IndexedVerified
Python Security
Python SAST rules aggregated across verified providers.
Fetch pack
greprules pack fetch python-security --engine opengrepcurl https://api.greprules.io/api/packs/python-security.tar.gz -o python-security.tar.gzIncluded rules
CVE-2026-82634: Frappe Unrestricted Render Template
cve-2026-82634-frappe-unrestricted-render-templateCVE-2026-82447: Skyvern Text Prompt Double Render Ssticve-2026-82447-skyvern-text-prompt-double-render-sstiCVE-2026-82398: Python Stream Read Bytes Quadratic Accumulationcve-2026-82398-python-stream-read-bytes-quadratic-accumulationCVE-2026-82397: Tornado Unbounded Form Parsingcve-2026-82397-tornado-unbounded-form-parsingCVE-2026-82271: Fastapi Unused Auth Dependency Missing Authorizationcve-2026-82271-fastapi-unused-auth-dependency-missing-authorizationCVE-2026-81827: Wtforms Email Validator Misusecve-2026-81827-wtforms-email-validator-misuseCVE-2026-81819: Flask Restx Idor Missing Admin Decoratorcve-2026-81819-flask-restx-idor-missing-admin-decoratorCVE-2026-81720: Identity Protection Py Cwe 000 Cve 2026 81720cve-2026-81720-identity-protection-py-cwe-000-cve-2026-81720CVE-2026-81719: Insecure Plugin Signature Policy Default Warncve-2026-81719-insecure-plugin-signature-policy-default-warnCVE-2026-81704: Openssl Encrypt Weak Kdf Flat Configcve-2026-81704-openssl-encrypt-weak-kdf-flat-configCVE-2026-81703: Openssl Encrypt Unencrypted Pqc Key Acceptedcve-2026-81703-openssl-encrypt-unencrypted-pqc-key-acceptedCVE-2026-81702: Unverified Stored Fingerprint Comparisoncve-2026-81702-unverified-stored-fingerprint-comparisonCVE-2026-81701: Insecure Plugin Trust Denylistcve-2026-81701-insecure-plugin-trust-denylistCVE-2026-81699: Openssl Encrypt Unbounded Recovery Slotscve-2026-81699-openssl-encrypt-unbounded-recovery-slotsCVE-2026-81691: Unvalidated Server Url Credential Transmissioncve-2026-81691-unvalidated-server-url-credential-transmissionCVE-2026-81690: Python Rglob Symlink Integrity Bypasscve-2026-81690-python-rglob-symlink-integrity-bypassCVE-2026-81688: Insecure Plaintext Hash Metadatacve-2026-81688-insecure-plaintext-hash-metadataCVE-2026-81686: Dbus Properties Set Missing Sender Authorizationcve-2026-81686-dbus-properties-set-missing-sender-authorizationCVE-2026-81659: Pandoc Latex Missing No Shell Escapecve-2026-81659-pandoc-latex-missing-no-shell-escapeCVE-2026-81096: Python Sandbox Safe Builtins Getattr Setattrcve-2026-81096-python-sandbox-safe-builtins-getattr-setattrCVE-2026-80179: Python Jwcrypto Unbounded Jwt Split Doscve-2026-80179-python-jwcrypto-unbounded-jwt-split-dosCVE-2026-79785: Python Ssl Create Unverified Contextcve-2026-79785-python-ssl-create-unverified-contextCVE-2026-79657: Custom Pickle Unpickler Find Class Dotted Name Traversalcve-2026-79657-custom-pickle-unpickler-find-class-dotted-name-traversalCVE-2026-78682: Unpinned Proxied Ssrf Fetchcve-2026-78682-unpinned-proxied-ssrf-fetch24 of 972 loaded