Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
840923
AlmaLinux
5577
Alpaquita
13555
Alpine
4441
Android
3403
Azure Linux
12016
BellSoft Hardened Containers
620
Bitnami
8907
Chainguard
10050
CleanStart
1987
CRAN
14
crates.io
2642
Debian
63564
Echo
7889
GHC
3
GIT
99617
GitHub Actions
55
Go
8744
Hackage
32
Hex
230
Julia
1670
Linux
27479
Mageia
6105
Maven
6850
MinimOS
121501
npm
226444
NuGet
1844
opam
25
openEuler
8075
openSUSE
13914
OSS-Fuzz
3980
Packagist
6833
Pub
11
PyPI
24452
Red Hat
22163
Rocky Linux
3941
Root
18939
RubyGems
4592
SUSE
22335
SwiftURL
59
TuxCare
8366
Ubuntu
60830
VSCode
20
Wolfi
7149
ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-2394
PyPI/bbot
BBOT: Symlink-Following Arbitrary Write via github_workflows Module
13 Jul
Fix available
Severity - 2.2 (Low)
PYSEC-2026-2393
PyPI/bbot
BBOT: Arbitrary File Write in postman_download Module
13 Jul
Fix available
Severity - 6.5 (Medium)
PYSEC-2026-2391
PyPI/bbot
BBOT: Server-Side Request Forgery (SSRF) in docker_pull module via WWW-Authenticate realm parsing
13 Jul
Fix available
Severity - 3.1 (Low)
PYSEC-2026-2392
PyPI/bbot
BBOT: Path traversal (Zip-Slip) in unarchive module - incomplete fix for CVE-2025-10284
13 Jul
Fix available
Severity - 5.3 (Medium)
PYSEC-2026-1217
PyPI/bbot
BBOT's gitlab.py exposes globally configured "gitlab" API key
07 Jul
Fix available
Severity - 4.7 (Medium)
PYSEC-2026-1216
PyPI/bbot
BBOT's git_clone.py can expose users' GitHub API keys to an attacker-controlled webserver
07 Jul
Fix available
Severity - 4.7 (Medium)
PYSEC-2026-292
PyPI/bbot
BBOT's various issues in unarchive.py can cause arbitrary file write and RCE
29 Jun
Fix available
Severity - 9.6 (Critical)
PYSEC-2026-293
PyPI/bbot
BBOT's insufficient sanitization issues in gitdumper.py can lead to RCE
29 Jun
Fix available
Severity - 9.6 (Critical)
GHSA-rvp7-w75q-9fv2
PyPI/bbot
BBOT: Symlink-Following Arbitrary Write via github_workflows Module
18 Jun
Fix available
Severity - 2.2 (Low)
GHSA-m54h-vhf9-3w3m
PyPI/bbot
BBOT: Arbitrary File Write in postman_download Module
18 Jun
Fix available
Severity - 6.5 (Medium)
GHSA-3mp7-vp6j-2mxx
PyPI/bbot
BBOT: Server-Side Request Forgery (SSRF) in docker_pull module via WWW-Authenticate realm parsing
18 Jun
Fix available
Severity - 3.1 (Low)
GHSA-3vgw-585j-4m45
PyPI/bbot
BBOT: Path traversal (Zip-Slip) in unarchive module - incomplete fix for CVE-2025-10284
18 Jun
Fix available
Severity - 5.3 (Medium)
GHSA-p3v4-c93g-cmhw
PyPI/bbot
BBOT's gitlab.py exposes globally configured "gitlab" API key
27 Oct 2025
Fix available
Severity - 4.7 (Medium)
GHSA-h6m2-r6h9-4c44
PyPI/bbot
BBOT's insufficient sanitization issues in gitdumper.py can lead to RCE
09 Oct 2025
Fix available
Severity - 9.6 (Critical)
GHSA-63wh-p5fx-h4vc
PyPI/bbot
BBOT's git_clone.py can expose users' GitHub API keys to an attacker-controlled webserver
09 Oct 2025
Fix available
Severity - 4.7 (Medium)
GHSA-fhw8-8v9p-7jp7
PyPI/bbot
BBOT's various issues in unarchive.py can cause arbitrary file write and RCE
09 Oct 2025
Fix available
Severity - 9.6 (Critical)
PyPI - OSV