Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Out-of-bounds Read
Affects
libcrux-poly1305
| Versions
<0.0.5
H
Incorrect Calculation
Affects
libcrux-sha3
| Versions
<0.0.8
C
Malicious Package
Affects
acceptxmr-rs
| Versions
*
C
Malicious Package
Affects
lfest-main
| Versions
*
C
Malicious Package
Affects
bit-flags
| Versions
*
H
Allocation of Resources Without Limits or Throttling
CVE-2026-33241
Affects
salvo
| Versions
>=0.0.0
H
Directory Traversal
CVE-2026-33242
Affects
salvo
| Versions
>=0.39.0
C
Malicious Package
Affects
replit_ruspty
| Versions
*
C
Malicious Package
Affects
libusb1-main
| Versions
*
C
Malicious Package
Affects
registry-win
| Versions
*
C
Malicious Package
Affects
winx-rs
| Versions
*
C
Malicious Package
Affects
windows-service-rs
| Versions
*
C
Malicious Package
Affects
tauri-winrt-notifications
| Versions
*
H
Integer Overflow or Wraparound
CVE-2026-33040
Affects
libp2p-gossipsub
| Versions
<0.49.3
H
Out-of-bounds Read
Affects
libcrux-ml-dsa
| Versions
<0.0.8
H
Improper Verification of Cryptographic Signature
Affects
libcrux-ml-dsa
| Versions
<0.0.8
M
Information Exposure
Affects
apollo-router
| Versions
<1.61.13
>=2.0.0 <2.10.2
>=2.11.0 <2.12.1
H
Improper Certificate Validation
Affects
aws-lc-sys
| Versions
>=0.32.0 <0.39.0
C
Improper Certificate Validation
CVE-2026-4428
Affects
aws-lc-fips-sys
| Versions
>=0.13.0 <0.13.13
C
Improper Certificate Validation
CVE-2026-4428
Affects
aws-lc-sys
| Versions
>=0.15.0 <0.39.0
M
Improper Check for Certificate Revocation
Affects
rustls-webpki
| Versions
>=0.101.0 <0.103.10
>=0.104.0-alpha.1 <0.104.0-alpha.5
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-33056
Affects
tar
| Versions
<0.4.45
M
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-33055
Affects
tar
| Versions
<0.4.45
L
Interpretation Conflict
CVE-2026-32766
Affects
astral-tokio-tar
| Versions
<0.6.0
H
Use of Out-of-range Pointer Offset
CVE-2026-32829
Affects
lz4_flex
| Versions
<0.11.6
>=0.12.0 <0.12.1
M
Improper Check for Unusual or Exceptional Conditions
Affects
kora-lib
| Versions
<2.0.5
M
Improper Validation of Specified Quantity in Input
Affects
kora-lib
| Versions
<2.0.5
H
Missing Authentication for Critical Function
Affects
zeptoclaw
| Versions
<0.7.6
C
Malicious Package
Affects
tracing-ethers
| Versions
*
H
Uncaught Exception
CVE-2026-32314
Affects
yamux
| Versions
>=0.13.9