Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
Affects
aiosyslogd
| Versions
[,1.0.4)
C
Insertion of Sensitive Information into Log File
CVE-2026-22778
Affects
vllm
| Versions
[0.8.3,0.14.1)
M
Inefficient Algorithmic Complexity
CVE-2026-1285
Affects
django
| Versions
[4.2a1,4.2.28)
[5.2a1,5.2.11)
[6.0a1,6.0.2)
C
SQL Injection
CVE-2026-1287
Affects
django
| Versions
[4.2a1,4.2.28)
[5.2a1,5.2.11)
[6.0a1,6.0.2)
C
SQL Injection
CVE-2026-1312
Affects
django
| Versions
[4.2a1,4.2.28)
[5.2a1,5.2.11)
[6.0a1,6.0.2)
M
Timing Attack
CVE-2025-13473
Affects
django
| Versions
[4.2a1,4.2.28)
[5.2a1,5.2.11)
[6.0a1,6.0.2)
M
Inefficient Algorithmic Complexity
CVE-2025-14550
Affects
django
| Versions
[4.2a1,4.2.28)
[5.2a1,5.2.11)
[6.0a1,6.0.2)
H
SQL Injection
CVE-2026-1207
Affects
django
| Versions
[,4.2.28)
[5.0a1,5.2.11)
[6.0a1,6.0.2)
H
Command Injection
CVE-2020-37002
Affects
ajenti
| Versions
[0,]
M
Missing Authorization
CVE-2026-25517
Affects
wagtail
| Versions
[,6.3.6)
[6.4rc1,7.0.4)
[7.1rc1,7.1.3)
[7.2rc1,7.2.2)
[7.3rc1,7.3)
H
Missing Validation of OpenSSL Certificate
CVE-2026-1778
Affects
sagemaker
| Versions
[,2.256.0)
[3.0,3.1.1)
M
Arbitrary Code Injection
CVE-2026-25481
Affects
langroid
| Versions
[,0.59.32)
L
Missing Authorization
CVE-2025-69207
Affects
khoj
| Versions
[0,]
M
Deserialization of Untrusted Data
Affects
picklescan
| Versions
[,1.0.1)
L
Directory Traversal
CVE-2026-1703
Affects
pip
| Versions
[,26.0)
H
Improper Neutralization of Input Used for LLM Prompting
Affects
omni-cortex
| Versions
[,1.4.0)
M
Insertion of Sensitive Information into Log File
Affects
omni-cortex
| Versions
[,1.4.0)
M
Cross-site Request Forgery (CSRF)
Affects
omni-cortex
| Versions
[,1.4.0)
M
Directory Traversal
Affects
omni-cortex
| Versions
[,1.4.0)
M
Server-side Request Forgery (SSRF)
CVE-2025-15104
Affects
html5validator
| Versions
[0,]
M
Allocation of Resources Without Limits or Throttling
CVE-2025-6208
Affects
llama-index-core
| Versions
[,0.12.41)
H
Creation of Temporary File With Insecure Permissions
CVE-2025-10279
Affects
mlflow
| Versions
[,3.4.0rc0)
C
Arbitrary Command Injection
Affects
borgmatic
| Versions
[,2.1.0)
M
Insufficiently Protected Credentials
Affects
kimai-mcp
| Versions
[,2.10.0)
C
Arbitrary Command Injection
CVE-2026-25130
Affects
cai-framework
| Versions
[0,]
M
SQL Injection
CVE-2025-69662
Affects
geopandas
| Versions
[,1.1.2)
M
Insertion of Sensitive Information into Log File
Affects
litellm
| Versions
[,1.80.15)
H
Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade')
CVE-2025-62349
Affects
salt
| Versions
[3006.12,3006.17)
[3007.4,3007.9)
M
Insertion of Sensitive Information into Log File
CVE-2026-25211
Affects
llama-stack
| Versions
[,0.4.0)
H
Deserialization of Untrusted Data
Affects
picklescan
| Versions
[,0.0.33)