Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
L
Incorrect Behavior Order: Early Validation
CVE-2025-61730
Affects
std/crypto/tls
| Versions
<1.24.12
>=1.25.0 <1.25.6
H
Allocation of Resources Without Limits or Throttling
CVE-2025-61726
Affects
std/net/url
| Versions
<1.24.12
>=1.25.0 <1.25.6
H
Improper Handling of Case Sensitivity
Affects
github.com/siyuan-note/siyuan/kernel/api
| Versions
<3.5.4-dev3
H
Missing Release of Resource after Effective Lifetime
CVE-2026-21720
Affects
github.com/grafana/grafana/pkg/api
| Versions
>=3.0.0 <11.6.9+security-01
>=12.0.0 <12.0.8+security-01
>=12.1.0 <12.1.5+security-01
>=12.2.0 <12.2.3+security-01
>=12.3.0 <12.3.1+security-01
H
Missing Release of Resource after Effective Lifetime
CVE-2026-21720
Affects
github.com/grafana/grafana/pkg/api/avatar
| Versions
>=3.0.0 <11.6.9+security-01
>=12.0.0 <12.0.8+security-01
>=12.1.0 <12.1.5+security-01
>=12.2.0 <12.2.3+security-01
>=12.3.0 <12.3.1+security-01
H
Incorrect Authorization
CVE-2026-21721
Affects
github.com/grafana/grafana/pkg/api
| Versions
>=10.2.0 <11.6.9+security-01
>=12.0.0 <12.0.8+security-01
>=12.1.0 <12.1.5+security-01
>=12.2.0 <12.2.3+security-01
>=12.3.0 <12.3.1+security-01
M
Allocation of Resources Without Limits or Throttling
CVE-2026-24738
Affects
github.com/gmrtd/gmrtd/iso7816
| Versions
<0.17.2
H
Authorization Bypass Through User-Controlled Key
CVE-2026-24740
Affects
github.com/amir20/dozzle/internal/support/container
| Versions
<9.0.3
H
Authorization Bypass Through User-Controlled Key
CVE-2026-24740
Affects
github.com/amir20/dozzle/internal/agent
| Versions
<9.0.3
M
Incorrect Authorization
CVE-2026-24748
Affects
github.com/akuity/kargo/pkg/server/option
| Versions
<1.6.3
>=1.7.0-rc.1 <1.7.7
>=1.8.0-rc.1 <1.8.7
M
Incorrect Authorization
CVE-2026-24748
Affects
github.com/akuity/kargo/pkg/server/config
| Versions
<1.6.3
>=1.7.0-rc.1 <1.7.7
>=1.8.0-rc.1 <1.8.7
M
Incorrect Authorization
CVE-2026-24748
Affects
github.com/akuity/kargo/pkg/cli/cmd/server
| Versions
<1.6.3
>=1.7.0-rc.1 <1.7.7
>=1.8.0-rc.1 <1.8.7
M
Incorrect Authorization
CVE-2026-24748
Affects
github.com/akuity/kargo/internal/server/option
| Versions
<1.6.3
>=1.7.0-rc.1 <1.7.7
>=1.8.0-rc.1 <1.8.7
M
Incorrect Authorization
CVE-2026-24748
Affects
github.com/akuity/kargo/internal/server/config
| Versions
<1.6.3
>=1.7.0-rc.1 <1.7.7
>=1.8.0-rc.1 <1.8.7
M
Incorrect Authorization
CVE-2026-24748
Affects
github.com/akuity/kargo/internal/cli/cmd/server
| Versions
<1.6.3
>=1.7.0-rc.1 <1.7.7
>=1.8.0-rc.1 <1.8.7
M
Incorrect Authorization
CVE-2026-24748
Affects
github.com/akuity/kargo/cmd/controlplane
| Versions
<1.6.3
>=1.7.0-rc.1 <1.7.7
>=1.8.0-rc.1 <1.8.7
H
Server-side Request Forgery (SSRF)
CVE-2026-22039
Affects
github.com/kyverno/kyverno/pkg/engine/factories
| Versions
<1.15.3-rc.1
>=1.16.0-rc.1 <1.16.3-rc.1
H
Server-side Request Forgery (SSRF)
CVE-2026-22039
Affects
github.com/kyverno/kyverno/pkg/engine/context/loaders
| Versions
<1.15.3-rc.1
>=1.16.0-rc.1 <1.16.3-rc.1
H
Server-side Request Forgery (SSRF)
CVE-2026-22039
Affects
github.com/kyverno/kyverno/pkg/engine/apicall
| Versions
<1.15.3-rc.1
>=1.16.0-rc.1 <1.16.3-rc.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-23881
Affects
github.com/kyverno/kyverno/pkg/engine/policycontext
| Versions
<1.15.3-rc.1
>=1.16.0-rc.1 <1.16.3-rc.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-23881
Affects
github.com/kyverno/kyverno/pkg/engine/context
| Versions
<1.15.3-rc.1
>=1.16.0-rc.1 <1.16.3-rc.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-23881
Affects
github.com/kyverno/kyverno/pkg/config
| Versions
<1.15.3-rc.1
>=1.16.0-rc.1 <1.16.3-rc.1
H
Unintended Proxy or Intermediary ('Confused Deputy')
CVE-2026-24470
Affects
github.com/zalando/skipper/dataclients/kubernetes
| Versions
<0.24.0
M
Directory Traversal
CVE-2026-24686
Affects
github.com/theupdateframework/go-tuf/v2/metadata/multirepo
| Versions
<2.4.1
M
Directory Traversal
CVE-2026-24686
Affects
github.com/theupdateframework/go-tuf/metadata/multirepo
| Versions
<2.4.1
H
CRLF Injection
CVE-2026-23953
Affects
github.com/lxc/incus/v6/internal/instance
| Versions
<6.21.0
H
CRLF Injection
CVE-2026-23953
Affects
github.com/lxc/incus/internal/instance
| Versions
<6.21.0
H
Directory Traversal
CVE-2026-23954
Affects
github.com/lxc/incus/v6/internal/server/instance/drivers
| Versions
<6.21.0
H
Directory Traversal
CVE-2026-23954
Affects
github.com/lxc/incus/internal/server/instance/drivers
| Versions
<6.21.0
M
Timing Attack
CVE-2026-23849
Affects
github.com/filebrowser/filebrowser/v2/auth
| Versions
<2.55.0