Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
CVE-2025-65858
Affects
calibreweb
| Versions
[0,]
H
Allocation of Resources Without Limits or Throttling
Affects
sqlparse
| Versions
[,0.5.4)
M
Use of Hard-coded Cryptographic Key
CVE-2025-66454
Affects
arcade-mcp-server
| Versions
[,1.9.1)
M
Use of Hard-coded Cryptographic Key
CVE-2025-66454
Affects
arcade-mcp
| Versions
[,1.5.6)
H
Directory Traversal
CVE-2025-64712
Affects
unstructured
| Versions
[,0.18.18)
H
Insecure Default Initialization of Resource
CVE-2025-66416
Affects
mcp
| Versions
[,1.23.0)
H
Inefficient Algorithmic Complexity
CVE-2025-64460
Affects
django
| Versions
[,4.2.27)
[5.0a1, 5.1.15)
[5.2a1, 5.2.9)
H
SQL Injection
CVE-2025-13372
Affects
django
| Versions
[,4.2.27)
[5.0a1, 5.1.15)
[5.2a1, 5.2.9)
H
Arbitrary Code Injection
CVE-2025-66448
Affects
vllm
| Versions
[,0.11.1)
C
Malicious Package
Affects
logguru
| Versions
[0,]
H
Incorrect Authorization
CVE-2025-66423
Affects
trytond
| Versions
[6.0.0,6.0.70)
[7.0.0,7.0.40)
[7.2.0,7.4.21)
[7.6.0,7.6.11)
M
Information Exposure
CVE-2025-66422
Affects
trytond
| Versions
[,6.0.70)
[7.0.0,7.0.40)
[7.2.0,7.4.21)
[7.6.0,7.6.11)
H
Incorrect Authorization
CVE-2025-66424
Affects
trytond
| Versions
[6.0.0,6.0.70)
[7.0.0,7.0.40)
[7.2.0,7.4.21)
[7.6.0,7.6.11)
M
Improper Handling of Windows Device Names
CVE-2025-66221
Affects
werkzeug
| Versions
[,3.1.4)
M
XML External Entity (XXE) Injection
CVE-2025-66371
Affects
peppol-py
| Versions
[,1.1.1)
M
Cross-site Scripting (XSS)
CVE-2025-13742
Affects
pretix
| Versions
[,2025.7.2)
[2025.8.0,2025.8.1)
[2025.9.0,2025.9.1)
L
Cross-site Scripting (XSS)
CVE-2025-66040
Affects
spotipy
| Versions
[,2.25.2)
M
Use of Cache Containing Sensitive Information
CVE-2025-65681
Affects
tutor
| Versions
[0,]
H
External Control of File Name or Path
CVE-2021-4472
Affects
mistral-dashboard
| Versions
[,14.0.1)
C
Arbitrary Code Injection
CVE-2025-62593
Affects
ray
| Versions
[,2.52.0)
C
Command Injection
CVE-2025-62703
Affects
fugue
| Versions
[,0.9.3)
M
Use of Multiple Resources with Duplicate Identifier
CVE-2025-13609
Affects
keylime
| Versions
[0,7.13.0)
H
Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2025-66019
Affects
pypdf
| Versions
[,6.4.0)
H
Out-of-bounds Write
CVE-2025-62164
Affects
vllm
| Versions
[0.10.2, 0.11.1)
H
Improper Validation of Array Index
CVE-2025-62372
Affects
vllm
| Versions
[0.5.5,0.11.1)
H
Allocation of Resources Without Limits or Throttling
CVE-2025-62426
Affects
vllm
| Versions
[0.5.5, 0.11.1)
H
Template Injection
CVE-2025-65106
Affects
langchain-core
| Versions
[,0.3.80)
[0.4.0.dev0, 1.0.7)
H
Allocation of Resources Without Limits or Throttling
CVE-2025-65015
Affects
joserfc
| Versions
[,1.3.5)
[1.4.0,1.4.2)
C
Deserialization of Untrusted Data
CVE-2025-60455
Affects
modular
| Versions
[,25.6.0)
H
Missing Release of Memory after Effective Lifetime
CVE-2025-64076
Affects
cbor2
| Versions
[,5.7.1)