Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Information Exposure
Affects
openclaw
| Versions
<2026.4.2
M
Incorrect Authorization
Affects
openclaw
| Versions
<2026.4.2
M
Improper Input Validation
Affects
openclaw
| Versions
<2026.4.2
M
Incomplete List of Disallowed Inputs
Affects
openclaw
| Versions
<2026.3.31
M
Expected Behavior Violation
Affects
@openclaw/zalo
| Versions
*
H
Allocation of Resources Without Limits or Throttling
CVE-2026-34148
Affects
@fedify/vocab-runtime
| Versions
<2.0.8
>=2.1.0 <2.1.1
H
Allocation of Resources Without Limits or Throttling
CVE-2026-34148
Affects
@fedify/fedify
| Versions
<1.9.6
>=1.10.0 <1.10.5
>=2.0.0 <2.0.8
>=2.1.0 <2.1.1
M
Insertion of Sensitive Information Into Sent Data
CVE-2026-39381
Affects
parse-server
| Versions
>=7.0.0-alpha.1 <8.6.75
>=9.0.0-alpha.1 <9.8.0-alpha.7
M
Timing Attack
CVE-2026-39321
Affects
parse-server
| Versions
<8.6.74
>=9.0.0-alpha.1 <9.8.0-alpha.6
M
Improper Handling of Insufficient Permissions or Privileges
Affects
openclaw
| Versions
<2026.3.28
M
Directory Traversal
CVE-2026-39406
Affects
@hono/node-server
| Versions
<1.19.13
M
Incorrect Behavior Order: Validate Before Canonicalize
CVE-2026-39409
Affects
hono
| Versions
<4.12.12
M
Directory Traversal
CVE-2026-39408
Affects
hono
| Versions
>=4.0.0 <4.12.12
M
Improper Input Validation
CVE-2026-39410
Affects
hono
| Versions
<4.12.12
M
HTTP Response Splitting
Affects
hono
| Versions
<4.12.12
M
Directory Traversal
CVE-2026-39407
Affects
hono
| Versions
<4.12.12
C
Embedded Malicious Code
Affects
@fairwords/encryption
| Versions
=0.0.5
=0.0.6
C
Embedded Malicious Code
Affects
@fairwords/websocket
| Versions
=1.0.38
=1.0.39
C
Embedded Malicious Code
Affects
@fairwords/loopback-connector-es
| Versions
=1.4.3
=1.4.4
C
Embedded Malicious Code
Affects
@velora-dex/sdk
| Versions
=9.4.1
C
Malicious Package
Affects
strapi-plugin-cache
| Versions
*
L
NULL Pointer Dereference
CVE-2026-34781
Affects
electron
| Versions
<39.8.5
>=40.0.0-alpha.2 <40.8.5
>=41.0.0-alpha.1 <41.1.0
>=42.0.0-alpha.1 <42.0.0-alpha.5
L
Exposure of Resource to Wrong Sphere
CVE-2026-34765
Affects
electron
| Versions
<39.8.5
>=40.0.0-alpha.2 <40.8.5
>=41.0.0-alpha.1 <41.1.0
>=42.0.0-alpha.1 <42.0.0-alpha.5
M
Origin Validation Error
CVE-2026-34083
Affects
signalk-server
| Versions
>=2.20.0 <2.24.0
C
Authentication Bypass Using an Alternate Path or Channel
CVE-2026-33950
Affects
signalk-server
| Versions
<2.24.0-beta.4
H
Incorrect Behavior Order: Validate Before Canonicalize
CVE-2026-39364
Affects
vite-plus
| Versions
<0.1.16
H
Incorrect Behavior Order: Validate Before Canonicalize
CVE-2026-39364
Affects
vite
| Versions
>=7.1.0 <7.3.2
>=8.0.0 <8.0.5
H
Missing Authentication for Critical Function
CVE-2026-39363
Affects
vite-plus
| Versions
<0.1.16
H
Missing Authentication for Critical Function
CVE-2026-39363
Affects
vite
| Versions
>=6.0.0 <6.4.2
>=7.0.0 <7.3.2
>=8.0.0 <8.0.5
M
Directory Traversal
CVE-2026-39365
Affects
vite-plus
| Versions
<0.1.16