Know every threat before it ships

200K+ vulnerabilities, malicious packages, and supply chain threats enriched with Corgea's research.

HIGH 7.5
PyPI

CVE-2026-53598

Prompty: Arbitrary file read via file reference expansion

HIGH 7.1
PyPI

CVE-2026-45134

LangSmith SDK: Public prompt pull deserializes untrusted manifests without trust boundary warning

HIGH 8.7
PyPI

CVE-2021-41134

Stored XSS in Jupyter nbdime

HIGH 7.5
PyPI

CVE-2024-12534

Open WebUI Uncontrolled Resource Consumption vulnerability

HIGH 7.5
PyPI

CVE-2024-10572

H2O Vulnerable to Denial of Service (DoS) and File Write

HIGH 7.5
PyPI

CVE-2024-10550

H2O Vulnerable to Denial of Service (DoS) via `/3/ParseSetup` Endpoint

HIGH 8.1
PyPI

CVE-2025-30402

ExecuTorch vulnerable to Heap-based Buffer Overflow attack

HIGH 7.5
PyPI

CVE-2024-8062

H2O Vulnerable to Denial of Service (DoS) via `HEAD` Request

HIGH 7.1
PyPI

CVE-2024-6854

H2O Vulnerable to Arbitrary File Overwrite via File Export

HIGH 7.5
PyPI

CVE-2023-33953

Excessive Iteration in gRPC

HIGH 7.5
PyPI

CVE-2024-7765

H2O Vulnerable to Denial of Service (DoS) via Large GZIP Parsing

HIGH 7.5
PyPI

CVE-2024-12537

Open WebUI Uncontrolled Resource Consumption vulnerability

HIGH 7.5
PyPI

CVE-2024-10549

H2O Vulnerable to Denial of Service (DoS) via `/3/Parse` Endpoint

HIGH 7.5
PyPI

CVE-2024-7768

H2O Vulnerable to Denial of Service (DoS) via `/3/ImportFiles` Endpoint

HIGH 8.2
PyPI

CVE-2024-8616

H2O Vulnerable to Arbitrary File Overwrite

HIGH 7.8
PyPI

CVE-2026-4372

HuggingFace transformers vulnerable to remote code execution

HIGH 7.3
PyPI

CVE-2026-54263

CVE-2026-54263

HIGH 8.3
PyPI

CVE-2026-10105

agno contains a SQL injection vulnerability

HIGH 7.5
PyPI

CVE-2026-10108

xiaomusic contains an unauthenticated path traversal vulnerability

HIGH 7.5
PyPI

CVE-2025-68616

WeasyPrint has a Server-Side Request Forgery (SSRF) Protection Bypass via HTTP Redirect

HIGH 8.8
PyPI

CVE-2026-42999

CVE-2026-42999

HIGH 8.1
PyPI

CVE-2026-44394

CVE-2026-44394

HIGH 8.8
PyPI

CVE-2026-43000

CVE-2026-43000

HIGH 7.5
PyPI

CVE-2026-52726

Dulwich's submodule path traversal in porcelain.submodule_update / porcelain.clone(recurse_submodules=True) yields RCE via attacker-dropped .git/hooks payload

HIGH 8.8
PyPI

CVE-2026-42998

CVE-2026-42998

HIGH 7.1
PyPI

CVE-2026-50181

Langroid: Path traversal in the file tools allows read/write outside configured current directory

HIGH 7.9
PyPI

CVE-2026-43001

OpenStack Keystone has an Incorrect Authorization Issue

HIGH 8.1
PyPI

CVE-2022-21187

Command injection in libvcs and vcspull

HIGH 8.1
PyPI

CVE-2024-5565

Vanna prompt injection code execution

HIGH 8.1
PyPI

CVE-2015-5306

Injection vulnerability that affects ironic-discoverd

HIGH 8.6
PyPI

CVE-2026-5463

pymetasploit3 vulnerable to command injection in console.run_module_with_output()

HIGH 8.1
PyPI

CVE-2023-50447

Arbitrary Code Execution in Pillow

HIGH 8.1
PyPI

CVE-2024-1728

Gradio allows users to access arbitrary files

HIGH 8.8
PyPI

CVE-2022-38369

CVE-2022-38369

HIGH 7.5
PyPI

CVE-2026-40177

ajenti.plugin.core has password bypass when 2FA is activated

HIGH 7.5
PyPI

CVE-2024-35057

NASA AIT-Core vulnerable to remote code execution

HIGH 7.5
PyPI

CVE-2024-35058

NASA AIT-Core vulnerable to remote code execution

HIGH 7.5
PyPI

CVE-2026-48544

Taipy contains a path traversal vulnerability

HIGH 8.6
PyPI

CVE-2026-56262

CVE-2026-56262

HIGH 7.4
PyPI

CVE-2026-49014

GDAL: scanForGeometryContainers in the netCDF driver allows code execution via a stack-based buffer overflow

HIGH 7.5
PyPI

CVE-2026-12243

CVE-2026-12243

HIGH 7.8
PyPI

CVE-2022-46289

Open Babel has out-of-bounds write in ORCA nAtoms parser

HIGH 7.8
PyPI

CVE-2022-41793

Open Babel has out-of-bounds write in CSR PadString (title field)

HIGH 7.8
PyPI

CVE-2022-42885

Open Babel has uninitialized pointer dereference in GRO residue parser

HIGH 7.8
PyPI

CVE-2022-46294

Open Babel has out-of-bounds write in MOPAC IN translationVectors[] (Tv atom)

HIGH 7.8
PyPI

CVE-2022-44451

Open Babel has uninitialized pointer dereference in MSI atom parser

HIGH 7.8
PyPI

CVE-2022-46291

Open Babel has out-of-bounds write in Gaussian translationVectors[]

HIGH 7.8
PyPI

CVE-2022-43607

Open Babel has out-of-bounds write in MOL2 attribute/value parser

HIGH 7.8
PyPI

CVE-2022-43467

Open Babel has out-of-bounds write in PQS coord_file parser

HIGH 7.8
PyPI

CVE-2022-46295

Open Babel has out-of-bounds write in MSI translationVectors[]

HIGH 7.8
PyPI

CVE-2022-46280

Open Babel has uninitialized pointer dereference in PQS pFormat

HIGH 7.8
PyPI

CVE-2022-46293

Open Babel has out-of-bounds write in MOPAC translationVectors[] (FINAL POINT)

HIGH 7.8
PyPI

CVE-2022-46290

Open Babel has out-of-bounds write in ORCA nAtoms parser (second variant)

HIGH 8.1
PyPI

GHSA-qghv-8h77-699v

Duplicate Advisory: Open Babel has out-of-bounds write in MOL2 attribute/value parser

HIGH 7.3
PyPI

GHSA-8rrv-fjvg-6vcx

Duplicate Advisory: Open Babel has out-of-bounds write in Gaussian coords_type orientation parser

HIGH 7.8
PyPI

CVE-2022-37331

Open Babel has out-of-bounds write in Gaussian coords_type orientation parser

HIGH 7.8
PyPI

CVE-2025-10997

Open Babel has heap buffer overflow in ChemKin ChemKinFormat::CheckSpecies

HIGH 7.4
PyPI

CVE-2023-48054

CVE-2023-48054

Ready to move

Start Securing

Free, no credit card | First findings in minutes