Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo
cocoapods
Composer
Conan
Go
hex
Maven
npm
NuGet
pip
pub
RubyGems
Swift
Unmanaged (C/C++)
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
VULNERABILITY
AFFECTS
TYPE
PUBLISHED
M
Information Exposure Through Log Files
ops
[2.0.0,2.15.0)
pip
23 Jul 2024
M
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
apache-airflow
[,2.9.3)
pip
23 Jul 2024
H
Improper Control of Generation of Code ('Code Injection')
apache-airflow
[2.4.0,2.9.3)
pip
23 Jul 2024
H
XML External Entity (XXE) Injection
guardrails-ai
[,0.5.0)
pip
21 Jul 2024
M
Cross-site Scripting (XSS)
siyuan
[0,]
pip
21 Jul 2024
H
Directory Traversal
lollms
[,9.5.1)
pip
21 Jul 2024
L
Cleartext Transmission of Sensitive Information
puncia
[,0.21)
pip
21 Jul 2024
M
Cross-site Scripting (XSS)
calibreweb
[,0.6.22)
pip
21 Jul 2024
L
Information Exposure
sentry-sdk
[,2.8.0)
pip
19 Jul 2024
M
Cross-site Scripting (XSS)
roundup
[,2.4.0)
pip
18 Jul 2024
M
Cross-site Scripting (XSS)
roundup
[,2.4.0)
pip
18 Jul 2024
M
Cross-site Scripting (XSS)
roundup
[,2.4.0)
pip
18 Jul 2024
C
Malicious Package
cipherbcrypt
[0,]
pip
18 Jul 2024
M
Denial of Service (DoS)
fiona
[,1.10b2)
pip
17 Jul 2024
L
SQL Injection
apache-superset
[,4.0.2)
pip
17 Jul 2024
L
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
dbt-core
[0,1.6.14)
[1.7.0,1.7.14)
pip
17 Jul 2024
M
Observable Response Discrepancy
fastapi-opa
[,2.0.1)
pip
16 Jul 2024
M
Path Traversal
xmind2testcase
[0,]
pip
16 Jul 2024
H
Improper Control of Generation of Code ('Code Injection')
setuptools
[,70.0.0)
pip
15 Jul 2024
H
Directory Traversal
solara
[,1.35.1)
pip
14 Jul 2024
C
Arbitrary File Write via Archive Extraction
aim
[0,]
pip
12 Jul 2024
M
Incorrect Authorization
red-discordbot
[3.5.0,3.5.10)
pip
12 Jul 2024
H
Arbitrary Code Execution
langchain-experimental
[0.0.15, 0.0.21)
pip
12 Jul 2024
H
Regular Expression Denial of Service (ReDoS)
wagtail
[,5.2.6)
[6.0,6.0.6)
[6.1,6.1.3)
pip
11 Jul 2024
M
Timing Attack
django
[,4.2.14)
[5.0a1,5.0.7)
pip
10 Jul 2024
M
Directory Traversal
django
[,4.2.14)
[5.0a1,5.0.7)
pip
10 Jul 2024
M
Denial of Service (DoS)
django
[,4.2.14)
[5.0a1,5.0.7)
pip
10 Jul 2024
M
Denial of Service (DoS)
django
[,4.2.14)
[5.0a1,5.0.7)
pip
10 Jul 2024
H
Resource Exhaustion
aim
[0,]
pip
10 Jul 2024
M
Open Redirect
khoj-assistant
[,1.14.0)
pip
9 Jul 2024