Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Authorization Bypass Through User-Controlled Key
CVE-2026-53675
Affects
buddypress/buddypress
| Versions
>=0.0.0
C
SQL Injection
CVE-2026-79752
Affects
cakephp/database
| Versions
<4.5.12
>=4.6.0, <4.6.5
>=5.0.0, <5.1.9
>=5.2.0, <5.2.14
>=5.3.0, <5.3.7
C
SQL Injection
CVE-2026-79752
Affects
cakephp/cakephp
| Versions
<4.5.12
>=4.6.0, <4.6.5
>=5.0.0, <5.1.9
>=5.2.0, <5.2.14
>=5.3.0, <5.3.7
M
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')
CVE-2026-54614
Affects
cakephp/debug_kit
| Versions
<4.10.3
>=5.0.0, <5.2.4
M
Incomplete Comparison with Missing Factors
CVE-2026-54713
Affects
cakephp/queue
| Versions
>=0.1.10, <2.3.1
H
Deserialization of Untrusted Data
CVE-2026-10721
Affects
concrete5/concrete5
| Versions
<9.5.2
M
Cross-site Scripting (XSS)
CVE-2026-44701
Affects
devcode-it/openstamanager
| Versions
<2.11-beta
H
Incorrect Authorization
CVE-2026-81892
Affects
easycorp/easyadmin-bundle
| Versions
>=4.0.0, <4.29.16
>=5.0.0, <5.5.1
M
Information Exposure
CVE-2026-84307
Affects
filament/filament
| Versions
>=4.0.0, <4.12.5
>=5.0.0, <5.7.5
H
Replay Attack
CVE-2026-84306
Affects
filament/filament
| Versions
>=4.0.0, <4.12.6
>=5.0.0, <5.7.6
C
Insufficient Verification of Data Authenticity
CVE-2026-92161
Affects
fof/oauth
| Versions
<1.7.4
>=2.0.0-beta.1, <2.0.0-beta.4
H
Directory Traversal
CVE-2026-75594
Affects
getkirby/cms
| Versions
<4.9.5
>=5.0.0, <5.5.2
H
Missing Authorization
CVE-2026-71415
Affects
getkirby/cms
| Versions
>=5.0.0, <5.5.2
M
Directory Traversal
CVE-2026-75592
Affects
getkirby/cms
| Versions
<4.9.5
>=5.0.0, <5.5.2
M
Cross-site Scripting (XSS)
CVE-2026-12202
Affects
intelliants/subrion
| Versions
>=0.0.0
M
Prototype Pollution
CVE-2026-81887
Affects
livewire/livewire
| Versions
>=3.0.0-beta.1, <3.8.3
>=4.0.0-beta.1, <4.3.4
H
External Control of File Name or Path
CVE-2026-84374
Affects
maatwebsite/excel
| Versions
>=3.1.8, <3.1.70
H
Allocation of Resources Without Limits or Throttling
CVE-2026-53965
Affects
mcp/sdk
| Versions
>=0.5.0, <0.7.1
H
Directory Traversal
CVE-2026-55224
Affects
mineadmin/mineadmin
| Versions
<3.2.0-alpha.2
L
Improper Input Validation
Affects
october/october
| Versions
>=4.3.0, <4.3.5
L
Access Control Bypass
CVE-2026-46696
Affects
october/system
| Versions
<3.7.17
>=4.0.0, <4.2.23
H
Race Condition
CVE-2026-71537
Affects
paymenter/paymenter
| Versions
<1.5.7
H
Incorrect Authorization
CVE-2026-55643
Affects
snipe/snipe-it
| Versions
<8.6.3
H
Authorization Bypass Through User-Controlled Key
CVE-2026-55694
Affects
snipe/snipe-it
| Versions
<8.6.3
M
Missing Authorization
CVE-2026-55703
Affects
snipe/snipe-it
| Versions
<8.6.3
M
Cross-site Scripting (XSS)
CVE-2026-61807
Affects
snipe/snipe-it
| Versions
<8.6.2
H
Cross-site Scripting (XSS)
CVE-2026-62368
Affects
snipe/snipe-it
| Versions
<8.7.0
H
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-63493
Affects
snipe/snipe-it
| Versions
<8.7.0
H
Cross-site Scripting (XSS)
CVE-2026-63498
Affects
snipe/snipe-it
| Versions
<8.7.0
M
Directory Traversal
CVE-2026-59944
Affects
composer/composer
| Versions
>=1.0.0, <2.2.30
>=2.3.0, <2.10.3