Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Incorrect Authorization
CVE-2026-35586
Affects
pyload-ng
| Versions
[,0.5.0b3.dev97)
H
Missing Authorization
CVE-2026-34538
Affects
apache-airflow-core
| Versions
[3.0.0rc1,3.2.0rc1)
H
Insufficient Session Expiration
CVE-2025-57735
Affects
apache-airflow-core
| Versions
[3.0.0rc1, 3.2.0b1)
M
Out-of-bounds Write
CVE-2026-39892
Affects
cryptography
| Versions
[45.0.0, 46.0.7)
M
Arbitrary Code Injection
CVE-2026-39888
Affects
praisonai
| Versions
[,4.5.114)
M
Arbitrary Code Injection
CVE-2026-39888
Affects
praisonaiagents
| Versions
[,1.5.114)
H
Directory Traversal
Affects
praisonai
| Versions
[,4.5.114)
H
Directory Traversal
Affects
praisonaiagents
| Versions
[,1.5.114)
H
Directory Traversal
CVE-2026-39981
Affects
agixt
| Versions
[,1.9.2)
C
Missing Authentication for Critical Function
CVE-2026-39987
Affects
marimo
| Versions
[,0.23.0)
H
Directory Traversal
CVE-2026-39844
Affects
nicegui
| Versions
[,3.10.0)
M
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-40087
Affects
langchain-core
| Versions
[,0.3.84)
[0.4.0.dev0, 1.2.28)
C
Malicious Package
Affects
license-utils-kit
| Versions
[0,]
C
Malicious Package
Affects
fluxhttp
| Versions
[0,]
C
Malicious Package
Affects
apachelicense
| Versions
[0,]
C
Malicious Package
Affects
logutilkit
| Versions
[0,]
H
Directory Traversal
CVE-2026-39308
Affects
praisonai
| Versions
[,4.5.113)
L
Cross-site Scripting (XSS)
Affects
justhtml
| Versions
[,1.14.0)
C
Improper Verification of Cryptographic Signature
CVE-2026-39413
Affects
lightrag-hku
| Versions
[,1.4.14)
H
Deserialization of Untrusted Data
Affects
monai
| Versions
[1.0.0,]
H
Use of Password Hash With Insufficient Computational Effort
Affects
litellm
| Versions
[,1.83.0)
M
Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-39373
Affects
jwcrypto
| Versions
[,1.5.7)
M
Cross-site Scripting (XSS)
CVE-2026-33865
Affects
mlflow
| Versions
[,3.11.0rc1)
M
Cross-site Scripting (XSS)
CVE-2026-33865
Affects
mlflow-skinny
| Versions
[,3.11.0rc1)
M
Missing Authorization
CVE-2026-33866
Affects
mlflow
| Versions
[,3.11.0rc1)
M
Missing Authorization
CVE-2026-33866
Affects
mlflow-skinny
| Versions
[,3.11.0rc1)
L
User Impersonation
CVE-2026-3902
Affects
django
| Versions
[4.2a1,4.2.30)
[5.0a1,5.2.13)
[6.0a1,6.0.4)
M
Missing Authorization
CVE-2026-4277
Affects
django
| Versions
[4.2a1,4.2.30)
[5.0a1,5.2.13)
[6.0a1,6.0.4)
M
Inefficient Algorithmic Complexity
CVE-2026-33033
Affects
django
| Versions
[4.2a1,4.2.30)
[5.0a1,5.2.13)
[6.0a1,6.0.4)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-33034
Affects
django
| Versions
[4.2a1,4.2.30)
[5.0a1,5.2.13)
[6.0a1,6.0.4)