Informational scan, not a security audit. How this is computed.
API keys, passwords or tokens committed into the repo.
This check didn’t finish — that’s not the same as “clean.” Try Check again above.
Packages you depend on that have known security holes (CVEs).
CVE-2024-7776 A vulnerability in the `download_model` function of the onnx/onnx fram ...CVE-2026-27489 onnx: ONNX: Information Disclosure via Path Traversal VulnerabilityCVE-2026-28500 onnx: ONNX: Untrusted Model Repository Warnings SuppressedCVE-2026-34445 ONNX: ONNX: Denial of Service and potential information disclosure via malicious model metadataGHSA-q56x-g2fj-4rj6 ONNX: TOCTOU arbitrary file read/write in save_external_dat CVE-2026-34446 onnx: ONNX: Information disclosure through hardlink path traversalCVE-2026-34447 Open Neural Network Exchange (ONNX) is an open standard for machine le ...CVE-2026-44512 onnx: ONNX: Denial of Service via crafted untrusted modelsCVE-2026-63632 ONNX: Heap-Buffer-Overflow READ in Gemm Version Converter Adapter via Undersized Input ShapeYour dependencies cross-checked against the OSV vulnerability database.
PYSEC-2026-103 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. In versions up to and including 1.20.1, a security control bypass exists in onnx.hub.load() due to impropPYSEC-2026-1486 Keras Directory Traversal VulnerabilityPYSEC-2026-457 Arbitrary Code Execution in PillowPYSEC-2025-148 Path Traversal vulnerability in onnx.external_data_helper.save_external_data in ONNX 1.17.0 allows attackers to overwrite arbitrary files by supplying crafted external_data.location paths containing tPYSEC-2026-104 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, there is a symlink traversal vulnerability in external data loading allows readiPYSEC-2026-2239 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, a path traversal vulnerability via symlink allows to read arbitrary files outsidPYSEC-2026-2240 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, the ExternalDataInfo class in ONNX was using Python’s setattr() function to loadPYSEC-2026-2241 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, there is an issue in onnx.load, the code checks for symlinks to prevent path traPYSEC-2026-2689 ONNX has Null Pointer Dereference in Upsample Version Converter Adapter (Zero Inputs)GHSA-h36j-8vv3-cj52 Open Neural Network Exchange (ONNX) Path Traversal VulnerabilityGHSA-q56x-g2fj-4rj6 ONNX: TOCTOU arbitrary file read/write in save_external_dat PYSEC-2026-215 Internationalized Domain Names in Applications (IDNA) for Python provides support for Internationalized Domain Names in Applications (IDNA) and Unicode IDNA Compatibility Processing. In versions priorPYSEC-2025-121 An issue in keras 3.7.0 allows attackers to write arbitrary files to the user's machine via downloading a crafted tar file through the get_file function.PYSEC-2026-1487 Keras is vulnerable to arbitrary local file loading and Server-Side Request ForgeryPYSEC-2026-2324 Keras versions prior to 3.14.0 are vulnerable to a path traversal issue in the archive extraction utilities located in `keras/src/utils/file_utils.py`. The functions `filter_safe_tarinfos()` and `filtPYSEC-2026-2547 Keras has an untrusted deserialization vulnerabilityPYSEC-2026-3629 Keras: HDF5 virtual datasets can disclose local filesPYSEC-2026-3631 Keras: Lambda deserialization can bypass safe mode and execute codePYSEC-2026-3632 Keras: DiskIOStore permits path traversal through crafted layer namesPYSEC-2026-3633 Keras: HDF5 links can disclose local file contentsPYSEC-2026-3634 Keras: TorchModuleWrapper can deserialize unsafe PyTorch pickle dataGHSA-36fq-jgmw-4r9c Keras is vulnerable to Deserialization of Untrusted DataPYSEC-2023-227 An issue was discovered in Pillow before 10.0.0. It is a Denial of Service that uncontrollably allocates memory to process a given task, potentially causing a service to crash by having it run out of PYSEC-2026-165 Pillow is a Python imaging library. Prior to version 12.2.0, if a font advances for each glyph by an exceeding large amount, when Pillow keeps track of the current position, it may lead to an integer PYSEC-2026-1793 Pillow buffer overflow vulnerabilityCode that can be exploited: injection, hardcoded credentials and similar.
Nothing found by this check. ✓
Packages that look intentionally malicious: typosquats, sneaky install scripts.
This check didn’t finish — that’s not the same as “clean.” Try Check again above.
A signal about how the project is maintained — not a vulnerability in your code. It doesn’t affect the verdict above.
Maintenance & supply-chain hygiene. A signal about the project, not a vulnerability in your code.
This check didn’t finish — that’s not the same as “clean.” Try Check again above.