Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Incorrect Authorization
CVE-2026-35596
Affects
github.com/go-vikunja/vikunja/pkg/models
| Versions
<2.3.0
M
Cross-site Scripting (XSS)
CVE-2026-35600
Affects
github.com/go-vikunja/vikunja/pkg/notifications
| Versions
<2.3.0
M
Cross-site Scripting (XSS)
CVE-2026-35600
Affects
github.com/go-vikunja/vikunja/pkg/modules/migration/handler
| Versions
<2.3.0
M
Cross-site Scripting (XSS)
CVE-2026-35600
Affects
github.com/go-vikunja/vikunja/pkg/models
| Versions
<2.3.0
H
Inefficient Algorithmic Complexity
CVE-2026-35599
Affects
github.com/go-vikunja/vikunja/pkg/models
| Versions
<2.3.0
M
Incorrect Authorization
CVE-2026-40103
Affects
github.com/go-vikunja/vikunja/pkg/models
| Versions
<2.3.0
M
CRLF Injection
CVE-2026-35601
Affects
github.com/go-vikunja/vikunja/pkg/caldav
| Versions
<2.3.0
H
Improper Certificate Validation
CVE-2026-4740
Affects
github.com/open-cluster-management-io/ocm/pkg/registration/register
| Versions
<1.2.1
H
Allocation of Resources Without Limits or Throttling
Affects
github.com/platform-mesh/kubernetes-graphql-gateway/gateway/gateway/endpoint
| Versions
<1.2.9
M
Insertion of Sensitive Information into Log File
Affects
github.com/cloudnativelabs/kube-router/v2/pkg/controllers/routing
| Versions
>=2.7.0 <2.9.0
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/transcribestreaming
| Versions
<1.34.5
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/sagemakerruntime
| Versions
<1.39.6
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/s3
| Versions
<1.97.3
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/lexruntimev2
| Versions
<1.35.15
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/lambda
| Versions
<1.88.5
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/kinesis
| Versions
<1.43.5
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/iotsitewise
| Versions
<1.52.19
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/cloudwatchlogs
| Versions
<1.65.0
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/bedrockruntime
| Versions
<1.50.4
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/bedrockagentruntime
| Versions
<1.51.8
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/service/bedrockagentcore
| Versions
<1.15.2
H
Uncaught Exception
Affects
github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream
| Versions
<1.7.8
H
Arbitrary Argument Injection
CVE-2026-40938
Affects
github.com/tektoncd/pipeline/pkg/resolution/resolver/git
| Versions
<1.11.1
H
Server-side Request Forgery (SSRF)
CVE-2026-40161
Affects
github.com/tektoncd/pipeline/pkg/resolution/resolver/git
| Versions
>=0.0.0
H
Arbitrary Code Injection
CVE-2026-41246
Affects
github.com/projectcontour/contour/internal/envoy/v3
| Versions
>=1.19.0 <1.31.6
>=1.32.0 <1.32.5
>=1.33.0 <1.33.4
H
Server-side Request Forgery (SSRF)
CVE-2026-39087
Affects
github.com/binwiederhier/ntfy/v2/server
| Versions
<2.21.0
H
Server-side Request Forgery (SSRF)
CVE-2026-39087
Affects
github.com/binwiederhier/ntfy/server
| Versions
>=0.0.0
H
Directory Traversal
CVE-2026-32885
Affects
github.com/ddev/ddev/pkg/archive
| Versions
<1.25.2
H
Allocation of Resources Without Limits or Throttling
CVE-2026-41135
Affects
github.com/free5gc/pcf/internal/sbi/processor
| Versions
>=0.0.0
M
Incorrect Authorization
CVE-2026-41174
Affects
github.com/traefik/traefik/v3/pkg/provider/kubernetes/crd
| Versions
>=3.0.0-beta1 <3.6.14
>=3.7.0-ea.1 <3.7.0-rc.2