Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2025-192953
  • PyPI/aiogram-types-v3
Malicious code in aiogram-types-v3 (PyPI) 6 hours ago
  • No fix available
MAL-2025-192948
  • PyPI/extrazip
Malicious code in extrazip (PyPI) 22 hours ago
  • No fix available
MAL-2025-192947
  • PyPI/crypo
Malicious code in crypo (PyPI) 22 hours ago
  • No fix available
MAL-2025-192946
  • PyPI/crpto
Malicious code in crpto (PyPI) 22 hours ago
  • No fix available
MAL-2025-192945
  • PyPI/flaask
Malicious code in flaask (PyPI) 22 hours ago
  • No fix available
GHSA-rcfx-77hg-w2wv
  • PyPI/fastmcp
FastMCP updated to MCP 1.23+ due to CVE-2025-66416 yesterday
  • Fix available
MAL-2025-192942
  • PyPI/telebot-bot
Malicious code in telebot-bot (PyPI) yesterday
  • No fix available
MAL-2025-192943
  • PyPI/telegrem
Malicious code in telegrem (PyPI) yesterday
  • No fix available
GHSA-9pf3-7rrr-x5jh
  • PyPI/lmdeploy
lmdeploy vulnerable to Arbitrary Code Execution via Insecure Deserialization in torch.load() yesterday
  • Fix available
  • Severity - 8.8 (High)
MAL-2025-192940
  • PyPI/aiogram-3
Malicious code in aiogram-3 (PyPI) 2 days ago
  • No fix available
MAL-2025-192931
  • PyPI/aiogram-sever-patch
Malicious code in aiogram-sever-patch (PyPI) 2 days ago
  • No fix available
MAL-2025-192930
  • PyPI/pxdbench
Malicious code in pxdbench (PyPI) 2 days ago
  • No fix available
MAL-2025-192929
  • PyPI/envtoolsx
Malicious code in envtoolsx (PyPI) 3 days ago
  • No fix available
MAL-2025-192928
  • PyPI/livekit-agents-hedra
Malicious code in livekit-agents-hedra (PyPI) 3 days ago
  • No fix available
GHSA-c67j-w6g6-q2cm
  • PyPI/langchain-core
LangChain serialization injection vulnerability enables secret extraction in dumps/loads APIs 4 days ago
  • Fix available
  • Severity - 9.3 (Critical)
GHSA-pp3g-xmm4-5cw9
  • PyPI/homeassistant
Home Assistant Core before is vulnerable to Directory Traversal 4 days ago
  • Fix available
  • Severity - 6.9 (Medium)