Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Incorrect Authorization
Affects
openclaw
| Versions
<2026.2.25
H
Directory Traversal
Affects
openclaw
| Versions
<2026.2.24
M
Allocation of Resources Without Limits or Throttling
Affects
openclaw
| Versions
<2026.2.22
M
Symlink Attack
Affects
openclaw
| Versions
<2026.2.22
M
Incorrect Authorization
Affects
openclaw
| Versions
<2026.2.22
H
Command Injection
Affects
openclaw
| Versions
<2026.2.22
M
Off-by-one Error
Affects
openclaw
| Versions
<2026.2.23
H
Incorrect Authorization
Affects
openclaw
| Versions
<2026.2.26
M
Insertion of Sensitive Information Into Sent Data
Affects
openclaw
| Versions
<2026.2.25
M
Access Control Bypass
Affects
openclaw
| Versions
<2026.3.1
M
Incorrect Authorization
Affects
openclaw
| Versions
<2026.3.1
M
Allocation of Resources Without Limits or Throttling
Affects
openclaw
| Versions
<2026.3.1
H
Missing Authorization
Affects
openclaw
| Versions
<2026.3.1
M
Directory Traversal
CVE-2026-28486
Affects
openclaw
| Versions
<2026.2.14
C
Malicious Package
Affects
corp-build-utils-poc
| Versions
*
C
Malicious Package
Affects
launch-darkly-js
| Versions
*
M
Command Injection
CVE-2026-28279
Affects
github.com/jmpsec/osctrl/pkg/environments
| Versions
<0.5.0
M
Command Injection
CVE-2026-28279
Affects
github.com/jmpsec/osctrl/cmd/admin
| Versions
<0.5.0
M
Incorrect Privilege Assignment
CVE-2026-3268
Affects
com.github.psi-probe:psi-probe-core
| Versions
[0,]
M
Server-side Request Forgery (SSRF)
CVE-2026-3270
Affects
com.github.psi-probe:psi-probe-core
| Versions
[0,]
M
Improper Resource Shutdown or Release
CVE-2026-3269
Affects
com.github.psi-probe:psi-probe-core
| Versions
[0,]
H
Unsafe Dependency Resolution
CVE-2026-28372
Affects
inetutils
| Versions
[0,]
M
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-26938
Affects
kibana
| Versions
>=9.3.0 <9.3.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-26937
Affects
kibana
| Versions
>=8.0.0 <8.19.11
>=9.0.0 <9.2.5
M
Server-side Request Forgery (SSRF)
CVE-2026-28295
Affects
gvfs
| Versions
[,1.59.90)
M
CRLF Injection
CVE-2026-28296
Affects
gvfs
| Versions
[,1.59.90)
H
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-27961
Affects
agenta
| Versions
[,0.86.8)
M
Authentication Bypass by Assumed-Immutable Data
CVE-2026-27840
Affects
github.com/zitadel/zitadel/internal/authz/repository/eventsourcing/eventstore
| Versions
<1.80.0-v2.20.0.20260216092519-feab8e1fa371
>=2.31.0 <3.4.7
>=4.0.0-rc.1 <4.11.0
H
Incorrect Authorization
Affects
openclaw
| Versions
<2026.2.22
L
Server-side Request Forgery (SSRF)
CVE-2026-27945
Affects
github.com/zitadel/zitadel/internal/net
| Versions
>=2.59.0 <4.11.1