Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Directory Traversal
Affects
wwbn/avideo
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2026-41061
Affects
wwbn/avideo
| Versions
>=0.0.0
M
Cross-site Request Forgery (CSRF)
Affects
wwbn/avideo
| Versions
>=0.0.0
M
Guessable CAPTCHA
Affects
wwbn/avideo
| Versions
>=0.0.0
H
Server-side Request Forgery (SSRF)
Affects
wwbn/avideo
| Versions
>=0.0.0
H
Permissive Cross-domain Policy with Untrusted Domains
Affects
wwbn/avideo
| Versions
>=0.0.0
H
Origin Validation Error
Affects
wwbn/avideo
| Versions
>=0.0.0
H
Cross-site Request Forgery (CSRF)
Affects
wwbn/avideo
| Versions
>=0.0.0
H
Directory Traversal
CVE-2026-40909
Affects
wwbn/avideo
| Versions
>=0.0.0
M
Active Debug Code
Affects
wwbn/avideo
| Versions
>=0.0.0
H
Cross-site Request Forgery (CSRF)
Affects
wwbn/avideo
| Versions
>=0.0.0
C
Arbitrary Code Injection
CVE-2026-40911
Affects
wwbn/avideo
| Versions
>=0.0.0
H
Authorization Bypass Through User-Controlled Key
Affects
wwbn/avideo
| Versions
>=0.0.0
M
Protection Mechanism Failure
CVE-2026-22692
Affects
october/october
| Versions
<3.7.13
>=4.0.0, <4.1.5
M
Arbitrary Code Injection
CVE-2026-25125
Affects
october/october
| Versions
<3.7.14
>=4.0.0, <4.1.10
M
Cross-site Scripting (XSS)
CVE-2026-25133
Affects
october/october
| Versions
<3.7.14
>=4.0.0, <4.1.10
M
Cross-site Scripting (XSS)
CVE-2026-24906
Affects
october/october
| Versions
<3.7.14
>=4.0.0, <4.1.10
M
Cross-site Scripting (XSS)
CVE-2026-24907
Affects
october/october
| Versions
<3.7.14
>=4.0.0, <4.1.10
H
Command Injection
CVE-2026-40261
Affects
composer/composer
| Versions
>=2.0.0, <2.2.27
>=2.3.0, <2.9.6
H
Command Injection
CVE-2026-40176
Affects
composer/composer
| Versions
>=2.0.0, <2.2.27
>=2.3.0, <2.9.6
H
Access Control Bypass
CVE-2026-38530
Affects
krayin/laravel-crm
| Versions
>=2.2.0
H
Authorization Bypass Through User-Controlled Key
CVE-2026-38532
Affects
krayin/laravel-crm
| Versions
>=2.2.0
H
Authorization Bypass Through User-Controlled Key
CVE-2026-38529
Affects
krayin/laravel-crm
| Versions
>=2.2.0
H
Arbitrary Code Injection
CVE-2026-38526
Affects
krayin/laravel-crm
| Versions
>=2.2.0
H
Server-side Request Forgery (SSRF)
CVE-2026-38527
Affects
krayin/laravel-crm
| Versions
>=2.2.0
H
SQL Injection
CVE-2026-38528
Affects
krayin/laravel-crm
| Versions
>=2.2.0
H
Directory Traversal
CVE-2026-30480
Affects
librenms/librenms
| Versions
>=22.11.0
M
Inefficient Algorithmic Complexity
CVE-2026-40476
Affects
webonyx/graphql-php
| Versions
<15.31.5
L
Incomplete List of Disallowed Inputs
Affects
kimai/kimai
| Versions
<2.53.0
M
Missing Authorization
CVE-2026-32270
Affects
craftcms/commerce
| Versions
>=4.0.0, <4.11.0
>=5.0.0, <5.6.0