Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Deserialization of Untrusted Data
CVE-2026-0773
Affects
upsonic
| Versions
[0,]
C
Arbitrary Code Injection
CVE-2026-0761
Affects
metagpt
| Versions
[0,]
C
Deserialization of Untrusted Data
CVE-2026-0760
Affects
metagpt
| Versions
[0,]
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-1386
Affects
firecracker
| Versions
<1.13.2
>=1.14.0-dev <1.14.1
H
Improper Certificate Validation
CVE-2024-31884
Affects
pybind/pybind11
| Versions
[0,]
H
Directory Traversal
CVE-2026-24469
Affects
frustratedProton/http-server
| Versions
[0,]
C
Eval Injection
CVE-2026-0769
Affects
lfx
| Versions
[0,]
C
Eval Injection
CVE-2026-0769
Affects
langflow
| Versions
[0,]
H
Arbitrary Code Injection
CVE-2026-0771
Affects
lfx
| Versions
[0,]
H
Arbitrary Code Injection
CVE-2026-0771
Affects
langflow
| Versions
[0,]
H
Unsafe Dependency Resolution
CVE-2026-0770
Affects
lfx
| Versions
[0,]
H
Unsafe Dependency Resolution
CVE-2026-0770
Affects
langflow
| Versions
[0,]
C
Arbitrary Code Injection
CVE-2026-0768
Affects
lfx
| Versions
[0,]
C
Arbitrary Code Injection
CVE-2026-0768
Affects
langflow
| Versions
[0,]
H
Deserialization of Untrusted Data
CVE-2026-0772
Affects
langflow-base
| Versions
[0,]
H
Deserialization of Untrusted Data
CVE-2026-0772
Affects
langflow
| Versions
[0,]
M
LDAP Injection
CVE-2026-24130
Affects
moonraker
| Versions
[,0.10.0)
H
Arbitrary Command Injection
CVE-2026-24132
Affects
@orval/mock
| Versions
<7.20.0
>=8.0.0-rc.0 <8.0.3
H
Cross-site Scripting (XSS)
CVE-2026-23499
Affects
saleor
| Versions
[0,]
M
Information Exposure
CVE-2026-24422
Affects
thorsten/phpmyfaq
| Versions
<4.1.0-alpha
H
Improper Authorization
CVE-2026-24421
Affects
thorsten/phpmyfaq
| Versions
<4.1.0-alpha
H
Access Control Bypass
CVE-2026-24420
Affects
thorsten/phpmyfaq
| Versions
<4.1.0-alpha
H
Unintended Proxy or Intermediary ('Confused Deputy')
Affects
surrealdb-core
| Versions
<2.5.0
H
Unintended Proxy or Intermediary ('Confused Deputy')
Affects
surrealdb
| Versions
<2.5.0
H
Cross-site Scripting (XSS)
CVE-2026-22849
Affects
saleor
| Versions
[0,]
H
Heap-based Buffer Overflow
CVE-2025-15059
Affects
gimp
| Versions
[0,]
M
Symlink Attack
CVE-2026-23893
Affects
opencryptoki/opencryptoki
| Versions
[0,]
H
Improper Input Validation
CVE-2026-24403
Affects
InternationalColorConsortium/DemoIccMAX
| Versions
[0,]
M
Cross-site Scripting (XSS)
CVE-2025-71177
Affects
lavalite/cms
| Versions
>=0.0.0
M
Symlink Attack
CVE-2025-67124
Affects
miniserve
| Versions
>=0.0.0