11 Total advisories
11 Vulnerabilities
0 Malware
Dependency scanning
Check whether restrictedpython is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
HIGH 8.4
CVE-2026-76825
RestrictedPython vulnerable to sandbox escape via string.Formatter field resolution
HIGH 8.3
CVE-2026-55830
RestrictedPython guard hooks can be shadowed via positional-only arguments
HIGH 8.3
CVE-2026-55830
RestrictedPython guard hooks can be shadowed via positional-only arguments
HIGH 8.4
CVE-2023-37271
RestrictedPython vulnerable to arbitrary code execution via stack frame sandbox escape
HIGH 7.9
CVE-2025-22153
try/except* clauses could allow bypass RestrictedPython via type confusion bug in the CPython interpreter
HIGH 7.9
CVE-2025-22153
try/except* clauses could allow bypass RestrictedPython via type confusion bug in the CPython interpreter
HIGH 7.5
CVE-2024-47532
RestrictedPython information leakage via `AttributeError.obj` and the `string` module
MEDIUM 6.5
CVE-2024-47532
CVE-2024-47532
HIGH 8.3
CVE-2023-41039
Sandbox escape via various forms of "format".
HIGH 7.7
CVE-2023-41039
CVE-2023-41039
UNKNOWN
CVE-2023-37271
CVE-2023-37271
Browse more PyPI advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes