Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Missing Authorization
CVE-2025-58753
Affects
copyparty
| Versions
[,1.19.8)
M
Improper Validation of Certificate Expiration
CVE-2025-59036
Affects
infrahub-server
| Versions
[,1.3.9)
[1.4.0,1.4.5)
H
Improper Control of Interaction Frequency
Affects
django-smart-ratelimit
| Versions
[,0.3.2)
M
Template Injection
Affects
mindsdb
| Versions
[,25.7.3.0)
H
Origin Validation Error
CVE-2025-10193
Affects
mcp-neo4j-cypher
| Versions
[0.2.2,0.4.0)
L
Brute Force
CVE-2025-57815
Affects
ethyca-fides
| Versions
[,2.69.1)
H
Missing Authorization
CVE-2025-57817
Affects
ethyca-fides
| Versions
[,2.69.1)
M
Insufficient Session Expiration
CVE-2025-57766
Affects
ethyca-fides
| Versions
[,2.69.1)
M
Cross-site Scripting (XSS)
Affects
suitable-django-autocomplete
| Versions
[,0.6.0)
M
Cross-site Scripting (XSS)
Affects
streamlit-shortcuts
| Versions
[,1.0.1)
M
SQL Injection
Affects
sqlagg
| Versions
[,0.13.0)
M
Arbitrary Code Injection
CVE-2024-26020
Affects
anki
| Versions
[,24.6)
L
Incomplete List of Disallowed Inputs
CVE-2024-32152
Affects
anki
| Versions
[,24.6)
M
Cross-site Scripting (XSS)
CVE-2025-59035
Affects
indico
| Versions
[,3.3.8)
M
Inclusion of Functionality from Untrusted Control Sphere
CVE-2024-29073
Affects
anki
| Versions
[,24.6)
M
Cross-site Scripting (XSS)
Affects
django-aws-api-gateway-websockets
| Versions
[,1.1.0)
C
Uncontrolled Search Path Element
Affects
ramalama
| Versions
[,0.8.3)
M
Authorization Bypass Through User-Controlled Key
CVE-2025-59034
Affects
indico
| Versions
[,3.3.8)
C
Deserialization of Untrusted Data
Affects
mlrun
| Versions
[,1.10.0rc19)
C
Remote Code Execution (RCE)
Affects
mcpadapt
| Versions
[,0.0.17)
C
Arbitrary Code Execution
Affects
marimo
| Versions
[,0.12.9)
M
Insecure Randomness
Affects
bcryptify
| Versions
[,1.1.2)
M
Cross-site Scripting (XSS)
CVE-2023-41471
Affects
copyparty
| Versions
[,1.9.2)
M
Exposure of Sensitive System Information to an Unauthorized Control Sphere
Affects
opendaq
| Versions
[,3.10.3)
M
Regular Expression Denial of Service (ReDoS)
CVE-2025-6051
Affects
transformers
| Versions
[,4.53.0)
M
Improper Control of Interaction Frequency
CVE-2025-57816
Affects
ethyca-fides
| Versions
[,2.69.1)
C
Arbitrary Code Injection
Affects
llama-stack
| Versions
[,0.1.5.1)
M
Brute Force
Affects
alertwise
| Versions
[,1.0.3)
H
Improper Authentication
CVE-2025-58065
Affects
flask-appbuilder
| Versions
[,4.8.1)
H
Deserialization of Untrusted Data
CVE-2025-58756
Affects
monai
| Versions
[,1.5.1)