datasette
condav0.65.2An open source multi-tool for exploring and publishing data
License Apache-2.0permissive32 versions1 maintainers0 deps316 weekly dl
simonw/datasette55
/ 100
Health
safe to use
[email protected] is safe to use (health: 55/100)
Update to >= 01e0558825b8f7ec17d3b691aa072daf122fcc74 to fix known vulnerabilities
Health breakdown0 – 100
15/25
maintenance
3/20
popularity
23/25
security
12/15
maturity
2/15
community
Vulnerabilities
1
1 medium
Advisories (1)
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| medium | CVE-2023-40570 | Datasette is an open source multi-tool for exploring and publishing data. This bug affects Datasette instances running a Datasette 1.0 alpha - 1.0a0, 1.0a1, 1.0a2 or 1.0a3 - in an online accessible location but with authentication enabled using a plugin such as datasette-auth-passwords. The `/-/api` API explorer endpoint could reveal the names of both databases and tables - but not their contents - to an unauthenticated user. Datasette 1.0a4 has a fix for this issue. This will block access to th | 01e0558825b8f7ec17d3b691aa072daf122fcc74 |
Health History
Dependency Tree
License Audit
API access
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/conda/datasetteFirst published · 2021-04-21 16:46:59.352000+00:00
Last updated · 2025-11-08 17:11:51.538000+00:00