Security

Vulnerabilities

Real-time alerts of vulnerabilities across monitored open-source ecosystems.

Ecosystems covered

9

Alpine, Alpm, Cargo & more

Total vulnerabilities tracked

1,026

From global vulnerability databases

Exclude malware
Package python

8.2

High

Ecosystem: Debian

Package: python-oslo.messaging

1.7

Low

Ecosystem: Debian

Package: python3.9

FLAT-7GMF4 (CVE-2026-8404)

Cached form fields In python-django

0.6

Low

Ecosystem: Debian

Package: python-django

0.6

Low

Ecosystem: Debian

Package: python-django

FLAT-NFY6H (CVE-2026-6873)

Lack of data validation In python-django

0.6

Low

Ecosystem: Debian

Package: python-django

FLAT-OSIY1 (CVE-2026-48587)

Lack of data validation In python-django

0.6

Low

Ecosystem: Debian

Package: python-django

7.7

High

Ecosystem: Debian

Package: python-daphne

FLAT-0UI4C (CVE-2026-44546)

HTTP request smuggling In python-daphne

2.7

Low

Ecosystem: Debian

Package: python-daphne

FLAT-ZA8WX (CVE-2026-35193)

Cached form fields In python-django

0.6

Low

Ecosystem: Debian

Package: python-django

0.6

Low

Ecosystem: Debian

Package: python-pip

0.5

Low

Ecosystem: Debian

Package: python-authlib

5.2

Medium

Ecosystem: Npm

Package: python-env-auditor

5.2

Medium

Ecosystem: Npm

Package: python-utils

2.1

Low

Ecosystem: Debian

Package: python3.13

7.7

High

Ecosystem: Debian

Package: python-multipart

FLAT-3A2MK (CVE-2026-44432)

Excessive privileges In python-urllib3

6.3

Medium

Ecosystem: Debian

Package: python-urllib3

4.6

Medium

Ecosystem: Debian

Package: python-urllib3

5.2

Medium

Ecosystem: Npm

Package: @uipath/uipath-python-bridge

1.7

Low

Ecosystem: Debian

Package: python3.9

4.6

Medium

Ecosystem: PyPI

Package: python-liquid

5.2

Medium

Ecosystem: PyPI

Package: python-bittensor-config-v2

FLAT-WYVIU (GHSA-mv93-w799-cj2w)

Lack of data validation In gitpython

5.8

Medium

Ecosystem: PyPI

Package: gitpython

5.2

Medium

Ecosystem: Npm

Package: @gaia-codesearch/gaia-api-python

6.8

Medium

Ecosystem: Debian

Package: python-git

4.1

Medium

Ecosystem: Debian

Package: python-git

FLAT-QGUYO (CVE-2026-42215)

Remote command execution In python-git

8.4

High

Ecosystem: Debian

Package: python-git

FLAT-FDBWI (CVE-2026-42284)

Insecure functionality In python-git

8.4

High

Ecosystem: Debian

Package: python-git

5.6

Medium

Ecosystem: PyPI

Package: ironic-python-agent

5.8

Medium

Ecosystem: PyPI

Package: ironic-python-agent

FLAT-KBT8Y (CVE-2026-7246)

OS Command Injection In python-click

5.6

Medium

Ecosystem: Debian

Package: python-click

1.3

Low

Ecosystem: Debian

Package: python-authlib

3.7

Low

Ecosystem: PyPI

Package: python-dotenv

FLAT-5E195 (CVE-2026-3219)

Insecure object reference In python-pip

1.0

Low

Ecosystem: Debian

Package: python-pip

2.7

Low

Ecosystem: Debian

Package: python-multipart

1.7

Low

Ecosystem: Debian

Package: python3.14

FLAT-R1880 (CVE-2026-4786)

Remote command execution In python3.13

3.7

Low

Ecosystem: Debian

Package: python3.13

6.9

Medium

Ecosystem: Debian

Package: python3.13

5.2

Medium

Ecosystem: PyPI

Package: python-aickerso

2.3

Low

Ecosystem: Debian

Package: python3.13

1.3

Low

Ecosystem: Alpm

Package: python-html5lib

1.3

Low

Ecosystem: Alpm

Package: python-html5lib

FLAT-HAJG2 (CVE-2019-19118)

Excessive privileges In python-django

4.9

Medium

Ecosystem: Alpm

Package: python-django

FLAT-NLIEX (CVE-2018-20225)

Insecure object reference In python-pip

7.5

High

Ecosystem: Alpm

Package: python-pip

6.6

Medium

Ecosystem: Alpm

Package: python-cairosvg

FLAT-2A9M1 (CVE-2020-29651)

