Security

Vulnerabilities

Real-time alerts of vulnerabilities across monitored open-source ecosystems.

Ecosystems covered

9

Debian, Go, Maven & more

Total vulnerabilities tracked

432

From global vulnerability databases

Exclude malware
Package esc

5.2

Medium

Ecosystem: Npm

Package: @cloudplatform-single-spa/timescale-db

5.2

Medium

Ecosystem: Npm

Package: expo-config-plugin-typescript

5.2

Medium

Ecosystem: Npm

Package: parse-escape-regex-string

5.2

Medium

Ecosystem: Npm

Package: string-manipulation-typescript

5.2

Medium

Ecosystem: Npm

Package: dowload_ebok_los_enemigos_del_comercio_by_antonio_escohotado_6t2l4

5.2

Medium

Ecosystem: Npm

Package: @gaia-codesearch/gaia-api-typescript

5.2

Medium

Ecosystem: Npm

Package: apple-infra-escape-audit

5.2

Medium

Ecosystem: Npm

Package: apple-infra-final-escape

5.2

Medium

Ecosystem: Npm

Package: coinmate-typescript-client

5.2

Medium

Ecosystem: Npm

Package: typescript-mock-data

5.2

Medium

Ecosystem: Npm

Package: repo-typescript-config

FLAT-DOSLF (MAL-2026-1728)

Use of software with malware In escaux

5.2

Medium

Ecosystem: Npm

Package: escaux

5.2

Medium

Ecosystem: Npm

Package: transform-typescript

5.2

Medium

Ecosystem: Npm

Package: typescript-nhost

5.2

Medium

Ecosystem: Npm

Package: typescript-validation-schema

5.2

Medium

Ecosystem: Npm

Package: typescript-react-query

5.2

Medium

Ecosystem: Npm

Package: typescript-vue-apollo-smart-ops

5.2

Medium

Ecosystem: Npm

Package: typescript-type-graphql

5.2

Medium

Ecosystem: Npm

Package: typescript-rtk-query

5.2

Medium

Ecosystem: Npm

Package: typescript-resolvers

5.2

Medium

Ecosystem: Npm

Package: proposal-typescript

2.7

Low

Ecosystem: Npm

Package: shescape

5.2

Medium

Ecosystem: Npm

Package: typescript-urql

1.7

Low

Ecosystem: Npm

Package: shescape

FLAT-R9ZCU (GHSA-g38g-8gr9-h9xp)

Lack of data validation In picklescan

9.1

Critical

Ecosystem: PyPI

Package: picklescan

FLAT-B9B4F (GHSA-vvpj-8cmc-gx39)

Security controls bypass or absence In picklescan

9.1

Critical

Ecosystem: PyPI

Package: picklescan

FLAT-6QZAQ (GHSA-7wx9-6375-f5wh)

Lack of data validation In picklescan

5.9

Medium

Ecosystem: PyPI

Package: picklescan

5.2

Medium

Ecosystem: Npm

Package: typescript-constructors

FLAT-9F9TX (GHSA-97f8-7cmv-76j2)

Lack of data validation In picklescan

4.9

Medium

Ecosystem: PyPI

Package: picklescan

5.2

Medium

Ecosystem: PyPI

Package: tablescene

5.2

Medium

Ecosystem: Npm

Package: typescript-react-apollo

FLAT-JHFCG (GHSA-m7j5-r2p5-c39r)

Insecure deserialization In picklescan

2.7

Low

Ecosystem: PyPI

Package: picklescan

FLAT-3ZQ6I (GHSA-9m3x-qqw2-h32h)

Insecure deserialization In picklescan

8.1

High

Ecosystem: PyPI

Package: picklescan

FLAT-0UGHO (GHSA-9726-w42j-3qjr)

Server-side request forgery (SSRF) In picklescan

8.0

High

Ecosystem: PyPI

Package: picklescan

FLAT-N1FNL (GHSA-46h3-79wf-xr6c)

Server side template injection In picklescan

8.1

High

Ecosystem: PyPI

Package: picklescan

FLAT-HV7KB (GHSA-955r-x9j8-7rhh)

Server side template injection In picklescan

8.1

High

Ecosystem: PyPI

Package: picklescan

FLAT-S7PB3 (GHSA-6556-fwc2-fg2p)

Server side template injection In picklescan

4.9

Medium

Ecosystem: PyPI

Package: picklescan

FLAT-YI19T (GHSA-rrxm-2pvv-m66x)

Server side template injection In picklescan

7.2

High

Ecosystem: PyPI

Package: picklescan

FLAT-IZUQX (GHSA-cffc-mxrf-mhh4)

Remote command execution In picklescan

5.9

Medium

Ecosystem: PyPI

Package: picklescan

FLAT-FV0EF (GHSA-3329-ghmp-jmv5)

Server side template injection In picklescan

6.3

Medium

Ecosystem: PyPI

Package: picklescan

FLAT-PVCQQ (GHSA-x843-g5mx-g377)

Remote command execution In picklescan

6.3

Medium

Ecosystem: PyPI

Package: picklescan

FLAT-8BOQ5 (GHSA-r8g5-cgf2-4m4m)

Insecure deserialization In picklescan

8.1

High

Ecosystem: PyPI

Package: picklescan

FLAT-FK4CF (GHSA-hgrh-qx5j-jfwx)

