Find out if you have vulnerabilities that put you at risk
Test your applications
Toggle filtering controls
All Vulnerabilities
APPLICATION
Cargo | Rust
Objective-C, CocoaPods | Swift
Composer | PHP
Conan | C/C++
GitHub | Go
Hex | Elixir / Erlang
Maven | Java
npm | JavaScript
NuGet | C#/F#/VB
Pypi | Python
pub | Dart, Flutter
RubyGems | Ruby
Swift Packages | Swift
C/C++
OPERATING SYSTEM
All OS vulnerabilities
AlmaLinux
Alpine Linux
Amazon Linux
CentOS
Chainguard
Debian
Echo OS
MinimOS
Oracle Linux
Red Hat Enterprise Linux
Rocky Linux
SUSE Linux Enterprise Server
Ubuntu
Wolfi
Report a new vulnerability
Vulnerabilities
Packages
L
User Interface (UI) Misrepresentation of Critical Information
CVE-2025-13082
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
L
Use of Web Browser Cache Containing Sensitive Information
CVE-2025-13083
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
H
Deserialization of Untrusted Data
CVE-2025-13081
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
M
Improper Check for Unusual or Exceptional Conditions
CVE-2025-13080
Affects
drupal/core
| Versions
>=8.0.0, <10.4.9
>=10.5.0, <10.5.6
>=11.0.0, <11.1.9
>=11.2.0, <11.2.8
M
Incorrect Authorization
CVE-2025-31673
Affects
drupal/core
| Versions
<10.3.13
>=10.4.0, <10.4.3
>=11.0.0, <11.0.12
>=11.1.0, <11.1.3
M
Cross-site Scripting (XSS)
CVE-2025-31675
Affects
drupal/core
| Versions
<10.3.14
>=10.4.0, <10.4.5
>=11.0.0, <11.0.13
>=11.1.0, <11.1.5
L
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2025-31674
Affects
drupal/core
| Versions
<10.3.13
>=10.4.0, <10.4.3
>=11.0.0, <11.0.12
>=11.1.0, <11.1.3
M
Cross-site Scripting (XSS)
CVE-2025-3057
Affects
drupal/core
| Versions
<10.3.13
>=10.4.0, <10.4.3
>=11.0.0, <11.0.12
>=11.1.0, <11.1.3
C
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2024-55638
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
C
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2024-55636
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
>=11.0.0, <11.0.8
C
Improperly Controlled Modification of Dynamically-Determined Object Attributes
CVE-2024-55637
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
>=11.0.0, <11.0.8
H
Improper Handling of Case Sensitivity
CVE-2024-55634
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
>=11.0.0, <11.0.8
M
Cross-site Scripting (XSS)
CVE-2024-12393
Affects
drupal/core
| Versions
>=8.8.0, <10.2.11
>=10.3.0, <10.3.9
>=11.0.0, <11.0.8
H
Infinite loop
CVE-2024-11941
Affects
drupal/core
| Versions
>=10.1.0, <10.1.8
>=10.2.0, <10.2.2
H
Detection of Error Condition Without Action
CVE-2024-11942
Affects
drupal/core
| Versions
>=10.0.0, <10.2.10
M
Information Exposure
CVE-2024-45440
Affects
drupal/core
| Versions
>=8.0.0, <10.2.9
>=10.3.0, <10.3.6
>=11.0.0, <11.0.5
H
Denial of Service (DoS)
Affects
drupal/core
| Versions
>=10.1.0, <10.1.8
>=10.2.0, <10.2.2
M
Cross-site Scripting (XSS)
CVE-2020-13688
Affects
drupal/core
| Versions
<8.8.10
>=8.9.0, <8.9.6
>=9.0.0, <9.0.6
M
URL Redirection to Untrusted Site ('Open Redirect')
CVE-2016-9451
Affects
drupal/core
| Versions
<8.2.3
H
Improper Handling of Structural Elements Leading to Denial of Service (DoS)
CVE-2024-22362
Affects
drupal/core
| Versions
<10.0.0
M
Information Exposure
CVE-2023-5256
Affects
drupal/core
| Versions
>=8.7.0, <9.5.11
>=10.0.0, <10.0.11
>=10.1.0, <10.1.4
M
Access Control Bypass
CVE-2023-31250
Affects
drupal/core
| Versions
>=7.0.0, <7.96
>=9.4, <9.4.14
>=9.5, <9.5.8
>=10.0, <10.0.8
M
Cross-site Scripting (XSS)
CVE-2022-25276
Affects
drupal/core
| Versions
>=8.0.0, <9.3.19
>=9.4.0, <9.4.3
M
Access Restriction Bypass
CVE-2022-25278
Affects
drupal/core
| Versions
>=8.0.0, <9.3.19
>=9.4.0, <9.4.3
H
Arbitrary Code Execution
CVE-2022-25277
Affects
drupal/core
| Versions
<9.3.19
>=9.4.0, <9.4.3
M
Information Exposure
CVE-2022-25275
Affects
drupal/core
| Versions
<9.3.19
>=9.4.0, <9.4.3
M
Access Control Bypass
CVE-2022-25274
Affects
drupal/core
| Versions
>=9.3.0, <9.3.12
H
Improper Input Validation
CVE-2022-25273
Affects
drupal/core
| Versions
>=8.0.0, <9.2.18
>=9.3.0, <9.3.12
M
Improper Input Validation
CVE-2022-25271
Affects
drupal/core
| Versions
<9.2.13
>=9.3.0, <9.3.6
M
Access Restriction Bypass
CVE-2022-25270
Affects
drupal/core
| Versions
<9.2.13
>=9.3.0, <9.3.6