Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Insertion of Sensitive Information Into Sent Data
CVE-2026-41278
Affects
flowise
| Versions
>=3.0.5 <3.1.0
C
Malicious Package
Affects
internal_insights_enabled
| Versions
*
H
Authorization Bypass Through User-Controlled Key
CVE-2026-41277
Affects
flowise
| Versions
>=1.7.1 <3.1.0
M
Server-side Request Forgery (SSRF)
Affects
flowise-components
| Versions
<3.1.0
L
Server-side Request Forgery (SSRF)
Affects
flowise-components
| Versions
<3.1.0
H
Missing Authentication for Critical Function
Affects
@budibase/backend-core
| Versions
<3.35.10
M
Server-side Request Forgery (SSRF)
CVE-2026-41271
Affects
flowise-components
| Versions
<3.1.0
M
Command Injection
CVE-2026-40933
Affects
flowise-components
| Versions
<3.1.0
M
Improper Verification of Cryptographic Signature
CVE-2026-41301
Affects
openclaw
| Versions
<2026.3.31
M
Cleartext Transmission of Sensitive Information
CVE-2026-40045
Affects
openclaw
| Versions
<2026.4.2
M
Directory Traversal
Affects
flowise-components
| Versions
>=1.4.3 <3.1.0
C
Malicious Package
Affects
apple-cloudkit-internal
| Versions
*
C
Malicious Package
Affects
cktool.config
| Versions
*
C
Malicious Package
Affects
cktool.core.internal
| Versions
*
C
Malicious Package
Affects
ac-sasskit-internal
| Versions
*
C
Malicious Package
Affects
apple-internal-security-poc-frank
| Versions
*
C
Malicious Package
Affects
cktool.internal
| Versions
*
C
Malicious Package
Affects
cktool.api
| Versions
*
C
Malicious Package
Affects
apple-idms-internal
| Versions
*
C
Malicious Package
Affects
apple-auth-internal
| Versions
*
C
Malicious Package
Affects
tailwindthml-flips
| Versions
*
C
Malicious Package
Affects
tailwind-text-fill
| Versions
*
C
Arbitrary Code Injection
CVE-2025-61260
Affects
@openai/codex
| Versions
<0.23.0
H
Server-side Request Forgery (SSRF)
CVE-2026-41270
Affects
flowise
| Versions
<3.1.0
H
Server-side Request Forgery (SSRF)
CVE-2026-41270
Affects
flowise-components
| Versions
<3.1.0
M
Open Redirect
CVE-2026-42259
Affects
@saltcorn/server
| Versions
<1.4.6
>=1.5.0-beta.0 <1.5.6
>=1.6.0-alpha.0 <1.6.0-beta.5
H
Improper Neutralization of Special Elements in Data Query Logic
CVE-2026-41274
Affects
flowise-components
| Versions
>=2.2.3 <3.1.0
H
SQL Injection
CVE-2026-41478
Affects
@saltcorn/data
| Versions
<1.4.6
>=1.5.0-beta.0 <1.5.6
>=1.6.0-alpha.0 <1.6.0-beta.5
H
SQL Injection
CVE-2026-41478
Affects
@saltcorn/mobile-app
| Versions
<1.4.6
>=1.5.0-beta.0 <1.5.6
>=1.6.0-alpha.0 <1.6.0-beta.5
H
SQL Injection
CVE-2026-41478
Affects
@saltcorn/server
| Versions
<1.4.6
>=1.5.0-beta.0 <1.5.6
>=1.6.0-alpha.0 <1.6.0-beta.5