Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Improper Input Validation
CVE-2026-24733
Affects
tomcat-docs-webapp
| Versions
<0:7.0.76-10.amzn2.0.16
M
Improper Input Validation
CVE-2026-24733
Affects
tomcat-javadoc
| Versions
<0:7.0.76-10.amzn2.0.16
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
golang-src
| Versions
<0:1.25.8-1.amzn2.0.1
M
CRLF Injection
CVE-2026-28296
Affects
gvfs-goa
| Versions
<0:1.36.2-3.amzn2.0.2
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
golang-bin
| Versions
<0:1.25.8-1.amzn2.0.1
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
golang-docs
| Versions
<0:1.25.8-1.amzn2.0.1
M
Cross-site Scripting (XSS)
CVE-2026-27142
Affects
golang-misc
| Versions
<0:1.25.8-1.amzn2.0.1
M
Cross-site Scripting (XSS)
CVE-2026-27142
Affects
golang-tests
| Versions
<0:1.25.8-1.amzn2.0.1
H
Uncaught Exception
CVE-2026-27631
Affects
exiv2-doc
| Versions
<0:0.27.0-4.amzn2.0.7
H
Use After Free
CVE-2026-2789
Affects
thunderbird
| Versions
<0:140.8.0-1.amzn2.0.1
H
Out-of-bounds Read
CVE-2026-27596
Affects
exiv2-doc
| Versions
<0:0.27.0-4.amzn2.0.7
H
Use After Free
CVE-2026-2786
Affects
thunderbird
| Versions
<0:140.8.0-1.amzn2.0.1
H
CVE-2026-2761
CVE-2026-2761
Affects
thunderbird
| Versions
<0:140.8.0-1.amzn2.0.1
H
Buffer Overflow
CVE-2026-2005
Affects
postgresql-docs
| Versions
<0:9.2.24-8.amzn2.0.9
M
CVE-2025-29070
CVE-2025-29070
Affects
lcms2-utils
| Versions
<0:2.6-3.amzn2.0.3
M
Allocation of Resources Without Limits or Throttling
CVE-2025-61726
Affects
amazon-cloudwatch-agent
| Versions
<0:1.300064.1-1.amzn2
M
CVE-2025-29070
CVE-2025-29070
Affects
lcms2
| Versions
<0:2.6-3.amzn2.0.3
M
Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2025-13946
Affects
wireshark-devel
| Versions
<1:2.6.2-15.amzn2.0.10
M
Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2025-13946
Affects
wireshark-cli
| Versions
<1:2.6.2-15.amzn2.0.10
M
Buffer Over-read
CVE-2024-4853
Affects
wireshark-cli
| Versions
<1:2.6.2-15.amzn2.0.10
M
Buffer Over-read
CVE-2024-11596
Affects
wireshark
| Versions
<1:2.6.2-15.amzn2.0.10
M
Cross-site Scripting (XSS)
CVE-2026-27142
Affects
golang-docs
| Versions
<0:1.25.8-1.amzn2.0.1
M
Buffer Over-read
CVE-2024-4853
Affects
wireshark-devel
| Versions
<1:2.6.2-15.amzn2.0.10
M
Improper Input Validation
CVE-2026-24733
Affects
tomcat-lib
| Versions
<0:7.0.76-10.amzn2.0.16
M
Improper Input Validation
CVE-2026-24733
Affects
tomcat-webapps
| Versions
<0:7.0.76-10.amzn2.0.16
M
Cross-site Scripting (XSS)
CVE-2026-27142
Affects
golang-shared
| Versions
<0:1.25.8-1.amzn2.0.1
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
golang
| Versions
<0:1.25.8-1.amzn2.0.1
M
Cross-site Scripting (XSS)
CVE-2026-27142
Affects
golist-debuginfo
| Versions
<0:0.10.1-10.amzn2.0.11
M
Improper Input Validation
CVE-2026-24733
Affects
tomcat-el-2.2-api
| Versions
<0:7.0.76-10.amzn2.0.16
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
golang-shared
| Versions
<0:1.25.8-1.amzn2.0.1