Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
600536
AlmaLinux
4228
Alpaquita
7712
Alpine
3920
Android
3139
BellSoft Hardened Containers
285
Bitnami
6282
Chainguard
32992
CRAN
12
crates.io
1904
Debian
51255
Echo
2439
GHC
3
GIT
75054
GitHub Actions
37
Go
5180
Hackage
26
Hex
45
Julia
332
Linux
22539
Mageia
5767
Maven
6088
MinimOS
8802
npm
213653
NuGet
1504
openEuler
5545
openSUSE
10306
OSS-Fuzz
3734
Packagist
5524
Pub
10
PyPI
17421
Red Hat
17789
Rocky Linux
2514
RubyGems
1834
SUSE
17045
SwiftURL
42
Ubuntu
49128
VSCode
15
Wolfi
16431
ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2025-192953
PyPI/aiogram-types-v3
Malicious code in aiogram-types-v3 (PyPI)
6 hours ago
No fix available
MAL-2025-192948
PyPI/extrazip
Malicious code in extrazip (PyPI)
22 hours ago
No fix available
MAL-2025-192947
PyPI/crypo
Malicious code in crypo (PyPI)
22 hours ago
No fix available
MAL-2025-192946
PyPI/crpto
Malicious code in crpto (PyPI)
22 hours ago
No fix available
MAL-2025-192945
PyPI/flaask
Malicious code in flaask (PyPI)
22 hours ago
No fix available
GHSA-rcfx-77hg-w2wv
PyPI/fastmcp
FastMCP updated to MCP 1.23+ due to CVE-2025-66416
yesterday
Fix available
MAL-2025-192942
PyPI/telebot-bot
Malicious code in telebot-bot (PyPI)
yesterday
No fix available
MAL-2025-192943
PyPI/telegrem
Malicious code in telegrem (PyPI)
yesterday
No fix available
GHSA-9pf3-7rrr-x5jh
PyPI/lmdeploy
lmdeploy vulnerable to Arbitrary Code Execution via Insecure Deserialization in torch.load()
yesterday
Fix available
Severity - 8.8 (High)
MAL-2025-192940
PyPI/aiogram-3
Malicious code in aiogram-3 (PyPI)
2 days ago
No fix available
MAL-2025-192931
PyPI/aiogram-sever-patch
Malicious code in aiogram-sever-patch (PyPI)
2 days ago
No fix available
MAL-2025-192930
PyPI/pxdbench
Malicious code in pxdbench (PyPI)
2 days ago
No fix available
MAL-2025-192929
PyPI/envtoolsx
Malicious code in envtoolsx (PyPI)
3 days ago
No fix available
MAL-2025-192928
PyPI/livekit-agents-hedra
Malicious code in livekit-agents-hedra (PyPI)
3 days ago
No fix available
GHSA-c67j-w6g6-q2cm
PyPI/langchain-core
LangChain serialization injection vulnerability enables secret extraction in dumps/loads APIs
4 days ago
Fix available
Severity - 9.3 (Critical)
GHSA-pp3g-xmm4-5cw9
PyPI/homeassistant
Home Assistant Core before is vulnerable to Directory Traversal
4 days ago
Fix available
Severity - 6.9 (Medium)
Load more...
PyPI - OSV