Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
L
Directory Traversal
CVE-2026-41140
Affects
poetry
| Versions
[,2.3.4)
H
Incorrect Authorization
CVE-2026-22682
Affects
openharness-ai
| Versions
[,0.1.6)
C
Embedded Malicious Code
Affects
kube-node-health
| Versions
[0,]
C
Embedded Malicious Code
Affects
xinference
| Versions
[2.6.0]
[2.6.1]
[2.6.2]
M
Deserialization of Untrusted Data
CVE-2026-25917
Affects
apache-airflow-core
| Versions
[,3.2.0)
H
Command Injection
CVE-2026-30623
Affects
litellm
| Versions
[1.74.2,1.83.7)
H
XML External Entity (XXE) Injection
CVE-2026-41066
Affects
lxml
| Versions
[,6.1.0)
H
Deserialization of Untrusted Data
CVE-2026-24156
Affects
nvidia-dali-cuda120
| Versions
[,2.0.0)
H
Directory Traversal
CVE-2026-35492
Affects
kedro-datasets
| Versions
[,9.3.0)
C
Incorrect Authorization
CVE-2026-35490
Affects
changedetection.io
| Versions
[,0.54.8)
H
Improper Validation of Specified Quantity in Input
CVE-2026-41168
Affects
pypdf
| Versions
[,6.10.1)
M
Deserialization of Untrusted Data
CVE-2026-5536
Affects
fedml
| Versions
[0,]
M
Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade')
CVE-2026-6550
Affects
aws-encryption-sdk
| Versions
[,3.3.1)
[4.0.0,4.0.5)
M
Directory Traversal
CVE-2026-39378
Affects
nbconvert
| Versions
[6.5.0,7.17.1)
M
Directory Traversal
CVE-2026-39377
Affects
nbconvert
| Versions
[,7.17.1)
M
Arbitrary File Upload
CVE-2026-3219
Affects
pip
| Versions
[0,]
M
Symlink Attack
CVE-2026-28684
Affects
python-dotenv
| Versions
[,1.2.2)
H
Arbitrary Code Injection
CVE-2026-5760
Affects
sglang
| Versions
[0,]
M
Cross-site Scripting (XSS)
CVE-2026-40353
Affects
wger
| Versions
[0,]
H
Missing Authorization
CVE-2026-40474
Affects
wger
| Versions
[0,]
H
Directory Traversal
CVE-2026-40256
Affects
weblate
| Versions
[,5.17)
L
Authorization Bypass Through User-Controlled Key
CVE-2026-33212
Affects
weblate
| Versions
[,5.17)
M
Missing Authorization
CVE-2026-33214
Affects
weblate
| Versions
[,5.17)
M
Symlink Attack
CVE-2026-34242
Affects
weblate
| Versions
[,5.17)
M
Server-side Request Forgery (SSRF)
CVE-2026-33440
Affects
weblate
| Versions
[,5.17)
H
Arbitrary File Upload
CVE-2026-33435
Affects
weblate
| Versions
[,5.17)
M
Directory Traversal
CVE-2026-33220
Affects
weblate
| Versions
[,5.17)
M
Server-side Request Forgery (SSRF)
CVE-2026-39845
Affects
weblate
| Versions
[,5.17)
M
Server-side Request Forgery (SSRF)
CVE-2026-34244
Affects
weblate
| Versions
[,5.17)
H
Incorrect Authorization
CVE-2026-34393
Affects
weblate
| Versions
[,5.17)