Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Timing Attack
CVE-2026-48011
Affects
shopware/core
| Versions
<6.6.10.18
>=6.7.0.0, <6.7.10.1
M
Missing Authorization
CVE-2026-53634
Affects
code16/sharp
| Versions
>=9.0.0, <9.22.3
M
Cross-site Scripting (XSS)
CVE-2026-6365
Affects
drupal/core
| Versions
>=8.0.0, <10.5.9
>=10.6.0, <10.6.7
>=11.0.0, <11.2.11
>=11.3.0, <11.3.7
M
Cross-site Scripting (XSS)
CVE-2026-6367
Affects
drupal/core
| Versions
>=11.3.0-alpha1, <11.3.7
M
Cross-site Scripting (XSS)
CVE-2026-49216
Affects
symfony/ux-autocomplete
| Versions
>=2.2.0, <2.36.0
>=3.0.0, <3.1.0
H
Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-49211
Affects
symfony/ux-autocomplete
| Versions
>=2.2.0, <2.36.0
>=3.0.0, <3.1.0
M
CRLF Injection
CVE-2026-48019
Affects
laravel/framework
| Versions
<12.60.0
>=13.0.0, <13.10.0
H
Directory Traversal
CVE-2026-9559
Affects
mautic/core-lib
| Versions
>=7.0.0-alpha, <7.1.2
M
Cross-site Scripting (XSS)
CVE-2026-9811
Affects
mautic/core-lib
| Versions
>=7.0.0-alpha, <7.1.2
M
Incorrect Authorization
CVE-2026-9808
Affects
mautic/core-lib
| Versions
>=7.0.0-alpha, <7.1.2
M
Incorrect Authorization
CVE-2026-9808
Affects
mautic/plugin-focus
| Versions
>=7.0.0-alpha, <7.1.2
C
Cross-site Scripting (XSS)
CVE-2026-9809
Affects
mautic/core-lib
| Versions
>=7.0.0-alpha, <7.1.2
H
Server-side Request Forgery (SSRF)
CVE-2026-9557
Affects
mautic/core
| Versions
<5.2.11
>=6.0.0-alpha, <6.0.9
>=7.0.0-alpha, <7.1.2
H
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-9558
Affects
mautic/core-lib
| Versions
<5.2.11
>=6.0.0-alpha, <6.0.9
>=7.0.0-alpha, <7.1.2
M
SQL Injection
CVE-2026-4776
Affects
mautic/core-lib
| Versions
>=2.6.0, <5.2.11
>=6.0.0-alpha, <6.0.9
>=7.0.0-alpha, <7.1.2
L
Open Redirect
CVE-2026-44833
Affects
snipe/snipe-it
| Versions
<8.4.1
H
SQL Injection
CVE-2026-38739
Affects
ezsystems/ezpublish-legacy
| Versions
>=0.0.0
H
SQL Injection
CVE-2026-44741
Affects
pimcore/admin-ui-classic-bundle
| Versions
<2.3.6
H
Server-side Request Forgery (SSRF)
CVE-2026-47260
Affects
phanan/koel
| Versions
<9.3.5
L
Allocation of Resources Without Limits or Throttling
CVE-2026-35202
Affects
pterodactyl/panel
| Versions
<1.12.3
M
Incorrect Authorization
CVE-2026-45703
Affects
pimcore/pimcore
| Versions
<12.3.7
H
Incorrect Authorization
CVE-2026-45704
Affects
pimcore/pimcore
| Versions
<12.3.6
H
Missing Authorization
CVE-2026-45260
Affects
pimcore/pimcore
| Versions
<12.3.7
H
Deserialization of Untrusted Data
CVE-2026-45162
Affects
pimcore/pimcore
| Versions
<12.3.7
H
SQL Injection
CVE-2026-44739
Affects
pimcore/pimcore
| Versions
<12.3.6
H
Symlink Attack
CVE-2026-41236
Affects
froxlor/froxlor
| Versions
>=2.3.6, <2.3.7
H
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2026-41237
Affects
froxlor/froxlor
| Versions
<2.3.7
H
Incorrect Authorization
CVE-2026-41235
Affects
froxlor/froxlor
| Versions
>=2.3.6, <2.3.7
H
SQL Injection
CVE-2026-39229
Affects
bolt/bolt
| Versions
>=0.0.0
H
Missing Authentication for Critical Function
CVE-2026-45332
Affects
automad/automad
| Versions
>=2.0.0-alpha.1, <2.0.0-beta.28