Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Authentication Bypass by Primary Weakness
CVE-2026-2603
Affects
org.keycloak:keycloak-server-spi-private
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authentication Bypass by Primary Weakness
CVE-2026-2603
Affects
org.keycloak:keycloak-services
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-3009
Affects
org.keycloak:keycloak-services
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-3009
Affects
org.keycloak:keycloak-server-spi-private
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
H
Authentication Bypass by Primary Weakness
CVE-2026-3047
Affects
org.keycloak:keycloak-services
| Versions
[,26.2.14)
[26.3.0,26.4.10)
[26.5.0,26.5.5)
C
Improper Verification of Cryptographic Signature
CVE-2026-29000
Affects
org.pac4j:pac4j-jwt
| Versions
[,4.5.9)
[5.0.0-RC1,5.7.9)
[6.0.0-RC1,6.3.3)
H
Arbitrary File Write via Archive Extraction (Zip Slip)
CVE-2025-23011
Affects
org.fcrepo:fcrepo
| Versions
[,6.5.1)
H
Insufficiently Protected Credentials
CVE-2025-23012
Affects
org.fcrepo:fcrepo
| Versions
[,6.5.1)
M
Interpretation Conflict
CVE-2025-11143
Affects
org.eclipse.jetty:jetty-server
| Versions
[9.4.0.M0,12.0.31)
[12.1.0.alpha0,12.1.5)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-1605
Affects
org.eclipse.jetty:jetty-server
| Versions
[12.0.0.alpha0 ,12.0.32)
[12.1.0.alpha0,12.1.6)
C
Missing Authentication for Critical Function
CVE-2026-27446
Affects
org.apache.activemq:artemis-server
| Versions
[2.11.0, 2.52.0)
C
Missing Authentication for Critical Function
CVE-2026-27446
Affects
org.apache.artemis:artemis-server
| Versions
[2.50.0,2.52.0)
M
Integer Overflow or Wraparound
CVE-2025-66168
Affects
org.apache.activemq:activemq-all
| Versions
[,5.19.2)
[6.0.0,]
M
Integer Overflow or Wraparound
CVE-2025-66168
Affects
org.apache.activemq:activemq-mqtt
| Versions
[,5.19.2)
[6.0.0,]
L
Missing Critical Step in Authentication
CVE-2026-3429
Affects
org.keycloak:keycloak-services
| Versions
[0,]
M
Improper Handling of Insufficient Permissions or Privileges
CVE-2026-3190
Affects
org.keycloak:keycloak-services
| Versions
[0,]
H
Incorrect Privilege Assignment
CVE-2026-3121
Affects
org.keycloak:keycloak-services
| Versions
[0,26.5.6)
C
Arbitrary Code Injection
CVE-2025-59059
Affects
org.apache.ranger:ranger-plugins-common
| Versions
[,2.8.0)
H
XML Entity Expansion (Billion Laughs)
CVE-2026-29074
Affects
org.webjars.npm:svgo
| Versions
[2.8.0,]
C
Prototype Pollution
CVE-2026-29063
Affects
org.webjars.npm:immutable
| Versions
[0,]
H
Uncontrolled Recursion
CVE-2026-3520
Affects
org.webjars.npm:multer
| Versions
[0,]
H
Symlink Attack
CVE-2026-29786
Affects
org.webjars.npm:tar
| Versions
[0,]
H
Uncontrolled Recursion
CVE-2026-27601
Affects
org.webjars.npm:underscore
| Versions
[,1.13.8)
M
Cross-site Scripting (XSS)
CVE-2025-15599
Affects
org.webjars.npm:dompurify
| Versions
[,3.2.7)
M
Cross-site Scripting (XSS)
CVE-2026-0540
Affects
org.webjars.npm:dompurify
| Versions
[,3.3.2)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-29062
Affects
tools.jackson.core:jackson-core
| Versions
[3.0.0-rc1,3.1.0)
M
Incorrect Privilege Assignment
CVE-2026-3268
Affects
com.github.psi-probe:psi-probe-core
| Versions
[0,]
M
Server-side Request Forgery (SSRF)
CVE-2026-3270
Affects
com.github.psi-probe:psi-probe-core
| Versions
[0,]
M
Improper Resource Shutdown or Release
CVE-2026-3269
Affects
com.github.psi-probe:psi-probe-core
| Versions
[0,]
H
Improper Following of a Certificate's Chain of Trust
CVE-2026-27134
Affects
io.strimzi:strimzi
| Versions
[0.49.0,0.50.1)