← Zurück zum KI-AbhängigkeitsatlasExaktes Repository-Lieferkettendossier

URBAN.KI AirGuardAI

vernetzte-stadt-gelsenkirchen/urban.ki/urban-ki-airguardai
pypi

Dieses Dossier bewahrt 102 exakte Komponentenvorkommen aus 1 veröffentlichten Evidenzdateien an einem unveränderlichen Repository-Commit.

opencode:11301363d2a9d9e13Projekt-ID + Commit-SHA + exakter Evidenzpfad

Veröffentlichte Abhängigkeitsevidenz belegt weder Betrieb noch produktive Nutzung, Beschaffung oder Erreichbarkeit zur Laufzeit.

Projekt-ID + Commit-SHA + exakter Evidenzpfad
102exakte Komponentenvorkommen
102Paketidentitäten
1Evidenzdatei
150zurückgegebene OSV-Meldungen
Exakte veröffentlichte Evidenz

Dateien, die Abhängigkeiten dieses Repositories auflösen

Jede Datei bleibt mit dem beobachteten Commit verknüpft. Ein Parserfehler bleibt sichtbar und wird nie zu einer Null.

Evidenzpfaduv.locksha256:59cb0231b92ede8e7f9c5ef5b78867b9fa36e7a4e0fc2600956a5c532b08c9e0
Format
uv-lock
Parserstatus
parsed
Aufgelöste Komponenten
102
Exakte Quelle öffnen ↗
Beobachtete Beziehungen

