Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-530
  • PyPI/scitokens
SciTokens is vulnerable to SQL Injection in KeyCache 29 Jun
  • Fix available
  • Severity - 9.8 (Critical)
GHSA-3x2w-63fp-3qvw
  • PyPI/scitokens
SciTokens has an Authorization Bypass via Path Traversal in Scope Validation 31 Mar
  • Fix available
  • Severity - 8.1 (High)
GHSA-w8fp-g9rh-34jh
  • PyPI/scitokens
SciTokens has an Authorization Bypass via Incorrect Scope Path Prefix Checking 31 Mar
  • Fix available
  • Severity - 8.1 (High)
GHSA-rh5m-2482-966c
  • PyPI/scitokens
SciTokens is vulnerable to SQL Injection in KeyCache 31 Mar
  • Fix available
  • Severity - 9.8 (Critical)
PYSEC-2026-2277
  • PyPI/scitokens
See record for full details 31 Mar
  • Fix available
  • Severity - 6.5 (Medium)
PYSEC-2026-2276
  • PyPI/scitokens
See record for full details 31 Mar
  • Fix available
  • Severity - 6.5 (Medium)