Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
Affects
nicegui
| Versions
[2.22.0,3.5.0)
M
Cross-site Scripting (XSS)
Affects
@haxtheweb/haxcms-nodejs
| Versions
<25.0.0
H
Cross-site Scripting (XSS)
Affects
salvo
| Versions
<0.88.1
H
Cross-site Scripting (XSS)
Affects
salvo
| Versions
<0.88.1
H
Allocation of Resources Without Limits or Throttling
Affects
vllm
| Versions
[0.6.4,0.12.0)
H
Server-side Request Forgery (SSRF)
Affects
github.com/miniflux/v2/internal/urllib
| Versions
<2.2.16
H
Server-side Request Forgery (SSRF)
Affects
github.com/miniflux/v2/internal/ui
| Versions
<2.2.16
H
Server-side Request Forgery (SSRF)
Affects
github.com/miniflux/v2/internal/config
| Versions
<2.2.16
H
Out-of-bounds Write
Affects
llama-cpp
| Versions
[0,]
H
Out-of-bounds Write
Affects
ggerganov/llama.cpp
| Versions
[0,]
H
Stack-based Buffer Overflow
Affects
libtasn1
| Versions
[0,]
H
Stack-based Buffer Overflow
Affects
libtasn1
| Versions
[,4.21.0)
M
Symlink Attack
Affects
filelock
| Versions
[,3.20.3)
H
Incorrect Privilege Assignment
Affects
rustfs
| Versions
*
H
Authorization Bypass Through User-Controlled Key
Affects
spree_storefront
| Versions
<5.0.7
>=5.1.0.beta, <5.1.9
>=5.2.0.rc1, <5.2.5
H
Authorization Bypass Through User-Controlled Key
Affects
spree_core
| Versions
<4.10.2
>=5.0.0.rc1, <5.0.7
>=5.1.0.beta, <5.1.9
>=5.2.0.rc1, <5.2.5
C
Improper Neutralization of Special Elements Used in a Template Engine
Affects
org.open-metadata:openmetadata-service
| Versions
[,1.11.4)
M
Out-of-bounds Read
Affects
AcademySoftwareFoundation/OpenColorIO
| Versions
[0,]
M
Out-of-bounds Read
Affects
mnl
| Versions
*
M
Missing Release of Resource after Effective Lifetime
Affects
nicegui
| Versions
[2.10.0,3.5.0)
L
Symlink Attack
Affects
virtualenv
| Versions
[,20.36.1)
M
Cross-site Scripting (XSS)
Affects
nicegui
| Versions
[2.22.0,3.5.0)
M
Improper Verification of Cryptographic Signature
Affects
github.com/sigstore/cosign/v2/pkg/cosign
| Versions
>=2.0.0 <2.6.2
M
Improper Verification of Cryptographic Signature
Affects
github.com/sigstore/cosign/v3/pkg/cosign
| Versions
>=3.0.0 <3.0.4
M
Improper Verification of Cryptographic Signature
Affects
github.com/sigstore/cosign/pkg/cosign
| Versions
>=2.0.0 <2.6.2
>=3.0.0 <3.0.4
C
Use of a Broken or Risky Cryptographic Algorithm
Affects
github.com/beatt83/jose-swift
| Versions
<6.0.2
M
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization
Affects
org.keycloak:keycloak-services
| Versions
[9.0.0,]
H
Arbitrary Command Injection
Affects
github.com/tencent/weknora/internal/utils
| Versions
<0.2.5
H
Arbitrary Command Injection
Affects
github.com/tencent/weknora/internal/mcp
| Versions
<0.2.5
H
Arbitrary Command Injection
Affects
github.com/tencent/weknora/internal/application/service
| Versions
<0.2.5