Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-2599-h6xx-hpxp
  • PyPI/poetry
Poetry Has Wheel Path Traversal Which Can Lead to Arbitrary File Write 01 Apr
  • Fix available
  • Severity - 7.1 (High)
GHSA-5qvp-pr9f-2g2v
  • PyPI/poetry-plugin-tweak-dependencies-version
poetry-plugin-tweak-dependencies-version affected by CVE-2026-25645 01 Apr
  • Fix available
  • Severity - 4.4 (Medium)
GHSA-j4j9-7hg9-97g6
  • PyPI/poetry
Poetry vulnerable to Untrusted Search Path leading to Local Code Execution on Windows 11 Oct 2022
  • Fix available
  • Severity - 7.3 (High)
GHSA-9xgj-fcgf-x6mw
  • PyPI/poetry
Poetry Argument Injection can lead to Local Code Execution 16 Sep 2022
  • Fix available
  • Severity - 7.3 (High)
PYSEC-2022-43179
  • PyPI/poetry
See record for full details 07 Sep 2022
  • Fix available
  • Severity - 7.3 (High)
PYSEC-2022-266
  • PyPI/poetry
See record for full details 07 Sep 2022
  • Fix available
GHSA-xr2c-5w89-63pv
  • PyPI/poetry
Poetry before v1.1.9 contains Untrusted Search Path 23 Mar 2022
  • Fix available
  • Severity - 9.3 (Critical)
PYSEC-2022-234
  • PyPI/poetry
See record for full details 21 Mar 2022
  • Fix available