Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Cross-site Scripting (XSS)
CVE-2026-28683
Affects
github.com/forceu/gokapi/internal/configuration/database/provider/redis
| Versions
<2.2.3
M
Cross-site Scripting (XSS)
CVE-2026-28683
Affects
github.com/forceu/gokapi/internal/configuration/database/provider/sqlite
| Versions
<2.2.3
M
Cross-site Scripting (XSS)
CVE-2026-28683
Affects
github.com/forceu/gokapi/internal/storage
| Versions
<2.2.3
M
Cross-site Scripting (XSS)
CVE-2026-28683
Affects
github.com/forceu/gokapi/internal/webserver/headers
| Versions
<2.2.3
M
NULL Pointer Dereference
CVE-2026-29781
Affects
github.com/bishopfox/sliver/server/handlers
| Versions
>=0.0.0
H
Missing Authorization
CVE-2026-29771
Affects
github.com/gravitl/netmaker/controllers
| Versions
<1.5.1
M
Cross-site Scripting (XSS)
CVE-2026-27616
Affects
code.vikunja.io/api/pkg/routes/api/v1
| Versions
<2.0.0
M
Cross-site Scripting (XSS)
CVE-2026-27616
Affects
github.com/go-vikunja/vikunja/pkg/routes/api/v1
| Versions
<2.0.0
H
Resource Injection
CVE-2026-3288
Affects
k8s.io/ingress-nginx/internal/ingress/controller/template
| Versions
<1.13.8
>=1.14.0 <1.14.4
H
Resource Injection
CVE-2026-3288
Affects
github.com/kubernetes/ingress-nginx/internal/ingress/controller/template
| Versions
<1.13.8
>=1.14.0 <1.14.4
M
Header Injection
CVE-2026-30852
Affects
github.com/caddyserver/caddy/v2/modules/caddyhttp
| Versions
>=2.7.5 <2.11.2
M
Header Injection
CVE-2026-30852
Affects
github.com/caddyserver/caddy/modules/caddyhttp
| Versions
>=2.7.5 <2.11.2
H
Header Injection
CVE-2026-30851
Affects
github.com/caddyserver/caddy/modules/caddyhttp/reverseproxy/forwardauth
| Versions
>=2.10.0 <2.11.2
H
Header Injection
CVE-2026-30851
Affects
github.com/caddyserver/caddy/v2/modules/caddyhttp/reverseproxy/forwardauth
| Versions
>=2.10.0 <2.11.2
H
Incorrect Permission Assignment for Critical Resource
CVE-2026-29188
Affects
github.com/filebrowser/filebrowser/v2/http
| Versions
<2.61.1
C
Brute Force
CVE-2026-27981
Affects
github.com/sysadminsmedia/homebox/backend/app/api
| Versions
<0.24.0-rc.1
C
Brute Force
CVE-2026-27981
Affects
github.com/sysadminsmedia/homebox/backend/app/api/handlers/v1
| Versions
<0.24.0-rc.1
M
Cross-site Scripting (XSS)
CVE-2026-26272
Affects
github.com/sysadminsmedia/homebox/backend/app/api/handlers/v1
| Versions
<0.24.0-rc.1
H
Server-side Request Forgery (SSRF)
CVE-2026-30834
Affects
github.com/pinchtab/pinchtab/internal/handlers
| Versions
>=0.6.0 <0.7.7
M
Incorrect Authorization
CVE-2026-29060
Affects
github.com/forceu/gokapi/internal/webserver/api
| Versions
<2.2.3
M
Authorization Bypass Through User-Controlled Key
CVE-2026-28682
Affects
github.com/forceu/gokapi/internal/models
| Versions
<2.2.3
C
Directory Traversal
CVE-2026-30869
Affects
github.com/siyuan-note/siyuan/kernel/server
| Versions
<3.5.10
C
Directory Traversal
CVE-2026-30869
Affects
github.com/siyuan-note/siyuan/kernel/model
| Versions
<3.5.10
H
Cross-site Scripting (XSS)
CVE-2026-29183
Affects
github.com/siyuan-note/siyuan/kernel/util
| Versions
<3.5.9
H
Cross-site Scripting (XSS)
CVE-2026-29183
Affects
github.com/siyuan-note/siyuan/kernel/api
| Versions
<3.5.9
H
Cross-site Scripting (XSS)
CVE-2026-29183
Affects
github.com/siyuan-note/siyuan/kernel/server
| Versions
<3.5.9
H
Missing Authorization
CVE-2026-29073
Affects
github.com/siyuan-note/siyuan/kernel/api
| Versions
>=0.0.0
H
User Impersonation
CVE-2026-30223
Affects
github.com/olivetin/olivetin/service/internal/auth/otjwt
| Versions
<3000.11.1
M
Unintended Proxy or Intermediary ('Confused Deputy')
CVE-2026-30225
Affects
github.com/olivetin/olivetin/service/internal/api
| Versions
<3000.11.1
M
Directory Traversal
CVE-2026-27139
Affects
std/os
| Versions
<1.25.8
>=1.26.0-0 <1.26.1