Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Improper Validation of Specified Quantity in Input
CVE-2026-71314
Affects
org.webjars.npm:nuxt
| Versions
[3.1.0,3.21.10)
[4.0.0,4.5.1)
H
Incorrect Authorization
CVE-2026-71315
Affects
org.webjars.npm:nuxt
| Versions
[3.21.7,3.21.10)
[4.4.7,4.5.1)
M
Arbitrary Code Injection
CVE-2026-50159
Affects
org.webjars.npm:mermaid
| Versions
[,10.9.8)
[11.0.0-alpha.1,11.16.1)
M
Use of Blocking Code in Single-threaded, Non-blocking Context
CVE-2026-71439
Affects
org.webjars.npm:mermaid
| Versions
[11.6.0,11.16.1)
L
Prototype Pollution
CVE-2026-71438
Affects
org.webjars.npm:mermaid
| Versions
[,10.9.8)
[11.0.0-alpha.1,11.16.1)
M
Improperly Controlled Sequential Memory Allocation
CVE-2026-71436
Affects
org.webjars.npm:mermaid
| Versions
[10.6.0,10.9.8)
[11.0.0-alpha.1,11.16.1)
M
Prototype Pollution
CVE-2026-71437
Affects
org.webjars.npm:mermaid
| Versions
[11.5.0,11.16.1)
H
Cross-site Scripting (XSS)
CVE-2026-16633
Affects
org.webjars.npm:pdfjs-dist
| Versions
[5.6.205,6.2.108)
H
Improper Resource Shutdown or Release
CVE-2026-59725
Affects
org.webjars.npm:engine.io
| Versions
[4.1.0,6.6.7)
H
Prototype Pollution
CVE-2026-59876
Affects
org.webjars.npm:protobufjs
| Versions
[8.2.0,8.6.5)
H
Prototype Pollution
CVE-2026-59724
Affects
org.webjars.npm:engine.io
| Versions
[6.5.0,6.6.7)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-12590
Affects
org.webjars.npm:body-parser
| Versions
[,1.20.6)
[2.0.0-beta.1,2.3.0)
H
Infinite loop
CVE-2026-59874
Affects
org.webjars.npm:tar
| Versions
[,7.5.18)
M
Incorrect Type Conversion or Cast
CVE-2026-59871
Affects
org.webjars.npm:tar
| Versions
[,7.5.18)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-59873
Affects
org.webjars.npm:tar
| Versions
[,7.5.19)
H
Directory Traversal
CVE-2026-39245
Affects
org.webjars.npm:decompress
| Versions
[0,]
M
Symlink Attack
CVE-2026-39243
Affects
org.webjars.npm:decompress
| Versions
[0,]
M
Symlink Attack
CVE-2026-39246
Affects
org.webjars.npm:decompress
| Versions
[0,]
H
Arbitrary Code Injection
CVE-2026-73651
Affects
org.webjars.npm:typeorm
| Versions
[,0.3.31)
[1.0.0,1.1.0)
M
Incomplete List of Disallowed Inputs
CVE-2026-73650
Affects
org.webjars.npm:svgo
| Versions
[,2.8.3)
[3.0.0,3.3.4)
[4.0.0,4.0.2)
H
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
CVE-2026-73569
Affects
org.webjars.npm:fast-xml-parser
| Versions
[5.9.3,5.10.1)
H
Interpretation Conflict
CVE-2026-16221
Affects
org.webjars.npm:fast-uri
| Versions
[2.3.1,2.4.3)
[3.0.0,3.1.4)
[4.0.0,4.1.1)
M
Regular Expression Denial of Service (ReDoS)
CVE-2023-26117
Affects
org.webjars.npm:angular-resource
| Versions
[0,]
H
Allocation of Resources Without Limits or Throttling
CVE-2026-54490
Affects
org.webjars.npm:websocket-driver
| Versions
[,0.7.5)
H
Improper Encoding or Escaping of Output
CVE-2026-70609
Affects
org.webjars.npm:electron
| Versions
[,39.8.7)
[40.0.0-alpha.2,40.9.1)
[41.0.0-alpha.1,41.2.0)
[42.0.0-alpha.1,42.0.0-beta.1)
M
External Control of System or Configuration Setting
CVE-2026-70607
Affects
org.webjars.npm:electron
| Versions
[,39.8.8)
[40.0.0-alpha.2,40.9.1)
[41.0.0-alpha.1,41.2.1)
[42.0.0-alpha.1,42.0.0-beta.3)
M
Command Injection
CVE-2026-70611
Affects
org.webjars.npm:electron
| Versions
[,39.8.9)
[40.0.0-alpha.2,40.9.2)
[41.0.0-alpha.1,41.2.1)
[42.0.0-alpha.1,42.0.0-beta.3)
M
Authentication Bypass by Primary Weakness
CVE-2026-70606
Affects
org.webjars.npm:electron
| Versions
[40.0.0-alpha.2,40.10.6)
[41.0.0-alpha.1,41.9.1)
[42.0.0-alpha.1,42.5.1)
[43.0.0-alpha.1,43.0.0)
L
Improper Restriction of Rendered UI Layers or Frames
CVE-2026-70600
Affects
org.webjars.npm:electron
| Versions
[,39.8.8)
[40.0.0-alpha.2,40.9.1)
[41.0.0-alpha.1,41.2.1)
[42.0.0-alpha.1,42.0.0-beta.3)
M
Exposure of Data Element to Wrong Session
CVE-2026-70602
Affects
org.webjars.npm:electron
| Versions
[,39.8.8)
[40.0.0-alpha.2,40.9.1)
[41.0.0-alpha.1,41.2.1)
[42.0.0-alpha.1,42.0.0-beta.3)