Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Relative Path Traversal
org.opencastproject:opencast-user-interface-configuration[0,]Maven31 Aug 2025
  • M
Missing Authorization
com.liferay:com.liferay.portal.workflow.kaleo.runtime.impl[,6.0.93)Maven31 Aug 2025
  • M
Command Injection
com.ritense.valtimo:core[,12.16.0.RELEASE)[13.0.0.RELEASE,13.1.2.RELEASE)Maven29 Aug 2025
  • M
Improper Neutralization
org.eclipse.angus:angus-mail[,2.0.4)Maven29 Aug 2025
  • H
XML External Entity (XXE) Injection
org.apache.tika:tika-parser-pdf-module[,3.2.2)Maven29 Aug 2025
  • M
Storing Passwords in a Recoverable Format
org.xwiki.platform:xwiki-platform-export-pdf-api[,16.4.8)[16.5.0-rc-1,16.10.7)[17.0.0-rc-1,17.4.0-rc-1)Maven29 Aug 2025
  • M
Files or Directories Accessible to External Parties
com.liferay:com.liferay.frontend.js.web[,5.0.125)Maven28 Aug 2025
  • M
Files or Directories Accessible to External Parties
com.liferay:com.liferay.object.dynamic.data.mapping.form.field.type[,1.0.65)Maven28 Aug 2025
  • M
Files or Directories Accessible to External Parties
com.liferay:com.liferay.object.web[,1.0.219)Maven28 Aug 2025
  • H
Allocation of Resources Without Limits or Throttling
org.webjars.bowergithub.mrrio:jspdf[0,]Maven27 Aug 2025
  • H
Allocation of Resources Without Limits or Throttling
org.webjars.bower:jspdf[0,]Maven27 Aug 2025
  • H
Allocation of Resources Without Limits or Throttling
org.webjars.bowergithub.parallax:jspdf[0,]Maven27 Aug 2025
  • H
Allocation of Resources Without Limits or Throttling
org.webjars.npm:jspdf[0,]Maven27 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.journal.service[,7.0.162)Maven27 Aug 2025
  • H
Privilege Defined With Unsafe Actions
org.apache.cassandra:cassandra-all[4.0.16,4.0.17)Maven27 Aug 2025
  • M
Allocation of Resources Without Limits or Throttling
com.liferay:com.liferay.dynamic.data.mapping.form.web[,4.0.180)Maven27 Aug 2025
  • M
Allocation of Resources Without Limits or Throttling
com.liferay:com.liferay.data.engine.js.components.web[,6.0.187)Maven27 Aug 2025
  • M
Incorrect Permission Assignment for Critical Resource
com.liferay:com.liferay.layout.impl[,6.0.147)Maven27 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.plugins.admin.web[,5.0.36)Maven27 Aug 2025
  • M
Regular Expression Denial of Service (ReDoS)
com.liferay:com.liferay.portal.workflow.kaleo.designer.web[,5.0.145)Maven27 Aug 2025
  • M
Insertion of Sensitive Information Into Sent Data
com.liferay.portal:com.liferay.portal.impl[,108.1.1)Maven27 Aug 2025
  • M
Open Redirect
com.liferay:com.liferay.info.impl[,5.0.70)Maven27 Aug 2025
  • M
Arbitrary File Upload
com.liferay:com.liferay.style.book.web[,2.0.118)Maven26 Aug 2025
  • H
Improper Neutralization of Special Elements Used in a Template Engine
org.xwiki.commons:xwiki-commons-velocity[,17.6.0-rc-1)Maven26 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay.portal:com.liferay.portal.kernel[,155.0.0)Maven26 Aug 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.layout.admin.web[,5.0.191)Maven26 Aug 2025
  • L
Cross-site Scripting (XSS)
com.liferay:com.liferay.layout.taglib[,16.1.33)Maven26 Aug 2025
  • M
Information Exposure
com.liferay:com.liferay.login.web[,6.0.66)Maven26 Aug 2025
  • M
Missing Authorization
com.liferay:com.liferay.calendar.service[,6.0.83)Maven26 Aug 2025
  • M
Missing Authorization
com.liferay:com.liferay.calendar.api[,13.0.3)Maven26 Aug 2025