Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2184079
AlmaLinux
5857
Alpaquita
15521
Alpine
4589
Android
3674
Azure Linux
17129
BellSoft Hardened Containers
744
Bitnami
9212
Chainguard
1019773
CleanStart
3432
CRAN
14
crates.io
2710
Debian
67324
Echo
6541
GHC
3
GIT
106259
GitHub Actions
55
Go
9147
Hackage
32
Hex
351
Julia
1713
Linux
29368
Mageia
6188
Maven
6998
MinimOS
142689
npm
228435
NuGet
1860
opam
29
openEuler
8541
openSUSE
14325
OSS-Fuzz
4002
Packagist
7036
Pub
11
PyPI
25074
Red Hat
23028
Rocky Linux
4229
Root
19463
RubyGems
4709
SUSE
23039
SwiftURL
59
TuxCare
9199
Ubuntu
64326
VSCode
21
Wolfi
287370
ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-2957
PyPI/prefect
Prefect has an Argument Injection issue
13 Jul
No fix available
Severity - 8.5 (High)
PYSEC-2026-2955
PyPI/prefect
Prefect Git Argument Injection in GitRepository Pull Steps
13 Jul
Fix available
Severity - 2.1 (Low)
PYSEC-2026-2956
PyPI/prefect
Prefect Auth Bypass via endswith() Health Check Exemption
13 Jul
Fix available
Severity - 5.5 (Medium)
PYSEC-2026-2959
PyPI/prefect
Prefect SSRF Bypass via DNS Rebinding in validate_restricted_url
13 Jul
Fix available
Severity - 1.3 (Low)
PYSEC-2026-2958
PyPI/prefect
Prefect Unauthenticated Event Injection via /api/events/in WebSocket
13 Jul
Fix available
Severity - 5.5 (Medium)
PYSEC-2026-1800
PyPI/prefect
Prefect CORS (Cross-Origin Resource Sharing) misconfiguration
07 Jul
Fix available
Severity - 7.6 (High)
PYSEC-2026-1799
PyPI/prefect
Cross-Site Request Forgery vulnerability in Prefect
07 Jul
Fix available
Severity - 8.8 (High)
GHSA-c635-393c-hcx2
PyPI/prefect
Prefect has an Authentication Middleware Bypass when URL paths are appended with 'health' or 'ready'
02 Jun
Fix available
Severity - 7.5 (High)
PYSEC-2026-2261
PyPI/prefect
See record for full details
02 Jun
Fix available
Severity - 7.5 (High)
GHSA-cw25-2p92-7f75
PyPI/prefect
Prefect has an Argument Injection issue
26 May
No fix available
Severity - 8.5 (High)
GHSA-6rcx-55r6-jx65
PyPI/prefect
Prefect Git Argument Injection in GitRepository Pull Steps
04 May
Fix available
Severity - 2.1 (Low)
GHSA-6rr6-v7cj-mxpg
PyPI/prefect
Prefect Auth Bypass via endswith() Health Check Exemption
04 May
Fix available
Severity - 5.5 (Medium)
GHSA-hvph-5985-r63v
PyPI/prefect
Prefect Unauthenticated Event Injection via /api/events/in WebSocket
04 May
Fix available
Severity - 5.5 (Medium)
GHSA-p3pq-hxmr-vqqr
PyPI/prefect
Prefect SSRF Bypass via DNS Rebinding in validate_restricted_url
04 May
Fix available
Severity - 1.3 (Low)
GHSA-4v9f-r55g-g6hc
PyPI/prefect
Prefect CORS (Cross-Origin Resource Sharing) misconfiguration
20 Mar 2025
Fix available
Severity - 7.6 (High)
GHSA-4hh5-2678-83fx
PyPI/prefect
Cross-Site Request Forgery vulnerability in Prefect
16 Nov 2023
Fix available
Severity - 8.8 (High)
PyPI - OSV