Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Malicious Package
Affects
a1rn
| Versions
[0,]
C
Malicious Package
Affects
1337test
| Versions
[0,]
H
User Impersonation
CVE-2026-59224
Affects
open-webui
| Versions
[,0.10.0)
H
Server-side Request Forgery (SSRF)
CVE-2026-59221
Affects
open-webui
| Versions
[0.9.6,0.10.0)
H
Missing Authorization
CVE-2026-59714
Affects
open-webui
| Versions
[0.9.5,0.10.0)
L
Incorrect Authorization
CVE-2026-59226
Affects
open-webui
| Versions
[0.9.0,0.10.0)
H
Regular Expression Denial of Service (ReDoS)
CVE-2026-59220
Affects
open-webui
| Versions
[0.9.2,0.10.0)
M
Missing Authorization
CVE-2026-59225
Affects
open-webui
| Versions
[0.8.12,0.10.0)
H
Cross-site Scripting (XSS)
CVE-2026-59214
Affects
open-webui
| Versions
[,0.10.0)
M
Protection Mechanism Failure
CVE-2026-59223
Affects
open-webui
| Versions
[,0.10.0)
M
Incorrect Authorization
CVE-2026-59227
Affects
open-webui
| Versions
[0.8.11,0.10.0)
M
Incorrect Authorization
CVE-2026-59212
Affects
open-webui
| Versions
[0.9.6,0.10.0)
M
Timing Attack
CVE-2026-59218
Affects
open-webui
| Versions
[,0.10.0)
L
Missing Authentication for Critical Function
CVE-2026-59715
Affects
open-webui
| Versions
[0.6.16,0.10.0)
H
Insufficient Session Expiration
CVE-2026-59219
Affects
open-webui
| Versions
[0.9.0,0.10.0)
M
Information Exposure
CVE-2026-59222
Affects
open-webui
| Versions
[0.7.0,0.10.0)
L
Authorization Bypass Through User-Controlled Key
CVE-2026-59215
Affects
open-webui
| Versions
[,0.10.0)
H
Missing Authorization
CVE-2026-59216
Affects
open-webui
| Versions
[,0.10.0)
M
Incorrect Authorization
CVE-2026-59217
Affects
open-webui
| Versions
[,0.10.0)
L
Use of Cache Containing Sensitive Information
CVE-2026-59213
Affects
open-webui
| Versions
[0.6.27,0.10.0)
H
Information Exposure
Affects
gitpython
| Versions
[,3.1.55)
H
Arbitrary Argument Injection
Affects
gitpython
| Versions
[,3.1.54)
H
Incomplete List of Disallowed Inputs
Affects
gitpython
| Versions
[,3.1.54)
H
Arbitrary Argument Injection
Affects
gitpython
| Versions
[,3.1.54)
C
Server-side Request Forgery (SSRF)
CVE-2026-63764
Affects
lmdeploy
| Versions
[0,]
M
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-64608
Affects
fory-compiler
| Versions
[0.15.0,1.4.0)
H
Arbitrary Argument Injection
CVE-2026-16493
Affects
ansible-core
| Versions
[,2.17.6rc1)
H
Improper Encoding or Escaping of Output
Affects
jupyterlab
| Versions
[3.3.0, 4.5.10)
[4.6.0a0, 4.6.2)
M
Incorrect Behavior Order: Validate Before Canonicalize
Affects
jupyterlab
| Versions
[,4.5.10)
[4.6.0a0, 4.6.2)
L
Not Failing Securely ('Failing Open')
Affects
jupyterlab
| Versions
[,4.5.10)
[4.6.0a0, 4.6.2)