Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Authorization Bypass Through User-Controlled Key
CVE-2026-55516
Affects
snipe/snipe-it
| Versions
<8.6.2
M
Authorization Bypass Through User-Controlled Key
CVE-2026-55478
Affects
snipe/snipe-it
| Versions
<8.6.2
H
Improper Privilege Management
CVE-2026-55843
Affects
snipe/snipe-it
| Versions
<8.6.0
H
Relative Path Traversal
CVE-2026-55474
Affects
snipe/snipe-it
| Versions
<8.5.0
M
Directory Traversal
CVE-2026-57961
Affects
thorsten/phpmyfaq
| Versions
<4.1.5
M
Directory Traversal
CVE-2026-57961
Affects
phpmyfaq/phpmyfaq
| Versions
<4.1.5
M
Information Exposure
CVE-2026-57994
Affects
thorsten/phpmyfaq
| Versions
>=4.1.0, <4.1.5
M
Information Exposure
CVE-2026-57994
Affects
phpmyfaq/phpmyfaq
| Versions
>=4.1.0, <4.1.5
H
Allocation of Resources Without Limits or Throttling
CVE-2026-53653
Affects
getgrav/grav
| Versions
<1.7.53
>=2.0.0-beta.1, <2.0.0-rc.8
M
Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-59193
Affects
getgrav/grav
| Versions
>=1.0.0, <2.0.0
H
Arbitrary Code Injection
CVE-2026-61450
Affects
getgrav/grav
| Versions
<2.0.2
H
Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-61455
Affects
getgrav/grav
| Versions
<2.0.1
M
Cross-site Scripting (XSS)
CVE-2026-61456
Affects
getgrav/grav
| Versions
<1.0.3
M
Incorrect Authorization
CVE-2026-53638
Affects
sylius/sylius
| Versions
>=2.0.0, <2.0.18
>=2.1.0, <2.1.15
>=2.2.0, <2.2.6
M
Authorization Bypass Through User-Controlled Key
CVE-2026-53639
Affects
sylius/sylius
| Versions
>=2.0.0, <2.0.18
>=2.1.0, <2.1.15
>=2.2.0, <2.2.6
H
Improper Enforcement of Behavioral Workflow
CVE-2026-53637
Affects
sylius/sylius
| Versions
>=2.0.0, <2.0.18
>=2.1.0, <2.1.15
>=2.2.0, <2.2.6
H
Cross-site Request Forgery (CSRF)
CVE-2026-58143
Affects
cotonti/cotonti
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2026-58144
Affects
cotonti/cotonti
| Versions
>=0.0.0
H
SQL Injection
CVE-2026-55208
Affects
pimcore/studio-backend-bundle
| Versions
<2025.4.6
>=2026.1.0, <2026.1.6
H
Weak Password Recovery Mechanism for Forgotten Password
CVE-2026-55207
Affects
pimcore/studio-backend-bundle
| Versions
<2025.4.6
>=2026.1.0, <2026.1.6
H
Improper Authorization
CVE-2026-55212
Affects
pimcore/studio-backend-bundle
| Versions
<2025.4.6
>=2026.1.0, <2026.1.6
H
Command Injection
CVE-2026-53932
Affects
wnx/laravel-backup-restore
| Versions
<1.9.4
H
SQL Injection
CVE-2026-52770
Affects
yeswiki/yeswiki
| Versions
<4.6.6
H
Improper Verification of Cryptographic Signature
CVE-2026-52767
Affects
yeswiki/yeswiki
| Versions
>=4.6.2, <4.6.6
C
Deserialization of Untrusted Data
CVE-2026-52777
Affects
yeswiki/yeswiki
| Versions
<4.6.6
H
SQL Injection
CVE-2026-52771
Affects
yeswiki/yeswiki
| Versions
>=4.2.0, <4.6.6
H
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-52762
Affects
yeswiki/yeswiki
| Versions
<4.6.6
M
Server-side Request Forgery (SSRF)
CVE-2026-52769
Affects
yeswiki/yeswiki
| Versions
>=4.6.2, <4.6.6
H
Missing Authorization
CVE-2026-52766
Affects
yeswiki/yeswiki
| Versions
<4.6.6
H
SQL Injection
CVE-2026-52775
Affects
yeswiki/yeswiki
| Versions
<4.6.6