Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Directory Traversal
CVE-2020-36939
Affects
cassandra-web
| Versions
>=0.1.0
H
Improper Certificate Validation
CVE-2026-1531
Affects
foreman_kubevirt
| Versions
<0.4.3
H
Eval Injection
CVE-2026-23885
Affects
alchemy_cms
| Versions
<7.4.12
>=8.0.0.a, <8.0.3
C
Eval Injection
CVE-2025-68271
Affects
openc3
| Versions
>=5.0.6, <6.10.2
C
Arbitrary Code Injection
CVE-2011-10019
Affects
spree
| Versions
<0.60.2
H
Authorization Bypass Through User-Controlled Key
CVE-2026-22588
Affects
spree_api
| Versions
>=3.7.0.beta, <4.10.2
>=5.0.0.rc1, <5.0.7
>=5.1.0.beta, <5.1.9
>=5.2.0.rc1, <5.2.5
H
Authorization Bypass Through User-Controlled Key
CVE-2026-22589
Affects
spree_storefront
| Versions
<5.0.7
>=5.1.0.beta, <5.1.9
>=5.2.0.rc1, <5.2.5
H
Authorization Bypass Through User-Controlled Key
CVE-2026-22589
Affects
spree_core
| Versions
<4.10.2
>=5.0.0.rc1, <5.0.7
>=5.1.0.beta, <5.1.9
>=5.2.0.rc1, <5.2.5
H
Inclusion of Sensitive Information in Source Code
Affects
shakapacker
| Versions
<9.5.0
H
Server-side Request Forgery (SSRF)
CVE-2025-68696
Affects
httparty
| Versions
>=0.0.0, <0.24.0
M
Cross-site Scripting (XSS)
CVE-2023-53936
Affects
camaleon_cms
| Versions
<2.8.0
M
Use of a Broken or Risky Cryptographic Algorithm
CVE-2025-14762
Affects
aws-sdk-s3
| Versions
<1.208.0
M
Improper Verification of Cryptographic Signature
CVE-2025-68113
Affects
altcha
| Versions
<1.0.0
C
Improper Verification of Cryptographic Signature
CVE-2025-66568
Affects
ruby-saml
| Versions
<1.18.0
C
Improper Verification of Cryptographic Signature
CVE-2025-66567
Affects
ruby-saml
| Versions
<1.18.0
C
Arbitrary Code Injection
CVE-2011-10026
Affects
rd_searchlogic
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2025-64501
Affects
prosemirror_to_html
| Versions
<0.2.1
C
Arbitrary File Write via Archive Extraction (Zip Slip)
CVE-2025-12790
Affects
mqtt
| Versions
<0.7.0
M
Regular Expression Denial of Service (ReDoS)
CVE-2025-61921
Affects
sinatra
| Versions
<4.2.0
H
Allocation of Resources Without Limits or Throttling
CVE-2025-61919
Affects
rack
| Versions
>=3.2.0, <3.2.3
>=3.0.0, <3.1.18
<2.2.20
M
Information Exposure
CVE-2025-61780
Affects
rack
| Versions
<2.2.20
>=3.0.0.beta1, <3.1.18
>=3.2.0, <3.2.3
M
Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2025-61594
Affects
uri
| Versions
<0.12.5
>=0.13.0, <0.13.3
>=1.0.0, <1.0.4
H
Allocation of Resources Without Limits or Throttling
CVE-2025-61770
Affects
rack
| Versions
<2.2.19
>=3.1.0, <3.1.17
>=3.2.0, <3.2.2
H
Allocation of Resources Without Limits or Throttling
CVE-2025-61771
Affects
rack
| Versions
<2.2.19
>=3.1.0, <3.1.17
>=3.2.0, <3.2.2
H
Allocation of Resources Without Limits or Throttling
CVE-2025-61772
Affects
rack
| Versions
<2.2.19
>=3.1.0, <3.1.17
>=3.2.0, <3.2.2
H
Allocation of Resources Without Limits or Throttling
CVE-2025-59830
Affects
rack
| Versions
<2.2.18
M
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
CVE-2025-58767
Affects
rexml
| Versions
>=3.3.3, <3.4.2
L
Open Redirect
CVE-2025-58067
Affects
google_sign_in
| Versions
<1.3.1
L
Open Redirect
CVE-2025-57821
Affects
google_sign_in
| Versions
<1.3.0
H
Malicious Package
Affects
back_duo
| Versions
>=0.0.0