Paketidentitäten an diesem Commit

pypiTransformerspypi:transformers
1 Vorkommen5.8.0
Apache-2.026 zurückgegebene OSV-Meldungen
pypiPyTorchpypi:torch
1 Vorkommen2.11.0
BSD-3-Clause23 zurückgegebene OSV-Meldungen
pypiHugging Face Datasetspypi:datasets
1 Vorkommen4.8.5
Apache-2.01 zurückgegebene OSV-Meldung
pypiAcceleratepypi:accelerate
1 Vorkommen1.13.0
non-standard1 zurückgegebene OSV-Meldung
pypiscikit-learnpypi:scikit-learn
1 Vorkommen1.8.0
BSD-3-Clause · non-standard1 zurückgegebene OSV-Meldung
pypiHugging Face Tokenizerspypi:tokenizers
1 Vorkommen0.22.2
non-standard
pypiLightGBMpypi:lightgbm
1 Vorkommen4.6.0
non-standard
pypiaiohttppypi:aiohttp
1 Vorkommen3.13.5
Apache-2.0 · Apache-2.0 AND MIT33 zurückgegebene OSV-Meldungen
pypipillowpypi:pillow
1 Vorkommen12.2.0
HPND · MIT-CMU20 zurückgegebene OSV-Meldungen
pypipython-multipartpypi:python-multipart
1 Vorkommen0.0.28
Apache-2.08 zurückgegebene OSV-Meldungen
pypistarlettepypi:starlette
1 Vorkommen1.0.0
BSD-3-Clause8 zurückgegebene OSV-Meldungen
pypiurllib3pypi:urllib3
1 Vorkommen2.7.0
MIT7 zurückgegebene OSV-Meldungen
pypijinja2pypi:jinja2
1 Vorkommen3.1.6
BSD-3-Clause · non-standard4 zurückgegebene OSV-Meldungen
pypirequestspypi:requests
1 Vorkommen2.34.0
Apache-2.03 zurückgegebene OSV-Meldungen
pypisetuptoolspypi:setuptools
1 Vorkommen81.0.0
MIT3 zurückgegebene OSV-Meldungen
pypifilelockpypi:filelock
1 Vorkommen3.29.0
MIT · Unlicense2 zurückgegebene OSV-Meldungen
pypicertifipypi:certifi
1 Vorkommen2026.4.22
MPL-2.01 zurückgegebene OSV-Meldung
pypiclickpypi:click
1 Vorkommen8.3.3
BSD-3-Clause · non-standard1 zurückgegebene OSV-Meldung
pypifonttoolspypi:fonttools
1 Vorkommen4.62.1
MIT1 zurückgegebene OSV-Meldung
pypih11pypi:h11
1 Vorkommen0.16.0
MIT1 zurückgegebene OSV-Meldung
pypiidnapypi:idna
1 Vorkommen3.14
BSD-3-Clause · non-standard1 zurückgegebene OSV-Meldung
pypiorjsonpypi:orjson
1 Vorkommen3.11.9
Apache-2.0 OR MIT · MPL-2.0 AND (Apache-2.0 OR MIT)1 zurückgegebene OSV-Meldung
pypipyarrowpypi:pyarrow
1 Vorkommen24.0.0
Apache-2.0 · non-standard1 zurückgegebene OSV-Meldung
pypipygmentspypi:pygments
1 Vorkommen2.20.0
BSD-2-Clause1 zurückgegebene OSV-Meldung
pypipython-dotenvpypi:python-dotenv
1 Vorkommen1.2.2
BSD-3-Clause1 zurückgegebene OSV-Meldung
pypitqdmpypi:tqdm
1 Vorkommen4.67.3
MIT AND MPL-2.01 zurückgegebene OSV-Meldung
pypiaiohappyeyeballspypi:aiohappyeyeballs
1 Vorkommen2.6.1
PSF-2.0
pypiaiosignalpypi:aiosignal
1 Vorkommen1.4.0
Apache-2.0
pypiannotated-docpypi:annotated-doc
1 Vorkommen0.0.4
MIT
pypianyiopypi:anyio
1 Vorkommen4.13.0
MIT
pypiattrspypi:attrs
1 Vorkommen26.1.0
MIT
pypicharset-normalizerpypi:charset-normalizer
1 Vorkommen3.4.7
MIT
pypicoloramapypi:colorama
1 Vorkommen0.4.6
non-standard
pypicontourpypypi:contourpy
1 Vorkommen1.3.3
non-standard
pypicuda-bindingspypi:cuda-bindings
1 Vorkommen13.2.0
non-standard
pypicuda-pathfinderpypi:cuda-pathfinder
1 Vorkommen1.5.4
Apache-2.0
pypicuda-toolkitpypi:cuda-toolkit
1 Vorkommen13.0.2
Nicht gemeldet
pypicyclerpypi:cycler
1 Vorkommen0.12.1
non-standard
pypidillpypi:dill
1 Vorkommen0.4.1
BSD-3-Clause
pypifrozenlistpypi:frozenlist
1 Vorkommen1.8.0
Apache-2.0
pypifsspecpypi:fsspec
1 Vorkommen2026.2.0
BSD-3-Clause · non-standard
pypigradio-clientpypi:gradio-client
1 Vorkommen2.5.0
Apache-2.0
pypihf-xetpypi:hf-xet
1 Vorkommen1.5.0
Apache-2.0
pypihttpcorepypi:httpcore
1 Vorkommen1.0.9
BSD-3-Clause
pypihttptoolspypi:httptools
1 Vorkommen0.7.1
MIT
pypihttpxpypi:httpx
1 Vorkommen0.28.1
BSD-3-Clause
pypihuggingface-hubpypi:huggingface-hub
