PyPI — vulnerability landscape

Every CVE-affected package in the PyPI ecosystem, sorted by risk.

Last updated 6/4/2026, 12:34:37 PM

#PackageCVEsKEVMax EPSS
1salt69394.4%
2langflow23392.7%
3apache-airflow125294.3%
4apache-superset66184.2%
5pillow61193.3%
6opencv-contrib-python31193.3%
7opencv-python31193.3%
8litellm20188.6%
9pyspark11193.5%
10opencv-contrib-python-headless10193.3%
11opencv-python-headless10193.3%
12langflow-base5192.7%
13marimo1182.2%
14imagecodecs1193.3%
15telnyx1129.4%
16tensorflow4271.5%
17tensorflow-cpu4241.5%
18tensorflow-gpu4211.5%
19django15292.8%
20plone10111.7%
21open-webui866.7%
22mlflow7193.3%
23ansible6810.1%
24nova5387.2%
25praisonai500.6%
26gradio4793.4%
27pyload-ng4593.4%
28matrix-synapse4413.2%
29rdiffweb430.7%
30vllm4110.0%
31moin4173.6%
32vyper401.5%
33keystone404.0%
34weblate331.6%
35paddlepaddle321.8%
36aiohttp3293.5%
37torch3025.1%
38transformers2879.5%
39pyassimp280.3%
40pgadmin42892.9%
41pypdf240.2%
42mindsdb2382.8%
43glance223.6%
44ethyca-fides2222.2%
45octoprint222.2%
46langchain2162.2%
47lollms2017.5%
48wagtail201.3%
49aim208.4%
50notebook190.9%
51praisonaiagents190.1%
52neutron1914.3%
53urllib3191.1%
54mercurial1877.2%
55changedetection-io1892.1%
56cobbler1893.2%
57calibreweb1816.4%
58mobsf1814.8%
59nautobot173.0%
60nicegui171.4%
61zope161.9%
62pycti160.7%
63praisonai-platform16
64h2o162.9%
65glances166.7%
66chuanhuchatgpt165.4%
67openexr152.4%
68cryptography1588.3%
69sentry154.2%
70vantage6156.1%
71ckan1513.8%
72exiv2152.6%
73roundup1516.5%
74modoboa1577.8%
75werkzeug1490.1%
76pyftpdlib141.0%
77agentscope140.9%
78flask-appbuilder141.0%
79trytond145.6%
80twisted1467.8%
81zenml1489.6%
82bentoml1475.8%
83llama-index133.9%
84horizon132.9%
85swift125.8%
86keras128.0%
87jupyter-server121.5%
88lunasvg120.4%
89nltk1210.8%
90copyparty1189.9%
91lief110.6%
92ray1192.2%
93label-studio1170.6%
94authlib110.4%
95onionshare-cli110.7%
96pywasm3111.1%
97jinja2112.3%
98wger110.4%
99indico119.0%
100zope21190.5%
101pip1139.9%
102onnx105.8%
103llama-index-core101.6%
104kiwitcms1012.9%
105pyjwt101.0%
106mistune100.5%
107trac103.0%
108apache-iotdb103.4%
109pretix100.3%
110langchain-core913.4%
111aubio91.0%
112waitress913.3%
113ryu92.2%
114python-keystoneclient90.8%
115cinder93.6%
116gitpython968.9%
117metagpt90.5%
118keylime90.5%
119scrapy80.5%
120codechecker873.9%
121jupyterlab80.9%
122requests86.1%
123web2py840.8%
124ipython82.1%
125homeassistant81.1%
126numpy871.5%
127dbgpt81.8%
128dtale891.7%
129sglang81.9%
130sagemaker70.9%
131matrix-sydent71.4%
132langchain-community72.0%
133pysaml272.1%
134litestar71.0%
135tornado71.2%
136jupyterhub70.5%
137astrbot71.1%
138mayan-edms71.1%
139lxml75.4%
140graphite-web791.6%
141gdal72.2%
142picklescan716.2%
143fschat70.9%
144fickling70.1%
145executorch70.4%
146apache-atlas71.9%
147starlette73.3%
148tryton75.6%
149oauthenticator60.7%
150rucio-webui60.1%
151saleor60.4%
