Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Server-side Request Forgery (SSRF)
CVE-2026-26019
Affects
@langchain/core
| Versions
<1.1.14
M
Server-side Request Forgery (SSRF)
CVE-2026-26019
Affects
@langchain/community
| Versions
<1.1.14
C
Prototype Pollution
CVE-2026-26021
Affects
set-in
| Versions
>=2.0.1 <2.0.5
M
Allocation of Resources Without Limits or Throttling
CVE-2026-2391
Affects
qs
| Versions
<6.14.2
C
Prototype Pollution
CVE-2026-1774
Affects
@casl/ability
| Versions
>=2.4.0 <6.7.5
H
Improper Handling of Exceptional Conditions
CVE-2026-25957
Affects
@cubejs-backend/api-gateway
| Versions
>=1.1.17 <1.4.1
>=1.5.0 <1.5.13
M
Reliance on Untrusted Inputs in a Security Decision
CVE-2026-25958
Affects
@cubejs-backend/api-gateway
| Versions
>=0.27.19 <1.0.13
>=1.1.0 <1.4.1
>=1.5.0 <1.5.13
C
Malicious Package
Affects
osopackage
| Versions
*
C
Malicious Package
Affects
express-gueues
| Versions
*
C
Malicious Package
Affects
systemtest-network
| Versions
*
C
Malicious Package
Affects
systemtest-information
| Versions
*
C
Malicious Package
Affects
chai-prop
| Versions
*
H
SQL Injection
CVE-2026-25993
Affects
@evershop/evershop
| Versions
<2.1.1
C
Malicious Package
Affects
node-dotenv-cli
| Versions
*
C
Malicious Package
Affects
chai-await
| Versions
*
C
Malicious Package
Affects
sinon-node
| Versions
*
M
Regular Expression Denial of Service (ReDoS)
CVE-2026-2327
Affects
markdown-it
| Versions
>=13.0.0 <14.1.1
C
Malicious Package
Affects
@uniconvex/dotenv
| Versions
*
C
Malicious Package
Affects
@reimorg/config
| Versions
*
C
Malicious Package
Affects
@ux-foundry/palette
| Versions
*
C
Malicious Package
Affects
@snazah/davey
| Versions
*
C
Malicious Package
Affects
aligners
| Versions
*
C
Malicious Package
Affects
express-configer
| Versions
*
C
Malicious Package
Affects
graphflowx
| Versions
*
C
Malicious Package
Affects
bigmathix
| Versions
*
C
Malicious Package
Affects
chai-as-approved
| Versions
*
C
Malicious Package
Affects
sap-code-style-guides
| Versions
*
C
Malicious Package
Affects
narrow-array
| Versions
*
M
Insertion of Sensitive Information into Log File
CVE-2026-25918
Affects
@rage-against-the-pixel/unity-cli
| Versions
<1.8.2
C
Prototype Pollution
CVE-2026-25881
Affects
@nyariv/sandboxjs
| Versions
<0.8.31