Asymmetric denial of service In python-py

6.6

Medium

Ecosystem: Alpm

Package: python-py

2.7

Low

Ecosystem: Alpm

Package: python-django

2.7

Low

Ecosystem: Alpm

Package: python-jinja

6.6

Medium

Ecosystem: Alpm

Package: python-markdown2

6.6

Medium

Ecosystem: Alpm

Package: python-pygments

6.6

Medium

Ecosystem: Alpm

Package: python-pygments

0.6

Low

Ecosystem: Alpm

Package: python-aiohttp

1.3

Low

Ecosystem: Alpm

Package: python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

6.6

Medium

Ecosystem: Alpm

Package: python-pillow

6.6

Medium

Ecosystem: Alpm

Package: python-nltk

0.5

Low

Ecosystem: Alpm

Package: python-flask-security-too

2.7

Low

Ecosystem: Alpm

Package: python-django

FLAT-CBCC0 (CVE-2025-48432)

Log injection In python-django

1.7

Low

Ecosystem: Alpm

Package: python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

1.3

Low

Ecosystem: Alpm

Package: python-django

1.3

Low

Ecosystem: Alpm

Package: python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

2.7

Low

Ecosystem: Alpm

Package: python-django

2.7

Low

Ecosystem: Alpm

Package: python-django

1.3

Low

Ecosystem: Alpm

Package: python-django

FLAT-85RPR (CVE-2018-16984)

Weak credential policy In python-django

4.6

Medium

Ecosystem: Alpm

Package: python-django

FLAT-V4U12 (CVE-2019-3498)

Lack of data validation In python-django

4.9

Medium

Ecosystem: Alpm

Package: python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

FLAT-L8EU6 (CVE-2019-11358)

Prototype Pollution In python-django

1.2

Low

Ecosystem: Alpm

Package: python-django

1.2

Low

Ecosystem: Alpm

Package: python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

FLAT-R49ES (CVE-2019-14234)

SQL injection - Code In python-django

8.1

High

Ecosystem: Alpm

Package: python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

FLAT-JSRHW (CVE-2020-7471)

SQL injection - Code In python-django

8.1

High

Ecosystem: Alpm

Package: python-django

FLAT-K7CIL (CVE-2020-9402)

SQL injection - Code In python-django

6.3

Medium

Ecosystem: Alpm

Package: python-django

4.6

Medium

Ecosystem: Alpm

Package: python-django

1.3

Low

Ecosystem: Alpm

Package: python-django

FLAT-E9EYF (CVE-2020-24583)

Excessive privileges In python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

FLAT-YRIHZ (CVE-2020-24584)

Excessive privileges In python-django

6.6

Medium

Ecosystem: Alpm

Package: python-django

1.3

Low

Ecosystem: Alpm

Package: python-lxml

1.3

Low

Ecosystem: Alpm

Package: python-autobahn

FLAT-K228D (CVE-2020-35653)

Out-of-bounds read In python-pillow

5.0

Medium

Ecosystem: Alpm

Package: python-pillow

FLAT-V04L9 (CVE-2020-35654)

Out-of-bounds read In python-pillow

6.1

Medium

Ecosystem: Alpm

Package: python-pillow

FLAT-BJ4LE (CVE-2020-35655)

Out-of-bounds read In python-pillow

6.3

Medium

Ecosystem: Alpm

Package: python-pillow

FLAT-RBGNJ (CVE-2020-28473)

HTTP request smuggling In python-bottle

2.7

Low

Ecosystem: Alpm

Package: python-bottle

6.6

Medium

Ecosystem: Alpm

Package: python-httplib2

FLAT-4C70E (CVE-2020-36242)

Out-of-bounds read In python-cryptography

8.1

High

Ecosystem: Alpm

Package: python-cryptography

FLAT-RJOWI (CVE-2021-23336)

HTTP request smuggling In python-django

4.8

Medium

Ecosystem: Alpm

Package: python-django

7.2

High

Ecosystem: Alpm

Package: python

FLAT-XCM34 (CVE-2020-14343)

Lack of data validation In python-yaml

8.1

High

Ecosystem: Alpm

Package: python-yaml

FLAT-COM6W (CVE-2021-25289)

Out-of-bounds read In python-pillow

8.1

High

Ecosystem: Alpm

Package: python-pillow

FLAT-BXWJY (CVE-2021-25290)

Out-of-bounds read In python-pillow

6.6

Medium

Ecosystem: Alpm

Package: python-pillow

FLAT-5CRLN (CVE-2021-25291)

Out-of-bounds read In python-pillow

6.6

Medium

Ecosystem: Alpm

Package: python-pillow

4.9

Medium

Ecosystem: Alpm

Package: python-pillow

FLAT-RLY0X (CVE-2021-25293)

Out-of-bounds read In python-pillow

6.6

Medium

Ecosystem: Alpm

Package: python-pillow

6.6

Medium

Ecosystem: Alpm

Package: python-pillow

6.6

Medium

Ecosystem: Alpm

Package: python-pillow

6.6

Medium

Ecosystem: Alpm

Package: python-pillow

1.3

Low

Ecosystem: Alpm

Package: python-lxml