Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Improper Verification of Source of a Communication Channel
CVE-2026-55660
Affects
tinacms
| Versions
<3.9.3
H
Improper Verification of Source of a Communication Channel
CVE-2026-55660
Affects
@tinacms/app
| Versions
<2.5.6
M
Cross-site Scripting (XSS)
CVE-2026-55661
Affects
tinacms
| Versions
<3.9.3
M
Cross-site Scripting (XSS)
CVE-2026-55661
Affects
@tinacms/mdx
| Versions
<2.1.7
C
Deserialization of Untrusted Data
CVE-2026-49286
Affects
pontedilana/php-weasyprint
| Versions
<2.6.0
C
Deserialization of Untrusted Data
CVE-2026-45034
Affects
phpoffice/phpspreadsheet
| Versions
<1.30.5
>=2.0.0, <2.1.17
>=2.2.0, <2.4.6
>=3.3.0, <3.10.6
>=4.0.0, <5.8.0
H
Missing Authentication for Critical Function
CVE-2026-46612
Affects
github.com/fission/fission/pkg/storagesvc/client
| Versions
<1.23.0-rc1
H
Missing Authentication for Critical Function
CVE-2026-46612
Affects
github.com/fission/fission/pkg/storagesvc
| Versions
<1.23.0-rc1
H
Missing Authentication for Critical Function
CVE-2026-46612
Affects
github.com/fission/fission/pkg/fission-cli/cmd/package/util
| Versions
<1.23.0-rc1
H
Missing Authentication for Critical Function
CVE-2026-46612
Affects
github.com/fission/fission/pkg/fission-cli/cmd/archive
| Versions
<1.23.0-rc1
H
Missing Authentication for Critical Function
CVE-2026-46612
Affects
github.com/fission/fission/pkg/fetcher
| Versions
<1.23.0-rc1
H
Missing Authentication for Critical Function
CVE-2026-46612
Affects
github.com/fission/fission/pkg/fetcher/config
| Versions
<1.23.0-rc1
M
Server-side Request Forgery (SSRF)
CVE-2026-55599
Affects
phpseclib/phpseclib
| Versions
>=0.1.1, <1.0.30
>=2.0.0, <2.0.55
>=3.0.0, <3.0.54
M
Cross-site Scripting (XSS)
Affects
silverstripe/cms
| Versions
>=3.1.0, <3.1.10-rc1
H
Execution with Unnecessary Privileges
CVE-2026-46617
Affects
github.com/fission/fission/pkg/executor/executortype/newdeploy
| Versions
<1.23.0-rc1
H
Execution with Unnecessary Privileges
CVE-2026-46617
Affects
github.com/fission/fission/pkg/executor/executortype/poolmgr
| Versions
<1.23.0-rc1
M
Server-side Request Forgery (SSRF)
CVE-2026-49359
Affects
pontedilana/php-weasyprint
| Versions
<2.6.0
H
Inefficient Algorithmic Complexity
Affects
parse-server
| Versions
<8.6.82
>=9.0.0-alpha.1 <9.9.1-alpha.12
H
Command Injection
CVE-2026-49260
Affects
pontedilana/php-weasyprint
| Versions
<2.5.1
L
Cross-site Scripting (XSS)
CVE-2026-55778
Affects
parse-server
| Versions
>=6.2.0 <8.6.81
>=9.0.0-alpha.1 <9.9.1-alpha.11
M
Cross-site Scripting (XSS)
Affects
silverstripe/cms
| Versions
>=3.1.0, <3.1.10-rc1
M
Insertion of Sensitive Information Into Sent Data
Affects
parse-server
| Versions
<8.6.83
>=9.0.0-alpha.1 <9.9.1-alpha.13
H
Improper Handling of Case Sensitivity
CVE-2026-49336
Affects
@microsoft/kiota-http-fetchlibrary
| Versions
>=1.0.0-preview.97 <1.0.0-preview.102
M
Infinite loop
CVE-2026-54651
Affects
pypdf
| Versions
[3.1.0,6.13.1)
C
Malicious Package
Affects
node-fetch-utils
| Versions
*
C
Malicious Package
Affects
crud-respect
| Versions
*
C
Malicious Package
Affects
search-from-search
| Versions
*
C
Malicious Package
Affects
node-core-libs
| Versions
*
C
Malicious Package
Affects
respects-switch
| Versions
*
C
Malicious Package
Affects
setka-editor
| Versions
*