Security

Vulnerabilities

Real-time alerts of vulnerabilities across monitored open-source ecosystems.

Ecosystems covered

15

Alpine, Alpm, Cargo & more

Total vulnerabilities tracked

321,105

From global vulnerability databases

Exclude malware

5.2

Medium

Ecosystem: Npm

Package: hunsterx-package

FLAT-PDNWU (GHSA-7cqp-7cfv-6c3q)

Server side cross-site scripting In wwbn/avideo

2.4

Low

Ecosystem: Packagist

Package: wwbn/avideo

9.1

Critical

Ecosystem: PyPI

Package: motioneye

8.4

High

Ecosystem: PyPI

Package: motioneye

2.7

Low

Ecosystem: PyPI

Package: motioneye

5.7

Medium

Ecosystem: PyPI

Package: motioneye

FLAT-WYF9U (CVE-2026-55448)

Remote command execution In mise

5.6

Medium

Ecosystem: Cargo

Package: mise

FLAT-IV16C (CVE-2026-55441)

Remote command execution In mise

5.6

Medium

Ecosystem: Cargo

Package: mise

2.1

Low

Ecosystem: Hex

Package: ash

3.4

Low

Ecosystem: Cargo

Package: mise

4.7

Medium

Ecosystem: PyPI

Package: octoprint

5.6

Medium

Ecosystem: PyPI

Package: glances

FLAT-ZT7OQ (CVE-2026-54350)

NoSQL injection In @budibase/server

8.1

High

Ecosystem: Npm

Package: @budibase/server

FLAT-N6QOR (CVE-2026-55173)

Remote command execution In wwbn/avideo

8.4

High

Ecosystem: Packagist

Package: wwbn/avideo

2.4

Low

Ecosystem: Go

Package: gogs.io/gogs

5.9

Medium

Ecosystem: Maven

Package: org.openidentityplatform.openam:openam-federation

5.9

Medium

Ecosystem: Maven

Package: org.openidentityplatform.openam:openam-core

1.0

Low

Ecosystem: PyPI

Package: octoprint

FLAT-3ERCD (CVE-2026-52815)

Business information leak In gogs.io/gogs

2.7

Low

Ecosystem: Go

Package: gogs.io/gogs

2.7

Low

Ecosystem: Go

Package: gogs.io/gogs

8.4

High

Ecosystem: Go

Package: gogs.io/gogs

4.9

Medium

Ecosystem: Go

Package: gogs.io/gogs

6.1

Medium

Ecosystem: Go

Package: gogs.io/gogs

5.0

Medium

Ecosystem: Go

Package: gogs.io/gogs

5.7

Medium

Ecosystem: Go

Package: gogs.io/gogs

FLAT-AEHND (CVE-2026-52808)

Excessive privileges In gogs.io/gogs

4.0

Medium

Ecosystem: Go

Package: gogs.io/gogs

3.6

Low

Ecosystem: Go

Package: gogs.io/gogs

6.1

Medium

Ecosystem: Go

Package: gogs.io/gogs

5.9

Medium

Ecosystem: Go

Package: gogs.io/gogs

FLAT-CL89S (CVE-2026-52804)

Insecure functionality In gogs.io/gogs

4.8

Medium

Ecosystem: Go

Package: gogs.io/gogs

1.2

Low

Ecosystem: Go

Package: gogs.io/gogs

5.2

Medium

Ecosystem: Npm

Package: @glitchpad/throttler

5.2

Medium

Ecosystem: Npm

Package: @nullzero/urlcat

5.2

Medium

Ecosystem: Npm

Package: @tinyfox/shapecheck

5.2

Medium

Ecosystem: Npm

Package: @zynkit/probe

5.2

Medium

Ecosystem: Npm

Package: @lazyutil/dater

5.2

Medium

Ecosystem: Npm

Package: @frostnode/probe

5.2

Medium

Ecosystem: Npm

Package: @thymelab/logfx

5.2

Medium

Ecosystem: Npm

Package: @petitcode/eb-retry

5.2

Medium

Ecosystem: Npm

Package: @zynkit/jwtbytes

5.2

Medium

Ecosystem: Npm

Package: @frostnode/waitfor

5.2

Medium

Ecosystem: Npm

Package: @gleamkit/probe

FLAT-13T6L (MAL-2026-6321)

Use of software with malware In ts-grok

5.2

Medium

Ecosystem: Npm

Package: ts-grok

5.2

Medium

Ecosystem: Npm

Package: ts-escrow

5.2

Medium

Ecosystem: Npm

Package: ts-bn-lint-helper

5.2

Medium

Ecosystem: Npm

Package: ts-bn-lint

FLAT-QYIUU (MAL-2026-6319)

