Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Uncontrolled Recursion
CVE-2026-54451
Affects
protobuf
| Versions
>=0.8.0 <0.17.0
M
Improper Check for Unusual or Exceptional Conditions
CVE-2026-56812
Affects
phoenix
| Versions
>=1.2.0-rc.0 <1.5.15
>=1.6.0-rc.0 <1.6.17
>=1.7.0-rc.0 <1.7.24
>=1.8.0-rc.0 <1.8.9
H
Allocation of Resources Without Limits or Throttling
CVE-2026-56811
Affects
phoenix
| Versions
>=0.11.0 <1.5.15
>=1.6.0-rc.0 <1.6.17
>=1.7.0-rc.0 <1.7.24
>=1.8.0-rc.0 <1.8.9
C
User Impersonation
CVE-2026-49757
Affects
ash_authentication
| Versions
>=0.1.0 <4.14.0
>=5.0.0-rc.0 <5.0.0-rc.10
H
Inefficient Algorithmic Complexity
CVE-2026-54892
Affects
plug
| Versions
>=1.15.0 <1.15.5
>=1.16.0 <1.16.4
>=1.17.0 <1.17.2
>=1.18.0 <1.18.3
>=1.19.0 <1.19.3
H
Authorization Bypass Through User-Controlled Key
CVE-2026-48599
Affects
grpc_server
| Versions
<1.0.0
C
Deserialization of Untrusted Data
CVE-2026-48853
Affects
grpc_server
| Versions
<1.0.0
C
Deserialization of Untrusted Data
CVE-2026-48853
Affects
grpc_core
| Versions
<1.0.0
H
Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-53430
Affects
grpc_core
| Versions
<1.0.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-48854
Affects
grpc_server
| Versions
<1.0.0
M
CRLF Injection
CVE-2026-47069
Affects
hackney
| Versions
<4.0.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-47077
Affects
hackney
| Versions
>=2.0.0-beta.1 <4.0.1
M
CRLF Injection
CVE-2026-47072
Affects
hackney
| Versions
>=2.0.0-beta.1 <4.0.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-47073
Affects
hackney
| Versions
>=2.0.0 <4.0.1
H
Synchronous Access of Remote Resource without Timeout
CVE-2026-47071
Affects
hackney
| Versions
>=0.10.0 <4.0.1
M
Open Redirect
CVE-2026-47070
Affects
hackney
| Versions
>=3.1.1 <4.0.1
M
Interpretation Conflict
CVE-2026-47076
Affects
hackney
| Versions
>=0.13.0 <4.0.1
H
CRLF Injection
CVE-2026-47075
Affects
hackney
| Versions
<4.0.1
H
Infinite loop
CVE-2026-47066
Affects
hackney
| Versions
>=2.0.0-beta.1 <4.0.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-47067
Affects
hackney
| Versions
>=2.0.0 <4.0.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-8466
Affects
cowboy
| Versions
>=2.0.0 <2.15.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-8468
Affects
plug
| Versions
>=1.4.0-rc.0 <1.15.4
>=1.16.0 <1.16.3
>=1.17.0 <1.17.1
>=1.18.0 <1.18.2
>=1.19.0 <1.19.2
H
Allocation of Resources Without Limits or Throttling
CVE-2026-39803
Affects
bandit
| Versions
>=1.4.0 <1.11.1
H
Infinite loop
CVE-2026-39806
Affects
bandit
| Versions
>=1.6.1 <1.11.1
H
SQL Injection
CVE-2026-40906
Affects
electric
| Versions
>=1.1.12 <1.5.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-32689
Affects
phoenix
| Versions
>=1.7.0 <1.7.22
>=1.8.0 <1.8.6
M
Reliance on Untrusted Inputs in a Security Decision
CVE-2026-39807
Affects
bandit
| Versions
>=1.0.0 <1.11.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-39804
Affects
bandit
| Versions
>=0.5.9 <1.11.0
H
Allocation of Resources Without Limits or Throttling
CVE-2026-42786
Affects
bandit
| Versions
>=0.5.1 <1.11.0
M
Allocation of Resources Without Limits or Throttling
CVE-2026-42788
Affects
bandit
| Versions
>=3.0.0 <1.11.0