Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Incorrect Authorization
CVE-2026-31801
Affects
zotregistry.dev/zot/v2/pkg/api/
| Versions
<2.1.15
H
Incorrect Authorization
CVE-2026-31801
Affects
github.com/project-zot/zot/pkg/api/
| Versions
<2.1.15
C
Binding to an Unrestricted IP Address
CVE-2026-24015
Affects
org.apache.iotdb:node-commons
| Versions
[1.0.0,1.3.7)
[2.0.0,2.0.7)
C
Binding to an Unrestricted IP Address
CVE-2026-24015
Affects
org.apache.iotdb:iotdb-server
| Versions
[1.0.0,1.3.7)
[2.0.0,2.0.7)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-30945
Affects
studiocms
| Versions
<0.4.0
H
Authorization Bypass Through User-Controlled Key
CVE-2026-30945
Affects
@withstudiocms/auth-kit
| Versions
<0.1.4
H
Authorization Bypass Through User-Controlled Key
CVE-2026-30945
Affects
@withstudiocms/api-spec
| Versions
<0.3.0
H
Incorrect Authorization
CVE-2026-30944
Affects
studiocms
| Versions
<0.4.0
H
Incorrect Authorization
CVE-2026-30944
Affects
@withstudiocms/auth-kit
| Versions
<0.1.4
H
Incorrect Authorization
CVE-2026-30944
Affects
@withstudiocms/api-spec
| Versions
<0.3.0
C
Improper Authentication
CVE-2026-32136
Affects
github.com/adguardteam/adguardhome/internal/home
| Versions
<0.107.73
M
Information Exposure
CVE-2026-31888
Affects
shopware/core
| Versions
<6.6.10.15
>=6.7.0.0, <6.7.8.1
H
Incorrect Authorization
CVE-2026-31887
Affects
shopware/core
| Versions
<6.6.10.15
>=6.7.0.0, <6.7.8.1
H
User Impersonation
CVE-2026-31889
Affects
shopware/platform
| Versions
<6.6.10.15
>=6.7.0.0, <6.7.8.1
H
User Impersonation
CVE-2026-31889
Affects
shopware/core
| Versions
<6.6.10.15
>=6.7.0.0, <6.7.8.1
H
Arbitrary Code Injection
CVE-2026-28384
Affects
github.com/canonical/lxd/shared/validate
| Versions
>=4.2 <6.7
H
Arbitrary Code Injection
CVE-2026-28384
Affects
github.com/canonical/lxd/lxd
| Versions
>=4.2 <6.7
C
Server-side Request Forgery (SSRF)
CVE-2026-31829
Affects
flowise-ui
| Versions
<3.0.13
C
Server-side Request Forgery (SSRF)
CVE-2026-31829
Affects
flowise-components
| Versions
<3.0.13
M
Comparison Using Wrong Factors
CVE-2026-22723
Affects
org.cloudfoundry.identity:cloudfoundry-identity-server
| Versions
[77.30.0,78.8.0)
H
Origin Validation Error
CVE-2026-32302
Affects
openclaw
| Versions
<2026.3.11
H
Directory Traversal
CVE-2026-28791
Affects
@tinacms/graphql
| Versions
<2.1.3
H
Directory Traversal
CVE-2026-28791
Affects
@tinacms/cli
| Versions
<2.1.7
L
Directory Traversal
CVE-2026-2741
Affects
com.vaadin:flow-build-tools
| Versions
[25.0.0-rc1,25.0.3)
L
Directory Traversal
CVE-2026-2741
Affects
com.vaadin:flow-server
| Versions
[2.0.0,2.13.1)
[3.0.0,23.6.8)
[24.0.0,24.9.10)
M
Function Call With Incorrect Order of Arguments
CVE-2026-32269
Affects
parse-server
| Versions
>=8.0.2 <8.6.39
>=9.0.0-alpha.1 <9.6.0-alpha.13
C
Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-32248
Affects
parse-server
| Versions
<8.6.38
>=9.0.0-alpha.1 <9.6.0-alpha.12
C
Race Condition
CVE-2026-32242
Affects
parse-server
| Versions
<8.6.37
>=9.0.0-alpha.1 <9.6.0-alpha.11
M
Symlink Attack
CVE-2026-2808
Affects
github.com/hashicorp/consul/agent/connect/ca
| Versions
<1.22.5
C
Arbitrary Code Injection
CVE-2026-32304
Affects
locutus
| Versions
<3.0.14