Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
595337
AlmaLinux
4528
Alpaquita
8485
Alpine
3985
Android
3260
BellSoft Hardened Containers
378
Bitnami
6681
Chainguard
5128
CleanStart
415
CRAN
13
crates.io
2104
Debian
53180
Echo
3045
GHC
3
GIT
79658
GitHub Actions
45
Go
6055
Hackage
27
Hex
49
Julia
331
Linux
15364
Mageia
5831
Maven
6219
MinimOS
18015
npm
216221
NuGet
1606
opam
11
openEuler
6137
openSUSE
12137
OSS-Fuzz
3799
Packagist
5818
Pub
10
PyPI
18176
Red Hat
18862
Rocky Linux
2807
Root
10849
RubyGems
1881
SUSE
19790
SwiftURL
48
Ubuntu
51169
VSCode
15
Wolfi
3202
ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2026-2028
PyPI/pipinpeace-bind
Malicious code in pipinpeace-bind (PyPI)
13 hours ago
No fix available
MAL-2026-2029
PyPI/pipinpeace-reverse
Malicious code in pipinpeace-reverse (PyPI)
13 hours ago
No fix available
MAL-2026-2026
PyPI/pipinpeace-env
Malicious code in pipinpeace-env (PyPI)
14 hours ago
No fix available
MAL-2026-2020
PyPI/aiolrucache
Malicious code in aiolrucache (PyPI)
yesterday
No fix available
MAL-2026-2017
PyPI/thisismytest
Malicious code in thisismytest (PyPI)
yesterday
No fix available
MAL-2026-2016
PyPI/qyrm-pipinject4
Malicious code in qyrm-pipinject4 (PyPI)
yesterday
No fix available
MAL-2026-2013
PyPI/nump
Malicious code in nump (PyPI)
yesterday
No fix available
GHSA-r7mc-x6x7-cqxx
PyPI/pyload-ng
pyLoad SETTINGS Permission Users Can Achieve Remote Code Execution via Unrestricted Reconnect Script Configuration
2 days ago
No fix available
Severity - 7.5 (High)
MAL-2026-2006
PyPI/mangrove-sdk
Malicious code in mangrove-sdk (PyPI)
2 days ago
No fix available
GHSA-ph9w-r52h-28p7
PyPI/langflow
langflow: /profile_pictures/{folder_name}/{file_name} endpoint file reading
2 days ago
Fix available
Severity - 8.7 (High)
MAL-2026-2005
PyPI/efghr-honeybee-sdk
Malicious code in efghr-honeybee-sdk (PyPI)
2 days ago
No fix available
MAL-2026-2004
PyPI/flyio-token-client-efgh
Malicious code in flyio-token-client-efgh (PyPI)
2 days ago
No fix available
GHSA-7grx-3xcx-2xv5
PyPI/langflow
langflow has Unauthenticated IDOR on Image Downloads
2 days ago
No fix available
Severity - 7.5 (High)
GHSA-v856-2rf8-9f28
PyPI/pydicom
pydicom has a path traversal in FileSet/DICOMDIR ReferencedFileID allows file access outside the File-set root
2 days ago
Fix available
Severity - 7.8 (High)
MAL-2026-2000
PyPI/cfgmgr-sync
Malicious code in cfgmgr-sync (PyPI)
2 days ago
No fix available
MAL-2026-1999
PyPI/cfgmgr-syn
Malicious code in cfgmgr-syn (PyPI)
2 days ago
No fix available
Load more...
PyPI - OSV