Security controls bypass or absence In picklescan

7.6

High

Ecosystem: PyPI

Package: picklescan

FLAT-8HC26 (GHSA-vqmv-47xg-9wpr)

Insecure deserialization In picklescan

8.1

High

Ecosystem: PyPI

Package: picklescan

FLAT-QREFO (GHSA-84r2-jw7c-4r5q)

Lack of data validation In picklescan

8.1

High

Ecosystem: PyPI

Package: picklescan

FLAT-4RG9A (GHSA-4675-36f9-wf6r)

Lack of data validation In picklescan

8.1

High

Ecosystem: PyPI

Package: picklescan

FLAT-9ETYD (GHSA-m273-6v24-x4m4)

Local file inclusion In picklescan

8.1

High

Ecosystem: PyPI

Package: picklescan

FLAT-X6NCG (MAL-2025-192879)

Use of software with malware In tescoutils

5.2

Medium

Ecosystem: Npm

Package: tescoutils

5.2

Medium

Ecosystem: Npm

Package: escaux-scrumboard-api

5.2

Medium

Ecosystem: Npm

Package: @voiceflow/serverless-plugin-typescript

5.2

Medium

Ecosystem: Npm

Package: mon-package-react-typescript

FLAT-BYSVH (MAL-2025-191790)

Use of software with malware In mescouilles

5.2

Medium

Ecosystem: PyPI

Package: mescouilles

5.2

Medium

Ecosystem: Npm

Package: integrator-filescrypt2025

5.2

Medium

Ecosystem: Npm

Package: luminescence-pino-superagent-axios

5.2

Medium

Ecosystem: Npm

Package: warp-luminescence-ionosphere-baryon

5.2

Medium

Ecosystem: Npm

Package: deimos-iota-luminescence-geochemistry

5.2

Medium

Ecosystem: Npm

Package: luminescence-chai-cryonics-eclipse

5.2

Medium

Ecosystem: Npm

Package: luminescence-meteor-elara-oortcloud

5.2

Medium

Ecosystem: Npm

Package: paleontology-luminescence-less-hermes

5.2

Medium

Ecosystem: Npm

Package: luminescence-colors-resonance-publish

5.2

Medium

Ecosystem: Npm

Package: commitizen-markdown-luminescence-meteor

5.2

Medium

Ecosystem: Npm

Package: antares-luminescence-phoebe-higgs

5.2

Medium

Ecosystem: Npm

Package: luminescence-achernar-promise-nuxtjs

5.2

Medium

Ecosystem: Npm

Package: teate-thy-sonic-bescig

5.2

Medium

Ecosystem: Npm

Package: ilyescroissant

5.2

Medium

Ecosystem: Npm

Package: youneschocolat

5.2

Medium

Ecosystem: Npm

Package: ilyescroisbshjalilbaguettesant

FLAT-46A04 (MAL-2025-171911)

Use of software with malware In spacescribe

5.2

Medium

Ecosystem: Npm

Package: spacescribe

5.2

Medium

Ecosystem: Npm

Package: hassanescargot

5.2

Medium

Ecosystem: Npm

Package: spacescholar

5.2

Medium

Ecosystem: Npm

Package: ghalibescargot

5.2

Medium

Ecosystem: Npm

Package: francesca-soluble-pot

5.2

Medium

Ecosystem: Npm

Package: francesca-tea-archive

5.2

Medium

Ecosystem: Npm

Package: sechub-openapi-typescript

5.2

Medium

Ecosystem: Npm

Package: typescriptjs

5.2

Medium

Ecosystem: Npm

Package: airbnb-base-typescript-prettier

5.2

Medium

Ecosystem: Npm

Package: @aio-commerce-sdk/config-typescript

5.2

Medium

Ecosystem: Npm

Package: typescript-compat

5.2

Medium

Ecosystem: Npm

Package: typescript-sort-keys

5.2

Medium

Ecosystem: Npm

Package: json-schema-to-typescript-example

5.2

Medium

Ecosystem: Npm

Package: minter-typescript

5.2

Medium

Ecosystem: Npm

Package: cypress-typescript

5.2

Medium

Ecosystem: Npm

Package: @upside/flex-common-typescript-lib

5.2

Medium

Ecosystem: Npm

Package: summerfi-typescript-config-security-notice

FLAT-6O7AL (GHSA-hf6h-9wq7-hmjg)

Security controls bypass or absence In picklescan

0.0

None

Ecosystem: PyPI

Package: picklescan

FLAT-RBYU7 (GHSA-4vr7-g93g-cf6m)

Insecure deserialization In picklescan

0.0

None

Ecosystem: PyPI

Package: picklescan

FLAT-D3TTR (GHSA-j424-mc44-f4hj)

Lack of data validation In picklescan

0.0

None

Ecosystem: PyPI

Package: picklescan

4.9

Medium

Ecosystem: NuGet

Package: kubernetesclient

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-document-picker

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-material-ripple

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-material-bottom-navigation

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-label

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-material-bottomsheet

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-collectionview

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/sentry

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-image

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-drawer

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-material-core-tabs

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-pulltorefresh

5.2

Medium

Ecosystem: Npm

Package: @nativescript-community/ui-pager