Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
UNIX Symbolic Link (Symlink) Following
CVE-2025-10854
Affects
txtai
| Versions
[,9.0.1)
C
External Control of File Name or Path
CVE-2025-6237
Affects
invokeai
| Versions
[,6.7.0)
C
Malicious Package
Affects
secmeasure
| Versions
[0,]
C
Malicious Package
Affects
sisaws
| Versions
[0,]
H
Improper Control of Dynamically-Managed Code Resources
CVE-2025-9905
Affects
keras
| Versions
[,3.11.3)
H
Deserialization of Untrusted Data
CVE-2025-9906
Affects
keras
| Versions
[,3.11.0)
M
Directory Traversal
CVE-2025-6853
Affects
langchain-chatchat
| Versions
[0,]
H
Deserialization of Untrusted Data
CVE-2025-10157
Affects
picklescan
| Versions
[,0.0.31)
M
Deserialization of Untrusted Data
CVE-2025-10164
Affects
sglang
| Versions
[0.4.5.post1,0.5.4.post1)
M
Arbitrary Command Injection
CVE-2025-59376
Affects
mcp-kubernetes-server
| Versions
[0,]
M
Command Injection
CVE-2025-59377
Affects
mcp-kubernetes-server
| Versions
[0, 0.1.12)
C
Deserialization of Untrusted Data
CVE-2025-53002
Affects
llamafactory
| Versions
[0,0.9.4)
M
Use of a Broken or Risky Cryptographic Algorithm
Affects
hydrolib-core
| Versions
[,0.9.1)
H
Directory Traversal
Affects
mapproxy
| Versions
[,4.0.2)
M
Missing Release of Memory after Effective Lifetime
CVE-2020-26683
Affects
pymupdf
| Versions
[,1.18.0)
H
XML External Entity (XXE) Injection
CVE-2025-6985
Affects
langchain-text-splitters
| Versions
[,0.3.9)
H
Directory Traversal
Affects
kwik
| Versions
[,1.2.0)
M
Incorrect Default Permissions
Affects
docksible
| Versions
[,0.8.2)
M
Zip Slip
CVE-2025-58755
Affects
monai
| Versions
[,1.5.1)
M
Uncontrolled Recursion
CVE-2025-46206
Affects
pymupdfpro
| Versions
[,1.26.1)
M
Uncontrolled Recursion
CVE-2025-46206
Affects
pymupdf
| Versions
[,1.26.0)
C
External Control of System or Configuration Setting
Affects
django-stubs
| Versions
[,5.2.0)
M
Arbitrary Command Injection
CVE-2025-50688
Affects
twisted
| Versions
[0,]
M
Missing Authorization
CVE-2025-58753
Affects
copyparty
| Versions
[,1.19.8)
M
Improper Validation of Certificate Expiration
CVE-2025-59036
Affects
infrahub-server
| Versions
[,1.3.9)
[1.4.0,1.4.5)
H
Improper Control of Interaction Frequency
Affects
django-smart-ratelimit
| Versions
[,0.3.2)
M
Template Injection
Affects
mindsdb
| Versions
[,25.7.3.0)
H
Origin Validation Error
CVE-2025-10193
Affects
mcp-neo4j-cypher
| Versions
[0.2.2,0.4.0)
L
Brute Force
CVE-2025-57815
Affects
ethyca-fides
| Versions
[,2.69.1)
H
Missing Authorization
CVE-2025-57817
Affects
ethyca-fides
| Versions
[,2.69.1)