6 Total advisories
6 Vulnerabilities
0 Malware
Dependency scanning
Check whether kas is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
LOW 3.3
CVE-2026-54548
kas Persistently Disables SSH Host Key Checking
LOW 3.3
CVE-2026-54548
kas Persistently Disables SSH Host Key Checking
UNKNOWN
CVE-2026-47192
kas's late signature validation may allow unnoticed repository manipulations
UNKNOWN
CVE-2026-47191
kas checks out SHA-like git branches as valid commits
UNKNOWN
CVE-2026-47191
kas checks out SHA-like git branches as valid commits
UNKNOWN
CVE-2026-47192
kas's late signature validation may allow unnoticed repository manipulations
Browse more PyPI advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes