Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Cross-site Scripting (XSS)
CVE-2026-27578
Affects
n8n-nodes-base
| Versions
<1.121.15
>=2.0.0 <2.9.1
>=2.10.0 <2.10.1
C
Arbitrary Code Injection
CVE-2026-27577
Affects
n8n-workflow
| Versions
<1.120.9
>=2.0.0 <2.9.1
>=2.10.0 <2.10.1
C
Arbitrary Code Injection
CVE-2026-27498
Affects
n8n-core
| Versions
<1.122.4
>=2.0.0 <2.1.2
C
Arbitrary Code Injection
CVE-2026-27498
Affects
@n8n/config
| Versions
<1.65.2
>=2.0.0 <2.0.2
C
Eval Injection
CVE-2026-27493
Affects
n8n-nodes-base
| Versions
<1.121.15
>=2.0.0 <2.9.1
>=2.10.0 <2.10.1
C
Arbitrary Code Injection
CVE-2026-27495
Affects
@n8n/task-runner
| Versions
<1.59.16
>=2.0.0 <2.9.1
>=2.10.0 <2.10.1
H
Exposure of Sensitive System Information to an Unauthorized Control Sphere
CVE-2026-27494
Affects
n8n-nodes-base
| Versions
<2.7.0
C
Arbitrary Code Injection
CVE-2026-27497
Affects
n8n-nodes-base
| Versions
<1.121.15
>=2.0.0 <2.9.1
>=2.10.0 <2.10.1
C
Malicious Package
Affects
jest-param-validator
| Versions
*
C
Malicious Package
Affects
ts-packer
| Versions
*
C
Malicious Package
Affects
jest-node-paramset
| Versions
*
H
Inefficient Algorithmic Complexity
CVE-2026-27903
Affects
minimatch
| Versions
<3.1.3
>=4.0.0 <4.2.5
>=5.0.0 <5.1.8
>=6.0.0 <6.2.2
>=7.0.0 <7.4.8
>=8.0.0 <8.0.6
>=9.0.0 <9.0.7
>=10.0.0 <10.2.3
H
Regular Expression Denial of Service (ReDoS)
CVE-2026-27904
Affects
minimatch
| Versions
>=8.0.0 <8.0.6
>=9.0.0 <9.0.7
>=10.0.0 <10.2.3
C
Malicious Package
Affects
chai-lite-lib
| Versions
*
C
Malicious Package
Affects
sample-custom-component
| Versions
*
C
Malicious Package
Affects
microsoft-cms-client
| Versions
*
C
Malicious Package
Affects
chai-as-utils
| Versions
*
C
Malicious Package
Affects
duer-js
| Versions
*
C
Missing Authentication for Critical Function
CVE-2026-27584
Affects
@actual-app/sync-server
| Versions
<26.2.1
C
Arbitrary Code Injection
CVE-2026-27574
Affects
@oneuptime/common
| Versions
<10.0.0
H
Server-side Request Forgery (SSRF)
CVE-2026-27567
Affects
payload
| Versions
<3.75.0
C
Malicious Package
Affects
@ai-studio-web/app
| Versions
*
C
Malicious Package
Affects
@kiukicom/sidebar
| Versions
*
C
Malicious Package
Affects
js-multer
| Versions
*
C
Malicious Package
Affects
chai-iotype
| Versions
*
C
Malicious Package
Affects
@atg-aml-shared/kyc-domain
| Versions
*
C
Malicious Package
Affects
@protonme/routing
| Versions
*
C
Malicious Package
Affects
@unitedcapitalfinancialadvisors/finlife-component-library
| Versions
*
C
Malicious Package
Affects
@coinmetro/app
| Versions
*
H
Directory Traversal
CVE-2026-27606
Affects
rollup
| Versions
<2.80.0
>=3.0.0-0 <3.30.0
>=4.0.0-1 <4.59.0