Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Arbitrary Code Injection
CVE-2026-0761
Affects
metagpt
| Versions
[0,]
C
Deserialization of Untrusted Data
CVE-2026-0760
Affects
metagpt
| Versions
[0,]
C
Eval Injection
CVE-2026-0769
Affects
lfx
| Versions
[0,]
C
Eval Injection
CVE-2026-0769
Affects
langflow
| Versions
[0,]
H
Arbitrary Code Injection
CVE-2026-0771
Affects
lfx
| Versions
[0,]
H
Arbitrary Code Injection
CVE-2026-0771
Affects
langflow
| Versions
[0,]
H
Unsafe Dependency Resolution
CVE-2026-0770
Affects
lfx
| Versions
[0,]
H
Unsafe Dependency Resolution
CVE-2026-0770
Affects
langflow
| Versions
[0,]
C
Arbitrary Code Injection
CVE-2026-0768
Affects
lfx
| Versions
[0,]
C
Arbitrary Code Injection
CVE-2026-0768
Affects
langflow
| Versions
[0,]
H
Deserialization of Untrusted Data
CVE-2026-0772
Affects
langflow-base
| Versions
[0,]
H
Deserialization of Untrusted Data
CVE-2026-0772
Affects
langflow
| Versions
[0,]
M
LDAP Injection
CVE-2026-24130
Affects
moonraker
| Versions
[,0.10.0)
H
Cross-site Scripting (XSS)
CVE-2026-23499
Affects
saleor
| Versions
[0,]
H
Cross-site Scripting (XSS)
CVE-2026-22849
Affects
saleor
| Versions
[0,]
H
Authorization Bypass Through User-Controlled Key
CVE-2026-24136
Affects
saleor
| Versions
[0,]
H
Uncontrolled Recursion
CVE-2026-0994
Affects
protobuf
| Versions
[,5.29.6)
[6.30.0rc1, 6.33.5)
H
Arbitrary Code Injection
CVE-2026-22807
Affects
vllm
| Versions
[0.10.1,0.14.0)
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-23986
Affects
copier
| Versions
[,9.11.2)
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-23968
Affects
copier
| Versions
[,9.11.2)
H
Deserialization of Untrusted Data
CVE-2026-23946
Affects
tendenci
| Versions
[,15.3.12)
M
Timing Attack
CVE-2026-23996
Affects
fastapi-api-key
| Versions
[,1.1.0)
H
Directory Traversal
CVE-2026-24049
Affects
wheel
| Versions
[,0.46.2)
H
Improper Input Validation
CVE-2025-66902
Affects
websocket-server
| Versions
[0,]
H
Arbitrary Code Injection
CVE-2025-33233
Affects
transformers4rec
| Versions
[0,]
C
Deserialization of Untrusted Data
CVE-2025-56005
Affects
ply
| Versions
[0,]
M
Directory Traversal
CVE-2026-23877
Affects
swingmusic
| Versions
[,2.1.4)
H
Missing Release of Resource after Effective Lifetime
CVE-2026-23842
Affects
chatterbot
| Versions
[,1.2.11)
C
Authentication Bypass by Spoofing
CVE-2026-22797
Affects
keystonemiddleware
| Versions
[10.5.0,10.12.1)
M
Integer Overflow or Wraparound
CVE-2026-23833
Affects
esphome
| Versions
[2025.9.0,2025.12.7)