chore(deps): update dependency litellm to v1.61.15 #2
Security Report
❗️Scan Incomplete: The scan completed with partial failure. The integration encountered issues with one or more projects in this repository, preventing their scan. The errors occurred in the following package managers: gradle,CocoaPods. Consequently, there may be gaps in the coverage of open-source dependencies used in the repository.
Scan Details Report
gradle
/tmp/ws-scm/AutoGPT/classic/frontend/android/build.gradle
| Step | Level | Description | Details |
|---|---|---|---|
| Preparing the project for scan | ⚠Warn | One or more of the installations failed | failed running mend init script (mendDeps): NOTE: Picked up JDK_JAVA_OPTIONS: --add-opens java.base/java.util=ALL-UNNAMED --add-opens java.base/sun.reflect.generics.reflectiveObjects=ALL-UNNAMED FAILURE: Build failed with an exception. * Where: Settings file '/tmp/ws-scm/AutoGPT/classic/frontend/android/settings.gradle' line: 6 * What went wrong: A problem occurred evaluating settings 'andro... |
pip
/tmp/ws-scm/AutoGPT/classic/benchmark/agbenchmark/challenges/verticals/code/6_battleship/artifacts_in/product_requirements.txt
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Some problems occurred while performing the resolution operation |
|
/tmp/ws-scm/AutoGPT/classic/original_autogpt
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Issue parsing of one or more of the files | Failed to identify some GitHub dependencies in file: /tmp/ws-scm/AutoGPT/classic/original_autogpt. The following lines could not be parsed: Processing ./. Installing build dependencies: started Installing build dependencies: finished with status 'done' Getting requirements to build wheel: started Getting requirements to build wheel: finished with status 'done' P... |
| Resolving the project | ⚠Warn | Issue parsing of one or more of the files | Failed to resolve the following dependencies: [agpt-0.5.0, AutoGPT-Forge-0.2.0, en-core-web-sm-3.7.1] from /tmp/ws-scm/AutoGPT/classic/original_autogpt file. |
/tmp/ws-scm/AutoGPT/classic/original_autogpt/autogpt/app
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Some problems occurred while performing the resolution operation |
|
poetry
/tmp/ws-scm/AutoGPT/classic/forge/pyproject.toml
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Failed to build the dependency tree, fallback was used in the scan, results may be incomplete | Error occurred while parsing the poetry show --tree command on the /tmp/ws-scm/AutoGPT/classic/forge/pyproject.toml file |
/tmp/ws-scm/AutoGPT/classic/original_autogpt/pyproject.toml
| Step | Level | Description | Details |
|---|---|---|---|
| Resolving the project | ⚠Warn | Failed to build the dependency tree, fallback was used in the scan, results may be incomplete | Error occurred while parsing the poetry show --tree command on the /tmp/ws-scm/AutoGPT/classic/original_autogpt/pyproject.toml file |
❌ New vulnerabilities: > Partial results (45 vulnerabilities) are displayed below due to a content size limitation in GitHub. To view information on the remaining vulnerabilities, navigate to the Mend Application.
