Prompty.Core
Prompty is an asset class and format for LLM prompts. Core library with loader, pipeline, renderers, parsers, and tracing.
Activity
- Latest release
- 1mo ago
- Total releases
- 23
- Cadence
- ~daily
- Last 12 months
- 12
Details
- License
- MIT
- First release
- Oct 25, 2024
| Version | Released | |
|---|---|---|
2.0.0-beta.4
pre
|
2.0.0-beta.4
pre
Dependencies (3)
|
|
2.0.0-beta.3
pre
|
2.0.0-beta.3
pre
Dependencies (3)
|
|
2.0.0-beta.2
pre
|
2.0.0-beta.2
pre
Dependencies (3)
|
|
2.0.0-beta.1
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-beta.1
pre
Dependencies (3)
|
|
2.0.0-alpha.11
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-alpha.11
pre
Dependencies (3)
|
|
2.0.0-alpha.10
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-alpha.10
pre
Dependencies (3)
|
|
2.0.0-alpha.9
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-alpha.9
pre
Dependencies (3)
|
|
2.0.0-alpha.8
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-alpha.8
pre
Dependencies (3)
|
|
2.0.0-alpha.7
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-alpha.7
pre
Dependencies (3)
|
|
2.0.0-alpha.6
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-alpha.6
pre
Dependencies (3)
|
|
2.0.0-alpha.2
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-alpha.2
pre
Dependencies (3)
|
|
2.0.0-alpha.1
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
2.0.0-alpha.1
pre
Dependencies (3)
|
|
0.2.3-beta
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.2.3-beta
pre
Dependencies (6)
|
|
0.2.2-beta
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.2.2-beta
pre
Dependencies (6)
|
|
0.2.1-beta
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.2.1-beta
pre
Dependencies (6)
|
|
0.2.0-beta
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.2.0-beta
pre
Dependencies (6)
|
|
0.1.0-beta
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.1.0-beta
pre
Dependencies (6)
|
|
0.0.23-alpha
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.0.23-alpha
pre
Dependencies (5)
|
|
0.0.22-alpha
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.0.22-alpha
pre
Dependencies (5)
|
|
0.0.14-alpha
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.0.14-alpha
pre
Dependencies (5)
|
|
0.0.13-alpha
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.0.13-alpha
pre
Dependencies (5)
|
|
0.0.12-alpha
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.0.12-alpha
pre
Dependencies (5)
|
|
0.0.11-alpha
pre
1 CVE
CVE-2026-53598
GHSA-wxhm-2mq7-7697
PYSEC-2026-3538
Jul 17, 2026
Prompty: Arbitrary file read via file reference expansion
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
SummaryPrompty loaders expanded Affected packages
ImpactApplications that load untrusted RemediationUpgrade to the fixed runtime version for your ecosystem. The fix makes file references secure by default: Fix detailsThe patched runtimes canonicalize file-reference targets and allowed roots before reading referenced files, reject targets outside the prompt directory by default, and add regression coverage for traversal, absolute paths, explicit allowlists, and symlink escapes. The release commit is Affected versions
0.2.3-beta
Fixed in
2.0.0-beta.2
References Updated Jul 31, 2026 · Source: OSV.dev |
0.0.11-alpha
pre
Dependencies (5)
|