Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
CVE-2026-47762
Affects
org.webjars.npm:tinymce
| Versions
[0,]
M
Cross-site Scripting (XSS)
CVE-2026-47760
Affects
tinymce/tinymce
| Versions
>=6.8.0, <7.1.0
M
Cross-site Scripting (XSS)
CVE-2026-47760
Affects
tinymce
| Versions
[6.8.0,7.1.0)
M
Cross-site Scripting (XSS)
CVE-2026-47760
Affects
tinymce
| Versions
>=6.8.0 <7.1.0
M
Cross-site Scripting (XSS)
CVE-2026-47762
Affects
tinymce/tinymce
| Versions
<7.9.3
>=8.0.0, <8.5.1
M
Cross-site Scripting (XSS)
CVE-2026-47762
Affects
tinymce
| Versions
[,7.9.3)
[8.0.0,8.5.1)
M
Cross-site Scripting (XSS)
CVE-2026-47762
Affects
tinymce
| Versions
<7.9.3
>=8.0.0 <8.5.1
M
Cross-site Scripting (XSS)
CVE-2026-47761
Affects
org.webjars.npm:tinymce
| Versions
[0,]
M
Cross-site Scripting (XSS)
CVE-2026-47761
Affects
tinymce/tinymce
| Versions
<7.9.3
>=8.0.0, <8.5.1
M
Cross-site Scripting (XSS)
CVE-2026-47761
Affects
tinymce
| Versions
[,7.9.3)
[8.0.0,8.5.1)
M
Cross-site Scripting (XSS)
CVE-2026-47761
Affects
tinymce
| Versions
<7.9.3
>=8.0.0 <8.5.1
M
Improper Handling of Case Sensitivity
Affects
tuf
| Versions
[,7.0.0)
M
Cross-site Request Forgery (CSRF)
CVE-2026-48925
Affects
org.jenkins-ci.plugins:github-pullrequest
| Versions
[,0.7.4)
M
Cross-site Scripting (XSS)
CVE-2026-48927
Affects
org.jenkins-ci.plugins:buildgraph-view
| Versions
[0,]
M
Open Redirect
CVE-2026-48924
Affects
org.jenkins-ci.plugins:bitbucket-oauth
| Versions
[,0.18)
H
Server-side Request Forgery (SSRF)
CVE-2026-48918
Affects
org.jenkins-ci.plugins:active-directory
| Versions
[,2.41.1)
H
Directory Traversal
CVE-2026-48921
Affects
io.jenkins.plugins:pipeline-groovy-lib
| Versions
[,798.v5cc688825312)
M
Open Redirect
CVE-2026-48916
Affects
org.jenkins-ci.plugins:ldap
| Versions
[,807.809.vd3a_4e5e4ec98)
M
Missing Authorization
CVE-2026-48926
Affects
org.jenkins-ci.plugins:job-import-plugin
| Versions
[,143.145.v48f9a_a_6ff384)
M
Missing Authorization
CVE-2026-48923
Affects
com.rapid7:jenkinsci-appspider-plugin
| Versions
[,1.0.18)
H
Deserialization of Untrusted Data
CVE-2026-48917
Affects
org.jenkins-ci.plugins:ldap
| Versions
[,807.809.vd3a_4e5e4ec98)
M
Cross-site Request Forgery (CSRF)
CVE-2026-9674
Affects
org.jenkins-ci.plugins:jenkins-multijob-plugin
| Versions
[,669.v9d96a_d9c71b_0)
M
Incorrect Regular Expression
CVE-2026-47674
Affects
hono
| Versions
<4.12.21
M
HTTP Response Splitting
CVE-2026-47675
Affects
hono
| Versions
<4.12.21
M
Improper Authorization
CVE-2026-47673
Affects
hono
| Versions
<4.12.21
M
HTTP Request Smuggling
CVE-2026-47676
Affects
hono
| Versions
<4.12.21
H
Directory Traversal
CVE-2026-42305
Affects
dulwich
| Versions
[0.10.0,1.2.5)
H
Command Injection
CVE-2026-42563
Affects
dulwich
| Versions
[0.24.0,1.2.5)
H
Directory Traversal
CVE-2026-48922
Affects
org.jenkins-ci.plugins:credentials-binding
| Versions
[,725.ve52b_2328a_fde)
M
Excessive Iteration
CVE-2026-48156
Affects
pypdf
| Versions
[,6.12.0)