Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2238690
AlmaLinux
5967
Alpaquita
16148
Alpine
4635
Android
3677
Azure Linux
17767
BellSoft Hardened Containers
764
Bitnami
9476
Chainguard
1047166
CleanStart
5235
CRAN
14
crates.io
2761
Debian
68912
Echo
7776
GHC
3
GIT
108915
GitHub Actions
55
Go
9328
Hackage
33
Hex
364
Julia
1713
Linux
29975
Mageia
6237
Maven
7050
MinimOS
148075
npm
229102
NuGet
1869
opam
29
openEuler
8900
openSUSE
14540
OSS-Fuzz
4015
Packagist
7101
Pub
11
PyPI
25450
Red Hat
23506
Rocky Linux
4339
Root
19620
RubyGems
5327
SUSE
23440
SwiftURL
60
TuxCare
9851
Ubuntu
65983
VSCode
21
Wolfi
293480
ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-2394
PyPI/bbot
BBOT: Symlink-Following Arbitrary Write via github_workflows Module
13 Jul
Fix available
Severity - 2.2 (Low)
PYSEC-2026-2393
PyPI/bbot
BBOT: Arbitrary File Write in postman_download Module
13 Jul
Fix available
Severity - 6.5 (Medium)
PYSEC-2026-2391
PyPI/bbot
BBOT: Server-Side Request Forgery (SSRF) in docker_pull module via WWW-Authenticate realm parsing
13 Jul
Fix available
Severity - 3.1 (Low)
PYSEC-2026-2392
PyPI/bbot
BBOT: Path traversal (Zip-Slip) in unarchive module - incomplete fix for CVE-2025-10284
13 Jul
Fix available
Severity - 5.3 (Medium)
PYSEC-2026-3720
PyPI/bbot
See record for full details
08 Jul
Fix available
Severity - 3.1 (Low)
PYSEC-2026-3719
PyPI/bbot
See record for full details
08 Jul
Fix available
Severity - 3.1 (Low)
PYSEC-2026-1217
PyPI/bbot
BBOT's gitlab.py exposes globally configured "gitlab" API key
07 Jul
Fix available
Severity - 4.7 (Medium)
PYSEC-2026-1216
PyPI/bbot
BBOT's git_clone.py can expose users' GitHub API keys to an attacker-controlled webserver
07 Jul
Fix available
Severity - 4.7 (Medium)
PYSEC-2026-292
PyPI/bbot
BBOT's various issues in unarchive.py can cause arbitrary file write and RCE
29 Jun
Fix available
Severity - 9.6 (Critical)
PYSEC-2026-293
PyPI/bbot
BBOT's insufficient sanitization issues in gitdumper.py can lead to RCE
29 Jun
Fix available
Severity - 9.6 (Critical)
GHSA-rvp7-w75q-9fv2
PyPI/bbot
BBOT: Symlink-Following Arbitrary Write via github_workflows Module
18 Jun
Fix available
Severity - 2.2 (Low)
GHSA-m54h-vhf9-3w3m
PyPI/bbot
BBOT: Arbitrary File Write in postman_download Module
18 Jun
Fix available
Severity - 6.5 (Medium)
GHSA-3mp7-vp6j-2mxx
PyPI/bbot
BBOT: Server-Side Request Forgery (SSRF) in docker_pull module via WWW-Authenticate realm parsing
18 Jun
Fix available
Severity - 3.1 (Low)
GHSA-3vgw-585j-4m45
PyPI/bbot
BBOT: Path traversal (Zip-Slip) in unarchive module - incomplete fix for CVE-2025-10284
18 Jun
Fix available
Severity - 5.3 (Medium)
GHSA-p3v4-c93g-cmhw
PyPI/bbot
BBOT's gitlab.py exposes globally configured "gitlab" API key
27 Oct 2025
Fix available
Severity - 4.7 (Medium)
GHSA-h6m2-r6h9-4c44
PyPI/bbot
BBOT's insufficient sanitization issues in gitdumper.py can lead to RCE
09 Oct 2025
Fix available
Severity - 9.6 (Critical)
Load more...
PyPI - OSV