Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Improperly Implemented Security Check for Standard
CVE-2026-50628
Affects
org.apache.cxf:cxf-rt-rs-security-oauth2
| Versions
[,4.1.7)
[4.2.0,4.2.2)
M
Prototype Pollution
CVE-2026-12208
Affects
org.webjars.npm:jsonata
| Versions
[0,]
M
Cross-site Scripting (XSS)
CVE-2026-53722
Affects
org.webjars.npm:nuxt
| Versions
[0,]
M
CRLF Injection
CVE-2026-12143
Affects
org.webjars.npm:form-data
| Versions
[0,]
M
Cross-site Scripting (XSS)
CVE-2026-53606
Affects
org.webjars.npm:sanitize-html
| Versions
[0,]
M
Improper Encoding or Escaping of Output
CVE-2026-44311
Affects
org.webjars.npm:fabric
| Versions
[0,]
H
Cross-site Scripting (XSS)
CVE-2026-53441
Affects
org.jenkins-ci.main:jenkins-core
| Versions
[2.483,2.555.3)
[2.556,2.568)
H
Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-47835
Affects
org.springframework.ai:spring-ai-vector-store
| Versions
[,1.0.9)
[1.1.0-M1, 1.1.8)
M
HTTP Request Smuggling
CVE-2026-50020
Affects
io.netty:netty-codec-http
| Versions
[,4.1.135.Final)
[4.2.0.Alpha1,4.2.15.Final)
M
Insecure Randomness
CVE-2026-50009
Affects
io.netty:netty-codec-classes-quic
| Versions
[4.2.0.Alpha1,4.2.15.Final)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-50560
Affects
io.netty:netty-codec-http2
| Versions
[,4.1.135.Final)
[4.2.0.Alpha1,4.2.15.Final)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-48748
Affects
io.netty:netty-codec-http3
| Versions
[4.2.0.Alpha1,4.2.15.Final)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-50011
Affects
io.netty:netty-codec-redis
| Versions
[,4.1.135.Final)
[4.2.0.Alpha1,4.2.15.Final)
H
Improper Verification of Cryptographic Signature
CVE-2026-50010
Affects
io.netty:netty-handler
| Versions
[,4.1.135.Final)
[4.2.0.Alpha1,4.2.15.Final)
M
Insertion of Sensitive Information into Log File
CVE-2026-45581
Affects
org.hyperledger.fabric-chaincode-java:fabric-chaincode-shim
| Versions
[2.3.1,2.5.10)
C
Deserialization of Untrusted Data
CVE-2026-50076
Affects
org.apache.fory:fory-core
| Versions
[,1.1.0)
M
Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2026-8759
Affects
com.ibeetl:beetl-spring-classic
| Versions
[,3.21.1.RELEASE)
H
Improper Certificate Validation
CVE-2026-45574
Affects
com.oviva.telematik:konnektor-client
| Versions
[,1.2.2)
H
Improper Certificate Validation
CVE-2026-45574
Affects
com.oviva.telematik:epa4all-vau-client
| Versions
[,1.2.2)
M
XML External Entity (XXE) Injection
CVE-2026-40991
Affects
org.springframework.restdocs:spring-restdocs-core
| Versions
[,3.0.6)
[4.0.0-M1,4.0.1)
H
Improper Certificate Validation
CVE-2026-45574
Affects
com.oviva.telematik:epa4all-client
| Versions
[,1.2.2)
C
Missing Authentication for Critical Function
CVE-2026-45083
Affects
io.goobi.viewer:viewer-core
| Versions
[4.8.0,26.04.1)
H
Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-41696
Affects
org.springframework.data:spring-data-mongodb
| Versions
[,4.5.12)
[5.0.0-M1,5.0.6)
H
Deserialization of Untrusted Data
CVE-2026-41862
Affects
org.springframework.statemachine:spring-statemachine-zookeeper
| Versions
[,4.0.2)
H
Deserialization of Untrusted Data
CVE-2026-41862
Affects
org.springframework.statemachine:spring-statemachine-samples-datapersist
| Versions
[,4.0.2)
H
Deserialization of Untrusted Data
CVE-2026-41862
Affects
org.springframework.statemachine:spring-statemachine-kryo
| Versions
[,4.0.2)
H
Deserialization of Untrusted Data
CVE-2026-41862
Affects
org.springframework.statemachine:spring-statemachine-data-common
| Versions
[,4.0.2)
H
Deserialization of Untrusted Data
CVE-2026-41862
Affects
org.springframework.statemachine:spring-statemachine-data-redis
| Versions
[,4.0.2)
H
Deserialization of Untrusted Data
CVE-2026-41862
Affects
org.springframework.statemachine:spring-statemachine-data-mongodb
| Versions
[,4.0.2)
H
Deserialization of Untrusted Data
CVE-2026-41862
Affects
org.springframework.statemachine:spring-statemachine-data-jpa
| Versions
[,4.0.2)