Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
HTTP Response Splitting
CVE-2026-42035
Affects
org.webjars.npm:axios
| Versions
[,1.15.1)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-42034
Affects
org.webjars.npm:axios
| Versions
[,1.15.1)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-42036
Affects
org.webjars.npm:axios
| Versions
[,1.15.1)
M
Insertion of Sensitive Information Into Sent Data
CVE-2026-42042
Affects
org.webjars.npm:axios
| Versions
[,1.15.1)
M
CRLF Injection
CVE-2026-42037
Affects
org.webjars.npm:axios
| Versions
[1.3.0,1.15.1)
C
Prototype Pollution
CVE-2026-42033
Affects
org.webjars.npm:axios
| Versions
[,1.15.1)
H
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-42044
Affects
org.webjars.npm:axios
| Versions
[1.0.0,1.15.2)
H
Uncontrolled Recursion
CVE-2026-42039
Affects
org.webjars.npm:axios
| Versions
[,1.15.1)
M
Prototype Pollution
CVE-2026-42041
Affects
org.webjars.npm:axios
| Versions
[,1.15.1)
M
Cross-site Scripting (XSS)
CVE-2026-42150
Affects
wlc
| Versions
[,2.0.0)
M
SQL Injection
CVE-2026-6982
Affects
showdoc/showdoc
| Versions
>=2.5.3, <3.8.1
M
Server-side Request Forgery (SSRF)
CVE-2026-41887
Affects
flarum/core
| Versions
<1.8.16
>=2.0.0-beta.1, <2.0.0-rc.1
H
Use of Incorrectly-Resolved Name or Reference
CVE-2026-40912
Affects
github.com/traefik/traefik/v3/pkg/middlewares/stripprefix
| Versions
>=3.0.0-beta1 <3.6.14
>=3.7.0-ea.1 <3.7.0-rc.2
H
Use of Incorrectly-Resolved Name or Reference
CVE-2026-40912
Affects
github.com/traefik/traefik/v3/pkg/middlewares/stripprefixregex
| Versions
>=3.0.0-beta1 <3.6.14
>=3.7.0-ea.1 <3.7.0-rc.2
C
Deserialization of Untrusted Data
CVE-2026-25524
Affects
openmage/magento-lts
| Versions
<20.17.0
H
Use of Incorrectly-Resolved Name or Reference
CVE-2026-40912
Affects
github.com/traefik/traefik/v2/pkg/middlewares/stripprefixregex
| Versions
<2.11.43
H
Use of Incorrectly-Resolved Name or Reference
CVE-2026-40912
Affects
github.com/traefik/traefik/v2/pkg/middlewares/stripprefix
| Versions
<2.11.43
H
Use of Incorrectly-Resolved Name or Reference
CVE-2026-40912
Affects
github.com/traefik/traefik/pkg/middlewares/stripprefix
| Versions
<2.11.43
>=3.0.0-beta1 <3.6.14
>=3.7.0-ea.1 <3.7.0-rc.2
H
Use of Incorrectly-Resolved Name or Reference
CVE-2026-40912
Affects
github.com/traefik/traefik/pkg/middlewares/stripprefixregex
| Versions
<2.11.43
>=3.0.0-beta1 <3.6.14
>=3.7.0-ea.1 <3.7.0-rc.2
H
CRLF Injection
Affects
phpunit/phpunit
| Versions
<12.5.22
>=13.0.0, <13.1.6
M
Missing Authorization
CVE-2026-40098
Affects
openmage/magento-lts
| Versions
<20.17.0
H
Improper Validation of Integrity Check Value
CVE-2026-40323
Affects
sp1-sdk
| Versions
>=6.0.0 <6.1.0
H
Improper Validation of Integrity Check Value
CVE-2026-40323
Affects
sp1-recursion-circuit
| Versions
>=6.0.0 <6.1.0
H
Improper Validation of Integrity Check Value
CVE-2026-40323
Affects
sp1-prover
| Versions
>=6.0.0 <6.1.0
H
Access Control Bypass
CVE-2026-35533
Affects
mise
| Versions
>=2026.2.18
M
Reachable Assertion
Affects
zebra-rpc
| Versions
>=1.0.0-beta.45 <6.0.2
M
Reachable Assertion
Affects
zebrad
| Versions
>=2.2.0 <4.3.1
C
Improper Following of Specification by Caller
CVE-2026-41583
Affects
zebrad
| Versions
<4.3.1
C
Improper Following of Specification by Caller
CVE-2026-41583
Affects
zebra-script
| Versions
<5.0.1
C
Reachable Assertion
CVE-2026-41584
Affects
zebrad
| Versions
<4.3.1