Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Prototype Pollution
CVE-2026-70610
Affects
org.webjars.npm:electron
| Versions
[,39.8.9)
[40.0.0-alpha.2,40.9.2)
[41.0.0-alpha.1,41.2.2)
[42.0.0-alpha.1,42.0.0-beta.4)
C
Prototype Pollution
CVE-2026-70610
Affects
electron
| Versions
<39.8.9
>=40.0.0-alpha.2 <40.9.2
>=41.0.0-alpha.1 <41.2.2
>=42.0.0-alpha.1 <42.0.0-beta.4
M
Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-70604
Affects
electron
| Versions
<39.8.10
>=40.0.0-alpha.2 <40.9.3
>=41.0.0-alpha.1 <41.4.0
>=42.0.0-alpha.1 <42.0.0
M
Improper Neutralization of Null Byte or NUL Character
CVE-2026-70603
Affects
electron
| Versions
<39.8.6
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.1.1
>=42.0.0-alpha.1 <42.0.0-beta.1
H
Server-side Request Forgery (SSRF)
CVE-2026-70605
Affects
electron
| Versions
<39.8.8
>=40.0.0-alpha.2 <40.9.1
>=41.0.0-alpha.1 <41.2.1
>=42.0.0-alpha.1 <42.0.0-beta.3
C
Prototype Pollution
CVE-2026-70610
Affects
electron/electron
| Versions
[,39.8.9)
[40.0.0-alpha.2, 40.9.2)
[41.0.0-alpha.1, 41.2.2)
[42.0.0-alpha.1, 42.0.0-beta.4)
H
Origin Validation Error
CVE-2026-70601
Affects
electron
| Versions
<39.8.9
>=40.0.0-alpha.2 <40.9.2
>=41.0.0-alpha.1 <41.2.2
>=42.0.0-alpha.1 <42.0.0-beta.5
M
HTTP Request Smuggling
CVE-2026-58044
Affects
node
| Versions
[22.0.0, 22.23.2)
[24.0.0, 24.18.1)
[26.0.0, 26.5.1)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-58045
Affects
node
| Versions
[22.0.0, 22.23.2)
[24.0.0, 24.18.1)
[26.0.0, 26.5.1)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-58042
Affects
node
| Versions
[22.0.0, 22.23.2)
[24.0.0, 24.18.1)
[26.0.0, 26.5.1)
M
Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-58041
Affects
node
| Versions
[24.0.0, 24.18.1)
[26.0.0, 26.5.1)
H
Use After Free
CVE-2026-56848
Affects
node
| Versions
[22.0.0, 22.23.2)
[24.0.0, 24.18.1)
[26.0.0, 26.5.1)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-56846
Affects
node
| Versions
[22.0.0, 22.23.2)
[24.0.0, 24.18.1)
H
NULL Pointer Dereference
CVE-2016-9296
Affects
p7zip
| Versions
[0,]
H
NULL Pointer Dereference
CVE-2016-9296
Affects
p7zip
| Versions
[0,]
M
Symlink Attack
CVE-2015-1038
Affects
p7zip
| Versions
[,9.38)
C
Malicious Package
Affects
mnemonic-py
| Versions
[0.21]
C
Malicious Package
Affects
@guangnao/claude-cli
| Versions
=1.0.5
C
Malicious Package
Affects
dolyame-boxy-atom-desktop-bnpl-dangerously-html
| Versions
=35.4.8
C
Malicious Package
Affects
dolyame-boxy-independent-bnpl-video
| Versions
=35.4.4
C
Malicious Package
Affects
devplatform-utils
| Versions
=35.5.2
C
Malicious Package
Affects
bigops-rx-post-message
| Versions
=35.1.5
C
Malicious Package
Affects
devplatform-spa-ui
| Versions
=35.8.2
C
Malicious Package
Affects
dolyame-boxy-independent-bnpl-items
| Versions
=35.3.5
C
Malicious Package
Affects
devplatform-ui-kit
| Versions
=35.6.2
C
Malicious Package
Affects
bigops-products-timeline-commons
| Versions
=35.1.6
C
Malicious Package
Affects
bigops-product-list
| Versions
=35.8.5
C
Malicious Package
Affects
bigops-statements-timeline
| Versions
=35.2.4
C
Malicious Package
Affects
dolyame-boxy-independent-bnpl-swagger
| Versions
=35.6.8
C
Malicious Package
Affects
chai-foundry
| Versions
=7.0.2
=7.0.3