Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Malicious Package
Affects
baileys-dtz
| Versions
*
C
Malicious Package
Affects
atg-atgse
| Versions
*
C
Malicious Package
Affects
aligned-array
| Versions
*
C
Malicious Package
Affects
@hemanshu_patil/xcode
| Versions
*
C
Malicious Package
Affects
baileys-ud
| Versions
*
M
Server-side Request Forgery (SSRF)
CVE-2025-15104
Affects
vnu-jar
| Versions
*
H
Credential Exposure
CVE-2026-25253
Affects
clawdbot
| Versions
*
C
Malicious Package
Affects
picking-miniapp
| Versions
*
C
Malicious Package
Affects
c11dff444
| Versions
*
H
External Control of File Name or Path
CVE-2026-23835
Affects
@lobehub/lobehub
| Versions
<2.0.0-next.193
C
Malicious Package
Affects
dise-pkt
| Versions
*
C
Malicious Package
Affects
libsignal-yazxzpedia
| Versions
*
C
Malicious Package
Affects
yazxzpedia
| Versions
*
C
Malicious Package
Affects
react-native-expofp
| Versions
*
C
Malicious Package
Affects
@hemanshu_patil/xcode-windows-x64
| Versions
*
H
Directory Traversal
CVE-2026-25152
Affects
@backstage/plugin-techdocs-node
| Versions
<1.13.11
>=1.14.0 <1.14.1
H
Arbitrary Code Injection
CVE-2026-25153
Affects
@backstage/plugin-techdocs-node
| Versions
<1.13.11
>=1.14.0 <1.14.1
M
Information Exposure
CVE-2026-25050
Affects
@vendure/core
| Versions
<3.5.3
C
Arbitrary Command Injection
CVE-2026-25141
Affects
@orval/core
| Versions
>=7.10.0 <7.21.0
>=8.0.0-rc.0 <8.2.0
C
Prototype Pollution
CVE-2026-25047
Affects
deephas
| Versions
<1.0.8
M
Prototype Pollution
CVE-2026-24888
Affects
makerjs
| Versions
<0.19.2
H
Uncaught Exception
CVE-2026-25128
Affects
fast-xml-parser
| Versions
>=5.0.9 <5.3.4
H
Command Injection
CVE-2025-57283
Affects
browserstack-local
| Versions
>=1.5.0 <1.5.9
H
Cross-site Scripting (XSS)
CVE-2026-24778
Affects
@tryghost/portal
| Versions
>=2.29.1 <2.51.5
>=2.52.0 <2.57.1
H
Cross-site Scripting (XSS)
CVE-2026-24778
Affects
ghost
| Versions
>=5.43.0 <5.121.0
>=6.0.0 <6.15.0
H
Open Redirect
CVE-2026-24768
Affects
nocodb
| Versions
<0.301.0
C
Cross-site Scripting (XSS)
CVE-2026-24769
Affects
nocodb
| Versions
<0.301.0
M
Prototype Pollution
CVE-2026-24766
Affects
nocodb
| Versions
<0.301.0
L
Server-side Request Forgery (SSRF)
CVE-2026-24767
Affects
nocodb
| Versions
<0.301.0
H
Cross-site Scripting (XSS)
CVE-2026-1513
Affects
billboard.js
| Versions
<3.18.0-next.2