Know every threat before it ships
200K+ vulnerabilities, malicious packages, and supply chain threats enriched with Corgea's research.
CVE-2026-53598
Prompty: Arbitrary file read via file reference expansion
CVE-2026-45134
LangSmith SDK: Public prompt pull deserializes untrusted manifests without trust boundary warning
CVE-2021-41134
Stored XSS in Jupyter nbdime
CVE-2024-12534
Open WebUI Uncontrolled Resource Consumption vulnerability
CVE-2024-10572
H2O Vulnerable to Denial of Service (DoS) and File Write
CVE-2024-10550
H2O Vulnerable to Denial of Service (DoS) via `/3/ParseSetup` Endpoint
CVE-2025-30402
ExecuTorch vulnerable to Heap-based Buffer Overflow attack
CVE-2024-8062
H2O Vulnerable to Denial of Service (DoS) via `HEAD` Request
CVE-2024-6854
H2O Vulnerable to Arbitrary File Overwrite via File Export
CVE-2023-33953
Excessive Iteration in gRPC
CVE-2024-7765
H2O Vulnerable to Denial of Service (DoS) via Large GZIP Parsing
CVE-2024-12537
Open WebUI Uncontrolled Resource Consumption vulnerability
CVE-2024-10549
H2O Vulnerable to Denial of Service (DoS) via `/3/Parse` Endpoint
CVE-2024-7768
H2O Vulnerable to Denial of Service (DoS) via `/3/ImportFiles` Endpoint
CVE-2024-8616
H2O Vulnerable to Arbitrary File Overwrite
CVE-2026-4372
HuggingFace transformers vulnerable to remote code execution
CVE-2026-54263
CVE-2026-54263
CVE-2026-10105
agno contains a SQL injection vulnerability
CVE-2026-10108
xiaomusic contains an unauthenticated path traversal vulnerability
CVE-2025-68616
WeasyPrint has a Server-Side Request Forgery (SSRF) Protection Bypass via HTTP Redirect
CVE-2026-42999
CVE-2026-42999
CVE-2026-44394
CVE-2026-44394
CVE-2026-43000
CVE-2026-43000
CVE-2026-52726
Dulwich's submodule path traversal in porcelain.submodule_update / porcelain.clone(recurse_submodules=True) yields RCE via attacker-dropped .git/hooks payload
CVE-2026-42998
CVE-2026-42998
CVE-2026-50181
Langroid: Path traversal in the file tools allows read/write outside configured current directory
CVE-2026-43001
OpenStack Keystone has an Incorrect Authorization Issue
CVE-2022-21187
Command injection in libvcs and vcspull
CVE-2024-5565
Vanna prompt injection code execution
CVE-2015-5306
Injection vulnerability that affects ironic-discoverd
CVE-2026-5463
pymetasploit3 vulnerable to command injection in console.run_module_with_output()
CVE-2023-50447
Arbitrary Code Execution in Pillow
CVE-2024-1728
Gradio allows users to access arbitrary files
CVE-2022-38369
CVE-2022-38369
CVE-2026-40177
ajenti.plugin.core has password bypass when 2FA is activated
CVE-2024-35057
NASA AIT-Core vulnerable to remote code execution
CVE-2024-35058
NASA AIT-Core vulnerable to remote code execution
CVE-2026-48544
Taipy contains a path traversal vulnerability
CVE-2026-56262
CVE-2026-56262
CVE-2026-49014
GDAL: scanForGeometryContainers in the netCDF driver allows code execution via a stack-based buffer overflow
CVE-2026-12243
CVE-2026-12243
CVE-2022-46289
Open Babel has out-of-bounds write in ORCA nAtoms parser
CVE-2022-41793
Open Babel has out-of-bounds write in CSR PadString (title field)
CVE-2022-42885
Open Babel has uninitialized pointer dereference in GRO residue parser
CVE-2022-46294
Open Babel has out-of-bounds write in MOPAC IN translationVectors[] (Tv atom)
CVE-2022-44451
Open Babel has uninitialized pointer dereference in MSI atom parser
CVE-2022-46291
Open Babel has out-of-bounds write in Gaussian translationVectors[]
CVE-2022-43607
Open Babel has out-of-bounds write in MOL2 attribute/value parser
CVE-2022-43467
Open Babel has out-of-bounds write in PQS coord_file parser
CVE-2022-46295
Open Babel has out-of-bounds write in MSI translationVectors[]
CVE-2022-46280
Open Babel has uninitialized pointer dereference in PQS pFormat
CVE-2022-46293
Open Babel has out-of-bounds write in MOPAC translationVectors[] (FINAL POINT)
CVE-2022-46290
Open Babel has out-of-bounds write in ORCA nAtoms parser (second variant)
GHSA-qghv-8h77-699v
Duplicate Advisory: Open Babel has out-of-bounds write in MOL2 attribute/value parser
GHSA-8rrv-fjvg-6vcx
Duplicate Advisory: Open Babel has out-of-bounds write in Gaussian coords_type orientation parser
CVE-2022-37331
Open Babel has out-of-bounds write in Gaussian coords_type orientation parser
CVE-2025-10997
Open Babel has heap buffer overflow in ChemKin ChemKinFormat::CheckSpecies
CVE-2023-48054
CVE-2023-48054
Ready to move
Start Securing
Free, no credit card | First findings in minutes