gitsafehub
github.com/howl-anderson/elmo-bilstm-cnn-crf ↗

howl-anderson/elmo-bilstm-cnn-crf

scanned 2026-08-13 · git a380cd9
2 of 6 checks flagged a security issue
🔴 Needs attention
Only 5 of 6 checks finished — treat this as provisional. Re-check ↻

Informational scan, not a security audit. How this is computed.

Leaked secretsVulnerable dependencies523Known OSS vulnerabilities563Risky code patternsMalicious dependenciesProject health

Security checks

Leaked secrets — Gitleaks none found ✓

API keys, passwords or tokens committed into the repo.

Nothing found by this check. ✓

via Gitleaks v8.21.2 · MIT

Vulnerable dependencies — Trivy 523 found · 11 serious

Packages you depend on that have known security holes (CVEs).

  • Serious CVE-2024-3660 A arbitrary code injection vulnerability in TensorFlow's Keras framewo ...
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-3660). Fix: Update that package to its patched version.
  • Serious CVE-2017-18342 PyYAML: yaml.load() API could execute arbitrary code
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2017-18342). Fix: Update that package to its patched version.
  • Serious CVE-2020-14343 PyYAML: incomplete fix for CVE-2020-1747
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2020-14343). Fix: Update that package to its patched version.
  • Serious CVE-2023-41419 python-gevent: privilege escalation via a crafted script to the WSGIServer component
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2023-41419). Fix: Update that package to its patched version.
  • Serious CVE-2025-14009 nltk: Zip Slip Vulnerability in nltk Leading to Code Execution
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2025-14009). Fix: Update that package to its patched version.
  • Serious CVE-2019-6446 numpy: crafted serialized object passed in numpy.load() in pickle python module allows arbitrary code execution
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2019-6446). Fix: Update that package to its patched version.
  • Serious CVE-2021-41208 Incomplete validation in boosted trees code
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2021-41208). Fix: Update that package to its patched version.
  • Serious CVE-2023-25668 CVE-2023-25668 affecting package tensorflow for versions less than 2.11.1-1
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2023-25668). Fix: Update that package to its patched version.
  • Serious GHSA-h6gw-r52c-724r NULL Pointer Dereference and Access of Uninitialized Pointer in TensorFlow
    docker/requirements.txt
    A package you depend on has a known security hole (GHSA-h6gw-r52c-724r). Fix: Update that package to its patched version.
  • Serious CVE-2022-45907 In PyTorch before trunk/89695, torch.jit.annotations.parse_type_line c ...
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2022-45907). Fix: Update that package to its patched version.
  • Serious CVE-2025-32434 PyTorch is a Python package that provides tensor computation with stro ...
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2025-32434). Fix: Update that package to its patched version.
  • Worth fixing CVE-2021-42771 python-babel: Relative path traversal allows attacker to load arbitrary locale files and execute arbitrary code
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2021-42771). Fix: Update that package to its patched version.
  • Worth fixing CVE-2018-1000656 python-flask: Denial of Service via crafted JSON file
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2018-1000656). Fix: Update that package to its patched version.
  • Worth fixing CVE-2019-1010083 python-flask: unexpected memory usage can lead to denial of service via crafted encoded JSON data
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2019-1010083). Fix: Update that package to its patched version.
  • Worth fixing CVE-2023-30861 flask: Possible disclosure of permanent session cookie due to missing Vary: Cookie header
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2023-30861). Fix: Update that package to its patched version.
  • Worth fixing CVE-2020-25032 python-flask-cors: allows ../ directory traversal to access private resources
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2020-25032). Fix: Update that package to its patched version.
  • Worth fixing CVE-2024-6221 A vulnerability in corydolphin/flask-cors version 4.0.1 allows the `Ac ...
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-6221). Fix: Update that package to its patched version.
  • Worth fixing CVE-2024-1681 corydolphin/flask-cors is vulnerable to log injection when the log lev ...
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-1681). Fix: Update that package to its patched version.
  • Worth fixing CVE-2024-6839 corydolphin/flask-cors version 4.0.1 contains an improper regex path m ...
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-6839). Fix: Update that package to its patched version.
  • Worth fixing CVE-2024-6844 A vulnerability in corydolphin/flask-cors version 4.0.1 allows for inc ...
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-6844). Fix: Update that package to its patched version.
  • Worth fixing CVE-2024-6866 corydolphin/flask-cors version 4.01 contains a vulnerability where the ...
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-6866). Fix: Update that package to its patched version.
  • Worth fixing CVE-2019-10906 python-jinja2: str.format_map allows sandbox escape
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2019-10906). Fix: Update that package to its patched version.
  • Worth fixing CVE-2020-28493 python-jinja2: ReDoS vulnerability in the urlize filter
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2020-28493). Fix: Update that package to its patched version.
  • Worth fixing CVE-2024-22195 jinja2: HTML attribute injection when passing user input as keys to xmlattr filter
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-22195). Fix: Update that package to its patched version.
  • Worth fixing CVE-2024-34064 jinja2: accepts keys containing non-attribute characters
    docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-34064). Fix: Update that package to its patched version.
… 498 more not shown

