Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')
CVE-2026-71318
Affects
nuxt
| Versions
>=3.1.0 <3.21.10
>=4.0.0 <4.5.1
C
Arbitrary Code Injection
CVE-2026-71320
Affects
org.webjars.npm:nuxt
| Versions
[3.4.0,3.21.10)
[4.0.0,4.5.1)
C
Arbitrary Code Injection
CVE-2026-71320
Affects
@nuxt/nitro-server
| Versions
<3.21.10
>=4.2.0 <4.5.1
C
Arbitrary Code Injection
CVE-2026-71320
Affects
nuxt
| Versions
>=3.4.0 <3.21.10
>=4.0.0 <4.5.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-71321
Affects
@nuxt/nitro-server
| Versions
<3.21.10
>=4.2.0 <4.5.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-71321
Affects
nuxt
| Versions
>=3.1.0 <3.21.10
>=4.0.0 <4.5.1
H
Missing Release of Memory after Effective Lifetime
CVE-2026-54876
Affects
openssl
| Versions
[0,]
H
Missing Release of Memory after Effective Lifetime
CVE-2026-54876
Affects
openssl
| Versions
[3.6.0-alpha1,]
M
Prototype Pollution
CVE-2026-14574
Affects
@theia/core
| Versions
>=0.7.0 <1.74.0
H
Directory Traversal
CVE-2026-12609
Affects
@theia/plugin-ext
| Versions
>=1.66.0 <1.74.0
H
Cross-site Request Forgery (CSRF)
CVE-2026-60009
Affects
@theia/filesystem
| Versions
<1.74.0
M
External Control of System or Configuration Setting
CVE-2026-70607
Affects
electron
| Versions
<39.8.8
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
H
Improper Encoding or Escaping of Output
CVE-2026-70609
Affects
electron
| Versions
<39.8.7
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.0
>=42.0.0-alpha.1 <42.0.0-beta.1
M
Exposure of Data Element to Wrong Session
CVE-2026-70602
Affects
electron
| Versions
<39.8.8
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
L
Improper Restriction of Rendered UI Layers or Frames
CVE-2026-70600
Affects
electron
| Versions
<39.8.8
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
M
Authentication Bypass by Primary Weakness
CVE-2026-70606
Affects
electron
| Versions
>=40.0.0-alpha.2 <40.10.6
>=41.0.0-alpha.1 <41.9.1
>=42.0.0-alpha.1 <42.5.1
>=43.0.0-alpha.1 <43.0.0
M
Command Injection
CVE-2026-70611
Affects
electron
| Versions
<39.8.9
>=40.0.0-alpha.2 <40.9.2
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
M
Improper Restriction of Rendered UI Layers or Frames
CVE-2026-70608
Affects
electron
| Versions
<39.8.10
>=40.0.0-alpha.2 <41.10.3
>=42.0.0-alpha.1 <42.0.1
H
Origin Validation Error
CVE-2026-70601
Affects
org.webjars.npm:electron
| Versions
[,39.8.9)
[40.0.0-alpha.2,40.9.2)
[41.0.0-alpha.1,41.2.2)
[42.0.0-alpha.1,42.0.0-beta.5)
H
Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-70597
Affects
electron
| Versions
<39.8.8
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
M
Out-of-bounds Read
CVE-2026-70598
Affects
electron
| Versions
<39.8.10
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
M
Incorrect Permission Assignment for Critical Resource
CVE-2026-70612
Affects
electron
| Versions
<39.8.8
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
H
Origin Validation Error
CVE-2026-70599
Affects
electron
| Versions
<39.8.7
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.0
>=42.0.0-alpha.1 <42.0.0-beta.1
C
Prototype Pollution
CVE-2026-70610
Affects
org.webjars.npm:electron
| Versions
[,39.8.9)
[40.0.0-alpha.2,40.9.2)
[41.0.0-alpha.1,41.2.2)
[42.0.0-alpha.1,42.0.0-beta.4)
C
Prototype Pollution
CVE-2026-70610
Affects
electron
| Versions
<39.8.9
>=40.0.0-alpha.2 <40.9.2
>=41.0.0-alpha.1 <41.2.2
>=42.0.0-alpha.1 <42.0.0-beta.4
M
Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-70604
Affects
electron
| Versions
<39.8.10
>=40.0.0-alpha.2 <40.9.3
>=41.0.0-alpha.1 <41.4.0
>=42.0.0-alpha.1 <42.0.0
M
Improper Neutralization of Null Byte or NUL Character
CVE-2026-70603
Affects
electron
| Versions
<39.8.6
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.1.1
>=42.0.0-alpha.1 <42.0.0-beta.1
H
Server-side Request Forgery (SSRF)
CVE-2026-70605
Affects
electron
| Versions
<39.8.8
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
C
Prototype Pollution
CVE-2026-70610
Affects
electron/electron
| Versions
[,39.8.9)
[40.0.0-alpha.2, 40.9.2)
[41.0.0-alpha.1, 41.2.2)
[42.0.0-alpha.1, 42.0.0-beta.4)
H
Origin Validation Error
CVE-2026-70601
Affects
electron
| Versions
<39.8.9
>=40.0.0-alpha.2 <40.9.2
>=41.0.0-alpha.1 <41.2.2
>=42.0.0-alpha.1 <42.0.0-beta.5