Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
629102
AlmaLinux
4656
Alpaquita
8785
Alpine
4049
Android
3261
Azure Linux
12016
BellSoft Hardened Containers
427
Bitnami
6973
Chainguard
5720
CleanStart
757
CRAN
14
crates.io
2232
Debian
54493
Echo
3185
GHC
3
GIT
81480
GitHub Actions
49
Go
6579
Hackage
30
Hex
57
Julia
508
Linux
15361
Mageia
5877
Maven
6325
MinimOS
26757
npm
217483
NuGet
1658
opam
12
openEuler
6386
openSUSE
12546
OSS-Fuzz
3833
Packagist
6082
Pub
11
PyPI
18692
Red Hat
19393
Rocky Linux
2944
Root
11960
RubyGems
1936
SUSE
20476
SwiftURL
50
Ubuntu
52357
VSCode
18
Wolfi
3671
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-p3f3-5ccg-83xq
PyPI/dbt-core
dbt has an implicit override for built-in materializations from installed packages
17 Jul 2024
Fix available
Severity - 2.4 (Low)
PYSEC-2024-66
PyPI/dbt-core
github.com/dbt-labs/dbt-core
See record for full details
16 Jul 2024
Fix available
Severity - 7.8 (High)
GHSA-pmrx-695r-4349
PyPI/dbt-core
dbt allows Binding to an Unrestricted IP Address via socketsocket
28 May 2024
Fix available
Severity - 5.3 (Medium)
GHSA-p72q-h37j-3hq7
PyPI/dbt-core
dbt uses a SQLparse version with a high vulnerability
22 Apr 2024
Fix available
Severity - 7.5 (High)
GHSA-j4g3-3q8x-jxqp
PyPI/dbt-core
dbt-core's secret env vars written to package-lock.json in plaintext
08 Dec 2023
Fix available
Severity - 3.2 (Low)
PyPI - OSV