Dependency scanning
Check whether pyspark is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
CVE-2026-32773
CVE-2026-32773
CVE-2025-55039
CVE-2025-55039
CVE-2023-32007
CVE-2023-32007
CVE-2019-10099
CVE-2019-10099
CVE-2018-1334
CVE-2018-1334
CVE-2023-22946
CVE-2023-22946
CVE-2022-31777
CVE-2022-31777
CVE-2020-9480
CVE-2020-9480
CVE-2022-33891
Apache Spark UI can allow impersonation if ACLs enabled
CVE-2023-32007
Apache Spark UI vulnerable to Command Injection
CVE-2025-55039
Apache Spark has Inadequate Encryption Strength
CVE-2022-33891
CVE-2022-33891
CVE-2022-31777
Apache Spark vulnerable to Log Injection
CVE-2018-11760
Pyspark User Impersonation Vulnerability
CVE-2017-12612
Apache Spark Deserialization of Untrusted Data vulnerability
CVE-2017-12612
CVE-2017-12612
CVE-2021-38296
Authentication Bypass by Capture-replay in Apache Spark
CVE-2019-10099
Sensitive data written to disk unencrypted in Spark
CVE-2018-1334
Exposure of Sensitive Information to an Unauthorized Actor in Apache Spark
CVE-2023-22946
Apache Spark vulnerable to Improper Privilege Management
CVE-2020-9480
Improper Authentication in Apache Spark
CVE-2021-38296
CVE-2021-38296
CVE-2018-11760
CVE-2018-11760
PYSEC-2019-44
PYSEC-2019-44
Browse more PyPI advisories
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes