Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
671220
AlmaLinux
4969
Alpaquita
10037
Alpine
4157
Android
3402
Azure Linux
12016
BellSoft Hardened Containers
482
Bitnami
7938
Chainguard
6523
CleanStart
1266
CRAN
14
crates.io
2420
Debian
57108
Echo
4696
GHC
3
GIT
81621
GitHub Actions
52
Go
7025
Hackage
32
Hex
123
Julia
894
Linux
15361
Mageia
5941
Maven
6503
MinimOS
42501
npm
219498
NuGet
1709
opam
16
openEuler
6887
openSUSE
12912
OSS-Fuzz
3906
Packagist
6356
Pub
11
PyPI
19861
Red Hat
20321
Rocky Linux
3300
Root
15004
RubyGems
1965
SUSE
20561
SwiftURL
53
TuxCare
4320
Ubuntu
55214
VSCode
20
Wolfi
4222
ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2025-185
PyPI/python-jose
See record for full details
17 Dec 2025
No fix available
Severity - 5.3 (Medium)
GHSA-6c5p-j8vq-pqhj
PyPI/python-jose
python-jose algorithm confusion with OpenSSH ECDSA keys
26 Apr 2024
Fix available
Severity - 9.3 (Critical)
GHSA-cjwg-qfpm-7377
PyPI/python-jose
python-jose denial of service via compressed JWE content
26 Apr 2024
Fix available
Severity - 5.3 (Medium)
PYSEC-2024-232
PyPI/python-jose
See record for full details
26 Apr 2024
Fix available
PYSEC-2024-233
PyPI/python-jose
See record for full details
26 Apr 2024
Fix available
GHSA-w799-prg3-cx77
PyPI/python-jose
python-jose failure to use a constant time comparison for HMAC keys
17 May 2022
Fix available
Severity - 9.8 (Critical)
PYSEC-2017-28
PyPI/python-jose
See record for full details
23 Jan 2017
Fix available
PyPI - OSV