Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Command Injection
CVE-2025-64111
Affects
gogs.io/gogs/internal/osutil
| Versions
<0.13.4
C
Command Injection
CVE-2025-64111
Affects
github.com/gogs/gogs/internal/osutil
| Versions
<0.13.4
C
Command Injection
CVE-2025-64111
Affects
gogs.io/gogs/internal/db
| Versions
<0.13.4
H
Command Injection
CVE-2026-24844
Affects
chainguard.dev/melange/pkg/build
| Versions
>=0.3.0 <0.40.3
H
Directory Traversal
CVE-2026-25145
Affects
chainguard.dev/melange/pkg/config
| Versions
>=0.14.0 <0.40.3
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/limitio
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/options
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/cpio
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/build
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/apk/expandapk
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/apk/apk
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/internal/cli
| Versions
>=0.14.8 <1.1.0
H
Cross-site Scripting (XSS)
CVE-2024-22199
Affects
github.com/gofiber/template/v2/django/v2
| Versions
*
M
Incorrect Authorization
CVE-2026-24851
Affects
github.com/openfga/openfga/pkg/storage
| Versions
>=1.8.5 <1.11.3
M
HTTP Request Smuggling
CVE-2025-61732
Affects
std/cmd/cgo
| Versions
<1.24.13
>=1.25.0-0 <1.25.7
M
Improper Certificate Validation
CVE-2025-68121
Affects
std/crypto/tls
| Versions
<1.24.13
>=1.25.0-0 <1.25.7
>=1.26.0-rc.1 <1.26.0-rc.3
H
Improper Validation of Specified Type of Input
CVE-2025-15566
Affects
k8s.io/ingress-nginx/internal/ingress/controller/template
| Versions
<1.12.5
>=1.13.0 <1.13.1
H
Infinite loop
CVE-2025-58190
Affects
github.com/golang/net/html
| Versions
<0.45.0
H
Infinite loop
CVE-2025-58190
Affects
golang.org/x/net/html
| Versions
<0.45.0
H
Inefficient Algorithmic Complexity
CVE-2025-47911
Affects
github.com/golang/net/html
| Versions
<0.45.0
H
Inefficient Algorithmic Complexity
CVE-2025-47911
Affects
golang.org/x/net/html
| Versions
<0.45.0
M
Relative Path Traversal
CVE-2025-22873
Affects
std/os
| Versions
<1.23.9
>=1.24.0-0 <1.24.3
H
Exposure of Private Personal Information to an Unauthorized Actor
CVE-2026-24735
Affects
github.com/apache/answer/internal/service/content
| Versions
<2.0.0-RC1
H
Exposure of Private Personal Information to an Unauthorized Actor
CVE-2026-24735
Affects
github.com/apache/answer/internal/controller
| Versions
<2.0.0-RC1
M
Cross-site Scripting (XSS)
CVE-2026-25578
Affects
github.com/navidrome/navidrome
| Versions
<0.60.0
C
Memory Allocation with Excessive Size Value
CVE-2026-25579
Affects
github.com/navidrome/navidrome/core/artwork
| Versions
<0.60.0
C
Improper Certificate Validation
CVE-2026-25160
Affects
github.com/alist-org/alist/v3/internal/conf
| Versions
<3.57.0
C
Improper Certificate Validation
CVE-2026-25160
Affects
github.com/alist-org/alist/v3/server/handles
| Versions
<3.57.0
C
Improper Certificate Validation
CVE-2026-25160
Affects
github.com/alist-org/alist/v3/internal/bootstrap
| Versions
<3.57.0
C
Improper Certificate Validation
CVE-2026-25160
Affects
github.com/alist-org/alist/v3/drivers/webdav
| Versions
<3.57.0