Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Out-of-bounds Write
Affects
vllm
| Versions
[0.10.2,0.13.0)
C
Out-of-bounds Write
CVE-2025-27363
Affects
skia-python
| Versions
[,144.0.post1)
M
Missing Authorization
CVE-2026-29070
Affects
open-webui
| Versions
[,0.8.6)
L
Authorization Bypass Through User-Controlled Key
CVE-2026-29071
Affects
open-webui
| Versions
[,0.8.6)
M
Information Exposure
CVE-2026-28786
Affects
open-webui
| Versions
[,0.8.6)
M
Heap-based Buffer Overflow
CVE-2026-2646
Affects
wolfssl
| Versions
[0,]
H
Directory Traversal
CVE-2026-32808
Affects
pyload-ng
| Versions
[0,]
H
Improper Certificate Validation
CVE-2026-32794
Affects
apache-airflow-providers-databricks
| Versions
[7.10.0rc1, 7.12.0rc1)
L
Cross-site Scripting (XSS)
CVE-2026-33044
Affects
home-assistant-frontend
| Versions
[20240202.0,20260107.2)
L
Cross-site Scripting (XSS)
CVE-2026-33045
Affects
home-assistant-frontend
| Versions
[20240202.0,20260107.2)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-28788
Affects
open-webui
| Versions
[,0.8.6)
H
Directory Traversal
CVE-2026-5027
Affects
langflow-base
| Versions
[0,]
M
Missing Authorization
CVE-2026-5022
Affects
langflow-base
| Versions
[0,]
C
Arbitrary Command Injection
CVE-2025-15379
Affects
mlflow
| Versions
[2.11.0,3.8.1)
H
Relative Path Traversal
CVE-2024-9363
Affects
haupt
| Versions
[,2.14.0)
H
Cross-site Scripting (XSS)
CVE-2026-5026
Affects
langflow-base
| Versions
[0,]
H
Missing Authorization
CVE-2026-5025
Affects
langflow-base
| Versions
[0.0.83,]
C
Arbitrary File Write via Archive Extraction (Zip Slip)
CVE-2025-15036
Affects
mlflow
| Versions
[,3.9.0rc0)
C
Arbitrary Code Injection
CVE-2026-33873
Affects
langflow-base
| Versions
[0,]
M
Arbitrary Code Injection
CVE-2026-4963
Affects
smolagents
| Versions
[1.21.0,]
H
Missing Authorization
CVE-2026-34046
Affects
langflow-base
| Versions
[,0.5.0.post1)
H
Arbitrary Code Injection
CVE-2026-33744
Affects
bentoml
| Versions
[1.4.8,1.4.37)
H
Directory Traversal
CVE-2026-34070
Affects
langchain-core
| Versions
[,1.2.22)
M
Improper Certificate Validation
CVE-2026-34073
Affects
cryptography
| Versions
[,46.0.6)
C
Command Injection
Affects
zen-ai-pentest
| Versions
[0,]
M
Improper Handling of Length Parameter Inconsistency
CVE-2026-33936
Affects
ecdsa
| Versions
[,0.19.2)
H
Unsafe Dependency Resolution
CVE-2026-27893
Affects
vllm
| Versions
[0.10.1,0.18.0)
C
Embedded Malicious Code
Affects
telnyx
| Versions
[4.87.1]
[4.87.2]
L
Server-side Request Forgery (SSRF)
CVE-2026-33682
Affects
streamlit
| Versions
[,1.54.0)
H
Command Injection
CVE-2026-27602
Affects
modoboa
| Versions
[,2.7.1)