Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Improper Handling of Length Parameter Inconsistency
CVE-2025-66960
Affects
github.com/ollama/ollama/fs/ggml
| Versions
>=0.0.0
M
Regular Expression Denial of Service (ReDoS)
CVE-2026-24001
Affects
org.webjars.npm:diff
| Versions
[0,]
H
Improper Handling of Length Parameter Inconsistency
CVE-2025-66959
Affects
github.com/ollama/ollama/fs/ggml
| Versions
>=0.0.0
H
Arbitrary Code Injection
CVE-2026-0766
Affects
open-webui
| Versions
[0,]
C
Deserialization of Untrusted Data
CVE-2026-24009
Affects
docling-core
| Versions
[2.21.0, 2.48.4)
H
Race Condition
CVE-2026-23735
Affects
@envelop/graphql-modules
| Versions
<9.1.0
M
Incomplete List of Disallowed Inputs
CVE-2025-12781
Affects
cpython
| Versions
[0,]
M
Incomplete List of Disallowed Inputs
CVE-2025-12781
Affects
python
| Versions
[,3.15.0a5)
M
Arbitrary Command Injection
CVE-2025-15367
Affects
cpython
| Versions
[0,]
M
Arbitrary Command Injection
CVE-2025-15367
Affects
python
| Versions
[0,]
M
CRLF Injection
CVE-2026-0672
Affects
cpython
| Versions
[0,]
M
CRLF Injection
CVE-2026-0672
Affects
python
| Versions
[0,]
M
Improper Neutralization
CVE-2025-11468
Affects
cpython
| Versions
[0,]
M
Improper Neutralization
CVE-2025-11468
Affects
python
| Versions
[0,]
M
CRLF Injection
CVE-2025-15282
Affects
cpython
| Versions
[0,]
M
CRLF Injection
CVE-2025-15282
Affects
python
| Versions
[0,]
M
HTTP Response Splitting
CVE-2026-0865
Affects
cpython
| Versions
[0,]
M
HTTP Response Splitting
CVE-2026-0865
Affects
python
| Versions
[0,]
H
Arbitrary Command Injection
CVE-2025-15366
Affects
cpython
| Versions
[0,]
H
Arbitrary Command Injection
CVE-2025-15366
Affects
python
| Versions
[0,]
H
Heap-based Buffer Overflow
CVE-2026-1260
Affects
google/sentencepiece
| Versions
[,0.2.1-pre1)
H
Heap-based Buffer Overflow
CVE-2026-1260
Affects
sentencepiece
| Versions
[,0.2.1)
M
Cross-site Scripting (XSS)
Affects
solspace/craft-freeform
| Versions
<5.14.7
C
Deserialization of Untrusted Data
CVE-2026-0773
Affects
upsonic
| Versions
[0,]
C
Arbitrary Code Injection
CVE-2026-0761
Affects
metagpt
| Versions
[0,]
C
Deserialization of Untrusted Data
CVE-2026-0760
Affects
metagpt
| Versions
[0,]
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-1386
Affects
firecracker
| Versions
<1.13.2
>=1.14.0-dev <1.14.1
H
Improper Certificate Validation
CVE-2024-31884
Affects
pybind/pybind11
| Versions
[0,]
H
Directory Traversal
CVE-2026-24469
Affects
frustratedProton/http-server
| Versions
[0,]
C
Eval Injection
CVE-2026-0769
Affects
lfx
| Versions
[0,]