Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Command Injection
Affects
portage
| Versions
[,3.0.69)
H
Improper Verification of Cryptographic Signature
Affects
portage
| Versions
[,3.0.69)
M
Information Exposure
CVE-2025-10282
Affects
bbot
| Versions
[,2.7.0)
M
Information Exposure
CVE-2025-10281
Affects
bbot
| Versions
[,2.7.0)
H
Directory Traversal
CVE-2025-10283
Affects
bbot
| Versions
[,2.7.0)
H
Directory Traversal
CVE-2025-10284
Affects
bbot
| Versions
[,2.7.0)
M
Improper Encoding or Escaping of Output
CVE-2025-61912
Affects
python-ldap
| Versions
[,3.4.5)
M
Improper Validation of Specified Type of Input
CVE-2025-61911
Affects
python-ldap
| Versions
[,3.4.5)
H
Allocation of Resources Without Limits or Throttling
CVE-2025-62706
Affects
authlib
| Versions
[,1.6.5)
H
Allocation of Resources Without Limits or Throttling
CVE-2025-61920
Affects
authlib
| Versions
[,1.6.5)
M
Improper Validation of Specified Type of Input
CVE-2025-61672
Affects
matrix-synapse
| Versions
[,1.138.3)
[1.139.0rc2, 1.139.1)
M
Insertion of Sensitive Information into Log File
Affects
local-deep-research
| Versions
[,1.0.0)
M
Cross-site Scripting (XSS)
Affects
local-deep-research
| Versions
[,1.0.0)
M
Open Redirect
Affects
local-deep-research
| Versions
[,1.0.0)
L
Cross-site Scripting (XSS)
Affects
behavex
| Versions
[,4.5.0)
M
Improper Input Validation
Affects
local-deep-research
| Versions
[,1.0.0)
M
Authentication Bypass by Spoofing
CVE-2025-61783
Affects
social-auth-app-django
| Versions
[,5.6.0)
H
Server-side Request Forgery (SSRF)
CVE-2025-61784
Affects
llamafactory
| Versions
[0,0.9.4)
H
Deserialization of Untrusted Data
CVE-2025-61765
Affects
python-socketio
| Versions
[0.8.0,5.14.0)
M
Server-side Request Forgery (SSRF)
CVE-2025-6242
Affects
vllm
| Versions
[0.5.0,0.11.0)
H
Allocation of Resources Without Limits or Throttling
CVE-2025-61620
Affects
vllm
| Versions
[,0.11.0)
H
Covert Timing Channel
CVE-2025-59425
Affects
vllm
| Versions
[,0.11.0)
M
Missing Authentication for Critical Function
Affects
litellm
| Versions
[,1.76.3)
H
Incorrect Authorization
Affects
litellm
| Versions
[,1.77.1)
M
Reliance on Untrusted Inputs in a Security Decision
CVE-2025-59152
Affects
litestar
| Versions
[,2.18.0)
M
Directory Traversal
CVE-2025-8917
Affects
clearml
| Versions
[,2.0.2)
M
Directory Traversal
CVE-2025-8406
Affects
zenml
| Versions
[,0.84.2)
M
CRLF Injection
Affects
aioftp
| Versions
[,0.26.3)
L
Deserialization of Untrusted Data
CVE-2025-61677
Affects
datachain
| Versions
[,0.34.2)
M
Unintended Proxy or Intermediary ('Confused Deputy')
Affects
marimo
| Versions
[0.9.20,0.16.4)