Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-320
  • PyPI/dash-uploader
dash-uploader has a directory traversal vulnerability 29 Jun
  • No fix available
  • Severity - 9.8 (Critical)
MAL-2026-5725
  • PyPI/dash-grid-normalizer
Malicious code in dash-grid-normalizer (PyPI) 13 Jun
  • No fix available
PYSEC-2026-219
  • PyPI/dash-core-components
See record for full details 09 Jun
  • Fix available
  • Severity - 5.4 (Medium)
PYSEC-2026-220
  • PyPI/dash-html-components
See record for full details 09 Jun
  • Fix available
  • Severity - 5.4 (Medium)
GHSA-3rf6-x59v-5jfv
  • PyPI/dash-uploader
dash-uploader has a directory traversal vulnerability 08 May
  • No fix available
  • Severity - 9.8 (Critical)
PYSEC-2026-37
  • PyPI/dash-uploader
See record for full details 08 May
  • Fix available
  • Severity - 7.5 (High)
GHSA-547x-748v-vp6p
  • PyPI/dash
  • PyPI/dash-core-components
  • PyPI/dash-html-components
  • npm/dash-core-components
  • npm/dash-html-components
Dash apps vulnerable to Cross-site Scripting 02 Feb 2024
  • Fix available
  • Severity - 4.8 (Medium)
PYSEC-2024-35
  • PyPI/dash
  • github.com/plotly/dash
See record for full details 02 Feb 2024
  • Fix available
  • Severity - 5.4 (Medium)