Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Insertion of Sensitive Information into Log File
CVE-2026-41182
Affects
langsmith
| Versions
[,0.7.31)
M
Excessive Iteration
CVE-2026-40347
Affects
python-multipart
| Versions
[,0.0.26)
H
Arbitrary Code Injection
CVE-2026-30625
Affects
upsonic
| Versions
[,0.72.0)
H
Arbitrary Code Injection
CVE-2026-30617
Affects
langchain-chatchat
| Versions
[0,]
H
Arbitrary Command Injection
CVE-2026-5463
Affects
pymetasploit3
| Versions
[0,]
H
Insufficient Session Expiration
CVE-2026-41133
Affects
pyload-ng
| Versions
[,0.5.0b3.dev98)
M
Insufficient Session Expiration
Affects
pyload-ng
| Versions
[,0.5.0b3.dev98)
H
Deserialization of Untrusted Data
CVE-2026-1462
Affects
keras
| Versions
[,3.14.0)
H
Arbitrary Code Injection
CVE-2026-40217
Affects
litellm
| Versions
[0,]
H
LDAP Injection
CVE-2026-40606
Affects
mitmproxy
| Versions
[10.1.2, 12.2.2)
M
Cross-site Scripting (XSS)
Affects
justhtml
| Versions
[,1.15.0)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-40192
Affects
pillow
| Versions
[10.3.0,12.2.0)
H
Insertion of Sensitive Information into Log File
CVE-2025-66236
Affects
apache-airflow-task-sdk
| Versions
[,1.1.4rc1)
H
Deserialization of Untrusted Data
CVE-2026-33858
Affects
apache-airflow-task-sdk
| Versions
[1.2.0b1,1.2.0rc1)
H
Deserialization of Untrusted Data
CVE-2026-33858
Affects
apache-airflow-core
| Versions
[3.1.8,3.2.0rc1)
M
Missing Authentication for Critical Function
CVE-2026-34999
Affects
openviking
| Versions
[0.2.5,0.2.16.dev9)
H
Incomplete List of Disallowed Inputs
CVE-2026-35000
Affects
changedetection.io
| Versions
[,0.54.7)
H
Arbitrary Code Injection
CVE-2026-39891
Affects
praisonai
| Versions
[, 4.5.114)
M
Cross-site Scripting (XSS)
CVE-2026-40112
Affects
praisonai
| Versions
[,4.5.126)
H
Arbitrary Code Injection
CVE-2026-40158
Affects
praisonaiagents
| Versions
[,1.5.121)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-40115
Affects
praisonai
| Versions
[,4.5.126)
M
Declaration of Catch for Generic Exception
CVE-2026-40149
Affects
praisonai
| Versions
[,4.5.128)
M
Server-side Request Forgery (SSRF)
Affects
rembg
| Versions
[,2.0.75)
H
SQL Injection
Affects
praisonai
| Versions
[,4.5.133)
H
Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-40148
Affects
praisonai
| Versions
[,4.5.126)
M
Server-side Request Forgery (SSRF)
CVE-2026-40114
Affects
praisonai
| Versions
[,4.5.126)
H
Incorrect Authorization
Affects
praisonai
| Versions
[,4.5.126)
C
Directory Traversal
CVE-2026-40157
Affects
praisonai
| Versions
[2.8.3, 4.5.126)
M
Missing Authentication for Critical Function
CVE-2026-40151
Affects
praisonaiagents
| Versions
[,1.5.125)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-40116
Affects
praisonai
| Versions
[,4.5.126)