Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
L
Incorrect Authorization
CVE-2026-22545
Affects
github.com/mattermost/mattermost/server/channels/api4
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Incorrect Authorization
CVE-2026-4265
Affects
github.com/mattermost/mattermost/server/channels/app
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Incorrect Authorization
CVE-2026-4265
Affects
github.com/mattermost/mattermost/server/channels/api4
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Server-side Request Forgery (SSRF)
CVE-2026-2455
Affects
github.com/mattermost/mattermost/server/public/shared/httpservice
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Information Exposure
CVE-2026-21386
Affects
github.com/mattermost/mattermost/server/channels/app/slashcommands
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Incorrect Authorization
CVE-2026-24692
Affects
github.com/mattermost/mattermost/server/channels/app
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Missing Authorization
CVE-2026-2463
Affects
github.com/mattermost/mattermost/server/channels/app
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Missing Authorization
CVE-2026-2463
Affects
github.com/mattermost/mattermost/server/channels/api4
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
L
Timing Attack
CVE-2026-32595
Affects
github.com/traefik/traefik/v3/pkg/middlewares/auth
| Versions
>=3.0.0-beta1 <3.6.11
>=3.7.0-ea.1 <3.7.0-ea.2
L
Timing Attack
CVE-2026-32595
Affects
github.com/traefik/traefik/v2/pkg/middlewares/auth
| Versions
<2.11.41
M
Memory Allocation with Excessive Size Value
CVE-2026-2456
Affects
github.com/mattermost/mattermost/server/channels/app
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
H
Insecure Default Initialization of Resource
CVE-2026-32305
Affects
github.com/traefik/traefik/v3/pkg/server/router/tcp
| Versions
>=3.0.0-beta1 <3.6.11
>=3.7.0-ea.1 <3.7.0-ea.2
H
Insecure Default Initialization of Resource
CVE-2026-32305
Affects
github.com/traefik/traefik/v2/pkg/server/router/tcp
| Versions
<2.11.41
M
Missing Authorization
CVE-2026-2458
Affects
github.com/mattermost/mattermost/server/channels/store/storetest/mocks
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Missing Authorization
CVE-2026-2458
Affects
github.com/mattermost/mattermost/server/channels/store/sqlstore
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-24458
Affects
github.com/mattermost/mattermost/server/channels/app/password/hashers
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Origin Validation Error
CVE-2026-2457
Affects
github.com/mattermost/mattermost/server/channels/app
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
M
Origin Validation Error
CVE-2026-2457
Affects
github.com/mattermost/mattermost/server/channels/api4
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1
H
Cross-site Request Forgery (CSRF)
CVE-2026-33252
Affects
github.com/modelcontextprotocol/go-sdk/mcp
| Versions
<1.4.1
H
Interpretation Conflict
Affects
github.com/segmentio/encoding/json
| Versions
<0.5.4
C
Use of a Broken or Risky Cryptographic Algorithm
CVE-2026-33322
Affects
github.com/minio/minio/internal/config/identity/openid
| Versions
>=RELEASE.2022-11-08T05-27-07Z
H
Improper Authentication
CVE-2026-30836
Affects
github.com/smallstep/certificates/scep/api
| Versions
<0.30.0-rc7
H
Improper Authentication
CVE-2026-30836
Affects
github.com/smallstep/certificates/scep
| Versions
<0.30.0-rc7
M
Memory Allocation with Excessive Size Value
CVE-2026-26931
Affects
github.com/elastic/beats/v7/x-pack/metricbeat/module/prometheus/remote_write
| Versions
>=8.0.0 <8.19.13
>=9.0.0 <9.2.5
M
Memory Allocation with Excessive Size Value
CVE-2026-26931
Affects
github.com/elastic/beats/v7/metricbeat/module/prometheus/remote_write
| Versions
>=8.0.0 <8.19.13
>=9.0.0 <9.2.5
M
Improper Validation of Array Index
CVE-2026-26933
Affects
github.com/elastic/beats/v7/packetbeat/protos/pgsql
| Versions
>=8.0.0 <8.19.11
>=9.2.0 <9.2.5
M
Improper Validation of Array Index
CVE-2026-26933
Affects
github.com/elastic/beats/v7/packetbeat/procs
| Versions
>=8.0.0 <8.19.11
>=9.2.0 <9.2.5
M
Improper Validation of Array Index
CVE-2026-26933
Affects
github.com/elastic/beats/packetbeat/protos/pgsql
| Versions
>=8.0.0 <8.19.11
>=9.2.0 <9.2.5
M
Improper Validation of Array Index
CVE-2026-26933
Affects
github.com/elastic/beats/packetbeat/procs
| Versions
>=8.0.0 <8.19.11
>=9.2.0 <9.2.5
M
Improper Validation of Specified Type of Input
CVE-2026-25783
Affects
github.com/mattermost/mattermost/server/channels/app
| Versions
<10.11.11
>=11.2.0-rc1 <11.2.3
>=11.3.0-rc1 <11.3.1