via Trivy v0.70.0 · Apache-2.0

Known OSS vulnerabilities — OSV-Scanner 563 found · 19 serious

Your dependencies cross-checked against the OSV vulnerability database.

  • Serious PYSEC-2026-1486 Keras Directory Traversal Vulnerability
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2025-12060). Fix: Update that package to its patched version.
  • Serious PYSEC-2026-369 Keras code injection vulnerability
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-3660). Fix: Update that package to its patched version.
  • Serious PYSEC-2018-49 In PyYAML before 5.1, the yaml.load() API could execute arbitrary code if used with untrusted data. The load() function has been deprecated in version 5.1 and the 'UnsafeLoader' has been introduced fo
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2017-18342). Fix: Update that package to its patched version.
  • Serious PYSEC-2021-142 A vulnerability was discovered in the PyYAML library in versions before 5.4, where it is susceptible to arbitrary code execution when it processes untrusted YAML files through the full_load method or
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2020-14343). Fix: Update that package to its patched version.
  • Serious PYSEC-2023-177 An issue in Gevent before version 23.9.0 allows a remote attacker to escalate privileges via a crafted script to the WSGIServer component.
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2023-41419). Fix: Update that package to its patched version.
  • Serious PYSEC-2026-96 A critical vulnerability exists in the NLTK downloader component of nltk/nltk, affecting all versions. The _unzip_iter function in nltk/downloader.py uses zipfile.extractall() without performing path
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2025-14009). Fix: Update that package to its patched version.
  • Serious PYSEC-2026-99 NLTK versions <=3.9.2 are vulnerable to arbitrary code execution due to improper input validation in the StanfordSegmenter module. The module dynamically loads external Java .jar files without verific
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2026-0848). Fix: Update that package to its patched version.
  • Serious PYSEC-2019-108 ** DISPUTED ** An issue was discovered in NumPy 1.16.0 and earlier. It uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2019-6446). Fix: Update that package to its patched version.
  • Serious PYSEC-2020-107 ** DISPUTED ** scikit-learn (aka sklearn) through 0.23.0 can unserialize and execute commands from an untrusted file that is passed to the joblib.load() function, if __reduce__ makes an os.system call
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2020-13092). Fix: Update that package to its patched version.
  • Serious PYSEC-2020-125 In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `Shard` API in TensorFlow expects the last argument to be a function taking two `int64` (i.e., `long long`) arguments. However,
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2020-15202). Fix: Update that package to its patched version.
  • Serious PYSEC-2020-128 In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `data_splits` argument of `tf.raw_ops.StringNGrams` lacks validation. This allows a user to pass values that can cause heap ove
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2020-15205). Fix: Update that package to its patched version.
  • Serious PYSEC-2020-129 In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, changing the TensorFlow's `SavedModel` protocol buffer and altering the name of required keys results in segfaults and data corrupt
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2020-15206). Fix: Update that package to its patched version.
  • Serious PYSEC-2021-400 TensorFlow is an open source platform for machine learning. In affected versions the code for boosted trees in TensorFlow is still missing validation. As a result, attackers can trigger denial of serv
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2021-41208). Fix: Update that package to its patched version.
  • Serious PYSEC-2026-548 TensorFlow has a heap out-of-buffer read vulnerability in the QuantizeAndDequantize operation