| Vulnerability | Severity | Vulnerable Library | Direct Library | Suggested Fix | Issue | Reachability | |
|---|---|---|---|---|---|---|---|
CVE-2024-34351Path to dependency file: /classic/benchmark/frontend/package.json Path to vulnerable library: /classic/benchmark/frontend/node_modules/next/package.json Dependency Hierarchy: -> ❌ next-13.5.11.tgz (Vulnerable Library) |
7.5 | Direct next-13.5.11.tgz |
next-13.5.11.tgz | next - 14.1.1 | None | ||
CVE-2025-57822Path to dependency file: /classic/benchmark/frontend/package.json Path to vulnerable library: /classic/benchmark/frontend/node_modules/next/package.json Dependency Hierarchy: -> ❌ next-13.5.11.tgz (Vulnerable Library) |
6.5 | Direct next-13.5.11.tgz |
next-13.5.11.tgz | 14.2.32 | None | ||
CVE-2024-47831Path to dependency file: /classic/benchmark/frontend/package.json Path to vulnerable library: /classic/benchmark/frontend/node_modules/next/package.json Dependency Hierarchy: -> ❌ next-13.5.11.tgz (Vulnerable Library) |
5.9 | Direct next-13.5.11.tgz |
next-13.5.11.tgz | 14.2.7 | None | ||
CVE-2025-55173Path to dependency file: /classic/benchmark/frontend/package.json Path to vulnerable library: /classic/benchmark/frontend/node_modules/next/package.json Dependency Hierarchy: -> ❌ next-13.5.11.tgz (Vulnerable Library) |
4.3 | Direct next-13.5.11.tgz |
next-13.5.11.tgz | 14.2.31 | None | ||
CVE-2026-35030Path to dependency file: /classic/original_autogpt/.ws-temp-KPMYOA-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/litellm-1.17.13.dist-info Dependency Hierarchy: -> autogpt-forge-0.2.0 (Root Library) -> ❌ litellm-1.17.13-py3-none-any.whl (Vulnerable Library) |
10.0 | Transitive litellm-1.17.13-py3-none-any.whl |
autogpt-forge-0.2.0 | None | |||
CVE-2026-35029Path to dependency file: /classic/forge/.ws-temp-ORBAMW-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-forge-Eq_saOJk-py3.10/lib/python3.10/site-packages/litellm-1.80.0.dist-info,/tmp/ws-ua_20260410162408_YGLWMG/python_UXGWUQ/20260410162408/litellm-1.80.0-py3-none-any.whl Dependency Hierarchy: -> ❌ litellm-1.80.0-py3-none-any.whl (Vulnerable Library) |
9.9 | Direct litellm-1.80.0-py3-none-any.whl |
litellm-1.80.0-py3-none-any.whl | Upgrade to version litellm - 1.83.0 or greater | None | ||
CVE-2026-34520Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> autogpt-libs-0.2.0 (Root Library) -> supabase-2.7.4-py3-none-any.whl -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
9.1 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
autogpt-libs-0.2.0 | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34520Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agbenchmark-0.0.10-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
9.1 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agbenchmark-0.0.10-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34520Path to dependency file: /classic/forge/.ws-temp-ORBAMW-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-forge-Eq_saOJk-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-libs-BFR2WaoL-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info Dependency Hierarchy: -> ❌ aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
9.1 | Direct aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl | Upgrade to version aiohttp - 3.13.4 or greater | None | ||
CVE-2026-34520Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> supabase-2.7.4-py3-none-any.whl (Root Library) -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
9.1 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
supabase-2.7.4-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34520Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agent_protocol_client-1.1.0-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
9.1 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agent_protocol_client-1.1.0-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2025-29927Path to dependency file: /classic/benchmark/frontend/package.json Path to vulnerable library: /classic/benchmark/frontend/node_modules/next/package.json Dependency Hierarchy: -> ❌ next-13.5.11.tgz (Vulnerable Library) |
9.1 | Direct next-13.5.11.tgz |
next-13.5.11.tgz | next - 13.5.9,next - 12.3.5,next - 15.2.3,https://github.com/vercel/next.js.git - v13.5.9,next - 14.2.25 | None | ||
CVE-2026-34516Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> autogpt-libs-0.2.0 (Root Library) -> supabase-2.7.4-py3-none-any.whl -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
autogpt-libs-0.2.0 | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34516Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agbenchmark-0.0.10-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agbenchmark-0.0.10-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34516Path to dependency file: /classic/forge/.ws-temp-ORBAMW-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-forge-Eq_saOJk-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-libs-BFR2WaoL-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info Dependency Hierarchy: -> ❌ aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Direct aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl | Upgrade to version aiohttp - 3.13.4 or greater | None | ||
CVE-2026-34516Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> supabase-2.7.4-py3-none-any.whl (Root Library) -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
supabase-2.7.4-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34516Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agent_protocol_client-1.1.0-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agent_protocol_client-1.1.0-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34515Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> autogpt-libs-0.2.0 (Root Library) -> supabase-2.7.4-py3-none-any.whl -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
