Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Improper Input Validation
CVE-2012-1589
Affects
drupal7
| Versions
<7.14-1
M
Cross-site Request Forgery (CSRF)
CVE-2007-6752
Affects
drupal7
| Versions
*
L
Cross-site Request Forgery (CSRF)
CVE-2007-6752
Affects
drupal7
| Versions
*
H
Access Restriction Bypass
CVE-2011-2687
Affects
drupal7
| Versions
<7.2-1
H
Access Restriction Bypass
CVE-2011-2687
Affects
drupal7
| Versions
<7.2-1
M
Cross-site Scripting (XSS)
Affects
drupal/bootstrap
| Versions
>=3.0.0, <3.14.0
L
Missing Authorization
CVE-2026-15916
Affects
drupal/core
| Versions
<10.6.13
>=11.0.0-alpha1, <11.3.14
>=11.4.0, <11.4.4
M
Cross-site Scripting (XSS)
CVE-2026-55805
Affects
drupal/core
| Versions
<10.6.13
>=11.0.0-alpha1, <11.3.14
>=11.4.0, <11.4.4
H
Server-side Request Forgery (SSRF)
CVE-2026-55807
Affects
drupal/core
| Versions
<10.5.12
>=10.6.0, <10.6.11
>=11.0.0, <11.2.14
>=11.3.0, <11.3.12
M
Cross-site Scripting (XSS)
CVE-2026-55808
Affects
drupal/core
| Versions
<10.5.12
>=10.6.0, <10.6.11
>=11.0.0, <11.2.14
>=11.3.0, <11.3.12
H
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-55804
Affects
drupal/core
| Versions
<10.5.12
>=10.6.0, <10.6.11
>=11.0.0, <11.2.14
>=11.3.0, <11.3.12
C
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-55803
Affects
drupal/core
| Versions
<10.5.12
>=10.6.0, <10.6.11
>=11.0.0, <11.2.14
>=11.3.0, <11.3.12
M
Open Redirect
CVE-2026-55806
Affects
drupal/core
| Versions
<10.5.12
>=10.6.0, <10.6.11
>=11.0.0, <11.2.14
>=11.3.0, <11.3.12
M
Cross-site Scripting (XSS)
CVE-2026-6365
Affects
drupal/core
| Versions
>=8.0.0, <10.5.9
>=10.6.0, <10.6.7
>=11.0.0, <11.2.11
>=11.3.0, <11.3.7
M
Cross-site Scripting (XSS)
CVE-2026-6367
Affects
drupal/core
| Versions
>=11.3.0-alpha1, <11.3.7
H
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-6366
Affects
drupal/core
| Versions
<10.5.9
>=10.6.0-beta1, <10.6.7
>=11.0.0-alpha1, <11.2.11
>=11.3.0-alpha1, <11.3.7
C
SQL Injection
CVE-2026-9082
Affects
drupal/core
| Versions
>=8.9.0-beta1, <10.4.10
>=10.5.0-beta1, <10.5.10
>=10.6.0-beta1, <10.6.9
>=11.0.0-alpha1, <11.1.10
>=11.2.0-alpha1, <11.2.12
>=11.3.0-alpha1, <11.3.10
L
User Interface (UI) Misrepresentation of Critical Information
CVE-2025-13082
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
L
Use of Web Browser Cache Containing Sensitive Information
CVE-2025-13083
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
H
Deserialization of Untrusted Data
CVE-2025-13081
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
M
Improper Check for Unusual or Exceptional Conditions
CVE-2025-13080
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
M
Incorrect Authorization
CVE-2025-31673
Affects
drupal/core
| Versions
<10.3.13
>=10.4.0, <10.4.3
>=11.0.0, <11.0.12
>=11.1.0, <11.1.3
M
Cross-site Scripting (XSS)
CVE-2025-31675
Affects
drupal/core
| Versions
<10.3.14
>=10.4.0, <10.4.5
>=11.0.0, <11.0.13
>=11.1.0, <11.1.5
L
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2025-31674
Affects
drupal/core
| Versions
<10.3.13
>=10.4.0, <10.4.3
>=11.0.0, <11.0.12
>=11.1.0, <11.1.3
M
Cross-site Scripting (XSS)
CVE-2025-3057
Affects
drupal/core
| Versions
<10.3.13
>=10.4.0, <10.4.3
>=11.0.0, <11.0.12
>=11.1.0, <11.1.3
C
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2024-55638
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
C
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2024-55636
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
>=11.0.0, <11.0.8
C
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2024-55637
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
>=11.0.0, <11.0.8
H
Improper Handling of Case Sensitivity
CVE-2024-55634
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
>=11.0.0, <11.0.8
M
Cross-site Scripting (XSS)
CVE-2024-12393
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
>=11.0.0, <11.0.8