Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Directory Traversal
CVE-2026-41205
Affects
mako
| Versions
[,1.3.11)
M
Excessive Iteration
CVE-2026-41313
Affects
pypdf2
| Versions
[0,]
M
Excessive Iteration
CVE-2026-41313
Affects
pypdf
| Versions
[,6.10.2)
M
Memory Allocation with Excessive Size Value
CVE-2026-41312
Affects
pypdf2
| Versions
[0,]
M
Memory Allocation with Excessive Size Value
CVE-2026-41312
Affects
pypdf
| Versions
[,6.10.2)
M
Memory Allocation with Excessive Size Value
CVE-2026-41314
Affects
pypdf2
| Versions
[0,]
M
Memory Allocation with Excessive Size Value
CVE-2026-41314
Affects
pypdf
| Versions
[,6.10.2)
M
Cross-site Request Forgery (CSRF)
CVE-2026-41425
Affects
authlib
| Versions
[,1.6.11)
L
Server-side Request Forgery (SSRF)
CVE-2026-41488
Affects
langchain-openai
| Versions
[,1.1.14)
M
Server-side Request Forgery (SSRF)
CVE-2026-41481
Affects
langchain-text-splitters
| Versions
[,1.1.2)
M
Insertion of Sensitive Information Into Sent Data
CVE-2026-25219
Affects
apache-airflow-core
| Versions
[,3.1.8rc1)
L
Arbitrary Code Injection
CVE-2025-54550
Affects
apache-airflow-core
| Versions
[,3.2.0b2)
M
Insertion of Sensitive Information into Log File
CVE-2026-31987
Affects
apache-airflow-core
| Versions
[,3.2.0b2)
M
Modification of Assumed-Immutable Data (MAID)
Affects
justhtml
| Versions
[,1.16.0)
M
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-40683
Affects
keystone
| Versions
[,26.1.1)
[27.0.0.0rc1,27.0.1)
[28.0.0.0rc1,28.0.1)
M
Insertion of Sensitive Information into Log File
CVE-2026-41182
Affects
langsmith
| Versions
[,0.7.31)
M
Excessive Iteration
CVE-2026-40347
Affects
python-multipart
| Versions
[,0.0.26)
H
Arbitrary Code Injection
CVE-2026-30625
Affects
upsonic
| Versions
[,0.72.0)
H
Arbitrary Code Injection
CVE-2026-30617
Affects
langchain-chatchat
| Versions
[0,]
H
Arbitrary Command Injection
CVE-2026-5463
Affects
pymetasploit3
| Versions
[0,]
H
Insufficient Session Expiration
CVE-2026-41133
Affects
pyload-ng
| Versions
[,0.5.0b3.dev98)
M
Insufficient Session Expiration
Affects
pyload-ng
| Versions
[,0.5.0b3.dev98)
H
Deserialization of Untrusted Data
CVE-2026-1462
Affects
keras
| Versions
[,3.12.1)
[3.13.0,3.13.2)
H
Arbitrary Code Injection
CVE-2026-40217
Affects
litellm
| Versions
[,1.83.9)
H
LDAP Injection
CVE-2026-40606
Affects
mitmproxy
| Versions
[10.1.2, 12.2.2)
M
Cross-site Scripting (XSS)
Affects
justhtml
| Versions
[,1.15.0)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-40192
Affects
pillow
| Versions
[10.3.0,12.2.0)
H
Insertion of Sensitive Information into Log File
CVE-2025-66236
Affects
apache-airflow-task-sdk
| Versions
[,1.1.4rc1)
H
Deserialization of Untrusted Data
CVE-2026-33858
Affects
apache-airflow-task-sdk
| Versions
[1.2.0b1,1.2.0rc1)
H
Deserialization of Untrusted Data
CVE-2026-33858
Affects
apache-airflow-core
| Versions
[3.1.8,3.2.0rc1)