Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Server-side Request Forgery (SSRF)
CVE-2026-25738
Affects
indico
| Versions
[,3.3.10)
M
Server-side Request Forgery (SSRF)
CVE-2026-26057
Affects
cisco-ai-skill-scanner
| Versions
[,1.0.2)
M
Server-side Request Forgery (SSRF)
CVE-2026-2654
Affects
smolagents
| Versions
[0,]
M
Arbitrary Argument Injection
CVE-2026-24126
Affects
weblate
| Versions
[,5.16)
C
Malicious Package
Affects
bignum
| Versions
[0,]
C
Malicious Package
Affects
bigpyx
| Versions
[0,]
C
Malicious Package
Affects
graphsync
| Versions
[0,]
C
Malicious Package
Affects
graphnode
| Versions
[0,]
C
Malicious Package
Affects
graphdict
| Versions
[0,]
C
Malicious Package
Affects
graphlibx
| Versions
[0,]
C
Malicious Package
Affects
graphex
| Versions
[0,]
H
Dynamic Variable Evaluation
CVE-2026-2415
Affects
pretix
| Versions
[,2025.9.4)
[2025.10.0,2025.10.2)
[2026.1.0,2026.1.1)
M
Server-side Request Forgery (SSRF)
CVE-2026-2531
Affects
mindsdb
| Versions
[0,]
H
Insertion of Sensitive Information Into Sent Data
CVE-2026-1777
Affects
sagemaker
| Versions
[,2.256.0)
[3.0,3.2.0)
H
Deserialization of Untrusted Data
CVE-2025-69872
Affects
diskcache
| Versions
[0,]
H
External Control of File Name or Path
CVE-2026-1669
Affects
keras
| Versions
[,3.13.2)
H
Incorrect Use of Privileged APIs
CVE-2026-22922
Affects
apache-airflow-core
| Versions
[3.1.0b1,3.1.7rc1)
H
Incorrect Authorization
CVE-2026-24098
Affects
apache-airflow-core
| Versions
[,3.1.7rc1)
M
Server-side Request Forgery (SSRF)
CVE-2026-26013
Affects
langchain-openai
| Versions
[,1.1.9)
H
Out-of-bounds Write
CVE-2026-25990
Affects
pillow
| Versions
[10.3.0,12.1.1)
M
Open Redirect
CVE-2026-25956
Affects
frappe
| Versions
[,14.99.14)
[15.0.0,15.94.0)
H
Uncaught Exception
CVE-2026-25577
Affects
emmett-core
| Versions
[,1.3.11)
C
Deserialization of Untrusted Data
CVE-2026-21531
Affects
azure-ai-language-conversations-authoring
| Versions
[,1.0.0b4)
H
Use After Free
CVE-2020-19725
Affects
z3-solver
| Versions
[,4.8.8.0)
H
Insufficient Verification of Data Authenticity
CVE-2026-26007
Affects
cryptography
| Versions
[,46.0.5)
M
Incorrect Regular Expression
CVE-2026-25479
Affects
litestar
| Versions
[,2.20.0)
M
Server-side Request Forgery (SSRF)
CVE-2026-25528
Affects
langsmith
| Versions
[0.4.10,0.6.3)
M
Improper Handling of Unicode Encoding
CVE-2026-25480
Affects
litestar
| Versions
[,2.20.0)
H
Deserialization of Untrusted Data
Affects
picklescan
| Versions
[,1.0.1)
L
Server-side Request Forgery (SSRF)
CVE-2026-25904
Affects
mcp-run-python
| Versions
[0,]