Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Improper Verification of Cryptographic Signature
CVE-2025-68113
Affects
altcha
| Versions
<1.0.0
H
Incorrect Authorization
CVE-2025-48044
Affects
ash
| Versions
>=3.6.3 <3.7.1
H
Incorrect Authorization
CVE-2025-48043
Affects
ash
| Versions
<3.6.2
H
Incorrect Authorization
CVE-2025-48042
Affects
ash
| Versions
<3.5.39
L
Missing Release of Resource after Effective Lifetime
CVE-2025-3864
Affects
hackney
| Versions
<1.24.0
M
Missing Authentication for Critical Function
CVE-2025-32782
Affects
ash_authentication
| Versions
<4.7.0
M
Improper Privilege Management
CVE-2025-25202
Affects
ash_authentication
| Versions
>=4.1.0 <4.4.9
M
Server-side Request Forgery (SSRF)
CVE-2025-1211
Affects
hackney
| Versions
<1.21.0
M
Files or Directories Accessible to External Parties
CVE-2024-49756
Affects
ash_postgres
| Versions
<2.4.10
H
Insufficient Verification of Data Authenticity
CVE-2019-1000013
Affects
hex_core
| Versions
<0.4.0
M
Origin Validation Error
CVE-2022-42975
Affects
phoenix
| Versions
<1.6.14
H
Denial of Service (DoS)
CVE-2019-11287
Affects
rabbit_common
| Versions
>=3.7.0 <3.7.21
>=3.8.0 <3.8.1
M
Uncontrolled Resource Consumption ('Resource Exhaustion')
CVE-2024-31209
Affects
oidcc
| Versions
>=3.0.0 <3.0.2
>=3.1.0 <3.1.2
>=3.2.0-beta.1 <3.2.0-beta.3
M
Resource Exhaustion
CVE-2023-50966
Affects
jose
| Versions
<1.11.7
M
Insufficient Session Expiration
CVE-2024-25718
Affects
samly
| Versions
<1.4.0
M
Denial of Service (DoS)
CVE-2023-46118
Affects
rabbit_common
| Versions
<3.11.24
>=3.12.0-rc.1 <3.12.7
L
Path Traversal
CVE-2023-5588
Affects
pleroma
| Versions
*
C
Improper Control of Generation of Code ('Code Injection')
CVE-2023-45312
Affects
mtproto_proxy
| Versions
>=0.0.0
M
Improper Validation of Certificate Expiration
CVE-2023-42446
Affects
pow
| Versions
>=1.0.14 <1.0.34
C
Arbitrary Code Execution
CVE-2023-35174
Affects
livebook
| Versions
>=0.8.0 <0.8.2
>=0.9.0 <0.9.3
L
Cross-site Scripting (XSS)
CVE-2019-11291
Affects
rabbit_common
| Versions
>=3.7.0 <3.7.20
>=3.8.0 <3.8.1
C
Improper Verification of Cryptographic Signature
CVE-2021-43568
Affects
starkbank_ecdsa
| Versions
>=1.0.0 <1.0.1
H
NULL Pointer Dereference
CVE-2017-20166
Affects
ecto
| Versions
<2.2.1
M
Cross-site Scripting (XSS)
CVE-2021-46871
Affects
phoenix_html
| Versions
>=3.0.0 <3.0.4
C
Remote Code Execution (RCE)
CVE-2020-15150
Affects
paginator
| Versions
<1.0.0
H
Improper Input Validation
CVE-2017-1000052
Affects
plug
| Versions
>=1.3.0 <1.3.2
>=1.2.0-rc.0 <1.2.3
>=1.1.0 <1.1.7
<1.0.4
M
Open Redirect
CVE-2017-1000163
Affects
phoenix
| Versions
>=1.3.0-rc.0 <1.3.0-rc.1
>=1.2.0-rc.0 <1.2.3
>=1.1.0 <1.1.7
<1.0.5
M
HTTP Header Injection
CVE-2018-1000883
Affects
plug
| Versions
>=1.3.0 <1.3.5
>=1.2.0-rc.0 <1.2.5
>=1.1.0 <1.1.9
<1.0.6
H
Improper Input Validation
Affects
ecto
| Versions
<2.2.1
H
Arbitrary Code Execution
CVE-2017-1000053
Affects
plug
| Versions
>=1.3.0 <1.3.2
>=1.2.0-rc.0 <1.2.3
>=1.1.0 <1.1.7
<1.0.4