Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2026-774
  • PyPI/adminbypasser
Malicious code in adminbypasser (PyPI) 8 hours ago
  • No fix available
GHSA-9ffm-fxg3-xrhh
  • PyPI/nicegui
NiceGUI's Path Traversal via Unsanitized FileUpload.name Enables Arbitrary File Write 12 hours ago
  • Fix available
  • Severity - 7.5 (High)
GHSA-3p7x-94q9-jq9x
  • PyPI/pgadmin4
pgadmin4 affected by a Restore restriction bypass via key disclosure vulnerability 15 hours ago
  • Fix available
  • Severity - 7.4 (High)
GHSA-v82v-c5x8-w282
  • PyPI/nicegui
NiceGUI's XSS vulnerability in ui.markdown() allows arbitrary JavaScript execution through unsanitized HTML content 16 hours ago
  • Fix available
  • Severity - 6.1 (Medium)
MAL-2026-763
  • PyPI/web3-meme-tool
Malicious code in web3-meme-tool (PyPI) 19 hours ago
  • No fix available
MAL-2026-762
  • PyPI/metadata-checker
Malicious code in metadata-checker (PyPI) 19 hours ago
  • No fix available
GHSA-rf8c-3f5p-xv45
  • PyPI/web2py
web2py has an Open Redirect Vulnerability yesterday
  • Fix available
  • Severity - 5.1 (Medium)
MAL-2026-759
  • PyPI/pipelinepoision-test
Malicious code in pipelinepoision-test (PyPI) yesterday
  • No fix available
GHSA-74vm-8frp-7w68
  • PyPI/epyt-flow
EPyT-Flow vulnerable to unsafe JSON deserialization (__type__) yesterday
  • Fix available
  • Severity - 10.0 (Critical)
MAL-2026-745
  • PyPI/statssol
Malicious code in statssol (PyPI) yesterday
  • No fix available
MAL-2026-738
  • PyPI/tablescene
Malicious code in tablescene (PyPI) yesterday
  • No fix available
MAL-2026-731
  • PyPI/cicd-ppe-test
Malicious code in cicd-ppe-test (PyPI) 2 days ago
  • No fix available
MAL-2026-732
  • PyPI/gridifys
Malicious code in gridifys (PyPI) 2 days ago
  • No fix available
GHSA-4qvv-g3vr-m348
  • PyPI/wagtail
Wagtail has improper permission handling on admin preview endpoints 2 days ago
  • Fix available
  • Severity - 5.1 (Medium)
GHSA-fjm6-8xp2-4fwc
  • PyPI/boltz
Boltz contains an insecure deserialization vulnerability in its molecule loading functionality 2 days ago
  • No fix available
  • Severity - 8.4 (High)
GHSA-gm8q-m8mv-jj5m
  • PyPI/unstructured
Unstructured has Path Traversal via Malicious MSG Attachment that Allows Arbitrary File Write 2 days ago
  • Fix available
  • Severity - 9.8 (Critical)