Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Missing Authorization
CVE-2026-27946
Affects
github.com/zitadel/zitadel/internal/command
| Versions
>=2.0.0-v2-alpha.1 <3.4.7
>=4.0.0-rc.1 <4.11.1
H
Interpretation Conflict
CVE-2026-27896
Affects
github.com/modelcontextprotocol/go-sdk/oauthex
| Versions
<1.3.1
H
Interpretation Conflict
CVE-2026-27896
Affects
github.com/modelcontextprotocol/go-sdk/mcp
| Versions
<1.3.1
H
Interpretation Conflict
CVE-2026-27896
Affects
github.com/modelcontextprotocol/go-sdk/internal/json
| Versions
<1.3.1
H
Interpretation Conflict
CVE-2026-27896
Affects
github.com/modelcontextprotocol/go-sdk/internal/jsonrpc2
| Versions
<1.3.1
M
Insertion of Sensitive Information into Log File
CVE-2026-27900
Affects
github.com/linode/terraform-provider-linode/v3/linode/instance
| Versions
<3.9.0
M
Insertion of Sensitive Information into Log File
CVE-2026-27900
Affects
github.com/linode/terraform-provider-linode/v3/linode/nbconfig
| Versions
<3.9.0
M
Insertion of Sensitive Information into Log File
CVE-2026-27900
Affects
github.com/linode/terraform-provider-linode/v3/linode/obj
| Versions
<3.9.0
M
Insertion of Sensitive Information into Log File
CVE-2026-27900
Affects
github.com/linode/terraform-provider-linode/v3/linode/producerimagesharegroupmember
| Versions
<3.9.0
M
Insertion of Sensitive Information into Log File
CVE-2026-27900
Affects
github.com/linode/terraform-provider-linode/v3/linode/stackscript
| Versions
<3.9.0
M
Insertion of Sensitive Information into Log File
CVE-2026-27900
Affects
github.com/linode/terraform-provider-linode/linode/instance
| Versions
<3.9.0
H
Missing Authorization
Affects
github.com/romitou/insatutorat/middlewares
| Versions
<1.0.1
C
Improper Encoding or Escaping of Output
CVE-2026-27812
Affects
github.com/wei-shaw/sub2api/backend/internal/config
| Versions
<0.1.85
C
Improper Encoding or Escaping of Output
CVE-2026-27812
Affects
github.com/wei-shaw/sub2api/backend/internal/handler
| Versions
<0.1.85
M
Incorrect Authorization
CVE-2026-25963
Affects
github.com/fleetdm/fleet/v4/server/service
| Versions
>=4.78.0 <4.80.1
M
Missing Authorization
CVE-2026-24004
Affects
github.com/fleetdm/fleet/v4/server/mdm/android/service
| Versions
>=4.65.0 <4.80.1
H
Insertion of Sensitive Information Into Sent Data
CVE-2026-27465
Affects
github.com/fleetdm/fleet/v4/server/service
| Versions
>=4.48.0 <4.80.1
H
Insertion of Sensitive Information Into Sent Data
CVE-2026-27465
Affects
github.com/fleetdm/fleet/v4/server/fleet
| Versions
>=4.48.0 <4.80.1
H
Directory Traversal
CVE-2026-28406
Affects
github.com/chainguard-dev/kaniko/pkg/util
| Versions
>=1.25.4 <1.25.10
M
Access Control Bypass
CVE-2026-22728
Affects
github.com/bitnami-labs/sealed-secrets/pkg/controller
| Versions
<0.36.0
H
Insertion of Sensitive Information into Log File
Affects
github.com/filecoin-project/curio/pdp
| Versions
>=1.24.3 <1.27.3-rc2
H
Insertion of Sensitive Information into Log File
Affects
github.com/filecoin-project/curio/market/mk20/http
| Versions
>=1.24.3 <1.27.3-rc2
H
Insertion of Sensitive Information into Log File
Affects
github.com/filecoin-project/curio/market/mk12
| Versions
>=1.24.3 <1.27.3-rc2
M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2026-23999
Affects
github.com/fleetdm/fleet/v4/server/mdm/apple
| Versions
>=4.28.0 <4.80.1
M
Improper Check or Handling of Exceptional Conditions
CVE-2026-28407
Affects
github.com/chainguard-dev/malcontent/pkg/archive
| Versions
<1.21.0
H
SQL Injection
CVE-2026-26186
Affects
github.com/fleetdm/fleet/v4/server/datastore/mysql
| Versions
>=4.15.0 <4.81.0
H
Improper Privilege Management
CVE-2026-27899
Affects
github.com/h44z/wg-portal/internal/domain
| Versions
<2.1.3
H
Improper Privilege Management
CVE-2026-27899
Affects
github.com/h44z/wg-portal/internal/app/users
| Versions
<2.1.3
H
Improper Privilege Management
CVE-2026-27899
Affects
github.com/h44z/wg-portal/internal/app/api/v0/backend
| Versions
<2.1.3
M
Server-side Request Forgery (SSRF)
CVE-2026-27808
Affects
github.com/axllent/mailpit/server/handlers
| Versions
<1.29.2