152ollama60.6%
153mailman610.6%
154openc364.0%
155copier60.1%
156lmdeploy68.7%
157fastmcp60.1%
158pytorch-lightning62.1%
159langchain-chatchat60.7%
160paramiko654.2%
161ajenti-panel60.8%
162yt-dlp613.0%
163mage-ai60.2%
164whoogle-search60.5%
165apache-airflow-providers-apache-hive631.2%
166products-cmfplone60.5%
167wabt60.1%
168prefect60.2%
169guarddog60.8%
170grpcio61.8%
171bugsink61.0%
172mezzanine61.8%
173flask-cors60.9%
174ujson60.3%
175omero-web60.6%
176esphome64.8%
177snowflake-connector-python60.5%
178ansible-core60.1%
179lmdb50.4%
180python-multipart53.3%
181langroid50.4%
182composio-core50.3%
183langchain-experimental513.4%
184python-gnupg521.4%
185compliance-trestle5
186jwcrypto50.4%
187kallithea55.3%
188ironic50.8%
189pygments57.4%
190invokeai544.2%
191ait-core50.9%
192protobuf50.8%
193pyarrow584.8%
194poetry50.7%
195mesop512.9%
196tripleo-heat-templates50.3%
197torchserve591.7%
198flask50.6%
199bleach50.6%
200tendenci50.7%
201nvflare522.4%
202feedparser57.2%
203dulwich52.8%
204strawberry-graphql50.2%
205smolagents53.1%
206nemo-toolkit50.3%
207pyopenssl52.9%
208mitmproxy53.6%
209micropython-copy40.2%
210barbican40.4%
211micropython-io40.2%
212mcp-server-git40.2%
213mem0ai40.2%
214materialx41.8%
215markdown240.7%
216reportlab426.9%
217restrictedpython41.1%
218mako41.0%
219red-discordbot42.4%
220llamafactory44.2%
221lemur40.3%
222pyyaml413.7%
223awsiotsdk40.3%
224lin-cms41.2%
225python-jose40.9%
226qutebrowser40.7%
227pypdf240.2%
228asyncssh40.4%
229radicale41.8%
230clearml482.8%
231kedro46.1%
232koji40.6%
233setuptools49.9%
234xgrammar40.4%
235wlc40.0%
236zodb341.0%
237indy-node41.6%
238pycrypto413.6%
239pretalx476.8%
240apache-airflow-core40.1%
241vantage6-server40.3%
242guardrails-ai40.4%
243vanna47.5%
244httpie40.6%
245vtk40.5%
246wasmtime40.2%
247buildbot40.6%
248geonode40.2%
249gerapy478.3%
250apache-submarine477.1%
251bottle41.2%
252freetakserver-ui40.3%
253frappe40.8%
254pandasai45.9%
255flask-security-too417.1%
256tuf40.6%
257apache-dolphinscheduler42.2%
258democritus-urls40.5%
259democritus-file-system40.9%
260streampipes41.8%
261motioneye485.3%
262ecdsa40.6%
263monai42.1%
264skops40.4%
265nbconvert40.8%
266django-unicorn40.3%
267django-helpdesk40.5%
268bbot40.3%
269streamlit41.7%
270dagster32.2%
271scikit-learn30.9%
272scipy30.3%
273scitokens30.0%
274mcp30.2%
275anki33.1%
276backend-ai30.3%
277rsa33.1%
278lxml-html-clean30.5%
279redshift-connector30.9%
280local-deep-research30.0%
281localstack30.4%
282rembg30.1%
283crawl4ai30.2%
284apache-airflow-providers-google32.2%
285couchbase30.5%
286lightrag-hku30.1%
287langgraph-checkpoint-sqlite30.0%
288langsmith30.0%
289python-ldap30.2%
290quokka32.6%
291avro33.0%
292keystonemiddleware30.6%
293khoj30.9%
294keyring30.3%
295admesh30.6%
296jupyter-server-proxy31.1%
297asyncua30.5%
298pyspector30.0%
299apache-airflow-providers-apache-spark33.0%
300ciguard30.0%