1 Vorkommen1.14.0
Apache-2.0 · non-standard
pypijoblibpypi:joblib
1 Vorkommen1.5.3
BSD-3-Clause
pypikiwisolverpypi:kiwisolver
1 Vorkommen1.5.0
non-standard
pypimarkdown-it-pypypi:markdown-it-py
1 Vorkommen4.2.0
MIT
pypimarkupsafepypi:markupsafe
1 Vorkommen3.0.3
BSD-3-Clause · non-standard
pypimatplotlibpypi:matplotlib
1 Vorkommen3.10.9
non-standard
pypimdurlpypi:mdurl
1 Vorkommen0.1.2
MIT
pypimpmathpypi:mpmath
1 Vorkommen1.3.0
non-standard
pypimultidictpypi:multidict
1 Vorkommen6.7.1
Apache-2.0
pypimultiprocesspypi:multiprocess
1 Vorkommen0.70.19
BSD-3-Clause
pypinetworkxpypi:networkx
1 Vorkommen3.6.1
BSD-3-Clause · non-standard
pypinumpypypi:numpy
1 Vorkommen2.4.4
0BSD AND BSD-3-Clause AND CC0-1.0 AND MIT AND Zlib · non-standard
pypinvidia-cublaspypi:nvidia-cublas
1 Vorkommen13.1.0.3
non-standard
pypinvidia-cuda-cuptipypi:nvidia-cuda-cupti
1 Vorkommen13.0.85
non-standard
pypinvidia-cuda-nvrtcpypi:nvidia-cuda-nvrtc
1 Vorkommen13.0.88
non-standard
pypinvidia-cuda-runtimepypi:nvidia-cuda-runtime
1 Vorkommen13.0.96
non-standard
pypinvidia-cudnn-cu13pypi:nvidia-cudnn-cu13
1 Vorkommen9.19.0.56
non-standard
pypinvidia-cufftpypi:nvidia-cufft
1 Vorkommen12.0.0.61
non-standard
pypinvidia-cufilepypi:nvidia-cufile
1 Vorkommen1.15.1.6
non-standard
pypinvidia-curandpypi:nvidia-curand
1 Vorkommen10.4.0.35
non-standard
pypinvidia-cusolverpypi:nvidia-cusolver
1 Vorkommen12.0.4.66
non-standard
pypinvidia-cusparsepypi:nvidia-cusparse
1 Vorkommen12.6.3.3
non-standard
pypinvidia-cusparselt-cu13pypi:nvidia-cusparselt-cu13
1 Vorkommen0.8.0
non-standard
pypinvidia-nccl-cu13pypi:nvidia-nccl-cu13
1 Vorkommen2.28.9
non-standard
pypinvidia-nvjitlinkpypi:nvidia-nvjitlink
1 Vorkommen13.0.88
non-standard
pypinvidia-nvshmem-cu13pypi:nvidia-nvshmem-cu13
1 Vorkommen3.4.5
non-standard
pypinvidia-nvtxpypi:nvidia-nvtx
1 Vorkommen13.0.85
Apache-2.0
pypipackagingpypi:packaging
1 Vorkommen26.2
Apache-2.0 OR BSD-2-Clause · non-standard
pypipandaspypi:pandas
1 Vorkommen3.0.3
non-standard
pypipolarspypi:polars
1 Vorkommen1.40.1
MIT · non-standard
pypipolars-runtime-32pypi:polars-runtime-32
1 Vorkommen1.40.1
MIT
pypipropcachepypi:propcache
1 Vorkommen0.5.2
Apache-2.0
pypipsutilpypi:psutil
1 Vorkommen7.2.2
BSD-3-Clause
pypipyparsingpypi:pyparsing
1 Vorkommen3.3.2
MIT
pypipyprojpypi:pyproj
1 Vorkommen3.7.2
MIT
pypipython-dateutilpypi:python-dateutil
1 Vorkommen2.9.0.post0
non-standard
pypipyyamlpypi:pyyaml
1 Vorkommen6.0.3
MIT
pypiregexpypi:regex
1 Vorkommen2026.5.9
Apache-2.0 AND CNRI-Python · non-standard
pypirichpypi:rich
1 Vorkommen15.0.0
MIT
pypisafetensorspypi:safetensors
1 Vorkommen0.7.0
non-standard
pypiscipypypi:scipy
1 Vorkommen1.17.1
non-standard
pypishellinghampypi:shellingham
1 Vorkommen1.5.4
non-standard
pypisixpypi:six
1 Vorkommen1.17.0
MIT
pypisympypypi:sympy
1 Vorkommen1.14.0
non-standard
pypithreadpoolctlpypi:threadpoolctl
1 Vorkommen3.6.0
BSD-3-Clause
pypitrackiopypi:trackio
1 Vorkommen0.25.1
MIT
pypitritonpypi:triton
1 Vorkommen3.6.0
MIT
pypityperpypi:typer
1 Vorkommen0.25.1
MIT
pypityping-extensionspypi:typing-extensions
1 Vorkommen4.15.0
PSF-2.0 · non-standard
pypitzdatapypi:tzdata
1 Vorkommen2026.2
Apache-2.0
pypiuvicornpypi:uvicorn
1 Vorkommen0.46.0
BSD-3-Clause
pypiuvlooppypi:uvloop
1 Vorkommen0.22.1
MIT
pypiwatchfilespypi:watchfiles
1 Vorkommen1.1.1
MIT
pypiwebsocketspypi:websockets
1 Vorkommen16.0
BSD-3-Clause
pypixxhashpypi:xxhash
1 Vorkommen3.7.0
BSD-2-Clause · non-standard
pypiyarlpypi:yarl
1 Vorkommen1.23.0
Apache-2.0
OSV

