Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Allocation of Resources Without Limits or Throttling
CVE-2026-47857
Affects
io.projectreactor:reactor-core
| Versions
[,3.8.7)
M
Open Redirect
CVE-2026-47887
Affects
org.springframework:spring-webmvc
| Versions
[,7.0.9)
C
Arbitrary Code Injection
CVE-2026-47884
Affects
org.springframework:spring-webmvc
| Versions
[,7.0.9)
M
Cross-site Scripting (XSS)
CVE-2026-47890
Affects
org.springframework:spring-webflux
| Versions
[6.2.0, 7.0.9)
M
Cross-site Scripting (XSS)
CVE-2026-47890
Affects
org.springframework:spring-webmvc
| Versions
[6.2.0, 7.0.9)
H
Sensitive Cookie in HTTPS Session Without "Secure" Attribute
CVE-2026-47889
Affects
org.springframework:spring-web
| Versions
[6.2.0, 7.0.9)
H
Cross-site Scripting (XSS)
CVE-2026-59281
Affects
org.springframework:spring-web
| Versions
[,7.0.9)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-47885
Affects
org.springframework:spring-web
| Versions
[6.1.0, 7.0.9)
M
HTTP Response Splitting
CVE-2026-59314
Affects
org.springframework:spring-web
| Versions
[,7.0.9)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-59283
Affects
org.springframework:spring-expression
| Versions
[,7.0.9)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-47886
Affects
org.springframework:spring-expression
| Versions
[,7.0.9)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-59282
Affects
org.springframework:spring-beans
| Versions
[,7.0.9)
M
Directory Traversal
CVE-2026-47862
Affects
org.springframework.integration:spring-integration-zip
| Versions
[6.4.0,7.0.6)
[7.1.0,7.1.1)
L
Race Condition
CVE-2026-59321
Affects
org.springframework.integration:spring-integration-scripting
| Versions
[,7.0.6)
[7.1.0,7.1.1)
H
Cleartext Transmission of Sensitive Information
CVE-2026-59293
Affects
org.springframework.integration:spring-integration-smb
| Versions
[6.4.0,7.0.6)
[7.1.0,7.1.1)
M
Symlink Attack
CVE-2026-59311
Affects
org.springframework.integration:spring-integration-zip
| Versions
[6.4.0,7.0.6)
[7.1.0,7.1.1)
H
Improper Handling of Highly Compressed Data (Data Amplification)
CVE-2026-59274
Affects
org.springframework.integration:spring-integration-zip
| Versions
[6.4.0,7.0.6)
[7.1.0,7.1.1)
C
Improper Authentication
CVE-2026-53561
Affects
org.apache.hive:hive-service
| Versions
[,4.2.1)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-54050
Affects
org.sakaiproject.profile2:profile2-api
| Versions
[23.0,]
H
Authorization Bypass Through User-Controlled Key
CVE-2026-54050
Affects
org.sakaiproject.profile2:profile2-impl
| Versions
[23.0,]
M
Arbitrary Code Injection
CVE-2026-49845
Affects
org.apache.hive:hive-standalone-metastore-server
| Versions
[,4.2.1)
M
Server-side Request Forgery (SSRF)
CVE-2026-55976
Affects
org.apache.hive:hive-common
| Versions
[,4.2.1)
M
Server-side Request Forgery (SSRF)
CVE-2026-55976
Affects
org.apache.hive:hive-exec
| Versions
[,4.2.1)
M
Server-side Request Forgery (SSRF)
CVE-2026-77310
Affects
tools.jackson.core:jackson-databind
| Versions
[3.0.0, 3.1.5)
[3.2.0, 3.2.1)
M
Server-side Request Forgery (SSRF)
CVE-2026-77310
Affects
com.fasterxml.jackson.core:jackson-databind
| Versions
[2.0.0, 2.18.9)
[2.19.0, 2.21.5)
[2.22.0, 2.22.1)
M
Improper Neutralization
CVE-2026-76816
Affects
io.netty:netty-codec-mqtt
| Versions
[,4.1.137.Final)
[4.2.0.Final, 4.2.17.Final)
H
Missing Release of Memory after Effective Lifetime
CVE-2026-59295
Affects
io.micrometer:micrometer-core
| Versions
[,1.16.7)
[1.17.0.1,1.17.1)
H
Use of Non-Canonical URL Paths for Authorization Decisions
CVE-2026-15573
Affects
org.keycloak:keycloak-common
| Versions
[,26.7.1)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-16102
Affects
org.keycloak:keycloak-core
| Versions
[,26.7.1)
H
Authorization Bypass Through User-Controlled Key
CVE-2026-16102
Affects
org.keycloak:keycloak-services
| Versions
[,26.7.1)