Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Missing Authorization
CVE-2026-45350
Affects
open-webui
| Versions
[,0.8.6)
H
Information Exposure
CVE-2026-45351
Affects
open-webui
| Versions
[,0.8.9)
M
Incorrect Authorization
CVE-2026-45316
Affects
open-webui
| Versions
[,0.9.3)
H
Directory Traversal
CVE-2026-44716
Affects
pipecat-ai
| Versions
[0.0.90,1.2.0)
M
Information Exposure
CVE-2026-44226
Affects
pyload-ng
| Versions
[0,0.5.0b3.dev100)
H
Open Redirect
CVE-2026-44503
Affects
microsoft-kiota-http
| Versions
[,1.9.9)
C
Arbitrary File Write via Archive Extraction (Zip Slip)
CVE-2025-15036
Affects
mlflow-skinny
| Versions
[,3.9.0rc0)
H
Directory Traversal
CVE-2025-15031
Affects
mlflow-skinny
| Versions
[,3.9.0rc0)
H
Command Injection
CVE-2025-14287
Affects
mlflow-skinny
| Versions
[,3.8.0rc0)
H
Directory Traversal
CVE-2026-2033
Affects
mlflow-skinny
| Versions
[,3.8.0rc0)
C
Use of Default Credentials
CVE-2026-2635
Affects
mlflow-skinny
| Versions
[2.3.2,]
H
Authentication Bypass by Primary Weakness
CVE-2026-2652
Affects
mlflow
| Versions
[,3.10.0)
H
Authentication Bypass by Primary Weakness
CVE-2026-2652
Affects
mlflow-skinny
| Versions
[,3.10.0)
M
Cross-site Scripting (XSS)
CVE-2026-44899
Affects
mistune
| Versions
[,3.2.1)
M
Cross-site Scripting (XSS)
CVE-2026-44898
Affects
mistune
| Versions
[,3.2.1)
H
Allocation of Resources Without Limits or Throttling
Affects
wger
| Versions
[0,]
H
Insufficient Session Expiration
Affects
open-webui
| Versions
[,0.3.33)
H
Directory Traversal
CVE-2026-44565
Affects
open-webui
| Versions
[,0.6.10)
M
Missing Authorization
CVE-2026-44794
Affects
nautobot
| Versions
[,2.4.33)
[3.0.0a2,3.1.2)
H
Regular Expression Denial of Service (ReDoS)
CVE-2026-44796
Affects
nautobot
| Versions
[,2.4.33)
[3.0.0a2,3.1.2)
H
Server-side Request Forgery (SSRF)
CVE-2026-44797
Affects
nautobot
| Versions
[,2.4.33)
[3.0.0a2,3.1.2)
H
Exposed Dangerous Method or Function
CVE-2026-44798
Affects
nautobot
| Versions
[,2.4.33)
[3.0.0a2,3.1.2)
M
Authorization Bypass Through User-Controlled Key
CVE-2026-44570
Affects
open-webui
| Versions
[,0.6.19)
H
Missing Authorization
CVE-2026-44569
Affects
open-webui
| Versions
[,0.6.19)
H
Deserialization of Untrusted Data
CVE-2026-45134
Affects
langchain-classic
| Versions
[,1.0.7)
H
Deserialization of Untrusted Data
CVE-2026-45134
Affects
langsmith
| Versions
[,0.8.0)
H
Deserialization of Untrusted Data
CVE-2026-45134
Affects
langchain
| Versions
[,0.3.30)
H
Directory Traversal
CVE-2026-2614
Affects
mlflow-skinny
| Versions
[, 3.10.0)
H
Directory Traversal
CVE-2026-2614
Affects
mlflow
| Versions
[, 3.10.0)
H
Missing Release of Memory after Effective Lifetime
CVE-2026-44660
Affects
ujson
| Versions
[,5.12.1)