Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Malicious Package
Affects
lwc-slds-lbc
| Versions
*
C
Malicious Package
Affects
chai-as-reddit
| Versions
*
C
Malicious Package
Affects
iot-kfh-s3
| Versions
*
C
Malicious Package
Affects
lambda-cloudwatch-cdk
| Versions
*
C
Malicious Package
Affects
chai-leaf
| Versions
*
C
Malicious Package
Affects
alb-lambda-cdk
| Versions
*
C
Malicious Package
Affects
upjsma
| Versions
*
C
Malicious Package
Affects
s3-lambda-dynamodb-cdk
| Versions
*
C
Remote Code Execution (RCE)
CVE-2026-63030
Affects
johnpbloch/wordpress-core
| Versions
>=6.9.0, <6.9.5
>=7.0.0, <7.0.2
H
SQL Injection
CVE-2026-60137
Affects
johnpbloch/wordpress-core
| Versions
>=6.8.0, <6.8.6
>=6.9.0, <6.9.5
>=7.0.0, <7.0.2
C
Improper Verification of Cryptographic Signature
CVE-2026-47304
Affects
system.security.cryptography.xml
| Versions
[8.0.0-preview.1.23110.8, 8.0.4)
[9.0.0-preview.1.24080.9, 9.0.18)
[10.0.0-preview.1.25080.5, 10.0.10)
H
XML Injection
CVE-2026-59728
Affects
@astrojs/rss
| Versions
>=1.0.0 <4.0.19
L
Open Redirect
CVE-2026-59730
Affects
@astrojs/internal-helpers
| Versions
>=0.3.0 <0.10.1
M
Cross-site Request Forgery (CSRF)
Affects
astro
| Versions
>=7.0.0 <7.0.6
M
Cross-site Scripting (XSS)
CVE-2026-59729
Affects
astro
| Versions
<7.0.6
M
Cross-site Scripting (XSS)
Affects
astro
| Versions
<7.1.0
L
Improper Encoding or Escaping of Output
CVE-2026-59727
Affects
astro
| Versions
<7.0.4
M
Permissive List of Allowed Inputs
Affects
org.webjars.npm:axios
| Versions
[,1.18.0)
M
Permissive List of Allowed Inputs
Affects
axios
| Versions
>=0.31.0 <0.33.0
>=1.15.0 <1.18.0
M
Prototype Pollution
Affects
org.webjars.npm:axios
| Versions
[,1.18.0)
M
Prototype Pollution
Affects
axios
| Versions
<0.33.0
>=1.0.0 <1.18.0
M
Allocation of Resources Without Limits or Throttling
Affects
org.webjars.npm:axios
| Versions
[1.7.1,1.18.0)
M
Allocation of Resources Without Limits or Throttling
Affects
axios
| Versions
>=1.7.0 <1.18.0
M
Prototype Pollution
Affects
axios
| Versions
>=0.31.1 <0.33.0
>=1.0.0 <1.18.0
M
Prototype Pollution
Affects
org.webjars.npm:axios
| Versions
[0.9.1,1.18.0)
M
Prototype Pollution
Affects
axios
| Versions
>=0.8.0 <0.33.0
>=1.0.0 <1.18.0
M
Allocation of Resources Without Limits or Throttling
Affects
org.webjars.npm:axios
| Versions
[,1.18.0)
M
Allocation of Resources Without Limits or Throttling
Affects
axios
| Versions
>=1.13.0 <1.18.0
M
Uncontrolled Recursion
Affects
org.webjars.npm:axios
| Versions
[,1.18.0)
M
Uncontrolled Recursion
Affects
axios
| Versions
<0.33.0
>=1.0.0 <1.18.0