Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2144228
AlmaLinux
5779
Alpaquita
14297
Alpine
4586
Android
3666
Azure Linux
16325
BellSoft Hardened Containers
739
Bitnami
9134
Chainguard
998316
CleanStart
3765
CRAN
14
crates.io
2695
Debian
66070
Echo
8869
GHC
3
GIT
103961
GitHub Actions
55
Go
9067
Hackage
32
Hex
329
Julia
1713
Linux
28492
Mageia
6167
Maven
6965
MinimOS
139977
npm
228271
NuGet
1852
opam
29
openEuler
8374
openSUSE
14245
OSS-Fuzz
3993
Packagist
6997
Pub
11
PyPI
25013
Red Hat
22853
Rocky Linux
4154
Root
19316
RubyGems
4709
SUSE
22736
SwiftURL
59
TuxCare
8968
Ubuntu
62598
VSCode
21
Wolfi
279013
ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-3569
PyPI/flyto-core
Flyto2 Core: Guarded HTTP modules follow redirects into internal space without per-hop SSRF revalidation
04 Aug
Fix available
Severity - 8.5 (High)
PYSEC-2026-3572
PyPI/flyto-core
Flyto2 Core: Multiple HTTP-family modules fetch client-controlled URLs without the SSRF guard their siblings apply (SSRF to internal/metadata)
04 Aug
Fix available
Severity - 8.5 (High)
PYSEC-2026-3571
PyPI/flyto-core
Flyto2 Core: Unauthenticated flyto-verification /run: callback_url SSRF and internal runner-secret exfiltration
04 Aug
Fix available
Severity - 9.3 (Critical)
PYSEC-2026-3573
PyPI/flyto-core
Flyto2 Core: LLM/API keys leak to an attacker-controlled base_url
04 Aug
Fix available
Severity - 8.6 (High)
PYSEC-2026-3570
PyPI/flyto-core
Flyto2 Core: ${env.VAR} interpolation reads any env secret despite env.get being denylisted
04 Aug
Fix available
Severity - 8.6 (High)
PYSEC-2026-3568
PyPI/flyto-core
Flyto2 Core: Arbitrary file write via image.download (and other file-writing modules)
04 Aug
Fix available
Severity - 10.0 (Critical)
GHSA-c9hr-64h3-gxpc
PyPI/flyto-core
Flyto2 Core: Guarded HTTP modules follow redirects into internal space without per-hop SSRF revalidation
30 Jul
Fix available
Severity - 8.5 (High)
GHSA-pgwh-4jj4-qm8v
PyPI/flyto-core
Flyto2 Core: Multiple HTTP-family modules fetch client-controlled URLs without the SSRF guard their siblings apply (SSRF to internal/metadata)
30 Jul
Fix available
Severity - 8.5 (High)
GHSA-jx74-cqjv-2c67
PyPI/flyto-core
Flyto2 Core: Unauthenticated flyto-verification /run: callback_url SSRF and internal runner-secret exfiltration
30 Jul
Fix available
Severity - 9.3 (Critical)
GHSA-qq9q-xgm3-xv9g
PyPI/flyto-core
Flyto2 Core: LLM/API keys leak to an attacker-controlled base_url
30 Jul
Fix available
Severity - 8.6 (High)
GHSA-hr7p-wg7r-hg9m
PyPI/flyto-core
Flyto2 Core: ${env.VAR} interpolation reads any env secret despite env.get being denylisted
30 Jul
Fix available
Severity - 8.6 (High)
GHSA-2956-977x-2w3r
PyPI/flyto-core
Flyto2 Core: Arbitrary file write via image.download (and other file-writing modules)
30 Jul
Fix available
Severity - 10.0 (Critical)
PYSEC-2026-2482
PyPI/flyto-core
flyto-core has Unauthenticated Command Execution via HTTP MCP `execute_module`
13 Jul
Fix available
Severity - 8.4 (High)
PYSEC-2026-2481
PyPI/flyto-core
flyto-core has SSRF guard bypass via IPv6 transition addresses (IPv4-mapped / 6to4 / NAT64) in validate_url_ssrf
13 Jul
Fix available
Severity - 7.1 (High)
GHSA-h9f9-h6gm-wc85
PyPI/flyto-core
flyto-core has Unauthenticated Command Execution via HTTP MCP `execute_module`
06 Jul
Fix available
Severity - 8.4 (High)
GHSA-794r-5rp2-fpg8
PyPI/flyto-core
flyto-core has SSRF guard bypass via IPv6 transition addresses (IPv4-mapped / 6to4 / NAT64) in validate_url_ssrf
06 Jul
Fix available
Severity - 7.1 (High)
PyPI - OSV