Zugehörige OSV-Meldungen

GHSA-248v-346w-9cwc

Certifi removes GLOBALTRUST root certificate

1 Repository10. Sept. 2026
GHSA-29pf-2h5f-8g72

HuggingFace transformers vulnerable to remote code execution

11 Repositories10. Sept. 2026
GHSA-2c2j-9gv5-cj73

Starlette has possible denial-of-service vector when parsing large files in multipart forms

4 Repositories10. Sept. 2026
GHSA-2fqr-mr3j-6wp8

aiohttp: Host-Only Cookies Become Domain Cookies After CookieJar Persistence

11 Repositories10. Sept. 2026
GHSA-2vrm-gr82-f7m5

AIOHTTP has CRLF injection through multipart part content type header construction

10 Repositories10. Sept. 2026
GHSA-2xpw-w6gg-jr37

urllib3 streaming API improperly handles highly compressed data

16 Repositories10. Sept. 2026
GHSA-3749-ghw9-m3mg

PyTorch susceptible to local Denial of Service

3 Repositories10. Sept. 2026
GHSA-37mw-44qp-f5jm

Transformers is vulnerable to ReDoS attack through its DonutProcessor class

3 Repositories10. Sept. 2026
GHSA-38jv-5279-wg99

Decompression-bomb safeguards bypassed when following HTTP redirects (streaming API)

16 Repositories10. Sept. 2026
GHSA-3wq7-rqq7-wx6j

AIOHTTP has late size enforcement for non-file multipart fields causes memory DoS

10 Repositories10. Sept. 2026
GHSA-45hq-cxwh-f6vc

Pillow `BdfFontFile`: `Image.new()` called without `_decompression_bomb_check()` — bomb protection bypass via font loading

17 Repositories10. Sept. 2026
GHSA-48p4-8xcf-vxj5

urllib3 does not control redirects in browsers and Node.js

8 Repositories10. Sept. 2026
GHSA-4fvr-rgm6-gqmc

aiohttp: HTTP/1 Pipelined Requests Queue Without Limit

11 Repositories10. Sept. 2026
GHSA-4j2p-28q2-5m79

Accelerate path traversal and denial of service via sharded checkpoint weight_map entries

4 Repositories10. Sept. 2026
GHSA-4m7w-qmgq-4wj5

aiohttp: TLS Server Hostname Override Is Ignored When Reusing HTTPS Connections

11 Repositories10. Sept. 2026
GHSA-4w7r-h757-3r74

Hugging Face Transformers vulnerable to Regular Expression Denial of Service (ReDoS) in the AdamWeightDecay optimizer

4 Repositories10. Sept. 2026
GHSA-4x4j-2g7c-83w6

Pillow: WindowsViewer.get_command() OS command injection via unescaped shell path

17 Repositories10. Sept. 2026
GHSA-5239-wwwm-4pmq

Pygments has Regular Expression Denial of Service (ReDoS) due to Inefficient Regex for GUID Matching

15 Repositories10. Sept. 2026
GHSA-53q9-r3pm-6pq6

PyTorch: `torch.load` with `weights_only=True` leads to remote code execution

1 Repository07. Aug. 2026
GHSA-54jq-c3m8-4m76

AIOHTTP vulnerable to brute-force leak of internal static file path components

8 Repositories10. Sept. 2026
GHSA-59g5-xgcq-4qw3

Denial of service (DoS) via deformation `multipart/form-data` boundary

1 Repository10. Sept. 2026
GHSA-59p9-h35m-wg4g

Hugging Face Transformers is vulnerable to ReDoS through its MarianTokenizer

4 Repositories10. Sept. 2026
GHSA-5rjg-fvgr-3xxf

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

4 Repositories10. Sept. 2026
GHSA-5rvq-cxj2-64vf

python-multipart: Quadratic-time querystring parsing with semicolon separators causes CPU denial of service

7 Repositories10. Sept. 2026
GHSA-5x94-69rx-g8h2

Pillow: `FontFile.compile()`: `Image.new()` called without `_decompression_bomb_check()`

17 Repositories10. Sept. 2026
GHSA-5xmw-vc9v-4wf2

Pillow has a heap buffer overflow with nested list coordinates

12 Repositories10. Sept. 2026
GHSA-62p4-gmf7-7g93

Pillow: Out-of-bounds read via attacker-controlled row stride on Pillow's mmap path (McIdas AREA files)

17 Repositories10. Sept. 2026
GHSA-63hf-3vf5-4wqf

AIOHTTP's C parser (llhttp) accepts null bytes and control characters in response header values - header injection/security bypass

10 Repositories10. Sept. 2026
GHSA-63hw-fmq6-xxg2

aiohttp: C HTTP Parser Bypasses max_line_size for Fragmented Lines

11 Repositories10. Sept. 2026
GHSA-65pc-fj4g-8rjx

Internationalized Domain Names in Applications (IDNA): Specially crafted inputs to idna.encode() can bypass CVE-2024-3651 fix

21 Repositories10. Sept. 2026
GHSA-69f9-5gxw-wvc2

AIOHTTP's unicode processing of header values could cause parsing discrepancies

8 Repositories10. Sept. 2026
GHSA-69w3-r845-3855

HuggingFace Transformers allows for arbitrary code execution in the `Trainer` class

