Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
659600
AlmaLinux
4796
Alpaquita
9617
Alpine
4141
Android
3262
Azure Linux
12016
BellSoft Hardened Containers
467
Bitnami
7872
Chainguard
6392
CleanStart
1122
CRAN
14
crates.io
2403
Debian
56247
Echo
4067
GHC
3
GIT
81571
GitHub Actions
52
Go
6966
Hackage
31
Hex
101
Julia
845
Linux
15361
Mageia
5922
Maven
6489
MinimOS
41455
npm
218749
NuGet
1707
opam
15
openEuler
6841
openSUSE
12811
OSS-Fuzz
3884
Packagist
6286
Pub
11
PyPI
19668
Red Hat
20130
Rocky Linux
3135
Root
14076
RubyGems
1963
SUSE
20561
SwiftURL
51
Ubuntu
54379
VSCode
18
Wolfi
4103
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-9xq9-36w5-q796
PyPI/lmdeploy
lmdeploy: Hardcoded trust_remote_code=True is an implicit unsafe remote-code load path with no user opt-out
yesterday
No fix available
Severity - 7.8 (High)
GHSA-m549-qq94-fvhg
PyPI/lmdeploy
LMDeploy: Arbitrary code execution via hardcoded trust_remote_code=True in lmdeploy model initialization
yesterday
Fix available
Severity - 7.8 (High)
GHSA-6w67-hwm5-92mq
PyPI/lmdeploy
LMDeploy has Server-Side Request Forgery (SSRF) via Vision-Language Image Loading
21 Apr
No fix available
Severity - 7.5 (High)
GHSA-9pf3-7rrr-x5jh
PyPI/lmdeploy
lmdeploy vulnerable to Arbitrary Code Execution via Insecure Deserialization in torch.load()
26 Dec 2025
Fix available
Severity - 8.8 (High)
GHSA-jfvg-qm4p-473x
PyPI/lmdeploy
InternLM LMDeploy code injection vulnerability
03 Apr 2025
No fix available
Severity - 4.8 (Medium)
GHSA-7vc5-mjwp-c8fq
PyPI/lmdeploy
LMDeploy Improper Input Validation Vulnerability
03 Apr 2025
No fix available
Severity - 4.8 (Medium)
PyPI - OSV