Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.portal.security.iframe.sanitizer[,1.0.1)Maven2 Nov 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.portal.language.override.web[,1.0.3)Maven2 Nov 2025
  • M
Sensitive Information in Resource Not Removed Before Reuse
org.neo4j:neo4j-bolt[5.26.0,5.26.15)[2025.10.1,2025.1.0)Maven31 Oct 2025
  • M
CRLF Injection
org.keycloak:keycloak-services[,26.3.3)Maven31 Oct 2025
  • H
Allocation of Resources Without Limits or Throttling
io.grpc:grpc-netty-shaded[,1.75.0)Maven31 Oct 2025
  • M
Brute Force
com.liferay.portal:com.liferay.portal.impl[,60.0.0)Maven31 Oct 2025
  • M
Cross-site Scripting (XSS)
com.liferay:com.liferay.account.admin.web[,2.0.108)Maven30 Oct 2025
  • M
Insertion of Sensitive Information into Log File
com.liferay:com.liferay.portal.security.ldap.impl[,4.0.54)Maven30 Oct 2025
  • M
Open Redirect
com.liferay:com.liferay.layout.admin.web[,5.0.157)Maven30 Oct 2025
  • M
Cleartext Storage of Sensitive Information
com.liferay.portal:com.liferay.portal.impl[,93.0.0)Maven30 Oct 2025
  • M
Missing Authentication for Critical Function
com.liferay.portal:com.liferay.portal.impl[,97.0.0)Maven30 Oct 2025
  • M
Session Fixation
org.keycloak:keycloak-services[,26.0.0)Maven30 Oct 2025
  • H
Command Injection
org.jenkins-ci.plugins:azure-cli[0,]Maven30 Oct 2025
  • M
Cleartext Transmission of Sensitive Information
io.jenkins.plugins:byteguard-build-actions[0,]Maven30 Oct 2025
  • M
Cleartext Transmission of Sensitive Information
com.openshift.jenkins:openshift-pipeline[0,]Maven30 Oct 2025
  • M
Cross-site Request Forgery (CSRF)
org.jenkins-ci.plugins:nexus-task-runner[0,]Maven30 Oct 2025
  • M
Missing Authorization
org.jenkins-ci.plugins:nexus-task-runner[0,]Maven30 Oct 2025
  • M
Missing Authorization
org.jenkins-ci.plugins:windocks-start-container[0,]Maven30 Oct 2025
  • H
XML External Entity (XXE) Injection
org.jenkins-ci.plugins:jdepend[0,]Maven30 Oct 2025
  • M
Cleartext Transmission of Sensitive Information
org.jenkins-ci.plugins:curseforge-publisher[0,]Maven30 Oct 2025
  • M
Cross-site Request Forgery (CSRF)
jp.ikedam.jenkins.plugins:extensible-choice-parameter[0,]Maven30 Oct 2025
  • M
Cross-site Request Forgery (CSRF)
org.jenkins-ci.plugins:windocks-start-container[0,]Maven30 Oct 2025
  • H
Insecure Default Initialization of Resource
io.jenkins.plugins:eggplant-runner[0,]Maven30 Oct 2025
  • M
Cleartext Transmission of Sensitive Information
io.jenkins.plugins:byteguard-build-actions[0,]Maven30 Oct 2025
  • M
Cleartext Transmission of Sensitive Information
org.jenkins-ci.plugins:curseforge-publisher[0,]Maven30 Oct 2025
  • M
Missing Authorization
io.jenkins.plugins:mcp-server[,0.86.v7d3355e6a_a_18)Maven30 Oct 2025
  • M
Missing Authorization
org.jenkins-ci.plugins:themis[0,]Maven30 Oct 2025
  • M
Cross-site Request Forgery (CSRF)
org.jenkins-ci.plugins:themis[0,]Maven30 Oct 2025
  • M
Cross-site Request Forgery (CSRF)
org.jenkins-ci.plugins:publish-to-bitbucket[0,]Maven30 Oct 2025
  • M
Missing Authorization
org.jenkins-ci.plugins:publish-to-bitbucket[0,]Maven30 Oct 2025