Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Stack-based Buffer Overflow
CVE-2026-25727
Affects
time-macros
| Versions
>=0.2.4 <0.2.27
M
Stack-based Buffer Overflow
CVE-2026-25727
Affects
time
| Versions
>=0.3.6 <0.3.47
M
NULL Pointer Dereference
Affects
git2
| Versions
<0.20.4
M
Incorrect Authorization
Affects
deno
| Versions
<0.3.2
M
SQL Injection
Affects
dataprof
| Versions
<0.4.5
M
Race Condition
CVE-2026-25541
Affects
bytes
| Versions
>=1.2.1 <1.11.1
M
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-25537
Affects
jsonwebtoken
| Versions
<10.3.0
M
Off-by-one Error
Affects
ml-dsa
| Versions
<0.1.0-rc.5
M
Integer Overflow or Wraparound
CVE-2026-24889
Affects
soroban-sdk
| Versions
<22.0.9
>=23.0.0 <23.5.1
>=25.0.0 <25.0.2
M
Improper Verification of Cryptographic Signature
CVE-2026-24850
Affects
ml-dsa
| Versions
<0.1.0-rc.4
H
Integer Overflow or Wraparound
CVE-2026-24783
Affects
soroban-fixed-point-math
| Versions
<1.3.1
>=1.4.0 <1.4.1
C
Use of a Broken or Risky Cryptographic Algorithm
CVE-2026-24785
Affects
clatter
| Versions
<2.2.0
H
Use After Free
Affects
oneshot
| Versions
<0.1.12
H
Untrusted Pointer Dereference
Affects
capnp-rpc
| Versions
<0.24.0
H
Untrusted Pointer Dereference
Affects
capnp-futures
| Versions
<0.24.0
H
Untrusted Pointer Dereference
Affects
capnpc
| Versions
<0.24.0
H
Untrusted Pointer Dereference
Affects
capnp
| Versions
<0.24.0
C
Improper Verification of Cryptographic Signature
CVE-2026-22696
Affects
dcap-qvl
| Versions
<0.3.9
M
Out-of-bounds Read
CVE-2026-24116
Affects
wasmtime
| Versions
>=29.0.0 <36.0.5
>=37.0.0 <40.0.3
>=41.0.0 <41.0.1
M
Out-of-bounds Read
CVE-2026-24116
Affects
wasmtime-internal-cranelift
| Versions
>=29.0.0 <36.0.5
>=37.0.0 <40.0.3
>=41.0.0 <41.0.1
H
Uncontrolled Recursion
CVE-2026-22260
Affects
suricata
| Versions
>=8.0.0-beta1 <8.0.3
M
Excessive Platform Resource Consumption within a Loop
CVE-2026-22263
Affects
suricata
| Versions
>=8.0.0-beta1 <8.0.3
M
Excessive Platform Resource Consumption within a Loop
CVE-2026-22261
Affects
suricata
| Versions
<7.0.14
>=8.0.0-beta1 <8.0.3
H
Allocation of Resources Without Limits or Throttling
CVE-2026-22258
Affects
suricata
| Versions
<7.0.14
>=8.0.0-beta1 <8.0.3
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-1386
Affects
firecracker
| Versions
<1.13.2
>=1.14.0-dev <1.14.1
H
Unintended Proxy or Intermediary ('Confused Deputy')
Affects
surrealdb-core
| Versions
<2.5.0
H
Unintended Proxy or Intermediary ('Confused Deputy')
Affects
surrealdb
| Versions
<2.5.0
M
Symlink Attack
CVE-2025-67124
Affects
miniserve
| Versions
>=0.0.0
M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
Affects
triton-vm
| Versions
>=0.41.0 <2.0.0
M
Insertion of Sensitive Information into Log File
CVE-2026-22782
Affects
rustfs
| Versions
<1.0.0-alpha.80