Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Missing Authorization
CVE-2026-56826
Affects
shopper/framework
| Versions
>=2.0.0, <2.9.2
H
Improper Input Validation
CVE-2026-56831
Affects
shopper/framework
| Versions
<2.9.0
H
Missing Authorization
CVE-2026-56830
Affects
shopper/framework
| Versions
<2.9.2
H
Missing Authorization
CVE-2026-56829
Affects
shopper/framework
| Versions
<2.9.2
H
Missing Authorization
CVE-2026-56825
Affects
shopper/framework
| Versions
<2.9.2
H
Arbitrary Code Injection
CVE-2026-54721
Affects
silverstripe/userforms
| Versions
<6.4.9
>=7.0.0, <7.0.7
>=7.1.0, <7.1.1
M
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-91715
Affects
chromium
| Versions
[,153.0.8010.47)
M
Cross-site Scripting (XSS)
CVE-2026-55779
Affects
silverstripe/versioned
| Versions
<3.2.1
H
Use After Free
CVE-2026-87542
Affects
chromium
| Versions
[,153.0.8010.36)
H
Use After Free
CVE-2026-87536
Affects
chromium
| Versions
[,153.0.8010.36)
M
Server-side Request Forgery (SSRF)
CVE-2026-62993
Affects
smarty/smarty
| Versions
<4.5.7
>=5.0.0, <5.8.2
M
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-73858
Affects
solspace/craft-freeform
| Versions
>=5.0.0, <5.10.14
H
Improper Restriction of Operations within the Bounds of a Memory Buffer
CVE-2026-87489
Affects
chromium
| Versions
[,153.0.8010.36)
M
Incorrect Authorization
CVE-2026-87471
Affects
chromium
| Versions
[,153.0.8010.36)
M
Improper Input Validation
CVE-2026-87472
Affects
chromium
| Versions
[,153.0.8010.36)
M
Missing Authorization
CVE-2026-87441
Affects
chromium
| Versions
[,153.0.8010.36)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-53673
Affects
buddypress/buddypress
| Versions
<14.5.0
M
Heap-based Buffer Overflow
CVE-2026-87430
Affects
chromium
| Versions
[,153.0.8010.36)
M
Incorrect Authorization
CVE-2026-93379
Affects
chromium
| Versions
[,153.0.8010.52)
M
Authorization Bypass Through User-Controlled Key
CVE-2026-53675
Affects
buddypress/buddypress
| Versions
>=0.0.0
C
SQL Injection
CVE-2026-79752
Affects
cakephp/database
| Versions
<4.5.12
>=4.6.0, <4.6.5
>=5.0.0, <5.1.9
>=5.2.0, <5.2.14
>=5.3.0, <5.3.7
C
SQL Injection
CVE-2026-79752
Affects
cakephp/cakephp
| Versions
<4.5.12
>=4.6.0, <4.6.5
>=5.0.0, <5.1.9
>=5.2.0, <5.2.14
>=5.3.0, <5.3.7
M
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-87564
Affects
chromium
| Versions
[,153.0.8010.36)
M
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')
CVE-2026-54614
Affects
cakephp/debug_kit
| Versions
<4.10.3
>=5.0.0, <5.2.4
M
Incomplete Comparison with Missing Factors
CVE-2026-54713
Affects
cakephp/queue
| Versions
>=0.1.10, <2.3.1
H
Deserialization of Untrusted Data
CVE-2026-10721
Affects
concrete5/concrete5
| Versions
<9.5.2
M
Cross-site Scripting (XSS)
CVE-2026-44701
Affects
devcode-it/openstamanager
| Versions
<2.11-beta
H
Incorrect Authorization
CVE-2026-81892
Affects
easycorp/easyadmin-bundle
| Versions
>=4.0.0, <4.29.16
>=5.0.0, <5.5.1
M
Information Exposure
CVE-2026-84307
Affects
filament/filament
| Versions
>=4.0.0, <4.12.5
>=5.0.0, <5.7.5
H
Replay Attack
CVE-2026-84306
Affects
filament/filament
| Versions
>=4.0.0, <4.12.6
>=5.0.0, <5.7.6