/paramiko
3
https://github.com/modelscope/ms-swift
3
https://github.com/rochacbruno/quokka
3
https://github.com/beancount/fava
3
https://github.com/sosreport/sos
3
https://github.com/pyca/pyopenssl
3
https://github.com/openstack/octavia
3
https://github.com/openstack/ironic
3
https://github.com/ankitects/anki
3
https://github.com/zauberzeug/nicegui
3
https://github.com/theupdateframework/tuf
3
https://github.com/benoitc/gunicorn
3
https://github.com/andialbrecht/sqlparse
3
https://github.com/micropython/micropython
3
https://github.com/skops-dev/skops
3
https://github.com/khoj-ai/khoj
3
https://github.com/sqlalchemy/sqlalchemy
3
https://github.com/Project-MONAI/MONAI
3
https://github.com/ansible/ansible-runner
3
https://github.com/gventuri/pandas-ai
3
https://github.com/python/cpython
3
https://github.com/geyang/ml-logger
3
https://github.com/chatchat-space/Langchain-Chatchat
3
https://github.com/dlitz/pycrypto
3
https://github.com/NASA-AMMOS/AIT-Core
3
https://github.com/poezio/slixmpp
3
https://github.com/astral-sh/uv
3
https://github.com/langroid/langroid
3
https://github.com/eventlet/eventlet
3
https://github.com/lepture/mistune
3
https://github.com/jlowin/fastmcp
3
https://github.com/github/securitylab
3
https://github.com/invoke-ai/InvokeAI
3
https://github.com/langchain-ai/langgraph
3
https://github.com/jpadilla/pyjwt
3