Use of software with malware In ts-escro

5.2

Medium

Ecosystem: Npm

Package: ts-escro

5.2

Medium

Ecosystem: Npm

Package: @muaththir/api

5.2

Medium

Ecosystem: Npm

Package: ts-biginteger-lib

5.2

Medium

Ecosystem: Npm

Package: cursorai-agent

5.2

Medium

Ecosystem: Npm

Package: @ravespaceio/rave-engine

5.2

Medium

Ecosystem: Npm

Package: @ravespaceio/browser-input

5.2

Medium

Ecosystem: Npm

Package: web3-crypto-address-utils

5.2

Medium

Ecosystem: Npm

Package: web3-eth-util

5.2

Medium

Ecosystem: Npm

Package: web3-eth-utils

5.2

Medium

Ecosystem: Npm

Package: calculate-helper

5.2

Medium

Ecosystem: PyPI

Package: security-alerts-sdk

5.2

Medium

Ecosystem: Npm

Package: sync-external

5.2

Medium

Ecosystem: Npm

Package: server-parket

FLAT-MMUJZ (MAL-2026-6323)

Use of software with malware In ts-sudo

5.2

Medium

Ecosystem: Npm

Package: ts-sudo

5.2

Medium

Ecosystem: Npm

Package: mjs-eslint-service

5.2

Medium

Ecosystem: Npm

Package: ts-arithmetic-helper

5.2

Medium

Ecosystem: Npm

Package: ts-predict-helper

5.2

Medium

Ecosystem: Npm

Package: parket-flow

5.2

Medium

Ecosystem: Npm

Package: chalk-ultra

5.2

Medium

Ecosystem: Npm

Package: analysis-chart

5.2

Medium

Ecosystem: Npm

Package: hashd-edu

5.2

Medium

Ecosystem: Npm

Package: date-format-helper2

5.2

Medium

Ecosystem: Npm

Package: react-simple-utils-kit

5.2

Medium

Ecosystem: Npm

Package: @outmarket/ui

5.2

Medium

Ecosystem: Npm

Package: @outmarket/utils

5.2

Medium

Ecosystem: Npm

Package: airbnb-airlock

5.2

Medium

Ecosystem: Npm

Package: ttal2ttml

5.2

Medium

Ecosystem: Npm

Package: kdrive-utils

FLAT-BOGOY (MAL-2026-6294)

Use of software with malware In cue-mcp

5.2

Medium

Ecosystem: Npm

Package: cue-mcp

5.2

Medium

Ecosystem: Npm

Package: tree-sitter-forth

5.2

Medium

Ecosystem: Npm

Package: myebaynode

FLAT-YVFPP (CVE-2026-54892)

Improper resource allocation In plug

6.6

Medium

Ecosystem: Hex

Package: plug

5.2

Medium

Ecosystem: Npm

Package: new-solt-1

FLAT-3RBYV (MAL-2026-6285)

Use of software with malware In new-solt

5.2

Medium

Ecosystem: Npm

Package: new-solt

5.2

Medium

Ecosystem: Npm

Package: new-helper

5.2

Medium

Ecosystem: Npm

Package: poly-utils

5.2

Medium

Ecosystem: Npm

Package: new-ecro-helper

FLAT-E6FK2 (MAL-2026-6290)

Use of software with malware In toorc

5.2

Medium

Ecosystem: PyPI

Package: toorc

FLAT-QW886 (MAL-2026-6289)

Use of software with malware In equest

5.2

Medium

Ecosystem: PyPI

Package: equest

5.2

Medium

Ecosystem: Npm

Package: local-ip-helper

5.2

Medium

Ecosystem: Npm

Package: ts-numbering

5.2

Medium

Ecosystem: Npm

Package: libsignal-node-travatiger

FLAT-47KSD (MAL-2026-6280)

Use of software with malware In ip-rotat

5.2

Medium

Ecosystem: PyPI

Package: ip-rotat

FLAT-9A030 (CVE-2026-53655)

Lack of data validation In node-tar

4.6

Medium

Ecosystem: Debian

Package: node-tar

FLAT-BMEHQ (MAL-2026-6278)

Use of software with malware In ts-wross

5.2

Medium

Ecosystem: Npm

Package: ts-wross

5.2

Medium

Ecosystem: Npm

Package: node-core-libs

5.2

Medium

Ecosystem: Npm

Package: search-from-search

7.7

High

Ecosystem: Debian

Package: python-multipart

1.7

Low

Ecosystem: Debian

Package: python-multipart

FLAT-1T5J6 (CVE-2026-53538)

HTTP request smuggling In python-multipart

1.7

Low

Ecosystem: Debian

Package: python-multipart

1.7

Low

Ecosystem: Debian

Package: python-multipart

5.2

Medium

Ecosystem: Npm

Package: @ts-apis/ts-utils

FLAT-QY9HG (CVE-2026-52801)

Lack of data validation In gogs.io/gogs

5.7

Medium

Ecosystem: Go

Package: gogs.io/gogs

FLAT-BAXTF (CVE-2026-52800)

Account Takeover In gogs.io/gogs

6.1

Medium

Ecosystem: Go

Package: gogs.io/gogs