Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Incorrect Authorization
CVE-2026-29196
Affects
github.com/gravitl/netmaker/logic
| Versions
<1.5.0
H
Incorrect Authorization
CVE-2026-29196
Affects
github.com/gravitl/netmaker/clickhouse
| Versions
<1.5.0
H
Incorrect Authorization
CVE-2026-29196
Affects
github.com/gravitl/netmaker/controllers
| Versions
<1.5.0
H
Server-side Request Forgery (SSRF)
CVE-2026-30832
Affects
github.com/charmbracelet/soft-serve/pkg/ssrf
| Versions
>=0.6.0 <0.11.4
H
Information Exposure
CVE-2026-28229
Affects
github.com/argoproj/argo-workflows/v4/server/workflowtemplate
| Versions
<3.7.11
>=4.0.0-rc1 <4.0.2
H
Information Exposure
CVE-2026-28229
Affects
github.com/argoproj/argo-workflows/v4/server/clusterworkflowtemplate
| Versions
<3.7.11
>=4.0.0-rc1 <4.0.2
H
Information Exposure
CVE-2026-28229
Affects
github.com/argoproj/argo-workflows/server/workflowtemplate
| Versions
<3.7.11
>=4.0.0-rc1 <4.0.2
H
Information Exposure
CVE-2026-28229
Affects
github.com/argoproj/argo-workflows/server/clusterworkflowtemplate
| Versions
<3.7.11
>=4.0.0-rc1 <4.0.2
H
Command Injection
CVE-2026-30861
Affects
github.com/tencent/weknora/internal/mcp
| Versions
>=0.2.5 <0.2.10
H
Command Injection
CVE-2026-30861
Affects
github.com/tencent/weknora/internal/application/service
| Versions
>=0.2.5 <0.2.10
H
Open Redirect
CVE-2026-28512
Affects
github.com/pocket-id/pocket-id/backend/internal/dto
| Versions
>=2.0.0 <2.4.0
H
Open Redirect
CVE-2026-28512
Affects
github.com/pocket-id/pocket-id/backend/internal/utils
| Versions
>=2.0.0 <2.4.0
H
Incorrect Authorization
CVE-2026-28513
Affects
github.com/pocket-id/pocket-id/backend/internal/service
| Versions
<2.4.0
C
Missing Authentication for Critical Function
Affects
github.com/shi-gg/linkdave/server/server
| Versions
<0.1.5
C
Missing Authentication for Critical Function
Affects
github.com/shi-gg/linkdave/cmd/linkdave
| Versions
<0.1.5
H
Directory Traversal
CVE-2026-29064
Affects
github.com/zarf-dev/zarf/src/pkg/archive
| Versions
>=0.54.0 <0.73.1-rc1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/internal/sys/validate
| Versions
<0.24.0-rc.1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/internal/sys/config
| Versions
<0.24.0-rc.1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/internal/core/services
| Versions
<0.24.0-rc.1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/app/api
| Versions
<0.24.0-rc.1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/app/api/handlers/v1
| Versions
<0.24.0-rc.1
M
Arbitrary Argument Injection
CVE-2026-3682
Affects
github.com/welovemedia/ffmate/v2/internal/service/ffmpeg
| Versions
>=2.0.0
M
Server-side Request Forgery (SSRF)
CVE-2026-3681
Affects
github.com/welovemedia/ffmate/v2/internal/service/webhook
| Versions
>=2.0.0
H
Server-side Request Forgery (SSRF)
CVE-2026-30247
Affects
github.com/tencent/weknora/internal/agent/tools
| Versions
<0.2.12
H
Server-side Request Forgery (SSRF)
CVE-2026-30247
Affects
github.com/tencent/weknora/internal/utils
| Versions
<0.2.12
H
Client-Side Enforcement of Server-Side Security
CVE-2026-30933
Affects
github.com/gtsteffaniak/filebrowser/backend/http
| Versions
<1.2.2-stable
>=1.3.0-beta <1.3.1-beta
H
Cross-site Scripting (XSS)
CVE-2026-30934
Affects
github.com/gtsteffaniak/filebrowser/backend/http
| Versions
<1.2.2-stable
>=1.3.0-beta <1.3.1-beta
M
Cross-site Request Forgery (CSRF)
CVE-2026-29084
Affects
github.com/forceu/gokapi/internal/webserver/authentication
| Versions
<2.2.3
M
Cross-site Request Forgery (CSRF)
CVE-2026-29084
Affects
github.com/forceu/gokapi/internal/webserver
| Versions
<2.2.3
M
Improper Handling of Insufficient Permissions or Privileges
CVE-2026-29061
Affects
github.com/forceu/gokapi/internal/webserver
| Versions
<2.2.3