Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
M
Permissive Cross-domain Policy with Untrusted Domains
CVE-2026-5321
Affects
vanna
| Versions
[0,]
M
Missing Authentication for Critical Function
CVE-2026-5320
Affects
vanna
| Versions
[0,]
M
Insufficient Entropy
CVE-2026-34236
Affects
auth0/auth0-php
| Versions
>=8.0.0-BETA1, <8.19.0
M
Server-side Request Forgery (SSRF)
CVE-2026-34746
Affects
payload
| Versions
<3.79.1
M
Cross-site Scripting (XSS)
CVE-2026-34748
Affects
@payloadcms/ui
| Versions
<3.78.0
M
Cross-site Scripting (XSS)
CVE-2026-34748
Affects
@payloadcms/plugin-mcp
| Versions
<3.78.0
H
Directory Traversal
CVE-2026-34750
Affects
@payloadcms/storage-s3
| Versions
<3.78.0
H
Directory Traversal
CVE-2026-34750
Affects
@payloadcms/storage-r2
| Versions
<3.78.0
H
Directory Traversal
CVE-2026-34750
Affects
@payloadcms/storage-gcs
| Versions
<3.78.0
H
Directory Traversal
CVE-2026-34750
Affects
payload
| Versions
<3.78.0
M
Cross-site Request Forgery (CSRF)
CVE-2026-34749
Affects
payload
| Versions
<3.79.1
M
SQL Injection
CVE-2026-34747
Affects
payload
| Versions
<3.79.1
M
SQL Injection
CVE-2026-34747
Affects
@payloadcms/drizzle
| Versions
<3.79.1
L
Authorization Bypass Through User-Controlled Key
CVE-2026-5199
Affects
go.temporal.io/server/service/worker/batcher
| Versions
>=1.29.0 <1.29.5
>=1.30.0 <1.30.3
L
Authorization Bypass Through User-Controlled Key
CVE-2026-5199
Affects
github.com/temporalio/temporal/service/worker/batcher
| Versions
>=1.29.0 <1.29.5
>=1.30.0 <1.30.3
M
Time-of-check Time-of-use (TOCTOU) Race Condition
Affects
onnx
| Versions
[,1.21.0)
M
Deserialization of Untrusted Data
CVE-2026-2265
Affects
replicator
| Versions
*
M
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2026-34445
Affects
onnx
| Versions
[,1.21.0)
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-34446
Affects
onnx
| Versions
[,1.21.0)
M
UNIX Symbolic Link (Symlink) Following
CVE-2026-34447
Affects
onnx
| Versions
[,1.21.0)
H
Directory Traversal
CVE-2026-34591
Affects
poetry
| Versions
[1.4.0,2.3.3)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-22815
Affects
aiohttp
| Versions
[,3.13.4)
H
Server-side Request Forgery (SSRF)
CVE-2026-34515
Affects
aiohttp
| Versions
[,3.13.4)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-34513
Affects
aiohttp
| Versions
[,3.13.4)
M
HTTP Response Splitting
CVE-2026-34514
Affects
aiohttp
| Versions
[,3.13.4)
M
Information Exposure
CVE-2026-34518
Affects
aiohttp
| Versions
[,3.13.4)
M
Allocation of Resources Without Limits or Throttling
CVE-2026-34517
Affects
aiohttp
| Versions
[,3.13.4)
M
HTTP Request Smuggling
CVE-2026-34525
Affects
aiohttp
| Versions
[,3.13.4)
H
Allocation of Resources Without Limits or Throttling
CVE-2026-34516
Affects
aiohttp
| Versions
[,3.13.4)
M
HTTP Response Splitting
CVE-2026-34519
Affects
aiohttp
| Versions
[,3.13.4)