pypi package report

Is pygeoapi safe?

2 known vulnerabilities, worst severity HIGH.

cvss
8.6

how bad it is if exploited, out of 10

epss
0.50%

chance of exploitation in the next 30 days

xyz score
3.3

CyberXYZ composite, out of 10

fig. 01 — GHSA-jgvc-94c8-3chc, the advisory selected below

// advisories

GHSA-jgvc-94c8-3chc

HIGHCVE-2026-42352

OGC API - Process execution requests can use the subscriber object to requests to internal HTTP services.

Affected
>= 0.23.0, < 0.23.3
Fixed in
0.23.3
Weakness
CWE-918
Published
2026-04-29
Source
github

GHSANVDMITREreferencereferencereference


// ai model usage

No published models are known to use this package.


Checked 2026-09-22 at 00:42 UTC. The most recent advisory here was published 2026-04-29. Updated continuously from NVD, GHSA, OSV and CNA feeds.

Think a verdict here is wrong? Tell us — we respond within 2 business days.
Is pygeoapi safe? pypi package security report | CyberXYZ