Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2026-2540
  • PyPI/gd-auth
Malicious code in gd-auth (PyPI) 10 Apr
  • No fix available
MAL-2026-2541
  • PyPI/gd-auth-sso
Malicious code in gd-auth-sso (PyPI) 10 Apr
  • No fix available
MAL-2026-847
  • PyPI/requests-auth-toolkit
Malicious code in requests-auth-toolkit (PyPI) 10 Feb
  • No fix available
GHSA-wv4w-6qv2-qqfg
  • PyPI/social-auth-app-django
Python Social Auth - Django has unsafe account association 09 Oct 2025
  • Fix available
  • Severity - 6.3 (Medium)
MAL-2025-191730
  • PyPI/flask-auth-sys
Malicious code in flask-auth-sys (PyPI) 02 Apr 2025
  • No fix available
MAL-2025-191731
  • PyPI/flask-auth-system
Malicious code in flask-auth-system (PyPI) 02 Apr 2025
  • No fix available
PYSEC-2024-272
  • PyPI/galaxy-auth
See record for full details 20 Sep 2024
  • Fix available
  • Severity - 5.4 (Medium)
MAL-2025-6479
  • PyPI/cloudx-auth
Malicious code in cloudx-auth (PyPI) 26 Jul 2024
  • No fix available
MAL-2024-5293
  • PyPI/killskids-auth
Malicious code in killskids-auth (PyPI) 25 Jun 2024
  • No fix available
GHSA-2gr8-3wc7-xhj3
  • PyPI/social-auth-app-django
social-auth-app-django affected by Improper Handling of Case Sensitivity 24 Apr 2024
  • Fix available
  • Severity - 4.9 (Medium)
PYSEC-2020-39
  • PyPI/django-two-factor-auth
  • github.com/Bouke/django-two-factor-auth
See record for full details 10 Jul 2020
  • Fix available
GHSA-vhr6-pvjm-9qwf
  • PyPI/django-two-factor-auth
User passwords are stored in clear text in the Django session 10 Jul 2020
  • Fix available
  • Severity - 6.0 (Medium)
PYSEC-2020-37
  • PyPI/django-basic-auth-ip-whitelist
See record for full details 24 Jun 2020
  • Fix available
GHSA-m38j-pmg3-v5x5
  • PyPI/django-basic-auth-ip-whitelist
Timing attack on django-basic-auth-ip-whitelist 23 Jun 2020
  • Fix available
  • Severity - 6.3 (Medium)