pip Vulnerabilities
CVE security advisories and vulnerability history for pip.
Overview
pip has 4,735 published CVE records since 2000, of which 13 are in CISA's Known Exploited Vulnerabilities catalog and 1,463 have a known public exploit. The average CVSS base score across scored CVEs is 6.7.
This page aggregates every publicly disclosed vulnerability (CVE) affecting pip products, with severity breakdowns, the most-affected products, the most common weakness types, and the latest disclosures.