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2023-25668). Fix: Update that package to its patched version.
  • Serious GHSA-h6gw-r52c-724r NULL Pointer Dereference and Access of Uninitialized Pointer in TensorFlow
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole. Fix: Update that package to its patched version.
  • Serious GHSA-r6jx-9g48-2r5r Arbitrary code execution due to YAML deserialization
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2021-37678). Fix: Update that package to its patched version.
  • Serious PYSEC-2022-43015 In PyTorch before trunk/89695, torch.jit.annotations.parse_type_line can cause arbitrary code execution because eval is used unsafely.
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2022-45907). Fix: Update that package to its patched version.
  • Serious PYSEC-2024-259 In PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2024-48063). Fix: Update that package to its patched version.
  • Serious PYSEC-2025-41 PyTorch is a Python package that provides tensor computation with strong GPU acceleration and deep neural networks built on a tape-based autograd system. In version 2.5.1 and prior, a Remote Command E
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2025-32434). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2021-421 Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2021-42771). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2018-66 The Pallets Project flask version Before 0.12.3 contains a CWE-20: Improper Input Validation vulnerability in flask that can result in Large amount of memory usage possibly leading to denial of servic
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2018-1000656). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2019-179 The Pallets Project Flask before 1.0 is affected by: unexpected memory usage. The impact is: denial of service. The attack vector is: crafted encoded JSON data. The fixed version is: 1. NOTE: this may
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2019-1010083). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2023-62 Flask is a lightweight WSGI web application framework. When all of the following conditions are met, a response containing data intended for one client may be cached and subsequently sent by the proxy
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2023-30861). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-2151 Flask is a web server gateway interface (WSGI) web application framework. In versions 3.1.2 and below, when the session object is accessed, Flask should set the Vary: Cookie header., resulting in a Us
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2026-27205). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2019-217 In Pallets Jinja before 2.10.1, str.format_map allows a sandbox escape.
    /workdirs/scan-e5545b59-f5c2-423b-ae77-018c598d35d6/docker/requirements.txt
    A package you depend on has a known security hole (CVE-2019-10906). Fix: Update that package to its patched version.
… 538 more not shown

via OSV-Scanner v1.9.2 · Apache-2.0

Risky code patterns — Semgrep none found ✓

Code that can be exploited: injection, hardcoded credentials and similar.

Nothing found by this check. ✓

via Semgrep v1.147.0 · LGPL-2.1

Malicious dependencies — Guarddog none found ✓

Packages that look intentionally malicious: typosquats, sneaky install scripts.

Nothing found by this check. ✓

via Guarddog v2.10.0 · Apache-2.0

Project health

A signal about how the project is maintained — not a vulnerability in your code. It doesn’t affect the verdict above.

Project health — OpenSSF Scorecard didn’t run

Maintenance & supply-chain hygiene. A signal about the project, not a vulnerability in your code.

This check didn’t finish — that’s not the same as “clean.” Try Check again above.

via OpenSSF Scorecard · Apache-2.0

About these results. Six open-source checks ran in parallel; every finding is tagged with the tool that produced it. The verdict follows a published rule. False positives and false negatives are normal — a clean scan does not mean the code is secure, and a red verdict does not mean the project is compromised.