Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Insufficient Granularity of Access Control
CVE-2026-9088
Affects
org.keycloak:keycloak-services
| Versions
[,26.6.3)
M
Permissive Regular Expression
CVE-2026-6657
Affects
jupyter-server
| Versions
[1.12.0,2.18.0)
H
User Impersonation
CVE-2026-47737
Affects
puma
| Versions
>=5.5.0, <7.2.1
>=8.0.0, <8.0.2
H
Allocation of Resources Without Limits or Throttling
CVE-2026-47736
Affects
puma
| Versions
>=5.5.0, <7.2.1
>=8.0.0, <8.0.2
H
Untrusted Search Path
CVE-2026-11401
Affects
github.com/aws/aws-advanced-go-wrapper/awssql/v2/driver_infrastructure
| Versions
<2.0.1
H
Untrusted Search Path
CVE-2026-11401
Affects
github.com/aws/aws-advanced-go-wrapper/awssql/driver_infrastructure
| Versions
<2.0.1
H
Untrusted Search Path
CVE-2026-11400
Affects
software.amazon.jdbc:aws-advanced-jdbc-wrapper
| Versions
[3.0.0,4.0.1)
C
Malicious Package
Affects
react-ui-polyfills
| Versions
*
C
Malicious Package
Affects
glyphr
| Versions
*
C
Malicious Package
Affects
reactvora
| Versions
*
C
Malicious Package
Affects
utils-mf
| Versions
*
L
Use After Free
CVE-2026-50219
Affects
expat
| Versions
[0,]
L
Use After Free
CVE-2026-50219
Affects
libexpat
| Versions
[0,]
M
Directory Traversal
CVE-2026-7774
Affects
cpython
| Versions
[0,]
M
Directory Traversal
CVE-2026-7774
Affects
python
| Versions
[,3.15.0-b2)
L
Use of Uninitialized Resource
CVE-2026-48104
Affects
7zip
| Versions
[19.00,26.01)
L
Use of Uninitialized Resource
CVE-2026-48104
Affects
7-zip
| Versions
[9.18,26.01)
M
Out-of-bounds Read
CVE-2026-48111
Affects
7zip
| Versions
[19.00,26.01)
M
Out-of-bounds Read
CVE-2026-48111
Affects
7-zip
| Versions
[9.18,26.01)
H
Integer Overflow or Wraparound
CVE-2026-48112
Affects
7zip
| Versions
[19.00,26.01)
H
Integer Overflow or Wraparound
CVE-2026-48112
Affects
7-zip
| Versions
[9.34,26.01)
M
Out-of-bounds Read
CVE-2026-48103
Affects
7zip
| Versions
[19.00,26.01)
M
Out-of-bounds Read
CVE-2026-48103
Affects
7-zip
| Versions
[9.34,26.01)
H
Integer Overflow or Wraparound
CVE-2026-48095
Affects
7zip
| Versions
[,26.01)
H
Integer Overflow or Wraparound
CVE-2026-48095
Affects
7-zip
| Versions
[,26.01)
M
Cross-site Scripting (XSS)
CVE-2026-6365
Affects
drupal/core
| Versions
>=8.0.0, <10.5.9
>=10.6.0, <10.6.7
>=11.0.0, <11.2.11
>=11.3.0, <11.3.7
M
Cross-site Scripting (XSS)
CVE-2026-6367
Affects
drupal/core
| Versions
>=11.3.0-alpha1, <11.3.7
M
Cross-site Scripting (XSS)
CVE-2026-49216
Affects
symfony/ux-autocomplete
| Versions
>=2.2.0, <2.36.0
>=3.0.0, <3.1.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-2325
Affects
github.com/mattermost/mattermost-plugin-msteams-meetings/server
| Versions
<2.4.1-rc1
C
Deserialization of Untrusted Data
CVE-2026-8751
Affects
ai.h2o:h2o-core
| Versions
[0,]