Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Uncaught Exception
CVE-2026-25577
Affects
emmett-core
| Versions
[,1.3.11)
C
Deserialization of Untrusted Data
CVE-2026-21531
Affects
azure-ai-language-conversations-authoring
| Versions
[,1.0.0b4)
H
Use After Free
CVE-2020-19725
Affects
z3-solver
| Versions
[,4.8.8.0)
H
Insufficient Verification of Data Authenticity
CVE-2026-26007
Affects
cryptography
| Versions
[,46.0.5)
M
Incorrect Regular Expression
CVE-2026-25479
Affects
litestar
| Versions
[,2.20.0)
M
Server-side Request Forgery (SSRF)
CVE-2026-25528
Affects
langsmith
| Versions
[0.4.10,0.6.3)
M
Improper Handling of Unicode Encoding
CVE-2026-25480
Affects
litestar
| Versions
[,2.20.0)
H
Deserialization of Untrusted Data
Affects
picklescan
| Versions
[,1.0.1)
L
Server-side Request Forgery (SSRF)
CVE-2026-25904
Affects
mcp-run-python
| Versions
[0,]
L
Improper Isolation or Compartmentalization
CVE-2026-25905
Affects
mcp-run-python
| Versions
[0,]
M
Authorization Bypass Through User-Controlled Key
CVE-2026-1707
Affects
pgadmin4
| Versions
[,9.12)
H
Directory Traversal
CVE-2026-25592
Affects
semantic-kernel
| Versions
[,1.39.3)
M
Arbitrary Code Injection
CVE-2026-2008
Affects
fermat-mcp
| Versions
[0,]
M
Open Redirect
CVE-2026-25198
Affects
web2py
| Versions
[0,]
H
Arbitrary Code Injection
CVE-2026-24149
Affects
megatron-core
| Versions
[0,]
H
Information Exposure
CVE-2026-25650
Affects
mcp-salesforce-connector
| Versions
[,0.1.10)
H
Missing Authentication for Critical Function
CVE-2026-1709
Affects
keylime
| Versions
[7.12.0, 7.12.2)
[7.13.0, 7.13.1)
C
Server-side Request Forgery (SSRF)
CVE-2026-25580
Affects
pydantic-ai-slim
| Versions
[0.0.26, 1.56.0)
M
Cross-site Scripting (XSS)
CVE-2026-25640
Affects
pydantic-ai-slim
| Versions
[1.34.0, 1.51.0)
H
Open Redirect
CVE-2026-25732
Affects
nicegui
| Versions
[,3.7.0)
M
Cross-site Scripting (XSS)
CVE-2026-25516
Affects
nicegui
| Versions
[,3.7.0)
C
Embedded Malicious Code
Affects
dydx-v4-client
| Versions
[1.1.5post1]
H
Deserialization of Untrusted Data
CVE-2025-70560
Affects
boltz
| Versions
[2.0.0,]
C
Deserialization of Untrusted Data
CVE-2026-25632
Affects
epyt-flow
| Versions
[,0.16.1)
M
Missing Authentication for Critical Function
Affects
plone.app.discussion
| Versions
[,5.2.0)
M
Information Exposure
Affects
promptfoo
| Versions
[,0.1.1)
C
Arbitrary Code Execution
Affects
pymobiledevice3
| Versions
[,7.2.1)
M
Relative Path Traversal
Affects
safecmd
| Versions
[,0.1.1)
H
Allocation of Resources Without Limits or Throttling
Affects
pywebtransport
| Versions
[,0.11.1)
H
Directory Traversal
Affects
dbt-osmosis
| Versions
[,1.2.0)