Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Malicious Package
Affects
btcflip
| Versions
[0.1.0]
C
Malicious Package
Affects
btcflx
| Versions
[0.1.0]
C
Malicious Package
Affects
kotoraka
| Versions
[0.1.0]
C
Malicious Package
Affects
kotanku
| Versions
[0.1.0]
M
Server-side Request Forgery (SSRF)
CVE-2026-12372
Affects
nltk
| Versions
[,3.10.0)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-12570
Affects
keras
| Versions
[,3.15.0)
M
Missing Authorization
CVE-2026-11876
Affects
zenml
| Versions
[,0.95.0)
H
Deserialization of Untrusted Data
CVE-2026-68772
Affects
zenml
| Versions
[,0.96.3)
M
User Impersonation
CVE-2026-11922
Affects
zenml
| Versions
[,0.95.0)
M
Incorrect Authorization
CVE-2026-17529
Affects
astrbot
| Versions
[,4.26.0b9)
M
Regular Expression Denial of Service (ReDoS)
CVE-2026-23985
Affects
apache-superset
| Versions
[,6.0.0)
M
Improper Authorization
CVE-2026-23981
Affects
apache-superset
| Versions
[,6.0.0)
C
Command Injection
CVE-2026-42168
Affects
django-pyas2
| Versions
[0,]
C
Malicious Package
Affects
cubesat-upstream-driver
| Versions
[1.0.1]
H
Server-side Request Forgery (SSRF)
CVE-2026-70479
Affects
open-webui
| Versions
[0.9.6,0.11.0)
L
Missing Authorization
CVE-2026-70483
Affects
open-webui
| Versions
[0.9.6,0.11.0)
M
Incorrect Authorization
CVE-2026-70484
Affects
open-webui
| Versions
[0.7.0,0.11.0)
M
Missing Authorization
CVE-2026-70481
Affects
open-webui
| Versions
[0.5.0,0.11.0)
H
Improper Authentication
CVE-2026-70482
Affects
open-webui
| Versions
[0.8.0,0.11.0)
M
Server-side Request Forgery (SSRF)
CVE-2026-70480
Affects
open-webui
| Versions
[0.6.34,0.11.0)
M
Server-side Request Forgery (SSRF)
CVE-2026-70485
Affects
open-webui
| Versions
[0.9.0,0.11.0)
H
Improper Restriction of Rendered UI Layers or Frames
CVE-2026-70486
Affects
open-webui
| Versions
[0.9.0,0.11.0)
H
Information Exposure
CVE-2026-70491
Affects
open-webui
| Versions
[,0.11.0)
H
Cross-site Scripting (XSS)
CVE-2026-70492
Affects
open-webui
| Versions
[0.10.0,0.11.0)
M
Missing Authorization
CVE-2026-70487
Affects
open-webui
| Versions
[0.8.8,0.11.0)
M
Server-side Request Forgery (SSRF)
CVE-2026-54020
Affects
open-webui
| Versions
[,0.11.0)
H
Regular Expression Denial of Service (ReDoS)
CVE-2026-70489
Affects
open-webui
| Versions
[0.9.0,0.11.0)
H
Regular Expression Denial of Service (ReDoS)
CVE-2026-70493
Affects
open-webui
| Versions
[0.9.6,0.11.0)
M
Incorrect Authorization
CVE-2026-70490
Affects
open-webui
| Versions
[0.8.8,0.11.0)
H
Incorrect Authorization
CVE-2026-70494
Affects
open-webui
| Versions
[0.10.0,0.11.0)