Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Regular Expression Denial of Service (ReDoS)
CVE-2026-45409
Affects
idna
| Versions
[,3.15)
C
Embedded Malicious Code
Affects
durabletask
| Versions
[1.4.1]
[1.4.2]
[1.4.3]
H
Exposure of Sensitive Information Through Environmental Variables
CVE-2026-45370
Affects
utcp-cli
| Versions
[,1.1.2)
C
Command Injection
CVE-2026-45369
Affects
utcp-cli
| Versions
[,1.1.2)
H
Deserialization of Untrusted Data
CVE-2026-31223
Affects
snorkel
| Versions
[0,]
H
Deserialization of Untrusted Data
CVE-2026-31222
Affects
snorkel
| Versions
[0,]
H
Deserialization of Untrusted Data
CVE-2026-31224
Affects
snorkel
| Versions
[0,]
C
Deserialization of Untrusted Data
CVE-2026-45829
Affects
chromadb
| Versions
[0,]
M
Origin Validation Error
CVE-2026-2611
Affects
mlflow
| Versions
[3.9.0,3.11.0rc1)
M
Origin Validation Error
CVE-2026-2611
Affects
mlflow-skinny
| Versions
[3.9.0,3.11.0rc1)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-31247
Affects
docling
| Versions
[,2.74.0)
M
Cross-site Scripting (XSS)
CVE-2026-7814
Affects
pgadmin4
| Versions
[,9.15)
H
Brute Force
CVE-2026-7820
Affects
pgadmin4
| Versions
[,9.15)
H
Deserialization of Untrusted Data
CVE-2026-7818
Affects
pgadmin4
| Versions
[,9.15)
H
UNIX Symbolic Link (Symlink) Following
CVE-2026-7819
Affects
pgadmin4
| Versions
[,9.15)
H
SQL Injection
CVE-2026-7815
Affects
pgadmin4
| Versions
[,9.15)
H
SQL Injection
CVE-2026-7816
Affects
pgadmin4
| Versions
[,9.15)
H
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
CVE-2026-31248
Affects
docling
| Versions
[0,2.91.0)
C
Deserialization of Untrusted Data
CVE-2026-31238
Affects
ludwig
| Versions
[0,0.17.1)
H
Directory Traversal
CVE-2026-7817
Affects
pgadmin4
| Versions
[,9.15)
C
Access Control Bypass
CVE-2026-7813
Affects
pgadmin4
| Versions
[,9.15)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-45554
Affects
nicegui
| Versions
[,3.12.0)
H
External Control of File Name or Path
CVE-2026-45553
Affects
nicegui
| Versions
[,3.12.0)
H
Creation of Temporary File With Insecure Permissions
CVE-2026-4137
Affects
mlflow
| Versions
[,3.11.0rc1)
H
Creation of Temporary File With Insecure Permissions
CVE-2026-4137
Affects
mlflow-skinny
| Versions
[,3.11.0rc1)
H
Creation of Temporary File With Insecure Permissions
CVE-2025-10279
Affects
mlflow-skinny
| Versions
[,3.4.0rc0)
H
Deserialization of Untrusted Data
CVE-2021-47952
Affects
jsonpickle
| Versions
[,4.0.2)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-45402
Affects
open-webui
| Versions
[,0.9.5)
M
Insertion of Sensitive Information Into Sent Data
CVE-2026-45387
Affects
open-webui
| Versions
[0.7.0,0.9.5)
M
Server-side Request Forgery (SSRF)
CVE-2026-45400
Affects
open-webui
| Versions
[0.3.31 ,0.9.5)