Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Server-side Request Forgery (SSRF)
CVE-2026-50151
Affects
github.com/oras-project/oras-go/v2/registry/remote
| Versions
<2.6.1
H
Server-side Request Forgery (SSRF)
CVE-2026-50151
Affects
github.com/oras-project/oras-go/registry/remote
| Versions
>=0.0.0
H
Symlink Attack
CVE-2026-50163
Affects
github.com/oras-project/oras-go/v2/content/file
| Versions
>=0.0.0
H
Symlink Attack
CVE-2026-50163
Affects
github.com/oras-project/oras-go/content/file
| Versions
>=0.0.0
L
Server-side Request Forgery (SSRF)
CVE-2026-48978
Affects
github.com/oras-project/oras-go/v2/registry/remote/auth
| Versions
<2.6.1
L
Server-side Request Forgery (SSRF)
CVE-2026-48978
Affects
github.com/oras-project/oras-go/registry/remote/auth
| Versions
>=0.0.0
M
Insufficiently Protected Credentials
Affects
github.com/oras-project/oras-go/registry/remote/auth
| Versions
>=0.0.0
M
Insufficiently Protected Credentials
Affects
github.com/oras-project/oras-go/v2/registry/remote/auth
| Versions
<2.6.1
H
Access Control Bypass
CVE-2026-50138
Affects
github.com/patrickhener/goshs/httpserver
| Versions
>=0.0.0
H
Access Control Bypass
CVE-2026-50138
Affects
goshs.de/goshs/v2/httpserver
| Versions
<2.1.0
H
Access Control Bypass
CVE-2026-50138
Affects
github.com/patrickhener/goshs/v2/httpserver
| Versions
<2.1.0
M
Directory Traversal
CVE-2026-5051
Affects
github.com/hashicorp/vault/vault
| Versions
<1.20.11
>=1.21.0-rc1 <1.21.6
>=2.0.0-rc1 <2.0.1
H
Directory Traversal
CVE-2026-52797
Affects
github.com/gogs/gogs/internal/route/repo
| Versions
>=0.0.0
M
Incorrect Authorization
CVE-2026-52808
Affects
github.com/gogs/gogs/internal/route/api/v1
| Versions
<0.14.3-rc.1
C
Relative Path Traversal
CVE-2026-52813
Affects
github.com/gogs/gogs/internal/repoutil
| Versions
<0.14.3-rc.1
H
Use of a Key Past its Expiration Date
CVE-2026-52809
Affects
github.com/gogs/gogs/internal/userutil
| Versions
<0.14.3-rc.1
H
Use of a Key Past its Expiration Date
CVE-2026-52809
Affects
github.com/gogs/gogs/internal/email
| Versions
<0.14.3-rc.1
H
Use of a Key Past its Expiration Date
CVE-2026-52809
Affects
github.com/gogs/gogs/internal/database
| Versions
<0.14.3-rc.1
C
Directory Traversal
CVE-2026-52811
Affects
github.com/gogs/gogs/internal/database
| Versions
<0.14.3-rc.1
H
Insufficient Verification of Data Authenticity
CVE-2026-52812
Affects
github.com/gogs/gogs/internal/lfsutil
| Versions
<0.14.3-rc.1
M
Improper Handling of Exceptional Conditions
CVE-2025-64719
Affects
github.com/gogs/gogs/internal/route/api/v1/repo
| Versions
<0.14.3-rc.1
M
Improper Handling of Exceptional Conditions
CVE-2025-64719
Affects
github.com/gogs/gogs/internal/route/repo
| Versions
<0.14.3-rc.1
H
User Impersonation
CVE-2026-25119
Affects
github.com/gogs/gogs/internal/context
| Versions
<0.14.3-rc.1
H
User Impersonation
CVE-2026-25119
Affects
github.com/gogs/gogs/internal/conf
| Versions
<0.14.3-rc.1
M
Improper Neutralization of Special Elements Used in a Template Engine
CVE-2026-52796
Affects
github.com/gogs/gogs/internal/markup
| Versions
<0.14.3-rc.1
H
Server-side Request Forgery (SSRF)
CVE-2026-47267
Affects
github.com/gogs/gogs/internal/httplib
| Versions
<0.14.3-rc.1
H
Server-side Request Forgery (SSRF)
CVE-2026-47267
Affects
github.com/gogs/gogs/internal/database
| Versions
<0.14.3-rc.1
M
Open Redirect
CVE-2026-52802
Affects
github.com/gogs/gogs/internal/urlutil
| Versions
<0.14.3-rc.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-52814
Affects
github.com/gogs/gogs/internal/ssh
| Versions
<0.14.3-rc.1
M
Missing Authentication for Critical Function
CVE-2026-52815
Affects
github.com/gogs/gogs/internal/route/api/v1
| Versions
<0.14.3-rc.1