Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Private Data Structure Returned From A Public Method
github.com/apache/answer/internal/schema<1.4.5-RC1Go4 Apr 2025
  • M
Private Data Structure Returned From A Public Method
github.com/apache/answer/internal/migrations<1.4.5-RC1Go4 Apr 2025
  • M
Private Data Structure Returned From A Public Method
github.com/apache/answer/internal/install<1.4.5-RC1Go4 Apr 2025
  • M
Private Data Structure Returned From A Public Method
github.com/apache/answer/internal/controller<1.4.5-RC1Go4 Apr 2025
  • H
Improper Input Validation
org.apache.dolphinscheduler:dolphinscheduler-ui[3.1.0,3.3.0-alpha)Maven4 Apr 2025
  • H
Improper Input Validation
org.apache.dolphinscheduler:dolphinscheduler-api[3.1.0,3.3.0-alpha)Maven4 Apr 2025
  • H
Incorrect Behavior Order
api-platform/graphql<4.0.22Composer4 Apr 2025
  • H
Incorrect Behavior Order
api-platform/core<4.0.22Composer4 Apr 2025
  • H
Incorrect Authorization
api-platform/graphql<4.0.22Composer4 Apr 2025
  • H
Incorrect Authorization
api-platform/core<4.0.22Composer4 Apr 2025
  • M
Information Exposure
api-platform/core>=3.2.0, <3.2.5Composer4 Apr 2025
  • M
Improper Verification of Cryptographic Signature
github.com/minio/minio/cmd<RELEASE.2025-04-03T14-56-28ZGo4 Apr 2025
  • L
Incorrect Authorization
org.apache.activemq:artemis-server[2.0.0,2.40.0)Maven4 Apr 2025
  • M
Improper Validation of Syntactic Correctness of Input
golang.org/x/net/html<0.38.0Go4 Apr 2025
  • H
Symlink Attack
org.webjars.npm:tar-fs[0,]Maven4 Apr 2025
  • M
Access Control Bypass
org.webjars.npm:vite[0,]Maven4 Apr 2025
  • H
Incorrect Authorization
org.webjars.npm:vite[0,]Maven4 Apr 2025
  • H
Incorrect Authorization
vite<4.5.12>=5.0.0 <5.4.17>=6.0.0 <6.0.14>=6.1.0 <6.1.4>=6.2.0 <6.2.5npm4 Apr 2025
  • C
Deserialization of Untrusted Data
org.apache.parquet:parquet-avro[,1.15.1)Maven3 Apr 2025
  • C
Authentication Bypass Using an Alternate Path or Channel
org.apache.pinot:pinot-controller[,1.3.0)Maven3 Apr 2025
  • C
Authentication Bypass Using an Alternate Path or Channel
org.apache.pinot:pinot-common[,1.3.0)Maven3 Apr 2025
  • C
Authentication Bypass Using an Alternate Path or Channel
org.apache.pinot:pinot-broker[,1.3.0)Maven3 Apr 2025
  • M
Inefficient Algorithmic Complexity
io.netty.incubator:netty-incubator-codec-classes-quic[,0.0.71)Maven3 Apr 2025
  • H
Dynamic Variable Evaluation
composio-core[,0.5.43)pip3 Apr 2025
  • M
Server-side Request Forgery (SSRF)
composio-core[0,]pip3 Apr 2025
  • M
Improper Neutralization of Data within XPath Expressions ('XPath Injection')
composio-core[0,]pip3 Apr 2025
  • M
Cross-site Request Forgery (CSRF)
aim[0,]pip3 Apr 2025
  • M
Prototype Pollution
expand-object>=0.0.0npm3 Apr 2025
  • M
Allocation of Resources Without Limits or Throttling
assimp/assimp[0,]Unmanaged (C/C++)3 Apr 2025
  • M
Out-of-bounds Read
assimp/assimp[0,]Unmanaged (C/C++)3 Apr 2025