Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Directory Traversal
CVE-2026-40611
Affects
github.com/go-acme/lego/challenge/http01
| Versions
<4.34.0
M
Cross-site Scripting (XSS)
CVE-2026-41067
Affects
astro
| Versions
<6.1.6
H
Command Injection
CVE-2026-30623
Affects
litellm
| Versions
[1.74.2,1.83.7)
C
Malicious Package
Affects
@bitunix/test
| Versions
*
C
Malicious Package
Affects
@usealloy/component-library
| Versions
*
C
Malicious Package
Affects
claudcode-cli
| Versions
*
C
Malicious Package
Affects
aven_types
| Versions
*
C
Malicious Package
Affects
trackora-chain
| Versions
*
C
Malicious Package
Affects
trackora-node
| Versions
*
C
Malicious Package
Affects
js-logger-pack
| Versions
*
C
Malicious Package
Affects
@usealloy/typegen
| Versions
*
C
Malicious Package
Affects
ts-utils-dev
| Versions
*
C
Malicious Package
Affects
claudcode-mcp
| Versions
*
C
Malicious Package
Affects
gleb-js
| Versions
*
C
Malicious Package
Affects
crypto-keccak-js
| Versions
*
C
Malicious Package
Affects
chai-as-encrypted
| Versions
*
C
Embedded Malicious Code
Affects
@openwebconcept/theme-owc
| Versions
>=1.0.1 <=1.0.3
C
Embedded Malicious Code
Affects
@openwebconcept/design-tokens
| Versions
>=1.0.1 <=1.0.3
C
Embedded Malicious Code
Affects
@automagik/genie
| Versions
>=4.260421.33 <=4.260421.39
C
Embedded Malicious Code
Affects
pgserve
| Versions
>=1.1.11 <=1.1.14
C
Malicious Package
Affects
@usealloy/api-contract
| Versions
*
H
XML External Entity (XXE) Injection
CVE-2026-41066
Affects
lxml
| Versions
[,6.1.0)
L
Improper Certificate Validation
Affects
rustls-webpki
| Versions
>=0.101.0 <0.103.12
>=0.104.0-alpha.1 <0.104.0-alpha.6
H
Deserialization of Untrusted Data
CVE-2026-24156
Affects
NVIDIA/DALI
| Versions
[,2.0.0)
H
Deserialization of Untrusted Data
CVE-2026-24156
Affects
nvidia-dali-cuda120
| Versions
[,2.0.0)
H
Double Free
CVE-2026-6654
Affects
thin-vec
| Versions
<0.2.16
C
Malicious Package
Affects
pretty-changelog-logger
| Versions
*
C
Malicious Package
Affects
microsoftsystem64
| Versions
*
C
Malicious Package
Affects
safe-agent-rs
| Versions
*
C
Malicious Package
Affects
logprinter
| Versions
*