Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Incorrect Authorization
Affects
bluechi
| Versions
[,1.0.0)
M
Cross-site Scripting (XSS)
Affects
httpbin
| Versions
[0,)
H
Deserialization of Untrusted Data
Affects
lmdeploy
| Versions
[,0.11.1)
H
Deserialization of Untrusted Data
Affects
smolagents
| Versions
[0,]
H
Deserialization of Untrusted Data
Affects
accelerate
| Versions
[0,]
H
Deserialization of Untrusted Data
Affects
diffusers
| Versions
[0,]
H
Arbitrary Code Injection
Affects
transformers
| Versions
[0,]
H
Arbitrary Code Injection
Affects
transformers
| Versions
[0,]
H
Deserialization of Untrusted Data
Affects
transformers
| Versions
[0,]
H
Deserialization of Untrusted Data
Affects
transformers
| Versions
[0,]
H
Deserialization of Untrusted Data
Affects
transformers
| Versions
[0,5.0.0rc1)
H
Arbitrary Code Injection
Affects
transformers
| Versions
[0,]
H
Deserialization of Untrusted Data
Affects
transformers
| Versions
[0,]
H
Deserialization of Untrusted Data
Affects
transformers
| Versions
[0,]
C
Deserialization of Untrusted Data
Affects
langchain-core
| Versions
[,0.3.81)
[0.4.0.dev0,1.2.5)
M
Directory Traversal
Affects
homeassistant
| Versions
[,2025.8.0b4)
H
Server-side Request Forgery (SSRF)
Affects
local-deep-research
| Versions
[1.3.0,1.3.9)
M
Asymmetric Resource Consumption (Amplification)
Affects
marshmallow
| Versions
[3.0.0rc1,3.26.2)
[4.0.0,4.1.2)
H
External Control of File Name or Path
Affects
langflow-base
| Versions
[,0.7.0)
H
Server-side Request Forgery (SSRF)
Affects
langflow-base
| Versions
[,0.7.0)
H
Authorization Bypass Through User-Controlled Key
Affects
pretix
| Versions
[,2025.8.3)
[2025.9.0,2025.9.3)
[2025.10.0,2025.10.1)
H
Authorization Bypass Through User-Controlled Key
Affects
pretix
| Versions
[,2025.8.3)
[2025.9.0,2025.9.3)
[2025.10.0,2025.10.1)
M
Server-side Request Forgery (SSRF)
Affects
cowrie
| Versions
[,2.9.0)
M
Cross-site Request Forgery (CSRF)
Affects
fastapi-users
| Versions
[,15.0.2)
M
Arbitrary File Upload
Affects
weblate
| Versions
[,5.15.1)
M
Directory Traversal
Affects
weblate
| Versions
[,5.15.1)
L
XML External Entity (XXE) Injection
Affects
biopython
| Versions
[0,]
M
Arbitrary Argument Injection
Affects
mcp-server-git
| Versions
[,2025.12.18)
M
Directory Traversal
Affects
mcp-server-git
| Versions
[,2025.11.25)
H
Missing Authentication for Critical Function
Affects
open-webui
| Versions
[0,]