Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Improper Verification of Cryptographic Signature
CVE-2026-24850
Affects
ml-dsa
| Versions
<0.1.0-rc.4
H
Integer Overflow or Wraparound
CVE-2026-24783
Affects
soroban-fixed-point-math
| Versions
<1.3.1
>=1.4.0 <1.4.1
C
Use of a Broken or Risky Cryptographic Algorithm
CVE-2026-24785
Affects
clatter
| Versions
<2.2.0
H
Use After Free
Affects
oneshot
| Versions
<0.1.12
H
Untrusted Pointer Dereference
Affects
capnp-rpc
| Versions
<0.24.0
H
Untrusted Pointer Dereference
Affects
capnp-futures
| Versions
<0.24.0
H
Untrusted Pointer Dereference
Affects
capnpc
| Versions
<0.24.0
H
Untrusted Pointer Dereference
Affects
capnp
| Versions
<0.24.0
C
Improper Verification of Cryptographic Signature
CVE-2026-22696
Affects
dcap-qvl
| Versions
<0.3.9
M
Out-of-bounds Read
CVE-2026-24116
Affects
wasmtime
| Versions
>=29.0.0 <36.0.5
>=37.0.0 <40.0.3
>=41.0.0 <41.0.1
M
Out-of-bounds Read
CVE-2026-24116
Affects
wasmtime-internal-cranelift
| Versions
>=29.0.0 <36.0.5
>=37.0.0 <40.0.3
>=41.0.0 <41.0.1
H
Uncontrolled Recursion
CVE-2026-22260
Affects
suricata
| Versions
>=8.0.0-beta1 <8.0.3
M
Excessive Platform Resource Consumption within a Loop
CVE-2026-22263
Affects
suricata
| Versions
>=8.0.0-beta1 <8.0.3
M
Excessive Platform Resource Consumption within a Loop
CVE-2026-22261
Affects
suricata
| Versions
<7.0.14
>=8.0.0-beta1 <8.0.3
H
Allocation of Resources Without Limits or Throttling
CVE-2026-22258
Affects
suricata
| Versions
<7.0.14
>=8.0.0-beta1 <8.0.3
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-1386
Affects
firecracker
| Versions
<1.13.2
>=1.14.0-dev <1.14.1
H
Unintended Proxy or Intermediary ('Confused Deputy')
CVE-2026-63763
Affects
surrealdb-core
| Versions
<2.5.0
H
Unintended Proxy or Intermediary ('Confused Deputy')
CVE-2026-63763
Affects
surrealdb
| Versions
<2.5.0
M
Symlink Attack
CVE-2025-67124
Affects
miniserve
| Versions
>=0.0.0
M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
Affects
triton-vm
| Versions
>=0.41.0 <2.0.0
M
Insertion of Sensitive Information into Log File
CVE-2026-22782
Affects
rustfs
| Versions
<1.0.0-alpha.80
H
Timing Attack
CVE-2026-23519
Affects
cmov
| Versions
<0.4.4
C
Missing Cryptographic Step
CVE-2026-22863
Affects
deno_node
| Versions
<0.160.0
C
Arbitrary Command Injection
CVE-2026-22864
Affects
deno_subprocess_windows
| Versions
<0.15.0
C
Arbitrary Command Injection
CVE-2026-22864
Affects
deno_process
| Versions
<0.35.0
H
Use of a Cryptographic Primitive with a Risky Implementation
CVE-2026-22705
Affects
ml-dsa
| Versions
<0.1.0-rc.3
H
Cross-site Scripting (XSS)
CVE-2026-22257
Affects
salvo
| Versions
<0.88.1
H
Cross-site Scripting (XSS)
CVE-2026-22256
Affects
salvo
| Versions
<0.88.1
H
Incorrect Privilege Assignment
CVE-2026-22042
Affects
rustfs
| Versions
*
M
Out-of-bounds Read
Affects
mnl
| Versions
*