Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Authorization Bypass Through User-Controlled Key
CVE-2025-14882
Affects
pretix
| Versions
[,2025.8.3)
[2025.9.0,2025.9.3)
[2025.10.0,2025.10.1)
H
Authorization Bypass Through User-Controlled Key
CVE-2025-14881
Affects
pretix
| Versions
[,2025.8.3)
[2025.9.0,2025.9.3)
[2025.10.0,2025.10.1)
M
Server-side Request Forgery (SSRF)
CVE-2025-34469
Affects
cowrie
| Versions
[,2.9.0)
M
Cross-site Request Forgery (CSRF)
CVE-2025-68481
Affects
fastapi-users
| Versions
[,15.0.2)
M
Arbitrary File Upload
CVE-2025-68398
Affects
weblate
| Versions
[,5.15.1)
M
Directory Traversal
CVE-2025-68279
Affects
weblate
| Versions
[,5.15.1)
L
XML External Entity (XXE) Injection
CVE-2025-68463
Affects
biopython
| Versions
[0,]
M
Arbitrary Argument Injection
CVE-2025-68144
Affects
mcp-server-git
| Versions
[,2025.12.18)
M
Directory Traversal
CVE-2025-68145
Affects
mcp-server-git
| Versions
[,2025.11.25)
H
Missing Authentication for Critical Function
CVE-2025-63391
Affects
open-webui
| Versions
[0,]
H
Out-of-bounds Read
CVE-2024-31584
Affects
torch
| Versions
[,2.2.0)
M
Directory Traversal
CVE-2025-68143
Affects
mcp-server-git
| Versions
[,2025.9.25)
H
Uncontrolled Search Path Element
CVE-2025-53000
Affects
nbconvert
| Versions
[,7.17.0)
M
Cross-site Request Forgery (CSRF)
CVE-2025-14546
Affects
fastapi-sso
| Versions
[,0.19.0)
H
Incorrect Resource Transfer Between Spheres
CVE-2025-67895
Affects
apache-airflow-providers-edge3
| Versions
[,2.0.0rc1)
C
Deserialization of Untrusted Data
CVE-2025-33210
Affects
isaaclab
| Versions
[,2.3.0)
H
Insertion of Sensitive Information Into Sent Data
CVE-2025-66388
Affects
apache-airflow-task-sdk
| Versions
[1.0.0a2,1.1.4rc1)
M
Cross-site Scripting (XSS)
CVE-2025-14691
Affects
mayan-edms
| Versions
[,4.6.12)
[4.7, 4.7.8)
[4.8, 4.8.10)
[4.9, 4.9.7)
[4.10, 4.10.2)
H
UNIX Symbolic Link (Symlink) Following
CVE-2025-33225
Affects
nvidia-resiliency-ext
| Versions
[,0.5.0)
H
Race Condition
CVE-2025-33235
Affects
nvidia-resiliency-ext
| Versions
[,0.4.1)
M
Improper Verification of Cryptographic Signature
CVE-2025-68113
Affects
altcha
| Versions
[,1.0.0)
M
Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2025-68146
Affects
filelock
| Versions
[,3.20.1)
H
Deserialization of Untrusted Data
CVE-2025-67748
Affects
fickling
| Versions
[,0.1.6)
H
Deserialization of Untrusted Data
CVE-2025-67747
Affects
fickling
| Versions
[,0.1.6)
M
Improper Validation of Syntactic Correctness of Input
CVE-2025-67492
Affects
weblate
| Versions
[,5.15)
L
Incorrect User Management
CVE-2025-64725
Affects
weblate
| Versions
[,5.15)
M
Improper Authorization
CVE-2025-67715
Affects
weblate
| Versions
[,5.15)
M
Open Redirect
CVE-2025-14692
Affects
mayan-edms
| Versions
[,4.6.12)
[4.7,4.7.8)
[4.8,4.8.10)
[4.9,4.9.7)
[4.10,4.10.2)
M
Regular Expression Denial of Service (ReDoS)
CVE-2025-68142
Affects
pymdown-extensions
| Versions
[,10.16.1)
H
Improper Certificate Validation
CVE-2025-65431
Affects
django-allauth
| Versions
[,65.13.0)