Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Embedded Malicious Code
Affects
@cap-js/postgres
| Versions
=2.2.2
C
Embedded Malicious Code
Affects
@cap-js/db-service
| Versions
=2.10.1
C
Arbitrary Code Injection
CVE-2026-41242
Affects
@apollo/protobufjs
| Versions
*
M
Access Control Bypass
CVE-2025-56015
Affects
genieacs
| Versions
>=0.0.0
H
Missing Authorization
CVE-2026-33318
Affects
@actual-app/sync-server
| Versions
<26.4.0
C
Arbitrary Command Injection
CVE-2026-41501
Affects
electerm
| Versions
<3.3.8
M
Cross-site Request Forgery (CSRF)
CVE-2026-42190
Affects
rwsdk
| Versions
>=1.0.0-beta.50 <1.2.3
H
Incorrect Authorization
Affects
@saltcorn/server
| Versions
<1.4.4
>=1.5.0-beta.0 <1.5.2
>=1.6.0-alpha.0 <1.6.0-beta.1
H
Incorrect Authorization
Affects
@saltcorn/data
| Versions
<1.4.4
>=1.5.0-beta.0 <1.5.2
>=1.6.0-alpha.0 <1.6.0-beta.1
M
Insertion of Sensitive Information into Log File
CVE-2026-42282
Affects
n8n-mcp
| Versions
<2.47.13
H
Sensitive Cookie Without "HttpOnly" Flag
CVE-2026-42239
Affects
@budibase/backend-core
| Versions
<3.35.10
M
Insertion of Sensitive Information into Log File
CVE-2026-41495
Affects
n8n-mcp
| Versions
<2.47.11
C
Command Injection
Affects
@google/gemini-cli
| Versions
<0.39.1
>=0.40.0-preview.2 <0.40.0-preview.3
C
Malicious Package
Affects
sap-backend
| Versions
=0.0.0
C
Malicious Package
Affects
sap-authorize
| Versions
=0.0.0
C
Malicious Package
Affects
e39testing
| Versions
=1.0.0
C
Malicious Package
Affects
e39test
| Versions
=1.0.0
C
Malicious Package
Affects
testerdexa
| Versions
=1.0.0
C
Malicious Package
Affects
npmkoopxxxz
| Versions
=1.0.0
C
Malicious Package
Affects
npmkoopxxx
| Versions
=1.0.0
C
Malicious Package
Affects
npmkoopwwww
| Versions
=1.0.0
C
Malicious Package
Affects
string-utils-assistant
| Versions
=1.0.0
C
Malicious Package
Affects
string-easy-assistant
| Versions
=1.0.0
C
Malicious Package
Affects
hardhat-cookie
| Versions
=3.8.9
C
Malicious Package
Affects
duckc2-v5.5.5
| Versions
=5.5.5
C
Malicious Package
Affects
@cawraytestorg/packagetest2
| Versions
=9.9.9
H
Arbitrary Command Injection
CVE-2026-40068
Affects
@anthropic-ai/claude-code
| Versions
>=2.1.63 <2.1.84
C
Malicious Package
Affects
typescript-react-redux-boilerplate
| Versions
=1.1.0
=1.1.1
C
Malicious Package
Affects
winderlingz
| Versions
=16.0.0
C
Malicious Package
Affects
test-pkg-x5
| Versions
=3.2.0
=3.2.1
=3.2.2
=3.2.3