19 Total advisories
19 Vulnerabilities
0 Malware
Dependency scanning
Check whether openc3 is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
CRITICAL 9.1
CVE-2025-28384
CVE-2025-28384
HIGH 7.5
CVE-2025-28382
CVE-2025-28382
HIGH 7.5
CVE-2025-28381
CVE-2025-28381
MEDIUM 6.1
CVE-2025-28380
CVE-2025-28380
CRITICAL 9.6
CVE-2026-42087
CVE-2026-42087
HIGH 8.1
CVE-2026-42088
CVE-2026-42088
CRITICAL 9.8
CVE-2025-28388
CVE-2025-28388
HIGH 8.1
CVE-2026-42084
CVE-2026-42084
MEDIUM 4.3
CVE-2026-42085
CVE-2026-42085
MEDIUM 4.6
CVE-2026-42086
OpenC3 COSMOS is Vulnerable to Self-XSS Through the Command Sender
CRITICAL 9.8
CVE-2025-28389
CVE-2025-28389
CRITICAL 9.8
CVE-2025-28386
CVE-2025-28386
MEDIUM 4.6
CVE-2026-42086
CVE-2026-42086
MEDIUM 5.9
CVE-2024-47529
OpenC3 stores passwords in clear text (`GHSL-2024-129`)
MEDIUM 6.5
CVE-2024-47529
CVE-2024-47529
MEDIUM 6.1
CVE-2024-43795
OpenC3 Cross-site Scripting in Login functionality (`GHSL-2024-128`)
MEDIUM 6.5
CVE-2024-46977
OpenC3 Path Traversal via screen controller (`GHSL-2024-127`)
MEDIUM 6.1
CVE-2024-43795
CVE-2024-43795
MEDIUM 6.5
CVE-2024-46977
CVE-2024-46977
Browse more PyPI advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes