Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Improper Certificate Validation
CVE-2026-25160
Affects
github.com/alistgo/alist/server/handles
| Versions
<3.57.0
C
Improper Certificate Validation
CVE-2026-25160
Affects
github.com/alistgo/alist/internal/conf
| Versions
<3.57.0
C
Improper Certificate Validation
CVE-2026-25160
Affects
github.com/alistgo/alist/internal/bootstrap
| Versions
<3.57.0
C
Improper Certificate Validation
CVE-2026-25160
Affects
github.com/alistgo/alist/drivers/webdav
| Versions
<3.57.0
C
Directory Traversal
CVE-2026-25161
Affects
github.com/alist-org/alist/v3/internal/archive/tool
| Versions
<3.57.0
C
Directory Traversal
CVE-2026-25161
Affects
github.com/alist-org/alist/v3/server/handles
| Versions
<3.57.0
C
Directory Traversal
CVE-2026-25161
Affects
github.com/alist-org/alist/v3/internal/archive/rardecode
| Versions
<3.57.0
C
Directory Traversal
CVE-2026-25161
Affects
github.com/alist-org/alist/v3/internal/archive/archives
| Versions
<3.57.0
C
Directory Traversal
CVE-2026-25161
Affects
github.com/alistgo/alist/server/handles
| Versions
<3.57.0
C
Directory Traversal
CVE-2026-25161
Affects
github.com/alistgo/alist/internal/archive/tool
| Versions
<3.57.0
C
Directory Traversal
CVE-2026-25161
Affects
github.com/alistgo/alist/internal/archive/rardecode
| Versions
<3.57.0
C
Directory Traversal
CVE-2026-25161
Affects
github.com/alistgo/alist/internal/archive/archives
| Versions
<3.57.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
github.com/chainguard-dev/apko/pkg/options
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
github.com/chainguard-dev/apko/pkg/limitio
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
github.com/chainguard-dev/apko/pkg/cpio
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
github.com/chainguard-dev/apko/pkg/build
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
github.com/chainguard-dev/apko/pkg/apk/expandapk
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
github.com/chainguard-dev/apko/pkg/apk/apk
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
github.com/chainguard-dev/apko/internal/cli
| Versions
>=0.14.8 <1.1.0
H
Command Injection
CVE-2026-25143
Affects
chainguard.dev/melange/pkg/build
| Versions
>=0.10.0 <0.40.5
H
Command Injection
CVE-2026-25143
Affects
github.com/chainguard-dev/melange/pkg/build
| Versions
>=0.10.0 <0.40.5
M
Arbitrary File Upload
CVE-2025-70849
Affects
github.com/stefanprodan/podinfo/pkg/api/http
| Versions
>=0.0.0
L
Insufficient Verification of Data Authenticity
CVE-2023-43636
Affects
github.com/lf-edge/eve/pkg/pillar/evetpm
| Versions
<8.6.0
M
Insecure Storage of Sensitive Information
CVE-2023-43634
Affects
github.com/lf-edge/eve/pkg/pillar/evetpm
| Versions
<9.4.1
M
Exposure of Sensitive System Information to an Unauthorized Control Sphere
CVE-2023-43633
Affects
github.com/lf-edge/eve/pkg/pillar/evetpm
| Versions
<8.6.0
M
Cross-site Scripting (XSS)
CVE-2026-23645
Affects
github.com/siyuan-note/siyuan/kernel/util
| Versions
<3.5.4-dev2
M
Cross-site Scripting (XSS)
CVE-2026-23645
Affects
github.com/siyuan-note/siyuan/kernel/server
| Versions
<3.5.4-dev2
H
Missing Authorization
CVE-2026-25538
Affects
github.com/devtron-labs/devtron/pkg/attributes/bean
| Versions
>=0.0.0
H
Missing Authorization
CVE-2026-25538
Affects
github.com/devtron-labs/devtron/api/resthandler
| Versions
>=0.0.0
M
Insecure Storage of Sensitive Information
CVE-2023-43631
Affects
github.com/lf-edge/eve/pkg/pillar/evetpm
| Versions
<9.4.1