Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
  • H
Missing AuthorizationCVE-2026-28685
Affects kimai/kimai | Versions <2.51.0
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.2>=5.0.0-RC1, <5.9.0-beta.2
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.1>=5.0.0-RC1, <5.9.0-beta.2
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.1>=5.0.0-RC1, <5.9.0-beta.1
  • H
Template InjectionCVE-2026-28783
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.1>=5.0.0-RC1, <5.9.0-beta.1
  • H
Template InjectionCVE-2026-28784
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.1>=5.0.0-RC1, <5.9.0-beta.1
  • H
Template InjectionCVE-2026-28695
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.1>=5.8.7, <5.9.0-beta.1
  • M
Template InjectionCVE-2026-28697
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.1>=5.0.0-RC1, <5.9.0-beta.1
  • M
Missing AuthorizationCVE-2026-28696
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.1>=5.0.0-RC1, <5.9.0-beta.1
Affects craftcms/cms | Versions >=4.0.0-RC1, <4.17.0-beta.1>=5.0.0-RC1, <5.9.0-beta.1
Affects devcode-it/openstamanager | Versions <2.10.1
Affects devcode-it/openstamanager | Versions <2.10.1
Affects league/commonmark | Versions <2.8.1
Affects concrete5/core | Versions <9.4.8
Affects concrete5/core | Versions <9.4.8
Affects concrete5/core | Versions <9.4.8
Affects concrete5/core | Versions <9.4.8
Affects concrete5/core | Versions <9.4.8
Affects concrete5/core | Versions <9.4.8
Affects froxlor/froxlor | Versions <2.3.4
  • C
SQL InjectionCVE-2026-28501
Affects wwbn/avideo | Versions <24.0
  • H
Arbitrary File UploadCVE-2026-28502
Affects wwbn/avideo | Versions <24.0
  • H
Command InjectionCVE-2026-28507
Affects idno/known | Versions <1.6.4
Affects idno/known | Versions >=0.0.0, <1.6.4
  • H
Missing AuthorizationCVE-2026-27836
Affects thorsten/phpmyfaq | Versions >=0.0.0, <4.0.18>=4.1.0-alpha, <4.1.0-RC.7
  • H
SQL InjectionCVE-2019-25450
Affects dolibarr/dolibarr | Versions <13.0.0
  • M
Missing AuthorizationCVE-2026-28424
Affects statamic/cms | Versions <5.73.11>=6.0.0-alpha.1, <6.4.0
Affects statamic/cms | Versions <5.73.11>=6.0.0-alpha.1, <6.4.0
  • H
SQL InjectionCVE-2019-25452
Affects dolibarr/dolibarr | Versions <10.0.2
Affects statamic/cms | Versions <5.73.11>=6.0.0-alpha.1, <6.4.0