Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
Affects dbgate-web | Versions >=7.0.0-alpha.10 <7.1.5
Affects mcp-server-kubernetes | Versions >=1.0.0 <3.5.0
Affects apostrophe | Versions <4.29.0
Affects apostrophe | Versions <4.29.0
Affects @apostrophecms/seo | Versions <1.4.2
Affects renovate | Versions >=43.65.0 <43.102.11
Affects @nestjs/microservices | Versions <11.1.19
Affects langsmith | Versions <0.5.19
Affects hono | Versions <4.12.14
  • M
Command InjectionCVE-2026-5528
Affects code-screenshot-mcp | Versions *
Affects prompts.chat | Versions *
  • H
Directory TraversalCVE-2026-22661
Affects prompts.chat | Versions *
Affects prompts.chat | Versions *
  • H
Missing AuthorizationCVE-2026-22663
Affects prompts.chat | Versions *
Affects prompts.chat | Versions *
Affects dompurify | Versions <3.4.0
Affects google-search-mcp | Versions *
Affects tether-wrk-base | Versions *
Affects tensorzero-node | Versions *
Affects @pnc-cib/cib-core-lib | Versions *
Affects fusion-events | Versions *
Affects vs-supplier-portal-web | Versions *
Affects base-counter-web | Versions *
Affects laserlogsink | Versions *
Affects com.baogong.app_push_permission | Versions *
  • C
Missing AuthorizationCVE-2026-39397
Affects @delmaredigital/payload-puck | Versions <0.6.23
Affects @vendure/core | Versions >=1.7.4 <2.3.4>=3.0.0-next.0 <3.5.7>=3.6.0 <3.6.2
  • C
Command InjectionCVE-2026-28291
Affects simple-git | Versions <3.32.0
  • C
Affects @fastify/express | Versions <4.0.5
  • C
Affects @fastify/express | Versions <4.0.5