Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Remote Code Execution (RCE)
CVE-2026-32613
Affects
io.spinnaker.echo:echo-pipelinetriggers
| Versions
[,2025.3.2)
[2025.4.0,2025.4.2)
[2026.0.0,2026.0.1)
H
Insertion of Sensitive Information into Log File
CVE-2026-34164
Affects
com.ritense.valtimo:inbox
| Versions
[13.0.0.RELEASE,13.22.0.RELEASE)
M
Improper Isolation or Compartmentalization
Affects
org.webjars.npm:vm2
| Versions
[0,]
H
Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-41705
Affects
org.springframework.ai:spring-ai-typesense-store
| Versions
[,1.0.7)
[1.1.0-M1, 1.1.6)
H
Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-41705
Affects
org.springframework.ai:spring-ai-milvus-store
| Versions
[,1.0.7)
[1.1.0-M1, 1.1.6)
H
Missing Authorization
CVE-2026-41712
Affects
org.springframework.ai:spring-ai-openai
| Versions
[,1.0.7)
[1.1.0-M1, 1.1.6)
C
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')
CVE-2026-8178
Affects
com.amazon.redshift:redshift-jdbc42
| Versions
[,2.2.2)
M
Cross-site Scripting (XSS)
CVE-2026-42509
Affects
org.apache.wicket:wicket-extensions
| Versions
[,10.9.0)
M
Cross-site Scripting (XSS)
CVE-2026-42509
Affects
org.apache.wicket:wicket-core
| Versions
[,10.9.0)
H
Directory Traversal
CVE-2026-43646
Affects
org.apache.wicket:wicket-core
| Versions
[,10.9.0)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-40989
Affects
org.springframework.cloud:spring-cloud-function-context
| Versions
[,4.3.3)
[5.0.0-M1, 5.0.2)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-40990
Affects
org.springframework.cloud:spring-cloud-function-context
| Versions
[,4.3.3)
[5.0.0-M1, 5.0.2)
M
Uncaught Exception
CVE-2026-8149
Affects
org.bouncycastle:bc-fips-debug
| Versions
[2.1.0,2.1.2)
M
Uncaught Exception
CVE-2026-8149
Affects
org.bouncycastle:bc-fips
| Versions
[2.1.0,2.1.2)
H
Prompt Injection
CVE-2026-41713
Affects
org.springframework.ai:spring-ai-advisors-vector-store
| Versions
[,1.0.7)
[1.1.0-M1, 1.1.6)
H
Prompt Injection
CVE-2026-41713
Affects
org.springframework.ai:spring-ai-model-chat-memory-repository-jdbc
| Versions
[,1.0.7)
[1.1.0-M1, 1.1.6)
H
Prompt Injection
CVE-2026-41713
Affects
org.springframework.ai:spring-ai-client-chat
| Versions
[,1.0.7)
[1.1.0-M1, 1.1.6)
H
Prompt Injection
CVE-2026-41713
Affects
org.springframework.ai:spring-ai-model
| Versions
[,1.0.7)
[1.1.0-M1, 1.1.6)
C
Arbitrary Code Injection
CVE-2026-44008
Affects
org.webjars.npm:vm2
| Versions
[0,]
C
Embedded Malicious Code
Affects
com.checkmarx.jenkins:checkmarx-ast-scanner
| Versions
[2026.5.09]
M
Insufficient Session Expiration
CVE-2026-40939
Affects
dev.dsf:dsf-fhir-server
| Versions
[0,]
M
Insufficient Session Expiration
CVE-2026-40939
Affects
dev.dsf:dsf-common-auth
| Versions
[0,]
M
Insufficient Session Expiration
CVE-2026-40939
Affects
dev.dsf:dsf-common-jetty
| Versions
[0,]
M
Insufficient Session Expiration
CVE-2026-40939
Affects
dev.dsf:dsf-bpe-server
| Versions
[0,]
M
Arbitrary Code Injection
CVE-2026-6125
Affects
org.dromara.warm:warm-flow-plugin-modes-sb
| Versions
[,1.8.6-m1)
M
Incorrect Authorization
CVE-2026-42280
Affects
org.webjars.npm:auth0-js
| Versions
[9.2.3,]
H
Memory Allocation with Excessive Size Value
CVE-2026-42440
Affects
org.apache.opennlp:opennlp-tools
| Versions
[,2.5.9)
[3.0.0-M1,3.0.0-M3)
C
Deserialization of Untrusted Data
CVE-2026-41586
Affects
org.hyperledger.fabric-sdk-java:fabric-sdk-java
| Versions
[0,]
C
Improper Isolation or Compartmentalization
CVE-2026-44007
Affects
org.webjars.npm:vm2
| Versions
[0,]
M
Allocation of Resources Without Limits or Throttling
CVE-2026-44242
Affects
io.micronaut:micronaut-inject
| Versions
[4.3.0,4.10.22)
[5.0.0-M1,5.0.0-M25)