autogpt-libs-0.2.0 | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34515Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agbenchmark-0.0.10-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agbenchmark-0.0.10-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34515Path to dependency file: /classic/forge/.ws-temp-ORBAMW-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-forge-Eq_saOJk-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-libs-BFR2WaoL-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info Dependency Hierarchy: -> ❌ aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Direct aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl | Upgrade to version aiohttp - 3.13.4 or greater | None | ||
CVE-2026-34515Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> supabase-2.7.4-py3-none-any.whl (Root Library) -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
supabase-2.7.4-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2026-34515Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agent_protocol_client-1.1.0-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agent_protocol_client-1.1.0-py3-none-any.whl | Transitive Upgrade to version aiohttp - 3.13.4 or greater |
None | ||
CVE-2025-69229Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> autogpt-libs-0.2.0 (Root Library) -> supabase-2.7.4-py3-none-any.whl -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
autogpt-libs-0.2.0 | None | |||
CVE-2025-69229Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agbenchmark-0.0.10-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agbenchmark-0.0.10-py3-none-any.whl | None | |||
CVE-2025-69229Path to dependency file: /classic/forge/.ws-temp-ORBAMW-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-forge-Eq_saOJk-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-libs-BFR2WaoL-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info Dependency Hierarchy: -> ❌ aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Direct aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl | None | |||
CVE-2025-69229Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> supabase-2.7.4-py3-none-any.whl (Root Library) -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
supabase-2.7.4-py3-none-any.whl | None | |||
CVE-2025-69229Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agent_protocol_client-1.1.0-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agent_protocol_client-1.1.0-py3-none-any.whl | None | |||
CVE-2025-69228Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> autogpt-libs-0.2.0 (Root Library) -> supabase-2.7.4-py3-none-any.whl -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
autogpt-libs-0.2.0 | None | |||
CVE-2025-69228Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agbenchmark-0.0.10-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agbenchmark-0.0.10-py3-none-any.whl | None | |||
CVE-2025-69228Path to dependency file: /classic/forge/.ws-temp-ORBAMW-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-forge-Eq_saOJk-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-libs-BFR2WaoL-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info Dependency Hierarchy: -> ❌ aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Direct aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl | None | |||
CVE-2025-69228Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> supabase-2.7.4-py3-none-any.whl (Root Library) -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
supabase-2.7.4-py3-none-any.whl | None | |||
CVE-2025-69228Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agent_protocol_client-1.1.0-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agent_protocol_client-1.1.0-py3-none-any.whl | None | |||
CVE-2025-69227Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> autogpt-libs-0.2.0 (Root Library) -> supabase-2.7.4-py3-none-any.whl -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
autogpt-libs-0.2.0 | None | |||
CVE-2025-69227Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agbenchmark-0.0.10-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agbenchmark-0.0.10-py3-none-any.whl | None | |||
CVE-2025-69227Path to dependency file: /classic/forge/.ws-temp-ORBAMW-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-forge-Eq_saOJk-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-libs-BFR2WaoL-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info Dependency Hierarchy: -> ❌ aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Direct aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl | None | |||
CVE-2025-69227Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> supabase-2.7.4-py3-none-any.whl (Root Library) -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
supabase-2.7.4-py3-none-any.whl | None | |||
CVE-2025-69227Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agent_protocol_client-1.1.0-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agent_protocol_client-1.1.0-py3-none-any.whl | None | |||
CVE-2025-69223Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> autogpt-libs-0.2.0 (Root Library) -> supabase-2.7.4-py3-none-any.whl -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
autogpt-libs-0.2.0 | None | |||
CVE-2025-69223Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agbenchmark-0.0.10-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agbenchmark-0.0.10-py3-none-any.whl | None | |||
CVE-2025-69223Path to dependency file: /classic/forge/.ws-temp-ORBAMW-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-forge-Eq_saOJk-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-libs-BFR2WaoL-py3.10/lib/python3.10/site-packages/aiohttp-3.10.5.dist-info Dependency Hierarchy: -> ❌ aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Direct aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
aiohttp-3.10.5-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl | None | |||
