Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Server-side Request Forgery (SSRF)
CVE-2026-49860
Affects
deno
| Versions
<2.8.1
M
Improper Handling of Unicode Encoding
CVE-2026-49401
Affects
deno
| Versions
<2.7.14
M
Access Control Bypass
CVE-2026-49411
Affects
deno
| Versions
<2.8.0
C
Missing Cryptographic Step
CVE-2026-49440
Affects
deno
| Versions
<2.8.1
M
Incorrect Authorization
CVE-2026-49983
Affects
deno_process
| Versions
<2.8.1
M
Incorrect Authorization
CVE-2026-49983
Affects
deno
| Versions
<2.8.1
C
Command Injection
CVE-2026-49402
Affects
deno
| Versions
<2.7.10
C
Cleartext Transmission of Sensitive Information
CVE-2026-44726
Affects
deno
| Versions
>=2.0.0 <2.7.8
H
Uncontrolled Recursion
Affects
lopdf
| Versions
<0.42.0
M
Uncaught Exception
Affects
tokio-postgres
| Versions
>=0.4.0 <0.7.18
M
Uncaught Exception
Affects
postgres-protocol
| Versions
<0.6.12
H
Denial of Service (DoS)
Affects
postgres-protocol
| Versions
>=0.3.0 <0.6.12
H
Integer Overflow or Wraparound
Affects
vibeio-http
| Versions
<0.3.2
L
Missing Release of Resource after Effective Lifetime
CVE-2026-54786
Affects
wasmtime-wasi
| Versions
<24.0.10
>=25.0.0 <36.0.11
>=37.0.0 <44.0.3
>=45.0.0 <45.0.2
M
Improper Validation of Specified Type of Input
Affects
http-types
| Versions
*
H
Out-of-bounds Read
Affects
pyo3
| Versions
>=0.24.0 <0.29.0
H
Race Condition
Affects
pyo3
| Versions
>=0.15.0 <0.29.0
M
Use After Free
Affects
metacall
| Versions
*
M
User Impersonation
CVE-2026-45056
Affects
matrix-sdk-crypto
| Versions
>=0.12.0 <0.16.1
M
Insufficient Verification of Data Authenticity
CVE-2026-45057
Affects
matrix-sdk-ui
| Versions
<0.16.1
L
Mismatched Memory Management Routines
CVE-2025-47737
Affects
trailer
| Versions
*
C
Embedded Malicious Code
Affects
onering
| Versions
=1.4.1
H
Improper Resource Shutdown or Release
CVE-2026-47213
Affects
boxlite
| Versions
*
C
Malicious Package
Affects
logflux
| Versions
*
C
Malicious Package
Affects
exploration
| Versions
*
M
Directory Traversal
CVE-2026-47144
Affects
shamefile
| Versions
<0.1.7
M
Out-of-bounds Write
CVE-2026-52834
Affects
jxl-grid
| Versions
<0.6.2
H
Access of Resource Using Incompatible Type ('Type Confusion')
Affects
tar
| Versions
<0.4.46
H
Directory Traversal
Affects
uv-install-wheel
| Versions
<0.0.48
H
Directory Traversal
Affects
uv-fs
| Versions
<0.0.48