Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Direct Request ('Forced Browsing')
CVE-2026-21715
Affects
nodejs22-libs-debuginfo
| Versions
<1:22.22.2-1.amzn2023.0.1
H
Incorrect Execution-Assigned Permissions
CVE-2026-21716
Affects
v8-12.4-devel
| Versions
<3:12.4.254.21-1.22.22.2.1.amzn2023.0.1
H
Incorrect Execution-Assigned Permissions
CVE-2026-21716
Affects
nodejs22-libs
| Versions
<1:22.22.2-1.amzn2023.0.1
H
Information Exposure
CVE-2026-21713
Affects
nodejs22
| Versions
<1:22.22.2-1.amzn2023.0.1
H
Missing Release of Resource after Effective Lifetime
CVE-2026-21714
Affects
v8-11.3-devel
| Versions
<3:11.3.244.8-1.20.20.2.1.amzn2023.0.1
H
Reversible One-Way Hash
CVE-2026-21717
Affects
nodejs20-full-i18n
| Versions
<1:20.20.2-1.amzn2023.0.1
H
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-21710
Affects
nodejs22-libs
| Versions
<1:22.22.2-1.amzn2023.0.1
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
oci-add-hooks-debugsource
| Versions
<0:0-0.1.20200504git268e3bb.amzn2023.0.9
M
Cross-site Scripting (XSS)
CVE-2026-27142
Affects
oci-add-hooks-debuginfo
| Versions
<0:0-0.1.20200504git268e3bb.amzn2023.0.9
H
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-21710
Affects
nodejs22-npm
| Versions
<1:10.9.7-1.22.22.2.1.amzn2023.0.1
H
Information Exposure
CVE-2026-21713
Affects
nodejs22-debuginfo
| Versions
<1:22.22.2-1.amzn2023.0.1
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
oci-add-hooks-debuginfo
| Versions
<0:0-0.1.20200504git268e3bb.amzn2023.0.9
H
Cross-site Scripting (XSS)
CVE-2026-27142
Affects
soci-snapshotter
| Versions
<0:0.13.0-1.amzn2023.0.1
H
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-21710
Affects
nodejs22
| Versions
<1:22.22.2-1.amzn2023.0.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-27858
Affects
dovecot-pigeonhole
| Versions
<1:2.3.20-1.amzn2023.0.3
H
Incorrect Behavior Order: Authorization Before Parsing and Canonicalization
CVE-2026-33186
Affects
amazon-cloudwatch-agent
| Versions
<0:1.300064.2-1.amzn2023
H
Access of Uninitialized Pointer
CVE-2026-31790
Affects
openssl-debugsource
| Versions
<1:3.5.5-1.amzn2023.0.4
H
Allocation of Resources Without Limits or Throttling
CVE-2026-27858
Affects
dovecot-mysql
| Versions
<1:2.3.20-1.amzn2023.0.3
H
Improper Handling of Missing Special Element
CVE-2026-28389
Affects
openssl-libs-debuginfo
| Versions
<1:3.5.5-1.amzn2023.0.4
H
Access of Uninitialized Pointer
CVE-2026-31790
Affects
openssl
| Versions
<1:3.5.5-1.amzn2023.0.4
H
Access of Uninitialized Pointer
CVE-2026-31790
Affects
openssl-snapsafe-libs-debuginfo
| Versions
<1:3.5.5-1.amzn2023.0.4
H
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
amazon-cloudwatch-agent
| Versions
<0:1.300064.2-1.amzn2023
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-25679
Affects
docker
| Versions
<0:25.0.14-1.amzn2023.0.3
H
Expired Pointer Dereference
CVE-2026-33526
Affects
squid-debugsource
| Versions
<7:6.13-1.amzn2023.0.4
H
CVE-2026-28387
CVE-2026-28387
Affects
openssl-fips-provider-latest
| Versions
<1:3.5.5-1.amzn2023.0.4
M
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-33055
Affects
clippy-debuginfo
| Versions
<0:1.94.0-1.amzn2023.0.2
M
Link Following
CVE-2026-33056
Affects
rust-gdb
| Versions
<0:1.94.0-1.amzn2023.0.2
M
Access of Resource Using Incompatible Type ('Type Confusion')
CVE-2026-33055
Affects
rust-debugger-common
| Versions
<0:1.94.0-1.amzn2023.0.2
M
Incorrect Calculation of Multi-Byte String Length
CVE-2026-0810
Affects
rust-std-static-wasm32-unknown-unknown
| Versions
<0:1.94.0-1.amzn2023.0.2
H
Improper Handling of Missing Special Element
CVE-2026-28389
Affects
openssl-debugsource
| Versions
<1:3.5.5-1.amzn2023.0.4