Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Arbitrary Command Injection
CVE-2026-5973
Affects
metagpt
| Versions
[0,]
C
Not Failing Securely ('Failing Open')
CVE-2026-40525
Affects
openviking
| Versions
[,0.3.9)
H
SQL Injection
CVE-2026-41496
Affects
praisonai
| Versions
[,4.5.149)
H
SQL Injection
CVE-2026-41496
Affects
praisonaiagents
| Versions
[,1.6.9)
M
Origin Validation Error
CVE-2026-40594
Affects
pyload-ng
| Versions
[,0.5.0b3.dev98)
H
Infinite loop
Affects
justhtml
| Versions
[,1.17.0)
M
Server-side Request Forgery (SSRF)
CVE-2026-6606
Affects
agentscope
| Versions
[0,]
M
Server-side Request Forgery (SSRF)
CVE-2026-6605
Affects
agentscope
| Versions
[0,]
M
Arbitrary Code Injection
CVE-2026-6603
Affects
agentscope
| Versions
[0,]
M
Server-side Request Forgery (SSRF)
CVE-2026-6604
Affects
agentscope
| Versions
[0,]
H
Arbitrary Code Injection
CVE-2026-6357
Affects
pip
| Versions
[22.1b1, 26.1)
C
Embedded Malicious Code
Affects
elementary-data
| Versions
[0.23.3]
M
Cross-site Scripting (XSS)
CVE-2026-42150
Affects
wlc
| Versions
[,2.0.0)
H
Incorrect Synchronization
CVE-2026-6607
Affects
fschat
| Versions
[0,]
C
SQL Injection
CVE-2026-42208
Affects
litellm
| Versions
[1.81.16,1.83.7)
M
Missing Authentication for Critical Function
CVE-2025-13030
Affects
django-mdeditor
| Versions
[0,]
H
Deserialization of Untrusted Data
CVE-2026-41486
Affects
ray
| Versions
[2.49.0, 2.55.0)
H
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-42203
Affects
litellm
| Versions
[1.80.5,1.83.7)
H
Command Injection
Affects
gitpython
| Versions
[3.1.30, 3.1.47)
C
Arbitrary Argument Injection
Affects
gitpython
| Versions
[,3.1.47)
L
Insufficient Granularity of Access Control
CVE-2026-35402
Affects
mcp-neo4j-cypher
| Versions
[,0.6.0)
H
Server-side Request Forgery (SSRF)
CVE-2026-33626
Affects
lmdeploy
| Versions
[,0.12.3)
M
Server-side Request Forgery (SSRF)
CVE-2026-6587
Affects
ragas
| Versions
[0.2.3,]
H
Incorrect Authorization
CVE-2026-32228
Affects
apache-airflow-core
| Versions
[,3.2.0b2)
M
Generation of Error Message Containing Sensitive Information
CVE-2026-30912
Affects
apache-airflow-core
| Versions
[,3.2.0b2)
M
Insertion of Sensitive Information Into Sent Data
CVE-2026-32690
Affects
apache-airflow-core
| Versions
[,3.2.0b2)
L
Directory Traversal
CVE-2026-41140
Affects
poetry
| Versions
[,2.3.4)
H
Incorrect Authorization
CVE-2026-22682
Affects
openharness-ai
| Versions
[,0.1.6)
C
Embedded Malicious Code
Affects
kube-node-health
| Versions
[0,]
C
Embedded Malicious Code
Affects
xinference
| Versions
[2.6.0]
[2.6.1]
[2.6.2]