gitsafehub
github.com/vaibhavs10/whisper.cpp ↗

vaibhavs10/whisper.cpp

scanned 2026-08-15 · git 8feb375
1 of 6 checks flagged a security issue
🔴 Needs attention
Only 4 of 6 checks finished — treat this as provisional. Re-check ↻

Informational scan, not a security audit. How this is computed.

Leaked secretsVulnerable dependenciesKnown OSS vulnerabilities98Risky code patternsMalicious dependenciesProject health

Security checks

Leaked secrets — Gitleaks timed out

API keys, passwords or tokens committed into the repo.

This check didn’t finish — that’s not the same as “clean.” Try Check again above.

via Gitleaks v8.21.2 · MIT

error: timeout after 120s

Vulnerable dependencies — Trivy none found ✓

Packages you depend on that have known security holes (CVEs).

Nothing found by this check. ✓

via Trivy v0.70.0 · Apache-2.0

Known OSS vulnerabilities — OSV-Scanner 98 found · 4 serious

Your dependencies cross-checked against the OSV vulnerability database.

  • Serious PYSEC-2024-223 Versions of the package onnx before and including 1.15.0 are vulnerable to Out-of-bounds Read as the ONNX_ASSERT and ONNX_ASSERTM functions have an off by one string copy.
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2024-27319). Fix: Update that package to its patched version.
  • Serious PYSEC-2025-10 A vulnerability in the `download_model` function of the onnx/onnx framework, before and including version 1.16.1, allows for arbitrary file overwrite due to inadequate prevention of path traversal att
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2024-7776). Fix: Update that package to its patched version.
  • Serious PYSEC-2026-103 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. In versions up to and including 1.20.1, a security control bypass exists in onnx.hub.load() due to improp
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2026-28500). Fix: Update that package to its patched version.
  • Serious PYSEC-2026-457 Arbitrary Code Execution in Pillow
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2023-50447). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-139 A vulnerability was identified in PyTorch 2.10.0. The affected element is an unknown function of the component pt2 Loading Handler. The manipulation leads to deserialization. The attack can only be pe
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-coreml.txt
    A package you depend on has a known security hole (CVE-2026-4538). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-2286 PyTorch is a Python package that provides tensor computation. Prior to version 2.10.0, a vulnerability in PyTorch's `weights_only` unpickler allows an attacker to craft a malicious checkpoint file (`.
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-coreml.txt
    A package you depend on has a known security hole (CVE-2026-24747). Fix: Update that package to its patched version.
  • Worth fixing GHSA-qfhq-4f3w-5fph PyTorch is vulnerable to memory corruption through its torch.lstm_cell function
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-coreml.txt
    A package you depend on has a known security hole (CVE-2025-3001). Fix: Update that package to its patched version.
  • Worth fixing GHSA-rrmf-rvhw-rf47 PyTorch is vulnerable to memory corruption through its torch.jit.script function
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-coreml.txt
    A package you depend on has a known security hole (CVE-2025-3000). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-1374 filelock Time-of-Check-Time-of-Use (TOCTOU) Symlink Vulnerability in SoftFileLock
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-coreml.txt
    A package you depend on has a known security hole (CVE-2026-22701). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-1375 filelock has a TOCTOU race condition which allows symlink attacks during lock file creation
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-coreml.txt
    A package you depend on has a known security hole (CVE-2025-68146). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-215 Internationalized Domain Names in Applications (IDNA) for Python provides support for Internationalized Domain Names in Applications (IDNA) and Unicode IDNA Compatibility Processing. In versions prior
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-coreml.txt
    A package you depend on has a known security hole (CVE-2026-45409). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2017-74 The tqdm._version module in tqdm versions 4.4.1 and 4.10 allows local users to execute arbitrary code via a crafted repo with a malicious git log in the current working directory.
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-coreml.txt
    A package you depend on has a known security hole (CVE-2016-10075). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-1374 filelock Time-of-Check-Time-of-Use (TOCTOU) Symlink Vulnerability in SoftFileLock
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2026-22701). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-1375 filelock has a TOCTOU race condition which allows symlink attacks during lock file creation
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2025-68146). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-215 Internationalized Domain Names in Applications (IDNA) for Python provides support for Internationalized Domain Names in Applications (IDNA) and Unicode IDNA Compatibility Processing. In versions prior
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2026-45409). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2023-38 Versions of the package onnx before 1.13.0 are vulnerable to Directory Traversal as the external_data field of the tensor proto can have a path to the file which is outside the model current directory
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2022-25882). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2024-222 Versions of the package onnx before and including 1.15.0 are vulnerable to Directory Traversal as the external_data field of the tensor proto can have a path to the file which is outside the model cur
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2024-27318). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2025-148 Path Traversal vulnerability in onnx.external_data_helper.save_external_data in ONNX 1.17.0 allows attackers to overwrite arbitrary files by supplying crafted external_data.location paths containing t
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2024-5187). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-104 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, there is a symlink traversal vulnerability in external data loading allows readi
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2026-34447). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-2239 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, a path traversal vulnerability via symlink allows to read arbitrary files outsid
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2026-27489). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-2240 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, the ExternalDataInfo class in ONNX was using Python’s setattr() function to load
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2026-34445). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-2241 Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, there is an issue in onnx.load, the code checks for symlinks to prevent path tra
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2026-34446). Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2026-2689 ONNX has Null Pointer Dereference in Upsample Version Converter Adapter (Zero Inputs)
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2026-44512). Fix: Update that package to its patched version.
  • Worth fixing GHSA-q56x-g2fj-4rj6 ONNX: TOCTOU arbitrary file read/write in save_external_dat
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole. Fix: Update that package to its patched version.
  • Worth fixing PYSEC-2023-227 An issue was discovered in Pillow before 10.0.0. It is a Denial of Service that uncontrollably allocates memory to process a given task, potentially causing a service to crash by having it run out of
    /workdirs/scan-f8b63b98-e7d1-457e-9219-2d089029ef57/models/requirements-openvino.txt
    A package you depend on has a known security hole (CVE-2023-44271). Fix: Update that package to its patched version.
… 73 more not shown

via OSV-Scanner v1.9.2 · Apache-2.0

Risky code patterns — Semgrep none found ✓

Code that can be exploited: injection, hardcoded credentials and similar.

Nothing found by this check. ✓

via Semgrep v1.147.0 · LGPL-2.1

Malicious dependencies — Guarddog none found ✓

Packages that look intentionally malicious: typosquats, sneaky install scripts.

Nothing found by this check. ✓

via Guarddog v2.10.0 · Apache-2.0

Project health

A signal about how the project is maintained — not a vulnerability in your code. It doesn’t affect the verdict above.

Project health — OpenSSF Scorecard didn’t run

Maintenance & supply-chain hygiene. A signal about the project, not a vulnerability in your code.

This check didn’t finish — that’s not the same as “clean.” Try Check again above.

via OpenSSF Scorecard · Apache-2.0

About these results. Six open-source checks ran in parallel; every finding is tagged with the tool that produced it. The verdict follows a published rule. False positives and false negatives are normal — a clean scan does not mean the code is secure, and a red verdict does not mean the project is compromised.