Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Exposure of Private Personal Information to an Unauthorized Actor
CVE-2026-3911
Affects
org.keycloak:keycloak-services
| Versions
[0,]
H
Directory Traversal
CVE-2026-24457
Affects
org.glassfish.mq:mqbroker-comm
| Versions
[0,]
M
Origin Validation Error
CVE-2025-68467
Affects
org.webjars.npm:darkreader
| Versions
[0,]
C
Improper Handling of Case Sensitivity
CVE-2026-28292
Affects
org.webjars.npm:simple-git
| Versions
[3.15.0,]
M
Infinite loop
CVE-2026-31808
Affects
org.webjars.npm:file-type
| Versions
[16.5.4,]
H
Improper Validation of Certificate with Host Mismatch
CVE-2026-24281
Affects
org.apache.zookeeper:zookeeper
| Versions
[3.8.0,3.8.6)
[3.9.0,3.9.5)
H
Symlink Attack
CVE-2026-31802
Affects
org.webjars.npm:tar
| Versions
[0,]
M
Access Control Bypass
CVE-2026-2742
Affects
com.vaadin:flow-server
| Versions
[23.0.0,23.6.7)
[24.0.0,24.9.8)
[25.0.0-beta1,25.0.2)
C
Use of Default Credentials
CVE-2026-22886
Affects
org.glassfish.mq:mqbroker-core
| Versions
[0,]
H
Improper Validation of Certificate with Host Mismatch
CVE-2025-59060
Affects
org.apache.ranger:ranger-nifi-registry-plugin
| Versions
[,2.8.0)
M
Cross-site Scripting (XSS)
CVE-2025-5092
Affects
org.webjars.npm:lightgallery
| Versions
[0,]
H
Insertion of Sensitive Information into Log File
CVE-2026-24308
Affects
org.apache.zookeeper:zookeeper
| Versions
[3.5.2-alpha,3.8.6)
[3.9.0,3.9.5)
M
SQL Injection
CVE-2026-3672
Affects
org.jeecgframework.boot:jeecg-boot-base-core
| Versions
[0,]
M
Improper Validation of Specified Type of Input
CVE-2026-2092
Affects
org.keycloak:keycloak-services
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authentication Bypass by Primary Weakness
CVE-2026-2603
Affects
org.keycloak:keycloak-server-spi-private
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authentication Bypass by Primary Weakness
CVE-2026-2603
Affects
org.keycloak:keycloak-services
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-3009
Affects
org.keycloak:keycloak-services
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-3009
Affects
org.keycloak:keycloak-server-spi-private
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authentication Bypass by Primary Weakness
CVE-2026-3047
Affects
org.keycloak:keycloak-services
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
C
Improper Verification of Cryptographic Signature
CVE-2026-29000
Affects
org.pac4j:pac4j-jwt
| Versions
[,4.5.9)
[5.0.0-RC1,5.7.9)
[6.0.0-RC1,6.3.3)
H
Arbitrary File Write via Archive Extraction (Zip Slip)
CVE-2025-23011
Affects
org.fcrepo:fcrepo
| Versions
[,6.5.1)
H
Insufficiently Protected Credentials
CVE-2025-23012
Affects
org.fcrepo:fcrepo
| Versions
[,6.5.1)
M
Interpretation Conflict
CVE-2025-11143
Affects
org.eclipse.jetty:jetty-server
| Versions
[9.4.0.M0,12.0.31)
[12.1.0.alpha0,12.1.5)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-1605
Affects
org.eclipse.jetty:jetty-server
| Versions
[12.0.0.alpha0 ,12.0.32)
[12.1.0.alpha0,12.1.6)
C
Missing Authentication for Critical Function
CVE-2026-27446
Affects
org.apache.activemq:artemis-server
| Versions
[2.11.0, 2.52.0)
C
Missing Authentication for Critical Function
CVE-2026-27446
Affects
org.apache.artemis:artemis-server
| Versions
[2.50.0,2.52.0)
M
Integer Overflow or Wraparound
CVE-2025-66168
Affects
org.apache.activemq:activemq-all
| Versions
[,5.19.2)
[6.0.0,]
M
Integer Overflow or Wraparound
CVE-2025-66168
Affects
org.apache.activemq:activemq-mqtt
| Versions
[,5.19.2)
[6.0.0,]
L
Missing Critical Step in Authentication
CVE-2026-3429
Affects
org.keycloak:keycloak-services
| Versions
[0,]
M
Improper Handling of Insufficient Permissions or Privileges
CVE-2026-3190
Affects
org.keycloak:keycloak-services
| Versions
[0,]