Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Information Exposure
CVE-2026-25509
Affects
ci4-cms-erp/ci4ms
| Versions
<0.28.5.0
M
Improper Certificate Validation
CVE-2026-1530
Affects
fog-kubevirt
| Versions
<1.5.1
H
Directory Traversal
CVE-2026-25059
Affects
github.com/openlistteam/openlist/v4/server/handles
| Versions
<4.1.10
H
Directory Traversal
CVE-2026-25059
Affects
github.com/openlistteam/openlist/server/handles
| Versions
<4.1.10
C
Missing Validation of OpenSSL Certificate
CVE-2026-25060
Affects
github.com/openlistteam/openlist/v4/internal/conf
| Versions
<4.1.10
C
Missing Validation of OpenSSL Certificate
CVE-2026-25060
Affects
github.com/openlistteam/openlist/v4/internal/bootstrap/patch/v4_1_9
| Versions
<4.1.10
C
Missing Validation of OpenSSL Certificate
CVE-2026-25060
Affects
github.com/openlistteam/openlist/v4/internal/bootstrap
| Versions
<4.1.10
H
Missing Validation of OpenSSL Certificate
CVE-2026-1778
Affects
sagemaker
| Versions
[,2.256.0)
[3.0,3.1.1)
M
Arbitrary Code Injection
CVE-2026-25481
Affects
langroid
| Versions
[,0.59.32)
C
Missing Validation of OpenSSL Certificate
CVE-2026-25060
Affects
github.com/openlistteam/openlist/internal/conf
| Versions
<4.1.10
C
Missing Validation of OpenSSL Certificate
CVE-2026-25060
Affects
github.com/openlistteam/openlist/internal/bootstrap/patch/v4_1_9
| Versions
<4.1.10
C
Missing Validation of OpenSSL Certificate
CVE-2026-25060
Affects
github.com/openlistteam/openlist/v4/internal/bootstrap/patch
| Versions
<4.1.10
C
Missing Validation of OpenSSL Certificate
CVE-2026-25060
Affects
github.com/openlistteam/openlist/internal/bootstrap
| Versions
<4.1.10
M
Off-by-one Error
Affects
ml-dsa
| Versions
<0.1.0-rc.5
H
Allocation of Resources Without Limits or Throttling
CVE-2026-24133
Affects
org.webjars.npm:jspdf
| Versions
[0,]
L
Race Condition
CVE-2026-24040
Affects
org.webjars.npm:jspdf
| Versions
[0,]
M
XML Injection
CVE-2026-24043
Affects
org.webjars.npm:jspdf
| Versions
[0,]
H
Allocation of Resources Without Limits or Throttling
CVE-2026-24133
Affects
jspdf
| Versions
<4.1.0
H
Command Injection
CVE-2026-23515
Affects
@signalk/set-system-time
| Versions
<1.4.0
H
Cross-site Scripting (XSS)
CVE-2026-23997
Affects
facturascripts/facturascripts
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2026-23476
Affects
facturascripts/facturascripts
| Versions
>=0.0.0
L
Race Condition
CVE-2026-24040
Affects
jspdf
| Versions
<4.1.0
L
Missing Authorization
CVE-2025-69207
Affects
khoj
| Versions
[0,]
M
Deserialization of Untrusted Data
Affects
picklescan
| Versions
[,1.0.1)
M
XML Injection
CVE-2026-24043
Affects
jspdf
| Versions
<4.1.0
C
Arbitrary Code Injection
CVE-2026-25142
Affects
@nyariv/sandboxjs
| Versions
<0.8.27
H
Interpretation Conflict
CVE-2026-25223
Affects
fastify
| Versions
<5.7.2
M
Allocation of Resources Without Limits or Throttling
CVE-2026-25224
Affects
fastify
| Versions
<5.7.3
L
Directory Traversal
CVE-2026-1703
Affects
pip
| Versions
[,26.0)
M
Improper Encoding or Escaping of Output
CVE-2026-0818
Affects
thunderbird
| Versions
[,140.7.1)
[141.0.0,147.0.1)