Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • M
Time-of-check Time-of-use (TOCTOU) Race Condition
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Time-of-check Time-of-use (TOCTOU) Race Condition
magento/community-edition<2.4.4-p12>=2.4.5-p1, <2.4.5-p11>=2.4.6-p1, <2.4.6-p9>=2.4.7-beta1, <2.4.7-p4>=2.4.8-beta1, <2.4.8-beta2Composer4 Mar 2025
  • M
Time-of-check Time-of-use (TOCTOU) Race Condition
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.4.4-p12>=2.4.5-p1, <2.4.5-p11>=2.4.6-p1, <2.4.6-p9>=2.4.7-beta1, <2.4.7-p4>=2.4.8-beta1, <2.4.8-beta2Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.4.4-p12>=2.4.5-p1, <2.4.5-p11>=2.4.6-p1, <2.4.6-p9>=2.4.7-beta1, <2.4.7-p4>=2.4.8-beta1, <2.4.8-beta2Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.4.4-p12>=2.4.5-p1, <2.4.5-p11>=2.4.6-p1, <2.4.6-p9>=2.4.7-beta1, <2.4.7-p4>=2.4.8-beta1, <2.4.8-beta2Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.4.4-p12>=2.4.5-p1, <2.4.5-p11>=2.4.6-p1, <2.4.6-p9>=2.4.7-beta1, <2.4.7-p4>=2.4.8-beta1, <2.4.8-beta2Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.4.4-p12>=2.4.5-p1, <2.4.5-p11>=2.4.6-p1, <2.4.6-p9>=2.4.7-beta1, <2.4.7-p4>=2.4.8-beta1, <2.4.8-beta2Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.4.4-p12>=2.4.5-p1, <2.4.5-p11>=2.4.6-p1, <2.4.6-p9>=2.4.7-beta1, <2.4.7-p4>=2.4.8-beta1, <2.4.8-beta2Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/community-edition<2.4.4-p12>=2.4.5-p1, <2.4.5-p11>=2.4.6-p1, <2.4.6-p9>=2.4.7-beta1, <2.4.7-p4>=2.4.8-beta1, <2.4.8-beta2Composer4 Mar 2025
  • M
Cross-site Scripting (XSS)
magento/project-community-edition>=0.0.0Composer4 Mar 2025
  • M
Regular Expression Denial of Service (ReDoS)
cgi<0.3.5.1>=0.3.6, <0.3.7>=0.4.0, <0.4.2RubyGems4 Mar 2025
  • M
Allocation of Resources Without Limits or Throttling
cgi<0.3.5.1>=0.3.6, <0.3.7>=0.4.0, <0.4.2RubyGems4 Mar 2025
  • L
Improper Removal of Sensitive Information Before Storage or Transfer
uri<0.11.3>=0.12.0, <0.12.4>=0.13.0, <0.13.2>=1.0.0, <1.0.3RubyGems4 Mar 2025
  • C
Malicious Package
npm-manifest*npm4 Mar 2025
  • H
Use After Free
electron<32.3.3npm4 Mar 2025
  • M
Improper Preservation of Permissions
www.velocidex.com/golang/velociraptor/vql<0.74.0Go3 Mar 2025
  • M
Improper Preservation of Permissions
www.velocidex.com/golang/velociraptor/startup<0.74.0Go3 Mar 2025
  • M
Improper Preservation of Permissions
www.velocidex.com/golang/velociraptor/actions<0.74.0Go3 Mar 2025
  • M
Improper Preservation of Permissions
github.com/velocidex/velociraptor/vql<0.74.0Go3 Mar 2025
  • M
Improper Preservation of Permissions
github.com/velocidex/velociraptor/startup<0.74.0Go3 Mar 2025
  • M
Improper Preservation of Permissions
github.com/velocidex/velociraptor/actions<0.74.0Go3 Mar 2025
  • L
Arbitrary Code Injection
org.webjars:prismjs[0,]Maven3 Mar 2025
  • L
Arbitrary Code Injection
org.webjars.npm:prismjs[0,]Maven3 Mar 2025