CVE-2025-69223Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> supabase-2.7.4-py3-none-any.whl (Root Library) -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
supabase-2.7.4-py3-none-any.whl | None | |||
CVE-2025-69223Path to dependency file: /classic/benchmark/.ws-temp-XZGKSV-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agbenchmark-gctv3_E3-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info,/tmp/containerbase/cache/.cache/pypoetry/virtualenvs/agpt-cm9iHxbr-py3.10/lib/python3.10/site-packages/aiohttp-3.9.3.dist-info Dependency Hierarchy: -> agent_protocol_client-1.1.0-py3-none-any.whl (Root Library) -> ❌ aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.9.3-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
agent_protocol_client-1.1.0-py3-none-any.whl | None | |||
CVE-2024-52303Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> autogpt-libs-0.2.0 (Root Library) -> supabase-2.7.4-py3-none-any.whl -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
autogpt-libs-0.2.0 | Transitive aiohttp - 3.10.11 |
None | ||
CVE-2024-52303Path to dependency file: /autogpt_platform/backend/.ws-temp-JCARFR-requirements.txt Path to vulnerable library: /tmp/containerbase/cache/.cache/pypoetry/virtualenvs/autogpt-platform-backend--YkgNmTR-py3.10/lib/python3.10/site-packages/aiohttp-3.10.8.dist-info Dependency Hierarchy: -> supabase-2.7.4-py3-none-any.whl (Root Library) -> realtime-2.0.5-py3-none-any.whl -> ❌ aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl (Vulnerable Library) |
7.5 | Transitive aiohttp-3.10.8-cp310-cp310-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
supabase-2.7.4-py3-none-any.whl | Transitive aiohttp - 3.10.11 |
None | ||
CVE-2024-51479Path to dependency file: /classic/benchmark/frontend/package.json Path to vulnerable library: /classic/benchmark/frontend/node_modules/next/package.json Dependency Hierarchy: -> ❌ next-13.5.11.tgz (Vulnerable Library) |
7.5 | Direct next-13.5.11.tgz |
next-13.5.11.tgz | next - 14.2.15 | None |
✔️ Remediated vulnerabilities:
| Vulnerability | Vulnerable Library |
|---|---|
| CVE-2026-34516 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34515 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34525 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-69226 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34514 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34515 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2021-41495 | numpy-1.21.6-cp37-cp37m-manylinux_2_12_x86_64.manylinux2010_x86_64.whl |
| CVE-2026-34518 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34520 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-69227 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-0628 | litellm-1.17.9-py3-none-any.whl |
| CVE-2026-34518 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34513 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34520 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34517 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-69226 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2024-56332 | next-13.5.7.tgz |
| CVE-2024-52303 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-22815 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34525 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-35030 | litellm-1.17.9-py3-none-any.whl |
| CVE-2025-47273 | setuptools-69.0.3 |
| CVE-2026-34518 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34525 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-69223 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34519 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-22815 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34517 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2024-5569 | zipp-3.15.0-py3-none-any.whl |
| CVE-2026-34515 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-53643 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34516 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2021-20276 | pillow-10.2.0-cp311-cp311-manylinux_2_28_x86_64.whl |
| CVE-2026-34514 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-68142 | pymdown_extensions-10.2.1-py3-none-any.whl |
| CVE-2025-57822 | next-13.5.7.tgz |
| CVE-2025-55173 | next-13.5.7.tgz |
| CVE-2025-47273 | setuptools-69.0.3-py3-none-any.whl |
| CVE-2021-41496 | numpy-1.21.6-cp37-cp37m-manylinux_2_12_x86_64.manylinux2010_x86_64.whl |
| CVE-2025-53643 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34513 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34520 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2024-10188 | litellm-1.17.9-py3-none-any.whl |
| CVE-2021-41496 | numpy-1.26.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2021-41495 | numpy-1.26.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-69229 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34519 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2024-34351 | next-13.5.7.tgz |
| CVE-2025-53643 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2024-47831 | next-13.5.7.tgz |
| CVE-2026-34513 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34519 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34514 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-68146 | filelock-3.16.1-py3-none-any.whl |
| CVE-2026-22815 | aiohttp-3.10.5-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2026-34517 | aiohttp-3.10.8-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
| CVE-2025-48068 | next-13.5.7.tgz |
| CVE-2026-35029 | litellm-1.17.9-py3-none-any.whl |
| CVE-2025-29927 | next-13.5.7.tgz |
| CVE-2026-34516 | aiohttp-3.9.3-cp311-cp311-manylinux_2_17_x86_64.manylinux2014_x86_64.whl |
Base branch total remaining vulnerabilities: 122
Base branch commit: 6b1397043d8ac15e8c30223f1f4373746a075433
Total libraries scanned: 1091
Scan token: c5c093c482354b9dbe109b4bb872f613