Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Server-side Request Forgery (SSRF)
CVE-2026-41270
Affects
flowise-components
| Versions
<3.1.0
H
Missing Authorization
CVE-2026-40474
Affects
wger
| Versions
[0,]
M
Open Redirect
Affects
@saltcorn/server
| Versions
<1.4.6
>=1.5.0-beta.0 <1.5.6
>=1.6.0-alpha.0 <1.6.0-beta.5
H
Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-41274
Affects
flowise-components
| Versions
>=2.2.3 <3.1.0
H
SQL Injection
CVE-2026-41478
Affects
@saltcorn/data
| Versions
<1.4.6
>=1.5.0-beta.0 <1.5.6
>=1.6.0-alpha.0 <1.6.0-beta.5
H
SQL Injection
CVE-2026-41478
Affects
@saltcorn/mobile-app
| Versions
<1.4.6
>=1.5.0-beta.0 <1.5.6
>=1.6.0-alpha.0 <1.6.0-beta.5
H
SQL Injection
CVE-2026-41478
Affects
@saltcorn/server
| Versions
<1.4.6
>=1.5.0-beta.0 <1.5.6
>=1.6.0-alpha.0 <1.6.0-beta.5
H
Arbitrary Code Injection
CVE-2026-41138
Affects
flowise-components
| Versions
>=1.3.0 <3.1.0
H
Directory Traversal
CVE-2026-40256
Affects
weblate
| Versions
[,5.17)
C
Partial String Comparison
CVE-2026-41268
Affects
flowise
| Versions
<3.1.0
C
Partial String Comparison
CVE-2026-41268
Affects
flowise-components
| Versions
<3.1.0
L
Authorization Bypass Through User-Controlled Key
CVE-2026-33212
Affects
weblate
| Versions
[,5.17)
M
Missing Authorization
CVE-2026-33214
Affects
weblate
| Versions
[,5.17)
M
Symlink Attack
CVE-2026-34242
Affects
weblate
| Versions
[,5.17)
M
Server-side Request Forgery (SSRF)
CVE-2026-33440
Affects
weblate
| Versions
[,5.17)
H
Arbitrary File Upload
CVE-2026-33435
Affects
weblate
| Versions
[,5.17)
M
Directory Traversal
CVE-2026-33220
Affects
weblate
| Versions
[,5.17)
M
Server-side Request Forgery (SSRF)
CVE-2026-39845
Affects
weblate
| Versions
[,5.17)
M
Server-side Request Forgery (SSRF)
CVE-2026-34244
Affects
weblate
| Versions
[,5.17)
H
Incorrect Authorization
CVE-2026-34393
Affects
weblate
| Versions
[,5.17)
M
Cleartext Storage in a File or on Disk
CVE-2026-6598
Affects
langflow-base
| Versions
[,0.8.0)
H
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2026-6599
Affects
langflow-base
| Versions
[0,]
H
Arbitrary File Upload
CVE-2026-6596
Affects
langflow-base
| Versions
[,0.8.0)
M
Credential Exposure
CVE-2026-6597
Affects
langflow-base
| Versions
[,0.7.1)
M
Server-side Request Forgery (SSRF)
CVE-2026-5052
Affects
github.com/hashicorp/vault
| Versions
>=1.14.0 <2.0.0-rc1
M
Improper Certificate Validation
Affects
rustls-webpki
| Versions
>=0.101.0 <0.103.12
>=0.104.0-alpha.1 <0.104.0-alpha.6
H
Allocation of Resources Without Limits or Throttling
CVE-2026-5807
Affects
github.com/hashicorp/vault/http
| Versions
<2.0.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-5807
Affects
github.com/hashicorp/vault/vault
| Versions
<2.0.0
H
Insertion of Sensitive Information Into Sent Data
CVE-2026-4525
Affects
github.com/hashicorp/vault/vault
| Versions
>=0.11.2 <2.0.0-rc1
H
Use After Free
CVE-2026-33018
Affects
saitoha/libsixel
| Versions
[,1.8.7-r1)