Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Server-side Request Forgery (SSRF)
CVE-2026-27826
Affects
mcp-atlassian
| Versions
[,0.17.0)
M
External Control of File Name or Path
CVE-2026-27825
Affects
mcp-atlassian
| Versions
[,0.17.0)
M
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-31815
Affects
django-unicorn
| Versions
[,0.67.0)
H
Directory Traversal
CVE-2026-32274
Affects
black
| Versions
[,26.3.1)
H
Improper Verification of Cryptographic Signature
CVE-2026-32597
Affects
pyjwt
| Versions
[,2.12.0)
L
Cross-site Scripting (XSS)
CVE-2026-32109
Affects
copyparty
| Versions
[,1.20.12)
L
Incorrect Authorization
CVE-2026-32108
Affects
copyparty
| Versions
[,1.20.12)
C
Deserialization of Untrusted Data
CVE-2026-3059
Affects
sglang
| Versions
[0.5.5,]
C
Deserialization of Untrusted Data
CVE-2026-3060
Affects
sglang
| Versions
[0,]
H
Permissive Cross-domain Policy with Untrusted Domains
Affects
mcp-memory-service
| Versions
[,10.25.1)
H
Insertion of Sensitive Information Into Sent Data
CVE-2026-30928
Affects
glances
| Versions
[,4.5.1)
H
SQL Injection
CVE-2026-30930
Affects
glances
| Versions
[,4.5.1)
M
Cross-site Scripting (XSS)
CVE-2026-30974
Affects
copyparty
| Versions
[,1.20.11)
M
Parameter Injection
Affects
tornado
| Versions
[,6.5.5)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-31958
Affects
tornado
| Versions
[,6.5.5)
H
Directory Traversal
CVE-2026-0846
Affects
nltk
| Versions
[,3.9.3)
H
Directory Traversal
CVE-2026-0847
Affects
nltk
| Versions
[,3.9.3)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-31826
Affects
pypdf
| Versions
[,6.8.0)
L
Directory Traversal
CVE-2026-29790
Affects
dbt-common
| Versions
[,1.34.2)
[1.35.0, 1.37.3)
H
Origin Validation Error
CVE-2026-25604
Affects
apache-airflow-providers-amazon
| Versions
[8.0.0,9.22.0rc1)
H
Server-side Request Forgery (SSRF)
CVE-2026-25960
Affects
vllm
| Versions
[0.14.1,0.17.0)
H
Relative Path Traversal
CVE-2026-29778
Affects
pyload-ng
| Versions
[0,]
H
Improper Control of Dynamically-Managed Code Resources
CVE-2025-69219
Affects
apache-airflow-providers-http
| Versions
[5.1.0,6.0.0rc1)
M
Information Exposure
CVE-2026-29787
Affects
mcp-memory-service
| Versions
[,10.21.0)
M
Directory Traversal
CVE-2026-29780
Affects
eml-parser
| Versions
[,2.0.1)
C
Directory Traversal
CVE-2026-29065
Affects
changedetection.io
| Versions
[,0.54.4)
H
Directory Traversal
CVE-2026-28518
Affects
openviking
| Versions
[,0.2.1)
C
Arbitrary Code Injection
CVE-2026-29039
Affects
changedetection.io
| Versions
[,0.54.4)
M
Cross-site Scripting (XSS)
CVE-2026-29038
Affects
changedetection.io
| Versions
[,0.54.4)
H
Server-side Request Forgery (SSRF)
CVE-2025-45691
Affects
ragas
| Versions
[0.2.3,0.3.0rc2)