Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
SQL Injection
CVE-2026-33713
Affects
n8n-nodes-base
| Versions
<1.121.19
>=2.13.0 <2.13.1
>=2.14.0 <2.14.1
H
SQL Injection
CVE-2026-33713
Affects
n8n
| Versions
<1.123.27
>=2.0.0-rc.0 <2.13.3
>=2.14.0 <2.14.1
H
Arbitrary Code Injection
CVE-2026-33660
Affects
n8n
| Versions
<1.123.27
>=2.0.0-rc.0 <2.13.3
>=2.14.0 <2.14.1
H
Authorization Bypass Through User-Controlled Key
CVE-2026-33663
Affects
n8n-nodes-base
| Versions
<1.121.19
>=2.13.0 <2.13.1
>=2.14.0 <2.14.1
M
Incorrect Authorization
CVE-2026-33722
Affects
@n8n/permissions
| Versions
<0.47.1
M
Incorrect Authorization
CVE-2026-33722
Affects
n8n
| Versions
<1.123.23
>=2.0.0-rc.0 <2.6.4
M
Authorization Bypass Through User-Controlled Key
CVE-2026-33724
Affects
n8n
| Versions
<2.5.0
H
Directory Traversal
CVE-2026-33949
Affects
@tinacms/graphql
| Versions
<2.2.2
H
User Impersonation
CVE-2026-33665
Affects
@n8n/rest-api-client
| Versions
<1.24.0
H
User Impersonation
CVE-2026-33665
Affects
@n8n/constants
| Versions
<0.14.0
H
User Impersonation
CVE-2026-33665
Affects
n8n
| Versions
<1.121.0
M
Incorrect Authorization
CVE-2026-33720
Affects
n8n
| Versions
<2.6.4
>=2.7.0 <2.7.3
M
Cross-site Scripting (XSS)
Affects
n8n-nodes-base
| Versions
<2.11.2
C
Embedded Malicious Code
Affects
@qqbrowser/openclaw-qbot
| Versions
=0.0.130
C
Embedded Malicious Code
Affects
@shadanai/openclaw
| Versions
=2026.3.28-2
=2026.3.28-3
=2026.3.31-1
=2026.3.31-2
C
Malicious Package
Affects
plain-crypto-js
| Versions
*
C
Embedded Malicious Code
Affects
axios
| Versions
=1.14.1
=0.30.4
C
Malicious Package
Affects
eslint-validator
| Versions
*
H
Missing Authorization
CVE-2026-26939
Affects
kibana
| Versions
>=8.0.0 <8.19.12
>=9.0.0 <9.2.6
>=9.3.0 <9.3.1
H
Improper Validation of Specified Quantity in Input
CVE-2026-26940
Affects
kibana
| Versions
>=8.0.0 <8.19.13
>=9.0.0 <9.2.7
>=9.3.0 <9.3.2
H
SQL Injection
CVE-2026-33142
Affects
@oneuptime/common
| Versions
<10.0.34
H
Improper Verification of Cryptographic Signature
CVE-2026-33143
Affects
@oneuptime/common
| Versions
>=10.0.23 <10.0.34
H
Origin Validation Error
Affects
@grackle-ai/server
| Versions
<0.70.3
L
Improper Check for Unusual or Exceptional Conditions
Affects
@grackle-ai/server
| Versions
<0.70.6
M
Protection Mechanism Failure
Affects
@grackle-ai/server
| Versions
<0.70.5
L
Sensitive Cookie in HTTPS Session Without "Secure" Attribute
Affects
@grackle-ai/server
| Versions
<0.70.5
L
Cross-site Scripting (XSS)
Affects
@grackle-ai/server
| Versions
<0.70.1
M
Cross-site Scripting (XSS)
Affects
@n8n/n8n-nodes-langchain
| Versions
<1.122.20
>=2.13.0 <2.13.1
>=2.14.0 <2.14.1
M
Cross-site Scripting (XSS)
Affects
trix
| Versions
<2.1.18
M
Prototype Pollution
Affects
handlebars
| Versions
>=4.6.0 <4.7.9