Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Command Injection
CVE-2026-30861
Affects
github.com/tencent/weknora/internal/application/service
| Versions
>=0.2.5 <0.2.10
H
Open Redirect
CVE-2026-28512
Affects
github.com/pocket-id/pocket-id/backend/internal/dto
| Versions
>=2.0.0 <2.4.0
H
Open Redirect
CVE-2026-28512
Affects
github.com/pocket-id/pocket-id/backend/internal/utils
| Versions
>=2.0.0 <2.4.0
H
Incorrect Authorization
CVE-2026-28513
Affects
github.com/pocket-id/pocket-id/backend/internal/service
| Versions
<2.4.0
C
Missing Authentication for Critical Function
Affects
github.com/shi-gg/linkdave/server/server
| Versions
<0.1.5
C
Missing Authentication for Critical Function
Affects
github.com/shi-gg/linkdave/cmd/linkdave
| Versions
<0.1.5
H
Directory Traversal
CVE-2026-29064
Affects
github.com/zarf-dev/zarf/src/pkg/archive
| Versions
>=0.54.0 <0.73.1-rc1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/internal/sys/validate
| Versions
<0.24.0-rc.1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/internal/sys/config
| Versions
<0.24.0-rc.1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/internal/core/services
| Versions
<0.24.0-rc.1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/app/api
| Versions
<0.24.0-rc.1
M
Server-side Request Forgery (SSRF)
CVE-2026-27600
Affects
github.com/sysadminsmedia/homebox/backend/app/api/handlers/v1
| Versions
<0.24.0-rc.1
M
Arbitrary Argument Injection
CVE-2026-3682
Affects
github.com/welovemedia/ffmate/v2/internal/service/ffmpeg
| Versions
>=2.0.0
M
Server-side Request Forgery (SSRF)
CVE-2026-3681
Affects
github.com/welovemedia/ffmate/v2/internal/service/webhook
| Versions
>=2.0.0
H
Server-side Request Forgery (SSRF)
CVE-2026-30247
Affects
github.com/tencent/weknora/internal/agent/tools
| Versions
<0.2.12
H
Server-side Request Forgery (SSRF)
CVE-2026-30247
Affects
github.com/tencent/weknora/internal/utils
| Versions
<0.2.12
H
Client-Side Enforcement of Server-Side Security
CVE-2026-30933
Affects
github.com/gtsteffaniak/filebrowser/backend/http
| Versions
<1.2.2-stable
>=1.3.0-beta <1.3.1-beta
H
Cross-site Scripting (XSS)
CVE-2026-30934
Affects
github.com/gtsteffaniak/filebrowser/backend/http
| Versions
<1.2.2-stable
>=1.3.0-beta <1.3.1-beta
M
Cross-site Request Forgery (CSRF)
CVE-2026-29084
Affects
github.com/forceu/gokapi/internal/webserver/authentication
| Versions
<2.2.3
M
Cross-site Request Forgery (CSRF)
CVE-2026-29084
Affects
github.com/forceu/gokapi/internal/webserver
| Versions
<2.2.3
M
Improper Handling of Insufficient Permissions or Privileges
CVE-2026-29061
Affects
github.com/forceu/gokapi/internal/webserver
| Versions
<2.2.3
M
Improper Handling of Insufficient Permissions or Privileges
CVE-2026-29061
Affects
github.com/forceu/gokapi/internal/webserver/authentication/tokengeneration
| Versions
<2.2.3
C
Missing Authentication for Critical Function
CVE-2026-27944
Affects
github.com/0xjacky/nginx-ui/api/backup
| Versions
<2.3.3
M
Cross-site Scripting (XSS)
CVE-2026-28683
Affects
github.com/forceu/gokapi/internal/configuration/database/provider/redis
| Versions
<2.2.3
M
Cross-site Scripting (XSS)
CVE-2026-28683
Affects
github.com/forceu/gokapi/internal/configuration/database/provider/sqlite
| Versions
<2.2.3
M
Cross-site Scripting (XSS)
CVE-2026-28683
Affects
github.com/forceu/gokapi/internal/storage
| Versions
<2.2.3
M
Cross-site Scripting (XSS)
CVE-2026-28683
Affects
github.com/forceu/gokapi/internal/webserver/headers
| Versions
<2.2.3
M
NULL Pointer Dereference
CVE-2026-29781
Affects
github.com/bishopfox/sliver/server/handlers
| Versions
>=0.0.0
H
Missing Authorization
CVE-2026-29771
Affects
github.com/gravitl/netmaker/controllers
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2026-27616
Affects
code.vikunja.io/api/pkg/routes/api/v1
| Versions
<2.0.0