Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
C
Improper Authentication
CVE-2026-40946
Affects
github.com/oxia-db/oxia/oxiad/common/rpc/auth
| Versions
<0.16.2
H
Race Condition
CVE-2026-40943
Affects
github.com/oxia-db/oxia/oxiad/dataserver/controller/lead
| Versions
<0.16.2
M
Improper Certificate Validation
CVE-2026-40944
Affects
github.com/oxia-db/oxia/common/security
| Versions
<0.16.2
H
Directory Traversal
CVE-2026-40876
Affects
github.com/patrickhener/goshs/sftpserver
| Versions
<2.0.0-beta.6
C
Unsafe Dependency Resolution
CVE-2026-40903
Affects
github.com/patrickhener/goshs/httpserver
| Versions
<2.0.0-beta.6
C
Missing Authentication for Critical Function
CVE-2026-40884
Affects
github.com/patrickhener/goshs/sanity
| Versions
<2.0.0-beta.6
M
Cross-site Request Forgery (CSRF)
CVE-2026-40883
Affects
github.com/patrickhener/goshs/httpserver
| Versions
>=2.0.0-beta.4 <2.0.0-beta.6
H
Insertion of Sensitive Information into Log File
CVE-2026-40885
Affects
github.com/patrickhener/goshs/httpserver
| Versions
>=2.0.0-beta.4 <2.0.0-beta.6
H
Improper Authentication
CVE-2026-40910
Affects
github.com/fatedier/frp/pkg/util/vhost
| Versions
>=0.43.0 <0.68.1
H
Improper Authentication
CVE-2026-40910
Affects
github.com/fatedier/frp/pkg/util/version
| Versions
>=0.43.0 <0.68.1
M
SQL Injection
CVE-2026-39946
Affects
github.com/openbao/openbao/plugins/database/postgresql
| Versions
<2.5.3
L
Uncontrolled Recursion
CVE-2026-39396
Affects
github.com/openbao/openbao/helper/pluginutil
| Versions
<2.5.3
L
Uncontrolled Recursion
CVE-2026-39396
Affects
github.com/openbao/openbao/command/server
| Versions
<2.5.3
L
Improper Certificate Validation
CVE-2026-39388
Affects
github.com/openbao/openbao/builtin/credential/cert
| Versions
<2.5.3
L
Improper Restriction of Security Token Assignment
CVE-2026-40264
Affects
github.com/openbao/openbao/vault
| Versions
<2.5.3
H
Access Control Bypass
CVE-2026-33031
Affects
github.com/0xjacky/nginx-ui/internal/user
| Versions
<2.3.4
H
Access Control Bypass
CVE-2026-33031
Affects
github.com/0xjacky/nginx-ui/api/user
| Versions
<2.3.4
M
Missing Origin Validation in WebSockets
CVE-2026-34403
Affects
github.com/0xjacky/nginx-ui/mcp
| Versions
<2.3.4
M
Missing Origin Validation in WebSockets
CVE-2026-34403
Affects
github.com/0xjacky/nginx-ui/internal/middleware
| Versions
<2.3.4
M
Missing Origin Validation in WebSockets
CVE-2026-34403
Affects
github.com/0xjacky/nginx-ui/api
| Versions
<2.3.4
H
Allocation of Resources Without Limits or Throttling
CVE-2026-40481
Affects
github.com/monetr/monetr/server/controller
| Versions
<1.12.4
M
Cross-site Scripting (XSS)
CVE-2026-40302
Affects
github.com/openziti/zrok/v2/endpoints/publicproxy
| Versions
<2.0.1
M
Cross-site Scripting (XSS)
CVE-2026-40302
Affects
github.com/openziti/zrok/v2/endpoints/dynamicproxy
| Versions
<2.0.1
M
Cross-site Scripting (XSS)
CVE-2026-40302
Affects
github.com/openziti/zrok/endpoints/proxyui
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2026-40302
Affects
github.com/openziti/zrok/v2/endpoints/proxyui
| Versions
<2.0.1
M
Cross-site Scripting (XSS)
CVE-2026-40302
Affects
github.com/openziti/zrok/endpoints/publicproxy
| Versions
>=0.0.0
M
Cross-site Scripting (XSS)
CVE-2026-40302
Affects
github.com/openziti/zrok/endpoints/dynamicproxy
| Versions
>=0.0.0
H
Memory Allocation with Excessive Size Value
CVE-2026-40303
Affects
github.com/openziti/zrok/v2/endpoints/publicproxy
| Versions
<2.0.1
H
Memory Allocation with Excessive Size Value
CVE-2026-40303
Affects
github.com/openziti/zrok/v2/endpoints/dynamicproxy
| Versions
<2.0.1
H
Memory Allocation with Excessive Size Value
CVE-2026-40303
Affects
github.com/openziti/zrok/endpoints/dynamicproxy
| Versions
>=0.0.0