Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Always-Incorrect Control Flow Implementation
CVE-2026-33011
Affects
@nestjs/core
| Versions
<11.1.17
L
Incorrect Resource Transfer Between Spheres
CVE-2026-32772
Affects
inetutils
| Versions
[0,]
C
Improper Verification of Cryptographic Signature
CVE-2026-32614
Affects
github.com/emmansun/gmsm/sm9
| Versions
<0.41.1
C
Improper Verification of Cryptographic Signature
CVE-2026-32614
Affects
github.com/emmansun/gmsm/internal/sm9/bn256
| Versions
<0.41.1
M
Insufficient Granularity of Access Control
CVE-2026-4105
Affects
systemd/systemd
| Versions
[225,226)
[259-rc1,259.4)
[260-rc1,260-rc3)
H
Prototype Pollution
CVE-2025-65587
Affects
graphql-upload-minimal
| Versions
<1.6.3
H
Allocation of Resources Without Limits or Throttling
CVE-2026-29112
Affects
@dicebear/converter
| Versions
<9.4.0
M
Authorization Bypass Through User-Controlled Key
CVE-2026-32638
Affects
@withstudiocms/effect
| Versions
<0.4.1
M
Authorization Bypass Through User-Controlled Key
CVE-2026-32638
Affects
@withstudiocms/api-spec
| Versions
<0.3.2
M
Authorization Bypass Through User-Controlled Key
CVE-2026-32638
Affects
effectify
| Versions
<0.2.0
M
Authorization Bypass Through User-Controlled Key
CVE-2026-32638
Affects
studiocms
| Versions
<0.4.4
C
Origin Validation Error
CVE-2026-27478
Affects
io.unitycatalog:unitycatalog-server
| Versions
[0,]
M
Memory Allocation with Excessive Size Value
CVE-2026-26246
Affects
github.com/mattermost/mattermost/server/public
| Versions
<0.1.22
M
Memory Allocation with Excessive Size Value
CVE-2026-26246
Affects
github.com/mattermost/mattermost/server/v8/channels/app/imaging
| Versions
<10.11.11-rc1
>=11.0.0-alpha.1 <11.2.3
>=11.3.0-rc1 <11.3.1
>=11.4.0-rc1 <11.5.0-rc1
C
Out-of-bounds Write
CVE-2026-32746
Affects
inetutils
| Versions
[0,]
H
Infinite loop
CVE-2026-32256
Affects
music-metadata
| Versions
<11.12.3
C
Missing Authentication for Critical Function
CVE-2026-33017
Affects
langflow-base
| Versions
[,0.8.1)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-33151
Affects
org.webjars.npm:socket.io-parser
| Versions
[0,]
H
Allocation of Resources Without Limits or Throttling
CVE-2026-33151
Affects
socket.io-parser
| Versions
<3.3.5
>=3.4.0 <3.4.4
>=4.0.0 <4.2.6
M
Deserialization of Untrusted Data
CVE-2026-1323
Affects
cpsit/typo3-mailqueue
| Versions
<0.4.5
>=0.5.0, <0.5.2
M
Prototype Pollution
CVE-2026-31865
Affects
elysia
| Versions
<1.4.27
L
Missing Authorization
CVE-2026-4202
Affects
ayacoo/redirect-tab
| Versions
<2.1.2
>=3.0.0, <3.1.7
>=4.0.0, <4.0.5
M
Cross-site Scripting (XSS)
CVE-2026-4175
Affects
aureuserp/aureuserp
| Versions
<1.3.0-BETA1
H
Authorization Bypass Through User-Controlled Key
CVE-2026-4208
Affects
ralffreit/mfa-email
| Versions
<2.0.1
H
Authorization Bypass Through User-Controlled Key
CVE-2026-26004
Affects
sentry
| Versions
[0,]
M
Missing Authorization
CVE-2026-32265
Affects
craftcms/aws-s3
| Versions
>=2.0.2, <2.2.5
H
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-32261
Affects
craftcms/webhooks
| Versions
>=3.0.0-beta.1, <3.2.0
M
Missing Authentication for Critical Function
CVE-2026-32266
Affects
craftcms/google-cloud
| Versions
>=2.0.0-beta.1, <2.2.1
H
Missing Authorization
CVE-2026-32268
Affects
craftcms/azure-blob
| Versions
>=2.0.0-beta.1, <2.1.1
M
Cross-site Scripting (XSS)
CVE-2026-32757
Affects
admidio/admidio
| Versions
<5.0.7