Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
H
Authorization Bypass Through User-Controlled Key
CVE-2026-42205
Affects
avo
| Versions
<3.31.1
H
Missing Authorization
CVE-2026-40870
Affects
decidim-comments
| Versions
<0.30.5
>=0.30.0.rc1, <0.31.1
H
Missing Authorization
CVE-2026-40870
Affects
decidim-api
| Versions
<0.30.5
>=0.30.0.rc1, <0.31.1
L
Authorization Bypass Through User-Controlled Key
Affects
fat_free_crm
| Versions
>=0.10.1-rc1, <0.26.0
M
Missing Authorization
CVE-2026-40869
Affects
decidim-budgets
| Versions
>=0.19.0, <0.30.5
>=0.31.0.rc1, <0.31.1
H
Infinite loop
Affects
iodine
| Versions
>=0.0.1.pre
C
Cross-site Scripting (XSS)
CVE-2026-23891
Affects
decidim-core
| Versions
<0.31.1
H
Improper Check for Unusual or Exceptional Conditions
CVE-2026-40069
Affects
bsv-sdk
| Versions
<0.8.2
H
Improper Verification of Cryptographic Signature
CVE-2026-40070
Affects
bsv-wallet
| Versions
<0.3.4
H
Improper Verification of Cryptographic Signature
CVE-2026-40070
Affects
bsv-sdk
| Versions
<0.8.2
H
Out-of-bounds Read
CVE-2026-35201
Affects
rdiscount
| Versions
>=1.3.1.1, <2.2.7.4
C
Not Failing Securely ('Failing Open')
CVE-2026-39324
Affects
rack-session
| Versions
>=2.0.0, <2.1.2
H
Regular Expression Denial of Service (ReDoS)
CVE-2026-35611
Affects
addressable
| Versions
>=2.3.0, <2.9.0
H
Denial of Service (DoS)
CVE-2026-34829
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
M
Incorrect Behavior Order: Validate Before Canonicalize
CVE-2026-34786
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
M
Permissive Regular Expression
CVE-2026-34763
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
H
Denial of Service (DoS)
CVE-2026-34826
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
H
Permissive Regular Expression
CVE-2026-34830
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
H
Denial of Service (DoS)
CVE-2026-34230
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
H
Partial String Comparison
CVE-2026-34785
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
M
Improper Handling of Length Parameter Inconsistency
CVE-2026-34831
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
M
CRLF Injection
CVE-2026-26962
Affects
rack
| Versions
>=3.2.0, <3.2.6
M
Interpretation Conflict
CVE-2026-32762
Affects
rack
| Versions
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
M
Improper Validation of Syntactic Correctness of Input
CVE-2026-34835
Affects
rack
| Versions
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
H
Inefficient Algorithmic Complexity
CVE-2026-34827
Affects
rack
| Versions
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
M
Interpretation Conflict
CVE-2026-26961
Affects
rack
| Versions
<2.2.23
>=3.0.0.beta1, <3.1.21
>=3.2.0, <3.2.6
H
Arbitrary Code Injection
CVE-2026-4800
Affects
lodash-rails
| Versions
>=0.7.0
M
Cross-site Scripting (XSS)
Affects
action_text-trix
| Versions
<2.1.18
H
Arbitrary Code Injection
CVE-2026-34060
Affects
ruby-lsp
| Versions
<0.26.9
H
Improper Control of Dynamically-Managed Code Resources
CVE-2026-33286
Affects
graphiti
| Versions
<1.10.2