Launch Week Day 1: Announcing Security Design Review
20 Total advisories
20 Vulnerabilities
0 Malware

Vulnerabilities

HIGH 8.8
PyPI

CVE-2021-47935

CVE-2021-47935

HIGH 8.8
PyPI

CVE-2021-47935

Sentry: Superusers can execute arbitrary commands by injecting malicious pickle-serialized objects through audit log entry data parameter

MEDIUM 5.3
PyPI

CVE-2024-53253

Sentry improper error handling leaks Application Integration Client Secret

MEDIUM 5.3
PyPI

CVE-2024-53253

CVE-2024-53253

CRITICAL 9.1
PyPI

CVE-2026-42354

Sentry's improper authentication on SAML SSO process allows user identity linking

CRITICAL 9.1
PyPI

CVE-2026-27197

Sentry: Improper authentication on SAML SSO process allows user identity linking

HIGH 7.1
PyPI

CVE-2024-41656

Sentry vulnerable to stored Cross-Site Scripting (XSS)

HIGH 7.3
PyPI

CVE-2024-32474

Sentry vulnerable to leaking superuser cleartext password in logs

CRITICAL 9.1
PyPI

CVE-2025-22146

Sentry's improper authentication on SAML SSO process allows user impersonation

MEDIUM 6.5
PyPI

CVE-2024-45605

Sentry improperly authorizes deletion of user issue alert notifications

HIGH 7.7
PyPI

CVE-2023-36826

Improper authorization on debug and artifact file downloads

HIGH 7.1
PyPI

CVE-2024-45606

Sentry improperly authorizes muting of alert rules

MEDIUM 6.4
PyPI

CVE-2022-23485

Sentry vulnerable to invite code reuse via cookie manipulation

LOW 2.0
PyPI

CVE-2024-35196

Slack integration leaks sensitive information in logs

HIGH 8.1
PyPI

CVE-2023-39349

Privilege escalation via ApiTokensEndpoint

MEDIUM 6.5
PyPI

CVE-2023-39531

Sentry vulnerable to incorrect credential validation on OAuth token requests

MEDIUM 6.8
PyPI

CVE-2023-36829

Sentry CORS misconfiguration

UNKNOWN
PyPI

CVE-2023-36829

CVE-2023-36829

MEDIUM 6.5
PyPI

CVE-2023-36826

CVE-2023-36826

UNKNOWN
PyPI

CVE-2022-23485

CVE-2022-23485

Ready to move

Start Securing

Free, no credit card | First findings in minutes