Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Expand this section

APPLICATION

Expand this section

OPERATING SYSTEM

Report a new vulnerability
VULNERABILITY AFFECTS TYPE PUBLISHED
  • C
Malicious Package
lavora * npm 7 Nov 2024
  • C
Malicious Package
myplaintext * npm 7 Nov 2024
  • H
Regular Expression Denial of Service (ReDoS)
cross-spawn <6.0.6 >=7.0.0 <7.0.5 npm 7 Nov 2024
  • C
Malicious Package
shoot-gk24 * npm 7 Nov 2024
  • C
Malicious Package
valomemo * npm 7 Nov 2024
  • C
Malicious Package
valorantengine * npm 7 Nov 2024
  • L
Protection Mechanism Failure
twig/twig <3.11.2 >=3.12.0, <3.14.1 Composer 7 Nov 2024
  • L
Protection Mechanism Failure
twig/twig <3.11.2 >=3.12.0, <3.14.1 Composer 7 Nov 2024
  • M
Incorrect Authorization
ansible-core [,2.14.18rc1) [2.15.0b1,2.15.13rc1) [2.16.0b1,2.16.13rc1) [2.17.0b1,2.17.6rc1) [2.18.0b1,2.18.0rc2) pip 7 Nov 2024
  • H
Improper Validation of Array Index
github.com/cometbft/cometbft/consensus >=0.38.0 <0.38.15 >=1.0.0-alpha.1 Go 7 Nov 2024
  • H
Directory Traversal
gradio [5.0.0,5.5.0) pip 7 Nov 2024
  • C
Authentication Bypass by Primary Weakness
codechecker [,6.24.2) pip 6 Nov 2024
  • C
Authentication Bypass Using an Alternate Path or Channel
codechecker [,6.24.2) pip 6 Nov 2024
  • M
Access Restriction Bypass
symfony/symfony <5.4.46 >=6.0.0-BETA1, <6.4.14 >=7.0.0-BETA1, <7.1.7 Composer 6 Nov 2024
  • M
Improper Authorization
symfony/security-bundle <6.4.10 >=7.0.0-BETA1, <7.0.10 >=7.1.0-BETA1, <7.1.3 Composer 6 Nov 2024
  • H
Improper Authentication
github.com/sigstore/gitsign/pkg/rekor <0.11.0 Go 6 Nov 2024
  • M
Insertion of Sensitive Information Into Sent Data
symfony/http-client <5.4.46 >=6.0.0-BETA1, <6.4.14 >=7.0.0-BETA1, <7.1.7 Composer 6 Nov 2024
  • L
Insertion of Sensitive Information into Log File
@workos-inc/authkit-nextjs <0.13.2 npm 6 Nov 2024
  • M
Misinterpretation of Input
symfony/validator <5.4.43 >=6.0.0-BETA1, <6.4.11 >=7.0.0-BETA1, <7.1.4 Composer 6 Nov 2024
  • H
Cross-site Scripting (XSS)
github.com/j3ssie/osmedeus/core * Go 6 Nov 2024
  • M
Open Redirect
symfony/http-foundation <5.4.46 >=6.0.0-BETA1, <6.4.14 >=7.0.0-BETA1, <7.1.7 Composer 6 Nov 2024
  • M
Arbitrary Code Injection
symfony/process <5.4.46 >=6.0.0-BETA1, <6.4.14 >=7.0.0-BETA1, <7.1.7 Composer 6 Nov 2024
  • L
Insertion of Sensitive Information into Log File
@workos-inc/authkit-remix <0.4.1 npm 6 Nov 2024
  • M
Comparison Using Wrong Factors
curl [7.74.0, 8.11.0) Unmanaged (C/C++) 6 Nov 2024
  • H
Arbitrary Code Injection
langflow [0,] pip 6 Nov 2024
  • C
Eval Injection
agentscope [0,] pip 6 Nov 2024
  • M
Cross-site Scripting (XSS)
octoprint [,1.10.3) pip 6 Nov 2024
  • M
Unverified Password Change
octoprint [,1.10.3) pip 6 Nov 2024
  • L
Directory Traversal
cap-async-std <3.4.1 Cargo 6 Nov 2024
  • L
Directory Traversal
cap-primitives <3.4.1 Cargo 6 Nov 2024