Informational scan, not a security audit. How this is computed.
API keys, passwords or tokens committed into the repo.
Nothing found by this check. ✓
Packages you depend on that have known security holes (CVEs).
CVE-2019-6446 numpy: crafted serialized object passed in numpy.load() in pickle python module allows arbitrary code executionCVE-2017-12852 numpy: Missing input validation on empty list or ndarray in numpy.pad functionCVE-2021-41495 numpy: NULL pointer dereference in numpy.sort in in the PyArray_DescrNew() due to missing return-value validationCVE-2021-33430 numpy: buffer overflow in the PyArray_NewFromDescr_int() in ctors.cCVE-2021-34141 numpy: incomplete string comparison in the numpy.core componentCVE-2021-41496 numpy: buffer overflow in the array_from_pyobj() in fortranobject.cCVE-2016-1516 opencv: Double free vulnerability on crafted imageCVE-2017-1000450 opencv: out of bounds write in functions FillUniColor and FillUniGray in opencv/modules/imgcodecs/src/utils.cppCVE-2017-12597 opencv: out-of-bounds write error in the function FillColorRow1CVE-2017-12598 opencv: out-of-bounds read error in the cv::RBaseStream::readBlock functionCVE-2017-12599 opencv: out-of-bounds read error in the function icvCvt_BGRA2BGR_8u_C4C3RCVE-2017-12600 opencv: CPU exhaustion causing DoSCVE-2017-12601 opencv: buffer overflow in the cv::BmpDecoder::readData functionCVE-2017-12602 opencv: Memory exhaustion causing DoSCVE-2017-12603 opencv: invalid write in the cv::RLByteStream::getBytes functionCVE-2017-12604 opencv: out-of-bounds write error in the function FillUniColorCVE-2017-12605 opencv: out-of-bounds write error in the function FillColorRow8CVE-2017-12606 opencv: out-of-bounds write error in the function FillColorRow4CVE-2017-12862 opencv: Heap-based buffer over-write in modules/imgcodecs/src/grfmt_pxm.cppCVE-2017-12863 opencv: Integer overflow in PxMDecoder::readData function in imgcodecs/src/grfmt_pxm.cppCVE-2017-12864 opencv: Integer overflow in ReadNumber function in opencv/modules/imgcodecs/src/grfmt_pxm.cppCVE-2017-18009 opencv: heap-based buffer over-read in function cv::HdrDecoder::checkSignature in modules/imgcodecs/src/grfmt_hdr.cppCVE-2019-14491 opencv: out-of-bounds read in function cv::predictOrdered<cv::HaarEvaluator> in modules/objdetect/src/cascadedetect.hpp leads to dosCVE-2019-14492 opencv: out-of-bounds read in function HaarEvaluator::OptFeature::calc() in cascadedetect.hpp leading to DoSCVE-2019-14493 opencv: NULL pointer dereference in function cv::XMLParser::parse() in persistence_xml.cpp leading to DoSYour dependencies cross-checked against the OSV vulnerability database.
PYSEC-2019-108 ** DISPUTED ** An issue was discovered in NumPy 1.16.0 and earlier. It uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized objectPYSEC-2020-107 ** DISPUTED ** scikit-learn (aka sklearn) through 0.23.0 can unserialize and execute commands from an untrusted file that is passed to the joblib.load() function, if __reduce__ makes an os.system callPYSEC-2017-1 The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.PYSEC-2021-856 Null Pointer Dereference vulnerability exists in numpy.sort in NumPy < and 1.19 in the PyArray_DescrNew function due to missing return-value validation, which allows attackers to conduct DoS attacksPYSEC-2021-857 Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative valuGHSA-6p56-wp2h-9hxr NumPy Buffer Overflow (Disputed)GHSA-fpfv-jqm9-f5jm Incorrect Comparison in NumPyPYSEC-2026-2804 Integer Overflow or Wraparound in OpenCVPYSEC-2026-2805 Out-of-bounds Read in OpenCV PYSEC-2026-2806 NULL Pointer Dereference in OpenCV.PYSEC-2026-2807 Improper Restriction of Operations within the Bounds of a Memory Buffer in OpenCVPYSEC-2026-2808 Out-of-bounds Write in OpenCVPYSEC-2026-2809 Out-of-bounds Write in OpenCVPYSEC-2026-2810 Out-of-bounds Read in OpenCVPYSEC-2026-2811 Out-of-bounds Write in OpenCVPYSEC-2026-2812 Reachable Assertion in OpenCV.PYSEC-2026-2813 Out-of-bounds Write in OpenCVPYSEC-2026-2814 Out-of-bounds Write in OpenCV.PYSEC-2026-2815 Out-of-bounds Write in OpenCVPYSEC-2026-2816 Double Free in OpenCVPYSEC-2026-2817 Improper Input Validation in OpenCVPYSEC-2026-2818 Out-of-bounds Read in OpenCVPYSEC-2026-2819 Denial of Service in OpenCVPYSEC-2026-2820 Out-of-bounds Read in OpenCV PYSEC-2026-2821 Out-of-bounds Read and Out-of-bounds Write in OpenCVCode that can be exploited: injection, hardcoded credentials and similar.
Nothing found by this check. ✓
Packages that look intentionally malicious: typosquats, sneaky install scripts.
Nothing found by this check. ✓
A signal about how the project is maintained — not a vulnerability in your code. It doesn’t affect the verdict above.
Maintenance & supply-chain hygiene. A signal about the project, not a vulnerability in your code.
This check didn’t finish — that’s not the same as “clean.” Try Check again above.