Address
:
[go:
up one dir
,
main page
]
Include Form
Remove Scripts
Accept Cookies
Show Images
Show Referer
Rotate13
Base64
Strip Meta
Strip Title
Session Cookies
Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
801299
AlmaLinux
5428
Alpaquita
12354
Alpine
4349
Android
3404
Azure Linux
12016
BellSoft Hardened Containers
611
Bitnami
8525
Chainguard
9745
CleanStart
1988
CRAN
14
crates.io
2610
Debian
61761
Echo
7570
GHC
3
GIT
96356
GitHub Actions
54
Go
8538
Hackage
32
Hex
211
Julia
1489
Linux
26214
Mageia
6090
Maven
6790
MinimOS
101356
npm
223596
NuGet
1832
opam
22
openEuler
7421
openSUSE
13777
OSS-Fuzz
3972
Packagist
6764
Pub
11
PyPI
24151
Red Hat
21713
Rocky Linux
3814
Root
18613
RubyGems
4589
SUSE
22040
SwiftURL
59
TuxCare
5651
Ubuntu
58935
VSCode
20
Wolfi
6811
ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2026-11521
PyPI/psbt-helpers
Malicious code in psbt-helpers (PyPI)
4 hours ago
No fix available
MAL-2026-11519
PyPI/launchdarkly-ai-server-sdk
Malicious code in launchdarkly-ai-server-sdk (PyPI)
4 hours ago
No fix available
MAL-2026-11520
PyPI/psbt-utils
Malicious code in psbt-utils (PyPI)
4 hours ago
No fix available
MAL-2026-11516
PyPI/coldcard-helpers
Malicious code in coldcard-helpers (PyPI)
9 hours ago
No fix available
GHSA-m2h6-j472-rp4c
PyPI/cryptography
python-cryptography verifier accepts wildcard DNS names allowing escape from permittedSubtrees
16 hours ago
Fix available
Severity - 6.9 (Medium)
GHSA-jwv3-5hgf-82ww
PyPI/cryptography
python-cryptography: Duplicate self-signed intermediates can cause exponential path-building
16 hours ago
Fix available
Severity - 8.7 (High)
GHSA-g6cj-pr64-35w5
PyPI/cryptography
cryptography: PKCS#7 EnvelopedData decryption exposes a Bleichenbacher oracle through distinguishable errors and timing
17 hours ago
Fix available
Severity - 8.2 (High)
GHSA-cq5v-8q36-5273
PyPI/aiohttp
AIOHTTP: Out-of-bounds heap read in C HTTP response parser error path (malformed chunked response)
17 hours ago
Fix available
Severity - 7.1 (High)
GHSA-mfx4-hv73-q22v
PyPI/aiohttp
AIOHTTP: HTTP request smuggling via WebSocket upgrade
17 hours ago
Fix available
Severity - 6.3 (Medium)
GHSA-mq44-7p77-q5h7
PyPI/aiohttp
AIOHTTP: WebSocket client accepts compressed frames without negotiated permessage-deflate
17 hours ago
Fix available
Severity - 6.9 (Medium)
MAL-2026-11503
PyPI/instalogin1234
Malicious code in instalogin1234 (PyPI)
17 hours ago
No fix available
GHSA-p538-c434-8v24
PyPI/gitpython
GitPython: Arbitrary file truncation via git rev-list --output argument injection in unguarded Commit.count
17 hours ago
Fix available
Severity - 5.4 (Medium)
GHSA-539m-9xh6-q6rr
PyPI/gitpython
GitPython: Incomplete unsafe_git_archive_options denylist omits --add-file / --add-virtual-file, enabling arbitrary file read via Repo.archive()
18 hours ago
Fix available
Severity - 6.5 (Medium)
GHSA-3f7w-8rr8-f37f
PyPI/gitpython
GitPython: Unguarded git option forwarding in IndexFile.checkout() and TagReference.create() enables arbitrary file overwrite and arbitrary file read
18 hours ago
Fix available
Severity - 8.1 (High)
MAL-2026-11429
PyPI/trongriden
Malicious code in trongriden (PyPI)
2 days ago
No fix available
MAL-2026-11428
PyPI/wacve-utils
Malicious code in wacve-utils (PyPI)
2 days ago
No fix available
Load more...
PyPI - OSV