packages
npm / PyPI / Rust / Java / Ruby / PHP + OSVKeeps: package, version, advisory
- 2026-05-27PyPI release: litellm 1.85.2
Library to easily interface with LLM API providers
LITELLMpackage:pypi:litellm - 2026-05-27PyPI release: litellm 1.84.2
Library to easily interface with LLM API providers
LITELLMpackage:pypi:litellm - 2026-05-27PyPI release: litellm 1.87.0rc2
Library to easily interface with LLM API providers
LITELLMpackage:pypi:litellm - 2026-05-27npm release: next 16.3.0-canary.30
The React Framework
package:npm:next - 2026-05-26PyPI release: langflow 1.9.4
A Python package with a built-in web application
LANGFLOWpackage:pypi:langflow - 2026-05-26PyPI release: litellm 1.86.1
Library to easily interface with LLM API providers
LITELLMpackage:pypi:litellm - 2026-05-26npm release: next 16.3.0-canary.29
The React Framework
package:npm:next - 2026-05-25npm release: nx 22.7.4
The core Nx plugin contains the core functionality of Nx like the project graph, nx commands and task orchestration.
NXpackage:npm:nx - 2026-05-11OSV advisory: next GHSA-26hh-7cqf-hhc6
Aliases: CVE-2026-45109 Next.js has a Middleware / Proxy bypass in App Router applications via segment-prefetch routes - Incomplete Fix Follow-Up
osv:npm:next Aliases: CVE-2026-40217 LiteLLM has a sandbox escape in custom-code guardrail
LITELLMosv:pypi:litellm- 2026-05-11OSV advisory: next GHSA-3g8h-86w9-wvmq
Aliases: CVE-2026-44572 Next.js's Middleware / Proxy redirects can be cache-poisoned
osv:npm:next - 2026-05-11OSV advisory: next GHSA-ffhc-5mcf-pf4q
Aliases: CVE-2026-44581 Next.js vulnerable to cross-site scripting in App Router applications using CSP nonces
osv:npm:next - 2026-05-11OSV advisory: next GHSA-vfv6-92ff-j949
Aliases: CVE-2026-44582 Next.js vulnerable to cache poisoning via collisions in React Server Component cache-busting
osv:npm:next - 2026-05-11OSV advisory: next GHSA-gx5p-jg67-6x7h
Aliases: CVE-2026-44580 Next.js has cross-site scripting in beforeInteractive scripts with untrusted input
osv:npm:next - 2026-05-11OSV advisory: next GHSA-mg66-mrh9-m8jx
Aliases: CVE-2026-44579 Next.js vulnerable to Denial of Service via connection exhaustion in applications using Cache Components
osv:npm:next - 2026-05-11OSV advisory: next GHSA-h64f-5h5j-jqjh
Aliases: CVE-2026-44577 Next.js has a Denial of Service in the Image Optimization API
osv:npm:next - 2026-05-11OSV advisory: next GHSA-c4j6-fc7j-m34r
Aliases: CVE-2026-44578 Next.js vulnerable to server-side request forgery in applications using WebSocket upgrades
osv:npm:next - 2026-05-11OSV advisory: next GHSA-wfc6-r584-vfw7
Aliases: CVE-2026-44576 Next.js vulnerable to cache poisoning in React Server Component responses
osv:npm:next - 2026-05-11OSV advisory: next GHSA-267c-6grr-h53f
Aliases: CVE-2026-44575 Next.js has a Middleware / Proxy bypass in App Router applications via segment-prefetch routes
osv:npm:next - 2026-05-11OSV advisory: next GHSA-492v-c6pp-mqqv
Aliases: CVE-2026-44574 Next.js has a Middleware / Proxy bypass through dynamic route parameter injection
osv:npm:next - 2026-05-11OSV advisory: next GHSA-36qx-fr4f-26g5
Aliases: CVE-2026-44573 Next.js has a Middleware / Proxy bypass in Pages Router applications using i18n
osv:npm:next - 2026-05-11OSV advisory: next GHSA-8h8q-6873-q5fj
Aliases: Next.js Vulnerable to Denial of Service with Server Components
osv:npm:next Aliases: CVE-2026-42048 Langflow Knowledge Bases API is Vulnerable to Path Traversal
LANGFLOWosv:pypi:langflow