packages
npm / PyPI / Rust / Java / Ruby / PHP + OSVKeeps: package, version, advisory
- 2026-07-13npm release: next 16.3.0-canary.85
The React Framework
package:npm:next - 2026-07-13npm release: nx 23.1.0
The core Nx plugin contains the core functionality of Nx like the project graph, nx commands and task orchestration.
NXpackage:npm:nx - 2026-07-13npm release: next 16.3.0-preview.6
The React Framework
package:npm:next The core Nx plugin contains the core functionality of Nx like the project graph, nx commands and task orchestration.
NXpackage:npm:nx- 2026-07-13OSV advisory: langflow PYSEC-2026-2566
Aliases: CVE-2026-42867, GHSA-79ph-745m-6wxq Langflow: Path Traversal in Knowledge Bases API via Creation Endpoint
LANGFLOWosv:pypi:langflow - 2026-07-13npm release: nx 23.1.0-rc.3
The core Nx plugin contains the core functionality of Nx like the project graph, nx commands and task orchestration.
NXpackage:npm:nx - 2026-07-13OSV advisory: litellm PYSEC-2026-2600
Aliases: CVE-2026-47102, GHSA-wpfp-gwwc-vwq6 LiteLLM allows a user to modify their own user_role via the /user/update endpoint
LITELLMosv:pypi:litellm - 2026-07-13OSV advisory: litellm PYSEC-2026-2598
Aliases: CVE-2026-47101, GHSA-qrc4-49gv-mv9m LiteLLM allows an authenticated internal_user to create API keys with access to routes that their role does not permit
LITELLMosv:pypi:litellm - 2026-07-13OSV advisory: litellm PYSEC-2026-2601
Aliases: CVE-2026-40217, GHSA-wxxx-gvqv-xp7p LiteLLM has a sandbox escape in custom-code guardrail
LITELLMosv:pypi:litellm - 2026-07-13OSV advisory: litellm PYSEC-2026-2602
Aliases: CVE-2026-42203, GHSA-xqmj-j6mv-4862 LiteLLM: Server-Side Template Injection in /prompts/test endpoint
LITELLMosv:pypi:litellm - 2026-07-13OSV advisory: litellm PYSEC-2026-2599
Aliases: CVE-2026-42271, GHSA-v4p8-mg3p-g94g LiteLLM: Authenticated command execution via MCP stdio test endpoints
LITELLMosv:pypi:litellm - 2026-07-13OSV advisory: langflow PYSEC-2026-2569
Aliases: CVE-2026-6599, GHSA-v66p-f7x3-4794 Langflow vulnerable to injection
LANGFLOWosv:pypi:langflow - 2026-07-13OSV advisory: langflow PYSEC-2026-2568
Aliases: CVE-2026-6598, GHSA-9jpj-cph8-w449 Langflow: Cleartext Storage of Authentication Settings in Project Creation Endpoint
LANGFLOWosv:pypi:langflow - 2026-07-13OSV advisory: langflow PYSEC-2026-2565
Aliases: CVE-2026-6597, GHSA-5jjf-wcvf-923w Langflow has an Information Leak through Incomplete API Key Redaction
LANGFLOWosv:pypi:langflow - 2026-07-13OSV advisory: litellm PYSEC-2026-2597
Aliases: CVE-2026-35029, GHSA-53mr-6c8q-9789 LiteLLM: Privilege escalation via unrestricted proxy configuration endpoint
LITELLMosv:pypi:litellm - 2026-07-13OSV advisory: langflow PYSEC-2026-2567
Aliases: CVE-2026-34046, GHSA-8c4j-f57c-35cf, PYSEC-2026-2570 Langflow: Authenticated Users Can Read, Modify, and Delete Any Flow via Missing Ownership Check
LANGFLOWosv:pypi:langflow A hash table with consistent order and fast iteration.
packages:crates-io:indexmapderive(Error)
packages:crates-io:thiserrorImplementation detail of the `thiserror` crate
packages:crates-io:thiserror-implA macro to generate structures which behave like bitflags.
packages:crates-io:bitflagsRandom number generators and other randomness functionality.
packages:crates-io:randCore random number generation traits and tools for implementation.
packages:crates-io:rand_coreRust for Windows
packages:crates-io:windows-sysParser for Rust source code
packages:crates-io:synA small cross-platform library for retrieving random data from system source
packages:crates-io:getrandomA Rust port of Google's SwissTable hash map
packages:crates-io:hashbrownTypeScript is a language for application scale JavaScript development
package:npm:typescript- 2026-07-13PyPI release: langflow 1.11.0.dev41
A Python package with a built-in web application
LANGFLOWpackage:pypi:langflow