Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
CVE-2026-23738
Affects
asterisk
| Versions
[,20.7-cert9)
[20.8.0-rc1,20.18.2)
[21.0.0-pre1,21.12.1)
[22.0.0-pre1,22.8.2)
[23.0.0-pre1,23.2.2)
L
XML External Entity (XXE) Injection
CVE-2026-23739
Affects
asterisk
| Versions
[,20.7-cert9)
[20.8.0-rc1,20.18.2)
[21.0.0-pre1,21.12.1)
[22.0.0-pre1,22.8.2)
[23.0.0-pre1,23.2.2)
H
Open Redirect
CVE-2026-25732
Affects
nicegui
| Versions
[,3.7.0)
M
Cross-site Scripting (XSS)
CVE-2026-25516
Affects
nicegui
| Versions
[,3.7.0)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-25758
Affects
spree_core
| Versions
<4.10.3
>=5.0.0.rc1, <5.0.8
>=5.1.0.beta, <5.1.10
>=5.2.0.rc1, <5.2.7
>=5.3.0.rc1, <5.3.2
H
Authorization Bypass Through User-Controlled Key
CVE-2026-25758
Affects
spree_api
| Versions
<4.10.3
>=5.0.0.rc1, <5.0.8
>=5.1.0.beta, <5.1.10
>=5.2.0.rc1, <5.2.7
>=5.3.0.rc1, <5.3.2
M
Out-of-bounds Write
CVE-2025-3000
Affects
libtorch
| Versions
[0,]
M
Integer Overflow or Wraparound
CVE-2025-55554
Affects
libtorch
| Versions
[0,]
M
Out-of-bounds Write
CVE-2025-3001
Affects
libtorch
| Versions
[0,]
H
SQL Injection
CVE-2025-69215
Affects
devcode-it/openstamanager
| Versions
<2.10-beta
H
SQL Injection
CVE-2025-69213
Affects
devcode-it/openstamanager
| Versions
<2.10-beta
M
Insertion of Sensitive Information Into Sent Data
CVE-2025-61639
Affects
mediawiki/core
| Versions
<1.39.14
>=1.43.0, <1.43.4
>=1.44.0, <1.44.1
M
Insertion of Sensitive Information Into Sent Data
CVE-2025-61643
Affects
mediawiki/core
| Versions
<1.39.14
>=1.43.0, <1.43.4
>=1.44.0, <1.44.1
M
Cross-site Scripting (XSS)
CVE-2025-6590
Affects
mediawiki/core
| Versions
<1.39.12
>=1.42.0, <1.42.76
>=1.43.0, <1.43.1
M
Allocation of Resources Without Limits or Throttling
CVE-2025-61641
Affects
mediawiki/core
| Versions
<1.39.14
>=1.43.0, <1.43.4
>=1.44.0, <1.44.1
C
Command Injection
CVE-2025-64111
Affects
gogs.io/gogs/internal/osutil
| Versions
<0.13.4
C
Command Injection
CVE-2025-64111
Affects
github.com/gogs/gogs/internal/osutil
| Versions
<0.13.4
C
Command Injection
CVE-2025-64111
Affects
gogs.io/gogs/internal/db
| Versions
<0.13.4
H
Out-of-bounds Read
CVE-2026-25139
Affects
riot-os/riot
| Versions
[,2026.01-RC3)
H
Command Injection
CVE-2026-24844
Affects
chainguard.dev/melange/pkg/build
| Versions
>=0.3.0 <0.40.3
H
Directory Traversal
CVE-2026-25145
Affects
chainguard.dev/melange/pkg/config
| Versions
>=0.14.0 <0.40.3
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/limitio
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/options
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/cpio
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/build
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/apk/expandapk
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/pkg/apk/apk
| Versions
>=0.14.8 <1.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-25140
Affects
chainguard.dev/apko/internal/cli
| Versions
>=0.14.8 <1.1.0
L
Server-side Request Forgery (SSRF)
CVE-2025-68157
Affects
org.webjars.npm:webpack
| Versions
[5.75.0,]
H
Cross-site Scripting (XSS)
CVE-2024-22199
Affects
github.com/gofiber/template/v2/django/v2
| Versions
*