Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Arbitrary Code Injection
CVE-2025-27407
Affects
graphql
| Versions
>=1.11.5, <1.11.11
>=1.12.0, <1.12.25
>=1.13.0, <1.13.24
>=2.0.0, <2.0.32
>=2.1.0, <2.1.15
>=2.2.10, <2.2.17
>=2.3.0, <2.3.21
>=2.4.0, <2.4.13
H
Out-of-bounds Read
CVE-2025-27788
Affects
json
| Versions
>=2.10.0, <2.10.2
C
Improper Verification of Cryptographic Signature
CVE-2025-25291
Affects
ruby-saml
| Versions
<1.12.4
>=1.13.0, <1.18.0
C
Improper Verification of Cryptographic Signature
CVE-2025-25292
Affects
ruby-saml
| Versions
<1.12.4
>=1.13.0, <1.18.0
H
Allocation of Resources Without Limits or Throttling
CVE-2025-25293
Affects
ruby-saml
| Versions
<1.12.4
>=1.13.0, <1.18.0
H
Stack-based Buffer Overflow
CVE-2024-7254
Affects
google-protobuf
| Versions
<3.25.5
>=4.0.0.rc.1, <4.27.5
>=4.28.0.rc.1, <4.28.2
H
Relative Path Traversal
CVE-2025-27610
Affects
rack
| Versions
<2.2.13
>=3.0.0.beta1, <3.0.14
>=3.1.0, <3.1.12
M
Improper Output Neutralization for Logs
CVE-2025-27111
Affects
rack
| Versions
<2.2.12
>=3.0.0.beta1, <3.0.13
>=3.1.0, <3.1.11
M
Regular Expression Denial of Service (ReDoS)
CVE-2025-27220
Affects
cgi
| Versions
<0.3.5.1
>=0.3.6, <0.3.7
>=0.4.0, <0.4.2
M
Allocation of Resources Without Limits or Throttling
CVE-2025-27219
Affects
cgi
| Versions
<0.3.5.1
>=0.3.6, <0.3.7
>=0.4.0, <0.4.2
L
Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2025-27221
Affects
uri
| Versions
<0.11.3
>=0.12.0, <0.12.4
>=0.13.0, <0.13.2
>=1.0.0, <1.0.3
H
Directory Traversal
CVE-2025-27590
Affects
oxidized-web
| Versions
<0.15.0
M
Use of Uninitialized Resource
CVE-2025-26803
Affects
passenger
| Versions
>=6.0.21, <6.0.26
H
Use After Free
CVE-2024-56171
Affects
nokogiri
| Versions
<1.18.3
H
Stack-based Buffer Overflow
CVE-2025-24928
Affects
nokogiri
| Versions
<1.18.3
H
Improper Output Neutralization for Logs
CVE-2025-25184
Affects
rack
| Versions
<2.2.11
>=3.0.0, <3.0.12
>=3.1.0, <3.1.10
H
Denial of Service (DoS)
CVE-2025-25186
Affects
net-imap
| Versions
>=0.3.2, <0.3.8
>=0.4.0, <0.4.19
>=0.5.0, <0.5.6
C
Malicious Package
Affects
chauuuyhhn
| Versions
>=0.0.0
C
Malicious Package
Affects
nosvemosssadfsd
| Versions
>=0.0.0
C
Malicious Package
Affects
holaaaaaafasdf
| Versions
>=0.0.0
H
Session Fixation
CVE-2024-56733
Affects
pwpush
| Versions
>=0.0.0
L
Cross-site Scripting (XSS)
CVE-2024-54133
Affects
actionpack
| Versions
>=5.2.0, <7.0.8.7
>=7.1.0, <7.1.5.1
>=7.2.0, <7.2.2.1
>=8.0.0, <8.0.0.1
L
Cross-site Scripting (XSS)
CVE-2024-53986
Affects
rails-html-sanitizer
| Versions
>=1.6.0, <1.6.1
L
Cross-site Scripting (XSS)
CVE-2024-53985
Affects
nokogiri
| Versions
<1.15.7
>=1.16.0.rc1, <1.16.8
L
Cross-site Scripting (XSS)
CVE-2024-53985
Affects
rails-html-sanitizer
| Versions
>=1.6.0, <1.6.1
L
Cross-site Scripting (XSS)
CVE-2024-53989
Affects
rails-html-sanitizer
| Versions
>=1.6.0, <1.6.1
L
Cross-site Scripting (XSS)
CVE-2024-53988
Affects
rails-html-sanitizer
| Versions
>=1.6.0, <1.6.1
L
Cross-site Scripting (XSS)
CVE-2024-53987
Affects
rails-html-sanitizer
| Versions
>=1.6.0, <1.6.1
M
Denial of Service (DoS)
CVE-2024-52796
Affects
pwpush
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2024-45594
Affects
decidim-meetings
| Versions
>=0.28.0, <0.28.3
>=0.29.0.rc1, <0.29.0