Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
User Impersonation
CVE-2026-90711
Affects
org.webjars.npm:proxy-addr
| Versions
[1.1.2,]
M
Improper Output Neutralization for Logs
CVE-2026-87859
Affects
org.webjars.npm:morgan
| Versions
[,1.12.1)
H
Prototype Pollution
CVE-2026-89011
Affects
org.webjars.npm:isomorphic-git
| Versions
[,1.42.0)
H
Prototype Pollution
CVE-2026-77414
Affects
org.webjars.npm:jsonata
| Versions
[,1.8.8)
[2.0.0,2.2.1)
C
Arbitrary Code Injection
CVE-2026-77415
Affects
org.webjars.npm:jsonata
| Versions
[,1.8.8)
[2.0.0,2.2.1)
H
Directory Traversal
CVE-2026-54286
Affects
org.webjars.npm:hono
| Versions
[,4.12.25)
M
Cross-site Scripting (XSS)
CVE-2026-63670
Affects
org.webjars.npm:sanitize-html
| Versions
[,2.17.6)
H
Allocation of Resources Without Limits or Throttling
Affects
org.webjars.npm:vm2
| Versions
[,3.11.6)
C
Incorrect Permission Assignment for Critical Resource
Affects
org.webjars.npm:vm2
| Versions
[,3.11.6)
C
Improper Control of Dynamically-Managed Code Resources
CVE-2026-47698
Affects
org.webjars.npm:vm2
| Versions
[,3.11.6)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-47683
Affects
org.webjars.npm:vm2
| Versions
[,3.11.6)
H
Uncontrolled Recursion
CVE-2026-40345
Affects
org.webjars.npm:deepmerge-ts
| Versions
[,8.0.0)
H
Use of a Broken or Risky Cryptographic Algorithm
CVE-2026-22817
Affects
org.webjars.npm:hono
| Versions
[,4.11.4)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-73089
Affects
org.webjars.npm:browserslist
| Versions
[,4.28.7)
H
Prototype Pollution
CVE-2026-73088
Affects
org.webjars.npm:browserslist
| Versions
[,4.28.7)
H
Improper Verification of Cryptographic Signature
CVE-2026-22818
Affects
org.webjars.npm:hono
| Versions
[,4.11.4)
H
Integer Overflow or Wraparound
CVE-2026-73086
Affects
org.webjars.npm:nanoid
| Versions
[,3.3.12)
[4.0.0,5.1.11)
H
Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-54290
Affects
org.webjars.npm:hono
| Versions
[,4.12.25)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-87908
Affects
org.webjars.npm:multiparty
| Versions
[0,]
M
Incorrect Authorization
CVE-2026-24473
Affects
org.webjars.npm:hono
| Versions
[,4.11.7)
M
Use of Cache Containing Sensitive Information
CVE-2026-24472
Affects
org.webjars.npm:hono
| Versions
[,4.11.7)
M
Cross-site Scripting (XSS)
CVE-2026-24771
Affects
org.webjars.npm:hono
| Versions
[,4.11.7)
M
Incorrect Regular Expression
CVE-2026-24398
Affects
org.webjars.npm:hono
| Versions
[,4.11.7)
H
Exposed Dangerous Method or Function
CVE-2025-9611
Affects
org.webjars.npm:playwright
| Versions
[,1.56.0)
H
Unverified Ownership
CVE-2025-62610
Affects
org.webjars.npm:hono
| Versions
[1.1.0,4.10.2)
M
Improper Verification of Cryptographic Signature
CVE-2025-59288
Affects
org.webjars.npm:playwright-core
| Versions
[1.0.0,1.55.1)
H
Symlink Attack
CVE-2026-76845
Affects
org.webjars.npm:adm-zip
| Versions
[0.5.9,0.6.1)
H
Uncaught Exception
CVE-2026-77078
Affects
org.webjars.npm:multer
| Versions
[,2.3.0)
H
Denial of Service (DoS)
CVE-2026-77037
Affects
org.webjars.npm:multer
| Versions
[,2.3.0)
H
Race Condition
CVE-2026-77063
Affects
org.webjars.npm:multer
| Versions
[,2.3.0)