Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Directory Traversal
CVE-2026-24137
Affects
github.com/sigstore/sigstore/pkg/tuf
| Versions
<1.10.4
C
Missing Authentication for Critical Function
CVE-2026-24124
Affects
d7y.io/dragonfly/v2/pkg/auth
| Versions
<2.4.1
C
Missing Authentication for Critical Function
CVE-2026-24124
Affects
github.com/dragonflyoss/dragonfly/pkg/auth
| Versions
<2.4.1
C
Missing Authentication for Critical Function
CVE-2026-24124
Affects
d7y.io/dragonfly/v2/manager/service
| Versions
<2.4.1
C
Missing Authentication for Critical Function
CVE-2026-24124
Affects
d7y.io/dragonfly/v2/manager/router
| Versions
<2.4.1
C
Missing Authentication for Critical Function
CVE-2026-24124
Affects
d7y.io/dragonfly/v2/manager/database
| Versions
<2.4.1
M
Authorization Bypass Through User-Controlled Key
CVE-2026-20904
Affects
code.gitea.io/gitea/routers/web/user/setting/security
| Versions
<1.25.4
M
Authorization Bypass Through User-Controlled Key
CVE-2026-20904
Affects
github.com/go-gitea/gitea/models/user
| Versions
<1.25.4
M
Incorrect Authorization
CVE-2026-20883
Affects
code.gitea.io/gitea/services/repository
| Versions
<1.25.4
M
Incorrect Authorization
CVE-2026-20883
Affects
code.gitea.io/gitea/services/convert
| Versions
<1.25.4
M
Incorrect Authorization
CVE-2026-20883
Affects
code.gitea.io/gitea/routers/web/user
| Versions
<1.25.4
M
Incorrect Authorization
CVE-2026-20883
Affects
code.gitea.io/gitea/routers/api/v1/repo
| Versions
<1.25.4
M
Incorrect Authorization
CVE-2026-20883
Affects
code.gitea.io/gitea/modules/eventsource
| Versions
<1.25.4
M
Incorrect Authorization
CVE-2026-20883
Affects
code.gitea.io/gitea/models/issues
| Versions
<1.25.4
M
Incorrect Authorization
CVE-2026-20800
Affects
code.gitea.io/gitea/services/convert
| Versions
<1.25.4
H
Improper Validation of Array Index
CVE-2026-0528
Affects
github.com/elastic/beats/v7/metricbeat/module/zookeeper/server
| Versions
>=0.1.0
H
Improper Validation of Array Index
CVE-2026-0528
Affects
github.com/elastic/beats/metricbeat/module/zookeeper/server
| Versions
<8.19.10
>=9.0.0-beta1 <9.1.10
>=9.2.0 <9.2.4
M
Server-side Request Forgery (SSRF)
CVE-2026-24117
Affects
github.com/sigstore/rekor/pkg/api
| Versions
<1.5.0
M
Server-side Request Forgery (SSRF)
CVE-2026-24117
Affects
github.com/sigstore/rekor/cmd/rekor-cli/app
| Versions
<1.5.0
M
NULL Pointer Dereference
CVE-2026-23831
Affects
github.com/sigstore/rekor/pkg/types/dsse/v0.0.1
| Versions
<1.5.0
M
NULL Pointer Dereference
CVE-2026-23831
Affects
github.com/sigstore/rekor/pkg/types/cose/v0.0.1
| Versions
<1.5.0
C
Incorrect Authorization
CVE-2026-22822
Affects
github.com/external-secrets/external-secrets/runtime/template/v2
| Versions
>=0.20.2 <1.2.0
M
Missing Authorization
CVE-2026-23990
Affects
github.com/controlplaneio-fluxcd/flux-operator/internal/web/user
| Versions
>=0.36.0 <0.40.0
M
Missing Authorization
CVE-2026-23990
Affects
github.com/controlplaneio-fluxcd/flux-operator/internal/web/config
| Versions
>=0.36.0 <0.40.0
M
Missing Authorization
CVE-2026-23990
Affects
github.com/controlplaneio-fluxcd/flux-operator/internal/web/auth
| Versions
>=0.36.0 <0.40.0
C
Authentication Bypass by Alternate Name
CVE-2026-24058
Affects
github.com/charmbracelet/soft-serve/pkg/ssh
| Versions
<0.11.3
H
Improper Verification of Cryptographic Signature
CVE-2026-23992
Affects
github.com/theupdateframework/go-tuf/metadata
| Versions
<2.3.1
H
Improper Verification of Cryptographic Signature
CVE-2026-23992
Affects
github.com/theupdateframework/go-tuf/v2/metadata
| Versions
<2.3.1
H
Reachable Assertion
CVE-2026-23991
Affects
github.com/theupdateframework/go-tuf/metadata
| Versions
<2.3.1
H
Reachable Assertion
CVE-2026-23991
Affects
github.com/theupdateframework/go-tuf/v2/metadata
| Versions
<2.3.1