11 Repositories10. Sept. 2026
GHSA-6jhg-hg63-jvvf

AIOHTTP vulnerable to denial of service through large payloads

8 Repositories10. Sept. 2026
GHSA-6jv3-5f52-599m

python-multipart: Semicolon treated as querystring field separator enables parameter smuggling

7 Repositories10. Sept. 2026
GHSA-6mq8-rvhq-8wgg

AIOHTTP's HTTP Parser auto_decompress feature is vulnerable to zip bomb

8 Repositories10. Sept. 2026
GHSA-6r8x-57c9-28j4

Pillow: Heap out-of-bounds write `Image.paste()` / `Image.crop()` via signed coordinate overflow

17 Repositories10. Sept. 2026
GHSA-6rvg-6v2m-4j46

Transformers Regular Expression Denial of Service (ReDoS) vulnerability

1 Repository13. Aug. 2026
GHSA-768j-98cg-p3fv

fontTools is Vulnerable to Arbitrary File Write and XML injection in fontTools.varLib

7 Repositories10. Sept. 2026
GHSA-7f5h-v6xp-fcq8

Starlette vulnerable to O(n^2) DoS via Range header merging in ``starlette.responses.FileResponse``

6 Repositories10. Sept. 2026
GHSA-82w8-qh3p-5jfq

Starlette: request.form() limits silently ignored for application/x-www-form-urlencoded enable DoS

10 Repositories10. Sept. 2026
GHSA-86qp-5c8j-p5mr

Starlette has missing Host header validation that poisons request.url.path, bypassing path-based security checks

10 Repositories10. Sept. 2026
GHSA-887c-mr87-cxwp

PyTorch Improper Resource Shutdown or Release vulnerability

8 Repositories10. Sept. 2026
GHSA-8v84-f9pq-wr9x

Pillow `PcfFontFile._load_bitmaps()`: `Image.frombytes()` called without `_decompression_bomb_check()` — bomb protection bypass via PCF font loading

17 Repositories10. Sept. 2026
GHSA-9356-575x-2w9m

Hugging Face Transformers Regular Expression Denial of Service (ReDoS) vulnerability

4 Repositories10. Sept. 2026
GHSA-9548-qrrj-x5pj

AIOHTTP is vulnerable to HTTP Request/Response Smuggling through incorrect parsing of chunked trailer sections

4 Repositories10. Sept. 2026
GHSA-966j-vmvw-g2g9

AIOHTTP leaks Cookie and Proxy-Authorization headers on cross-origin redirect

10 Repositories10. Sept. 2026
GHSA-9hjg-9r4m-mvj7

Requests vulnerable to .netrc credentials leak via malicious URLs

8 Repositories10. Sept. 2026
GHSA-9hw9-ch79-4vh6

Pillow: Controlled heap out-of-bounds write in Pillow `ImageCmsTransform.apply()` via output mode mismatch

17 Repositories10. Sept. 2026
Interpretationsgrenze

Exakte Identitäten hinein, klare Grenzen hinaus

Der Collector liest begrenzte Lockfiles, SBOMs und exakte Doppelgleich-Pins an einem unveränderlichen Commit. Versionsbereiche werden nie durch Annahmen aufgelöst.

Abruf, Parsing, Zuordnung und Veröffentlichung verwenden kein generatives KI-Modell.

i6eal (2026): URBAN.KI AirGuardAI – exaktes KI-Abhängigkeitsevidenz-Dossier, Datenstand 16. Sept. 2026. https://i6eal.de/tools/ki-abhaengigkeitsatlas/repository/opencode-11301/

So liest du dieses Dossier

Belegt dieses Repository-Dossier einen Betrieb?
Nein. Es dokumentiert veröffentlichte Abhängigkeiten an einem beobachteten Commit – keine eingesetzte Umgebung.
Warum sind exakte Versionen erforderlich?
OSV- und Registermetadaten lassen sich nur mit einem beobachteten paket@version-Tupel reproduzierbar verknüpfen. Der Collector ersetzt einen Versionsbereich nie durch das neueste Release.
Bedeutet eine fehlende Zeile, dass die Abhängigkeit nicht existiert?
Nein. Sie bedeutet nur „in den begrenzten Dateien und am Repository-Prüfpunkt nicht beobachtet“. Unvollständige Bäume und Parserfehler bleiben ausdrücklich sichtbar.

Du brauchst einen dauerhaften Abhängigkeitsevidenzpfad für eine andere öffentliche Code-Kohorte?

Wir bauen quellenbasierte Datenprodukte mit stabilen Identitäten, reproduzierbaren Verknüpfungen und sichtbaren Aussagegrenzen.

Datenprojekt besprechenAlle Tools ansehen